Try our new research platform with insights from 80,000+ expert users
Ehindero Moses - PeerSpot reviewer
Project Manager at a tech services company with 11-50 employees
Reseller
Aug 20, 2023
Has efficient monitoring features and an easy initial setup process
Pros and Cons
  • "The product's most valuable feature is its ability to view environmental activities."
  • "They should improve XDR and threat protection capabilities for zero-day attacks."

What is our primary use case?

We use Sophos MDR for intrusion detection and prevention.

What is most valuable?

The product's most valuable feature is its ability to view environmental activities. It has an engine to monitor the challenges.

What needs improvement?

They should improve XDR and threat protection capabilities for zero-day attacks.

For how long have I used the solution?

We have been using Sophos MDR since 2021.

Buyer's Guide
Sophos MDR
January 2026
Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,082 professionals have used our research since 2012.

What do I think about the stability of the solution?

I rate Sophos MDR’s stability a seven out of ten.

What do I think about the scalability of the solution?

The product is scalable for small and medium businesses. They should improve this particular area for the enterprise environment. I rate its scalability a six out of ten.

How are customer service and support?

The technical support team connects us with the channel partners within our region. They can solve the problem quickly.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is easy. I rate the process a ten out of ten. We have deployed the product on-premises and in a hybrid environment with a VPN setup using the Microsoft Azure platform. The deployment time depends on the size of the infrastructure. For 50 users, it takes five to ten minutes. You should get all the basic information for a specific setup and check all the ports and VLAN connections during installation.

What's my experience with pricing, setup cost, and licensing?

Sophos MDR could be more affordable. It has a mid-range price. That is the reason many companies deploy it.

What other advice do I have?

I recommend Sophos MDR to others and rate it an eight out of ten. I advise others to get the product to manage the complete security services of their businesses. It has instant security features and a good return on investment.

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Jayden Beard - PeerSpot reviewer
Support Engineer at a comms service provider with 201-500 employees
Real User
Top 5
Feb 29, 2024
Provides 24/7 monitoring services and has a straightforward process
Pros and Cons
  • "Sophos MDR has improved the threat detection process by identifying and addressing the issues before they become severe."

    What is our primary use case?

    We use the product for 24/7 monitoring services for threat detection.

    For how long have I used the solution?

    We have been using Sophos MDR for about two and a half years.

    What do I think about the stability of the solution?

    I rate the platform’s stability a ten out of ten.

    What do I think about the scalability of the solution?

    The platform is easy to scale. I rate the scalability a ten out of ten.

    How was the initial setup?

    The initial setup is straightforward. I rate the process a ten out of ten.

    What's my experience with pricing, setup cost, and licensing?

    The product is reasonably priced considering the cybersecurity features.

    What other advice do I have?

    Sophos MDR has improved the threat detection process by identifying and addressing the issues before they become severe. It helps us maintain cybersecurity with 24/7 device monitoring.

    In one of the incidents, the product was instrumental in mitigating a threat by enabling us to mark the machine with a phishing attack. In this way, we isolated the device before it infiltrated the organization.

    The AI analysis and MDR features automatically isolate the issues without manual effort.

    I rate it a ten out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Sophos MDR
    January 2026
    Learn what your peers think about Sophos MDR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
    881,082 professionals have used our research since 2012.
    Darryl Theron - PeerSpot reviewer
    Director at a computer retailer with 1-10 employees
    Real User
    Top 20
    Jan 31, 2022
    Effective management capabilities, beneficial monitoring, and full featured
    Pros and Cons
    • "The most valuable feature of the Sophos Managed Threat Response is the central management capabilities and monitoring."
    • "Multitenancy features of Sophos Managed Threat Response should be improved. You cannot use the solution for multiple clients."

    What is our primary use case?

    We are using Sophos Managed Threat Response for network security and firewalls.

    What is most valuable?

    The most valuable feature of the Sophos Managed Threat Response is the central management capabilities and monitoring.

    What needs improvement?

    Multitenancy features of Sophos Managed Threat Response should be improved. You cannot use the solution for multiple clients.

    For how long have I used the solution?

    I have been using Sophos Managed Threat Response for approximately 

    What do I think about the stability of the solution?

    The solution is stable.

    What do I think about the scalability of the solution?

    Sophos Managed Threat Response is a scalable solution.

    How are customer service and support?

    I am satisfied with the technical support.

    Which solution did I use previously and why did I switch?

    I have not used other similar solutions

    How was the initial setup?

    The initial setup of Sophos Managed Threat Response is reasonably difficult. It takes approximately a day or two to have it properly set up.

    What about the implementation team?

    To do the implementation I would recommend having at least one certified technician available.

    What was our ROI?

    We have seen a return on investment using this solution.

    What other advice do I have?

    I rate Sophos Managed Threat Response an eight out of ten.

    Which deployment model are you using for this solution?

    Hybrid Cloud
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Cyber Security Consultant at a tech services company with 11-50 employees
    MSP
    Top 10
    Jul 30, 2024
    Provides reports, alerts and allows us to monitor the network
    Pros and Cons
    • "The automation feature in Sophos MDR provides reports and alerts."
    • "Support could provide a faster response."

    What is our primary use case?

    The clients wanted to replace their existing antivirus solution, so we implemented Sophos MDR.

    How has it helped my organization?

    We obtain telemetry from all sources, including the firewall, and can integrate it with multiple other solutions. Unlike some solutions that only gather telemetry from endpoints, Sophos MDR collects data from various sources. If threats are identified automatically, the software can intervene, which is helpful outside regular working hours.

    If a threat is identified during off hours, it will be handled by the support team before waiting for our intervention.

    What is most valuable?

    The automation feature in Sophos MDR provides reports and alerts. If something critical occurs, it sends alerts to our email. This allows us to monitor the network and determine what solutions or actions we can take.

    What needs improvement?

    The pricing is acceptable. Support could provide a faster response.

    For how long have I used the solution?

    I have been using Sophos MDR for three months. We implement Salesforce for some of our clients.

    What do I think about the stability of the solution?

    I rate the solution’s stability a seven out of ten.

    What do I think about the scalability of the solution?

    It supports integrations with multiple other platforms. We cater the solution to small businesses.

    How are customer service and support?

    Support could be more responsive.

    How would you rate customer service and support?

    Neutral

    How was the initial setup?

    The initial setup takes six to eight hours. Our company's technical team was involved in it.

    I rate the initial setup an eight out of ten, where one is difficult and ten is easy.

    What's my experience with pricing, setup cost, and licensing?

    Pricing is reasonable when compared to other products.

    What other advice do I have?

    They are using various machine learning and AI techniques to detect threats.

    Sophos MDR is a choice for those interested in moving to an endpoint protection system rather than traditional antivirus solutions. It is cost-effective compared to other products and offers benefits, such as collecting telemetry from multiple sources and providing alerts about various threats.

    Overall, I rate the solution an eight out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    Disclosure: My company has a business relationship with this vendor other than being a customer.
    PeerSpot user
    BhanuPrakash - PeerSpot reviewer
    Technical Head at a tech services company with 51-200 employees
    Real User
    Top 5
    May 17, 2024
    Monitors and provides automated emails and updates that helps to resolve issues
    Pros and Cons
    • "The tool's ability to work with security threats is competitive. The best part is monitoring and the way we receive automated emails and updates. When an issue arises, a ticket automatically gets raised, clearly outlining the necessary actions to be taken from our end."
    • "The only challenge we face with the tool is the pricing. Clients often compare it with other products in the market and try to negotiate prices. This concern has caused some challenges in closing deals. Otherwise, as a product, we have no worries."

    What is our primary use case?

    Since we installed Sophos MDR, we have thankfully had peace of mind. Before the Sophos MDR installation, we had a very bad experience with several clients. Post-installation, this issue has decreased, and it's very effective.

    What is most valuable?

    The tool's ability to work with security threats is competitive. The best part is monitoring and the way we receive automated emails and updates. When an issue arises, a ticket automatically gets raised, clearly outlining the necessary actions to be taken from our end.

    The solution's integration with our IT workflow is easy. 

    What needs improvement?

    The only challenge we face with the tool is the pricing. Clients often compare it with other products in the market and try to negotiate prices. This concern has caused some challenges in closing deals. Otherwise, as a product, we have no worries.

    The support's response time can also be faster. 

    For how long have I used the solution?

    I have been working with the product for two years. 

    What do I think about the scalability of the solution?

    I rate the solution's scalability to the maximum, i.e., a ten out of ten. 

    How are customer service and support?

    We have local distributors who support us. Sometimes the call centre gets really busy, which can be a challenge. Thankfully, we have local distributor support that handles most of our issues. We only resort to reaching out to the main support when necessary.

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    There are no challenges associated with the tool's deployment. 

    What other advice do I have?

    The tool is recommended for enterprises. The pricing model can be a bit challenging for small companies. I rate it a ten out of ten. I recommend the product. We have migrated most of our clients to Sophos MDR. 

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    PeerSpot user
    Abdo Alkateeb - PeerSpot reviewer
    Sales manager at a tech services company with 11-50 employees
    Real User
    Nov 28, 2023
    Provides customer-friendly technical support services and an easy setup process
    Pros and Cons
    • "The product’s most valuable feature is ease of use."
    • "The product's pricing could be less expensive."

    What is most valuable?

    The product’s most valuable feature is ease of use.

    What needs improvement?

    The product's pricing could be less expensive.

    For how long have I used the solution?

    We have been using Sophos MDR for almost a year.

    What do I think about the stability of the solution?

    It is a stable product due to timely and automatic updation.

    What do I think about the scalability of the solution?

    We have 100 clients for Sophos MDR. It is a scalable product.

    How are customer service and support?

    The technical support services are customer-friendly.

    How was the initial setup?

    The initial setup is easy and can be done immediately.

    What was our ROI?

    The product generates a good return on investment.

    What's my experience with pricing, setup cost, and licensing?

    It is an expensive platform.

    What other advice do I have?

    The product is user-friendly and cost-effective. I advise others to add MDR, XDR, and EDR solutions for complete security. I recommend the product to others and rate it an eight out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
    PeerSpot user
    Victor Bayedo - PeerSpot reviewer
    Cloud Solution Architect at a tech services company with 201-500 employees
    Real User
    Top 10
    Aug 7, 2023
    A comprehensive solution that integrates seamlessly with several third-party tools
    Pros and Cons
    • "There is a feature called XDR Central. With this, Sophos can connect to third-party security solutions."
    • "Threat intelligence is an area for improvement for MDR."

    What is our primary use case?

    Sophos MDR is used to take care of security, monitor the environment, and show it is safe and secure.

    How has it helped my organization?

    A lot of organizations in Africa have been in very bad shape. Some experienced staff might suddenly drop their registration letters, making it a challenge to find somebody new. That is one of the cases where Sophos MDR comes into play. Organizations do not necessarily have to invest too much in in-house personnel because Sophos takes care of the first channel of security that you require. You don't need entry or mid-level security personnel in-house.

    A lot of organizations have also experienced attacks like ransomware. This has led to more than the loss of data. We face legal implications. We have our integrity damaged. These attacks come with a lot of financial implications, and Sophos addresses that aspect by offering up to $1 million in case of any environmental breach. Other organizations can take server insurance or integrate it to give them confidence that they can land on their feet if anything happens.

    What is most valuable?

    There is a feature called XDR Central. With this, Sophos can connect to third-party security solutions. This way, clients do not need to spend on a separate security OEM. Sophos MDR naturally integrates with any third party, and clients get the value they need from the solution.

    What needs improvement?

    With the level of AI in the hands of cybercriminals today, they have had a lot of success, and they continue to improve on their success. Hence, the only way forward is for any security solution to continue increasing the amount of data they have access to. Threat intelligence is one area any security company needs to expand because the better the data we have, the more precise a difference they can make regarding security. Threat intelligence is an area for improvement for MDR. Sophos MDR also needs to add more automation functions.

    For how long have I used the solution?

    I have used Sophos MDR for three years.

    What do I think about the stability of the solution?

    I rate the stability of the solution a nine-point-six out of ten.

    What do I think about the scalability of the solution?

    I rate Sophos MDR's scalability a ten out of ten. It is straightforward to increase the number of protected devices. You don't need to redeploy anything. It is automatically pushed from the central to all devices. It is seamless.

    Sophos MDR cuts across every type of organization, from a small to a large enterprise organization. Large enterprises gain value because when it comes to cost, the higher you buy, the less you pay. For a large enterprise, it will make the price cheaper. Regarding capability, one of the recommendations is called synchronized security, which is the ability of your endpoint to communicate with the firewall and share intelligence. That's one of the things Sophos has been able to achieve. It has some of the components or architecture I require in the environment for large organizations and enterprises, but Sophos MDR speaks to enterprises and smaller to medium companies.

    How are customer service and support?

    Customer support is top-notch.

    How was the initial setup?

    Today, the best way to deploy a cloud solution like Sophos MDR for a large enterprise environment is to have it leverage soft packing on deployment. It is quite easy for customers using Sophos to add additional features to it because you don't need to redeploy. From the portal, you can push licenses to every endpoint you have. Sophos has made some advances in that aspect, but sadly, it depends on third parties to make deployment more seamless.

    What's my experience with pricing, setup cost, and licensing?

    MDR is a complete enterprise solution, and compared to other OEMs, it is one of the cheapest. I rate the pricing a nine out of ten because it is affordable.

    What other advice do I have?

    Sophos is one of the first security OEMs to recognize security perfectly through a single management platform whereby organizational security solutions can think and be managed from a single dashboard. That gives Sophos an edge over so many other OEMs. This is what MDR leverages today. Another point of note is that a few years ago, when ransomware software became rampant, Sophos released a component dedicated to helping providers combat any new variants of ransomware, which any other OEM could use. And Sophos was able to work with third-party security solutions, meaning that an organization currently using another OEM can still leverage the Sophos interface to ensure they are safe regarding ransomware. This gave Sophos an edge with MDR. Today they have XDR Central. XDR Central works with third-party security solutions and enables organizations to carry out forensic and threat-hunting analyses on those companies' devices and networks. These are things that give Sophos an edge over many other OEMs out there.

    I rate Sophos MDR a nine out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    PeerSpot user
    Sophos Certified Product Architect at a tech services company with 51-200 employees
    Reseller
    Aug 5, 2023
    Allows integration of multiple vendors into one dashboard and 24/7 monitoring
    Pros and Cons
    • "The most valuable feature is the ability to integrate multiple functions into a single dashboard regardless of the vendors being integrated."
    • "Sophos MDR lacks integration with MDM solutions."

    What is our primary use case?

    We are a distributor of Sophos products in Pakistan. Our customers use Sophos MDR when they require a unified dashboard for integrating multiple vendors' solutions, enabling them to have visibility across all their systems. Sophos MDR is particularly valuable for organizations that lack an in-house expert to manage and secure their network.  

    What is most valuable?

    The most valuable feature is the ability to integrate multiple functions into a single dashboard regardless of the vendors being integrated.

    What needs improvement?

    Sophos MDR lacks integration with MDM solutions.

    Sophos should provide a demo of MDR so that potential customers can utilize it through a free trial for POC.

    For how long have I used the solution?

    I have been using Sophos MDR for five months.

    What do I think about the scalability of the solution?

    I would rate the scalability of Sophos MDR a seven out of ten.

    How was the initial setup?

    The initial setup is a seven out of ten.

    What's my experience with pricing, setup cost, and licensing?

    Sophos MDR is expensive, and due to the financial instability in Pakistan, many customers prefer to opt for Intercept X Advanced with XDR. This allows them to have a comprehensive LDR solution rather than MDR.

    I would rate the price of Sophos MDR as a nine out of ten, with ten being the most expensive.

    What other advice do I have?

    I would rate Sophos MDR eight out of ten.

    People are expecting Sophos MDR to be available on-premises as well, due to an existing compliance issue in Pakistan. This is a crucial aspect that customers have requested from me. Historically, two to three years ago, or even four years ago, our solution was on-premises; however, currently, we have already transitioned to the cloud. Now, in the banking sector of Pakistan, there are policies that prohibit hosting anything on the cloud. This presents a significant challenge for us in the Pakistani market, as we aim to offer and impress them with cloud-based solutions. Many other vendors provide their solutions in three ways: hybrid, on-premises, or on the cloud. Therefore, the drawback of Sophos MDR is that we don't offer an on-premises option. Nevertheless, despite this limitation, we can still provide Sophos MDR by adapting it to function on a highly secure server or in air gap mode.

    Sophos MDR offers a 24/7 threat experts team that protects customers' networks from attacks or vulnerabilities. This feature is ideal for organizations that do not have a cybersecurity team. 

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free Sophos MDR Report and get advice and tips from experienced pros sharing their opinions.
    Updated: January 2026
    Buyer's Guide
    Download our free Sophos MDR Report and get advice and tips from experienced pros sharing their opinions.