What is our primary use case?
In Bangladesh, the main use cases for the Sophos EPP Suite include XDR, and several customers are moving towards MDR, which means Managed Detection and Response.
They are mainly in the banking sector, along with corporate customers, and government customers are using Sophos.
In Bangladesh's banking sector, there are numerous offerings for cloud XDR. Sophos EPP Suite has a feature called relay server cache, which means internet connection is not required for the end user. Sophos EPP Suite can download the update in servers that need internet connections, and from that server, updates can be pushed to the endpoints, even if they are in offline mode. This feature is particularly appealing to banking customers because, for compliance with the Central Bank, they don't want to connect all the PCs, laptops, and endpoints over the internet.
What is most valuable?
The feature is called relay server, and some people refer to it as a cache server.
The Sophos EPP Suite is scalable. Some customers in banks typically have 5,000 to 7,000 users. One customer started with 1,000 users and has now extended to 4,000 users. Some customers are using up to 8,000 users without any issues.
Regarding AI elements in the Sophos EPP Suite, firewalls have already introduced AI features. They have integrated AI models similar to ChatGPT in firewalls. These AI features should be introduced in endpoint XDR as well.
Key features for comprehensive detection and prevention include advanced threat prevention, ransomware protections, exploit prevention, and AI-powered detections. Extended visibility and data analysis include cross-product data correlations. They have a data lake, live discover, and threat graphs. They also offer AI case summary and AI common analysis, accessible from Sophos Central, which is the management portal for Sophos XDR. Sophos Central serves as one central management portal for managing firewalls, endpoint, Sophos encryption, and mobile device management solutions. This centralized management is particularly appealing to customers.
What needs improvement?
The Sophos EPP Suite should work on key areas, especially in data management, specifically the data retention part. The data lake storage has certain limits. Users have noted that daily upload limits per device, overall data lake storage capacity tied to licenses, and daily API query limits can be restrictive, which can lead to data not being uploaded or older data being purged.
For how long have I used the solution?
I have been working with the Sophos EPP Suite for 15 to 16 years.
What was my experience with deployment of the solution?
Some customers face challenges when deploying security products, not only Sophos EPP Suite. If they use pirated software, these issues arise. When customers use cracked Windows OS, deployment becomes difficult because the systems get restarted. The Sophos support team is unable to provide support due to compliance issues as they cannot work on cracked Windows. When customers follow compliance and use genuine software applications, there are no problems with Sophos EPP Suite.
What do I think about the stability of the solution?
I never face any issues with stability with the Sophos EPP Suite.
How are customer service and support?
Technical support for Sophos EPP Suite has improved. While there were difficulties earlier, they have introduced a dedicated role called Technical Account Manager (TAM) for every partner. When technical issues arise, partners can directly contact the TAM of Sophos, which represents an improvement in their service.
How would you rate customer service and support?
How was the initial setup?
The Sophos EPP Suite is easy to set up when customers provide flexibility to open certain ports in the firewall and other areas of the network. With proper access, deployment is straightforward as the client can be pushed through Active Directory.
The setup of the Sophos EPP Suite would be rated as nine out of ten.
What's my experience with pricing, setup cost, and licensing?
For Bangladesh, the price of the Sophos EPP Suite is reasonable. We recently won a deal when compared with CrowdStrike, SentinelOne, Palo Alto, and Checkpoint. The deal was won based purely on commercial aspects when technically qualified.
The cost is reasonable and cheaper than other alternatives.
The license cost for the Sophos EPP Suite depends on the user and varies based on the specific configuration.
Which other solutions did I evaluate?
I closely work with Infoblox. We are also a Cisco partner but don't focus on Cisco security items, including firewall. We work with Check Point for firewalls. We work with Sophos EPP Suite for SMB firewalls and endpoints, including XDR and MDR. We have closed several deals with Sophos EPP Suite for XDR.
What other advice do I have?
I have extensive experience working with Sophos EPP Suite for a long time. I am partners with Sophos EPP Suite. My previous organization was a partner, and now I have also become a partner and closed a banking deal with Sophos EPP Suite.
Most customers use this tool on-premises, while some customers have provided access for cloud solutions. This eliminates the need to set up the relay server or cache server, allowing endpoints to connect over the internet and receive updates directly online.
My customers are medium to large enterprises. In Bangladesh, Mutual Trust Bank is a prominent customer that has been using the Sophos EPP Suite for the last 20 years without changing their solutions.
I recommend that customers looking to use the Sophos EPP Suite consider the extended security features available. Sophos introduced a security heartbeat feature ahead of other solutions. When a customer sets up a Sophos firewall and uses Sophos XDR, that firewall can communicate with the endpoint. If any disaster happens at the endpoint, the firewall can detect and isolate that endpoint logically from others, securing other endpoints against malware or spyware.
I rate the Sophos EPP Suite eight out of ten.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other