Try our new research platform with insights from 80,000+ expert users
Project Manager at a mining and metals company with 1,001-5,000 employees
Real User
Offers a high level of visibility of what's happening on your network or on your client machines
Pros and Cons
  • "Sophos XG has cybersecurity. It integrates with the antivirus software."
  • "The only issue that Sophos XG now needs to improve is the product's reporting capability."

What is our primary use case?

I use Sophos XG as a content filtering, web filtering, and application filtering utility, as well as to integrate with the endpoint antivirus software. 

I have Sophos Endpoint Antivirus installed on the user machines as well, i.e. the Central Cloud Management version. That's our main use. 

Sophos XG has cybersecurity. It integrates with the antivirus software.

How has it helped my organization?

I have a serious problem because our offices are scattered around the world in very remote areas. We cannot deploy proper branch office guides, active directory sites, and software services. 

It is impossible to apply any sort of group policy on the user machines, which makes it very hard to control issues like USB ports, access to cameras, or access to any preferences on the user machines. 

With the integration between Sophos UTM and the installed endpoint antivirus, you can now manage all those features from your cloud subscription. You can allow and block whatever you want from the cloud. 

You can allow whatever USB ports you want for specific devices with specific IDs, serial numbers or modems. The machine gets updated online or updated from the antivirus settings, i.e. the UTM unit itself.

The UTM unit itself has a cache update on it. Once the clients behind the UTM get updated, they get access or they get denied access to the hardware resources they are applying for. This is a major benefit for us.

What is most valuable?

The application filters available with Sophos XG are brilliant. The sandboxing and the way the firewall or the UTM integrates with the installed endpoint antivirus clients on the user machines is brilliant. You get the chance to isolate network threats before they become active or become distributed on your network. 

With the cloud version of Sophos XG, you get the proper visibility of your network and the user machines. With the cloud versions of the antivirus, i.e. the cloud central management of the antivirus, you get high visibility.

With the application between the installed Sophos UTM, you get a high level of visibility of what's happening on your network or on your client machines. You get protected against threats. You get proper visibility. That solves a major issue.

What needs improvement?

There was a big issue with the Cyberoam and with the SG units as well, i.e. the previous Sophos UTM model. With Sophos XG, you get the chance to block what sites operate on SSL or that operate with HTTPS, without the need of extracting and distributing a certificate. 

On older Cyberoam and Sophos SG old versions, if you wanted to block something like YouTube or Facebook or any other websites that operate with HTTPS, you had to extract the certificate. Then you had to export that certificate. Then you had to re-import that certificate in all the user browsers. 

The only problem was if you needed to use an active directory where those certificates would be automatically thrown into the user browsers once they logged in to the domain. 

For a scenario like mine where you don't have a group policy, it is a disaster and ends up with you setting the rules to block certain websites with HTTPS on the firewall, even while they are not being blocked so that the user will still have access to them. This problem is now 100% sorted out with Sophos XG.

Now you can actually block whatever you want, whether it's using HTTPS or HTTP keys from the firewall without the need for extracting certificates. That's a major improvement. That problem with the HTTPS settings was a huge issue. 

I know other people must be enjoying that it's sorted out now. It was a serious and major issue for Sophos. The only issue that Sophos XG now needs to improve is the product's reporting capabilities.

Buyer's Guide
Sophos XG
April 2025
Learn what your peers think about Sophos XG. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
851,823 professionals have used our research since 2012.

For how long have I used the solution?

I have used Sophos XG for over 10 years.

What do I think about the stability of the solution?

Sophos XG is stable enough for our requirements.

What do I think about the scalability of the solution?

We have about 450 Sophos XG users currently using this edition and 300 for the antivirus platform installed on the machines, plus in-service, around 310. We also have around 15 additional units deployed around the world.

How are customer service and support?

I'll give Sophos XG technical support an eight out of ten for their service.

Which solution did I use previously and why did I switch?

I used Cyberoam previously, although I always used it as a UTM only. What made me move to Sophos is that they were acquired, i.e. they acquired Cyberoam to start with the development. At that time the software had many features that were not available with FortiGate, in terms of content filtering, and it was an appliance when Websense was the software to be installed on a server. 

There was a problem with our operating system with some of the updates, i.e. with the operating system or the hardware. I moved from Websense to Cyberoam because it wasn't applying properly.

How was the initial setup?

The initial setup is definitely something different than the old Cyberoam and it's a bit complex. If you've been dealing with UTMs and you understand the concept, it is still complex but then I find it enjoyable.

Sophos XG is not hard to configure. Too much detail is always good. 

I required three or four hours for the initial setup. One day for the testing, fine-tuning, optimizing, and categorizing. Three days for the first unit with the initial setup and the customization including testing. Finally, three days for testing all the rules, the QA, and then putting everything live. 

What about the implementation team?

I used to work for an integrator myself years ago, as well as my team. We are all trained. We are all professional in what we are doing. No external help was used.

What was our ROI?

Our ROI is 100%. I've got the ransomware attacks being blocked. I've got the users' consumed bandwidth by using proxy bypasses and all sorts of applications being blocked now. 

It's saving on the companies and the employees working hours and time. It's saving on minimizing virus infections and applications that the users like to use on their machines in order to bypass blocking USB ports or cameras. 

It is saving the company money by saving bandwidth and saving employees time by not allowing them to access time-wasting websites.

What's my experience with pricing, setup cost, and licensing?

We have the annual license for Sophos XG. It all depends on what you would like to have in the package that you are purchasing.

Which other solutions did I evaluate?

I evaluated FortiGate but wasn't happy with it. I evaluated another group called WatchGuard. WatchGuard has good features in it, but it's for a smaller business scale than the Sophos clients.

I evaluated Cisco ASA or PIX but now, I use Sophos XG as the firewall. I have confidence in their unit. Before Cyberoam and Sophos, I used FortiGate and Websense for our UTM requirements.

What other advice do I have?

I recommend that everyone should have a proper understanding of new network requirements and then enjoy it. Sophos XG is definitely a good product.

On a scale of 1 to 10, I would give Sophos XG an eight.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Owner / IT operator at Fairview Schools
Reseller
A stable solution that has excellent partner support, saves time, and has a reasonable price point
Pros and Cons
  • "The security of the solution, thanks to the built-in unified threat management, is one of its most valuable features. Plus, one single pane of glass is all you need to manage the whole solution, and web management can be done from anywhere."
  • "For the standard end user, self-based training is necessary. When you get into the Sophos XG firewall and try to start creating NAT rules, it can be a little cumbersome for a novice. It's pretty easy once you know how to do it, but it will be hard for anybody who doesn't have experience."

What is our primary use case?

I am an integrator of this solution, and I have installed it in small- and medium-sized businesses and schools.

How has it helped my organization?

My company now spends less time tracking issues because of the security provided by Sophos XG in conjunction with Sophos Endpoint protection.

What is most valuable?

The security of the solution, thanks to the built-in unified threat management, is one of its most valuable features. Plus, one single pane of glass is all you need to manage the whole solution, and web management can be done from anywhere. If I get a call and I'm at home, I can open the solution in a web browser and address the situation.

For how long have I used the solution?

I have been using this solution since 2013.

What do I think about the stability of the solution?

The stability of this solution is excellent. 

What do I think about the scalability of the solution?

The solution is available in different sizes. As long as you purchase a version that is larger than you currently need, there is room to grow. If you purchase one for your current needs, then the scalability is not good and you're going to have to repurchase if you want to scale up. On a scale of one to ten, I would give this solution a five or six for scalability. 

How are customer service and support?

I would rate the technical support as a ten out of ten. I'm a Sophos partner, and their partner support is excellent. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I previously used Cisco Meraki, but Sophos XG has built-in web filtering and is a better overall security solution. Due to these features, I have tried to migrate as many of my schools to Sophos XG as possible.

How was the initial setup?

On a scale of one to five, with five being complex, I would rate the initial setup as a four. If you don't understand the terminology and how Sophos designates the way they do things, then it is a little confusing.

What about the implementation team?

Depending on the location, most deployments take a day. We leave the current firewall in place while we configure the new one, then we swing the cable over and fire up the new firewall. That way if we have to take it back offline, we can keep the client productive until we are done configuring the new firewall.

For deployment you really only need one person, and maintenance can easily be handled by one person, too.

What's my experience with pricing, setup cost, and licensing?

The pricing depends on the size. Each Sophos XG solution is custom fit to the size of the client's network. For example, for the XG 135, you're looking at a yearly subscription. You can get a one-year subscription for a few hundred dollars, or a three-year subscription for $1,500-$1,600, so it's not bad. There are no costs in addition to the standard licensing fees. I would rate the pricing as a three point eight on a scale of one to five.

I've had schools running different firewalls with subscriptions and different web filters with subscriptions, and I've found that it is less expensive for smaller schools to run Sophos XG with its unified threat management instead of multiple appliances.

Which other solutions did I evaluate?

I have evaluated some other options. It really boils down to price, and I haven't had a chance to explore Palo Alto much. I've played with PortaNet a little bit, but I think that Sophos XG has better features for the price point.

What other advice do I have?

For the standard end user, self-based training is necessary. When you get into the Sophos XG firewall and try to start creating NAT rules, it can be a little cumbersome for a novice. It's pretty easy once you know how to do it, but it will be hard for anybody who doesn't have experience.

My advice to someone purchasing this solution would be to look closely at the licensing package to make sure they get what they need.

For small businesses and small schools, I would rate this solution as an eight out of ten.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner/Reseller
PeerSpot user
Buyer's Guide
Sophos XG
April 2025
Learn what your peers think about Sophos XG. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
851,823 professionals have used our research since 2012.
Abdul  Basit - PeerSpot reviewer
Assistant Manager IT at Asia Petroleum Limited
Real User
Top 5
Management and security features deliver impressive user satisfaction
Pros and Cons
  • "Sophos XG is a friendly-use firewall that is very good for small environments and small to medium businesses; its functions are great, and I am very satisfied with UTM."
  • "We need better reporting and a clear vision of the network, and Sophos XG does not provide that."

What is our primary use case?

I am using Prisma Access browser, but the terms are different in Palo Alto, as every firewall has different functions and names for the access browser.

Regarding the firewall itself, I work with Palo Alto VM-Series firewall, which is very good compared to others; its rating is very good.

We are using the Cortex series.

I use Cortex XSOAR mainly for XDR, Cortex XDR. I specifically use XDR for extended detection and response.

The security orchestration, automation, and response features of Cortex XSOAR are very advanced, and the functions are rated highly compared to others.

Currently, we are not using Cortex XSOAR for SOAR functionality. Because we have not been using it for a long time, our option is based on our organization needs; we are not a big organization with a total of 150 plus users, and the option we use currently is enough for our network, so we are not using DNS Security and other options.

What is most valuable?

Palo Alto Threat Intelligence Management is a main function of Palo Alto.

The Palo Alto solution is very useful in our environment, as the pricing from the Palo Alto team working in Pakistan is also very competitive compared to Sophos XG and Fortinet.

What needs improvement?

We are not using Palo Alto Threat Intelligence Management for a long time, but it is very effective.

The reporting and visibility of the network were low.

There are many problems, but compared to pricing, Sophos XG is good.

We need better reporting and a clear vision of the network, and Sophos XG does not provide that.

For how long have I used the solution?

I have been using Cortex XSOAR for only 3 months.

What do I think about the stability of the solution?

There were no limitations regarding the scalability of Sophos XG.

Which solution did I use previously and why did I switch?

I stopped using Sophos XG around 3 months ago.

I used Sophos XG, the XGS version, which is friendly with the current version of XGS. I have around 10 years of experience using Sophos XG as my main gateway device.

Sophos XG is a friendly-use firewall that is very good for small environments and small to medium businesses; its functions are great, and I am very satisfied with UTM. I have been using it for 10 years with no threats in my network, no ransomware attacks, and no VPN issues. It works very well in my environment, as my network is not as crucial as a financial institution's.

How was the initial setup?

Installation is very easy. The installation of Sophos XG was easily completed with our local vendor.

What other advice do I have?

My job title is Assistant Manager IT.

This review will be published on peerspot.com, in written or audio format, and it can be available to other people, but I can stay anonymous if I wish. I will get notifications, and the use of this review is subject to PeerSpot's terms of use, which I can access at peerspot.com/tos.

I do not use AutoFocus.

I appreciate the contribution and pleasant discussion.

My rating for this solution is 10 points out of 10.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
PeerSpot user
Director Of Information Technology at 2B
Real User
Good load-balancing features, monitoring done from a single control panel, and controls access to our resources
Pros and Cons
  • "Sophos Control Center is a good feature. We can monitor everything from the control panel."
  • "The VPN features can be improved. Due to covid-19, we have a lot of employees that work from home and we need better VPN capabilities."

What is our primary use case?

This product is our firewall that protects our connections from the internet. It controls access for our employees when they want to access streaming media websites such as YouTube.

It controls the connection to our resources that originate from outside of our infrastructure.

We use it to monitor users and their activity including which websites they visit and what portals they use.

How has it helped my organization?

This product is compatible with my business and our market.

What is most valuable?

This Sophos product has a lot of features included.

This product does load-balancing between our connections. This is helpful because our infrastructure in Egypt is not stable and it requires several connections to achieve the required performance.

Sophos Control Center is a good feature. We can monitor everything from the control panel.

It can be used to create a VPN connection between users and our server. 

The performance and speed of the appliance are good. I have also tried the software deployment, without the appliance, and it was also good.

What needs improvement?

The VPN features can be improved. Due to covid-19, we have a lot of employees that work from home and we need better VPN capabilities.

We would like to be able to override policies set by the country. For example, VPN is banned in Egypt. If we could bypass this then it would be helpful because it would allow us to distribute our connections, or services, to other sites. 

After upgrading from version 17 to 18, not everything is in the same place in the interface. For example, the firewall rules are in a different place. Consequently, my IT team department cannot understand the portal and find it not user-friendly. They were used to the previous version.

Better training should be available because there is nothing on the Sophos website to assist with setting up VPN connections or VPN SSL certificates. For instance, there is nothing to explain how to configure the DDNS.

For how long have I used the solution?

We have been using Sophos XG for between six and seven years, since 2015.

What do I think about the stability of the solution?

This product is usually stable. In the past few days, I have found problems where some services are not stable. This is something that I have used the portal to submit a ticket for.

What do I think about the scalability of the solution?

We have 90 people working on the network concurrently. Combined, they have between 300 and 350 open sessions.

When the size of our staff increased, we purchase another appliance to expand our infrastructure. Beyond that, I haven't been able to test scalability.

How are customer service and support?

In addition to the recent ticket I created for technical support, I keep in touch with them. The support is okay.

Which solution did I use previously and why did I switch?

Previously, we used the Microsoft TMG firewall, and I have also used Cisco ASA.

I already had some experience with Sophos and firewalls. The first time I attended a Sophos event, I made a deal with Sophos and they helped me learn how to transition from TMG.

The user interface with Sophos is easier to use. For example, Sophos makes it is easier to create firewall rules for a VPN connection to the outside. With the other vendors such as Cisco, the process is more complex. 

Fortinet is also a top firewall provider but I recommend Sophos because it is more stable. I have limited experience with FortiGate.

How was the initial setup?

The initial setup was easy. It was not complex for our IT department but you need some technical knowledge to do things such as creating a VPN connection between two endpoints, either site-to-site or site-to-client. You should also be familiar with SSL certificates.

The setup took between two and three hours, and after that, we had to prepare our network connections. It took two days in total.

No maintenance is required for the appliance.

What about the implementation team?

We used a system integrator to assist us with the transition from TMG to Sophos.

What's my experience with pricing, setup cost, and licensing?

We pay licensing fees of approximately $2,000. We have a contract for three years.

What other advice do I have?

The vendor is very professional when it comes to firewall products. Aside from the issues with the VPN, It has all of the features that we need.

My advice for anybody considering this product is that the result depends on your country. In my country, there are a lot of problems with ransomware and viruses. Sophos has already helped to mitigate and stop issues such as these on our network. It is the best firewall on the market.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Manager of Information Technology at Sundown M Ranch
Real User
Plug-and-play with a modern interface and helpful technical support
Pros and Cons
  • "The initial setup is straightforward."
  • "I'd like to see better reporting. While the logs are great, the reports are not."

What is our primary use case?

We primarily use the solution as our firewall.

How has it helped my organization?

I'm able to have very granular control over my organization's input and output data that goes in and out of our networks.

What is most valuable?

The firewall portion of the solution is the best part The rest is really just fluff. 

The initial setup is straightforward.

We have found the stability to be quite good.

What needs improvement?

User management is the area that, by far, needs the most work. The way that they try to transparently utilize user groups from the active directory to the Sophos firewall is outdated.

I'd like to see them do a little bit better of a job with the content filtering. It has content filtering, however, it rarely works. Sometimes it just fails altogether. I'd like to see a better job done. 

I'd like to see better reporting. While the logs are great, the reports are not.

For how long have I used the solution?

I've been using the solution for six years at this point. 

What do I think about the stability of the solution?

The stability is great. There are no bugs or glitches and it doesn't crash or freeze. It's a reliable firewall. 

What do I think about the scalability of the solution?

The product is super scalable. If I had a giant organization, I'd have no problem putting the Sophos firewall in.

Right now, we have 155 on the solution. That's everyone from support to upper-level management. 

We use it every day.

We just recently upgraded. I have no reason or need to upgrade for years to come and therefore don't plan on scaling anytime soon.

How are customer service and support?

Technical support is fairly good. It's a pain to get ahold of them, however, once you get them, they're very thorough.

The only thing that s not so great is that sometimes they try to force me down to my reseller, whoever their partner is. I always have to make up a lie and say I already tried and only then will they help me. Besides that, it's not bad.

Which solution did I use previously and why did I switch?

I previously used Cyberoam. We really switched as Cyberoam was bought out by Sophos.

How was the initial setup?

The implementation process was pretty straightforward. Learning the ins and outs was a little complex. How, in terms of just getting it set up, I was able to get it set up in a couple of days.

Overall, the deployment took about three days. My strategy was, basically, going from my old Cyberoam to my new Sophos. I just copied each rule individually and tested them. Then I ran them in sync with each other for a couple of weeks. When I realized there were no problems, I pulled the Cyberoam out.

We have three people on staff that can handle deployment and maintenance responsibilities. I've got a system admin, myself, and a help desk/content specialist.

What about the implementation team?

I did not use an integrator, reseller, or consultant for deployment. I handled the process myself. 

What was our ROI?

From an ROI standpoint, the product I had before, even though they were basically the same thing, I found I was spending a lot of man-hours with it and calling support a lot and actually having to pay for support on the previous model. 

With this firewall, I rarely have to call support. When I do, it's free of charge. The ROI is 100% there. It might be a little more expensive up front, however, the quality is there for a medium-sized business.

What's my experience with pricing, setup cost, and licensing?

The licensing is based on a multi-year contract. It's a bit higher, in terms of price than other options. The billing process is pretty simple and straightforward. they don't have a complex licensing setup. 

Which other solutions did I evaluate?

I evaluated all the big players out there before choosing Sophos. I likely evaluated seven different options.

What other advice do I have?

I'm a customer and an end-user.

I'd advise those considering this product to stick with it and stay away from the fluff. For example, the Sophos Anti-Virus is not worth it. 

The firewall is fantastic. Definitely take their firewall courses, as there are going to be a lot of tasks that you feel should be easy and they're not. There's going to be a lot of troubleshooting. I've been working on it for five years and I still catch myself sometimes trying to figure out why a certain rule doesn't work doing this or that. Definitely take the training. I would highly recommend staying away from the other products.

I'd give the product an eight out of ten for a score. It does everything I need it to do. The user interface is very modern. It works. I was able to figure out some very advanced things. Even though it has a modern interface, I like the fact that I can always go into the console and it's a Linux box behind the scene - which is very nice for when you're trying to do very advanced tasks. For the most part, it was plug-and-play. The setup was really easy. The support is fantastic.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Saurabh Bhansali - PeerSpot reviewer
Head of IT at Venus Jewel
Real User
Top 5Leaderboard
Robust, user-friendly interface, effective web filtering capabilities, and enhance security
Pros and Cons
  • "Everything is consolidated into a single box, offering comprehensive functionality, including Wi-Fi access and other features."
  • "SD-WAN would benefit from further improvement, particularly in terms of incorporating optimization techniques that are not typically found in traditional firewalls. Nowadays, WAN optimization features are being integrated into many firewalls, and implementing similar capabilities in SD-WAN would enhance its performance and functionality."

What is our primary use case?

Sophos XG is of firewall security device for our data center or branch data center.

How has it helped my organization?

The security measures implemented in this system are robust, particularly at the network level. It includes effective web filtering capabilities to enhance security and protect against potential threats.

What is most valuable?

Everything is consolidated into a single box, offering comprehensive functionality, including Wi-Fi access and other features.

What needs improvement?

SD-WAN would benefit from further improvement, particularly in terms of incorporating optimization techniques that are not typically found in traditional firewalls. Nowadays, WAN optimization features are being integrated into many firewalls, and implementing similar capabilities in SD-WAN would enhance its performance and functionality.

The user interface of Sophos is very simple and good compared to Azure.

For how long have I used the solution?

I have been working with Sophos XG for more than five years.

What do I think about the stability of the solution?

The stability of Sophos XG has been exceptional, and we have not encountered any issues. 

I would rate the stability of Sophos XG a ten out of ten.

What do I think about the scalability of the solution?

Sophos XG is very scalable. I would rate the scalability of Sophos XG a nine out of ten.

Our network scalability is not extensive, but it does offer certain features such as the ability to create and utilize devices in an Active-Active configuration. Additionally, using devices with an active password is also supported, providing users with various facilities and features.

We have 1,500 users in our organization daily.

How are customer service and support?

The technical support is good.

I would rate the technical support a nine out of ten.

How was the initial setup?

The initial setup is straightforward. It was easy.

The total deployment time was ten days.

What about the implementation team?

We had comprehensive documentation containing all the necessary details, including firewall configurations, host information, and corresponding IP addresses.

It was very easy to install it without any downtime.

We had a total of two people to deploy it.

What's my experience with pricing, setup cost, and licensing?

Sophos XG is expenses. I would rate the pricing a ten out of ten as high.

Which other solutions did I evaluate?

After evaluating SonicWall and considering recommendations from colleagues, friends, and industry professionals, we found that Sophos received positive feedback. Additionally, our own hands-on experience and thorough examination confirmed that Sophos was a suitable choice. Therefore, based on these factors, we made the decision to proceed with Sophos for our requirements.

What other advice do I have?

If Sophos XG meets your business requirements and fulfills your account needs, it is highly recommended to choose Sophos XG as your preferred solution.

I would rate Sophos XG an eight out of ten.

The product demonstrates excellent stability, accompanied by a user-friendly interface and reliable support services, including the availability of premium support options. However, there are certain features such as WAN optimization, load balancing, advanced techniques, and advanced web filtering that are currently not available. These features have become increasingly crucial in today's environment and are in high demand.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Marco-VIVALDELLI - PeerSpot reviewer
CEO at MARVIV SRLS
Real User
Top 10
Light and stable with excellent real-time control
Pros and Cons
  • "It's a product that is in continuous improvement and is following what the customer is asking for. They are taking inputs and designing new releases specifically according to the client and their needs."
  • "The solution could offer a bit more integration with other systems, with other platforms - just to be able to extend the capability and to interface with other kinds of platforms or systems that I can find on the market as it gives the possibility to improve the level of integration."

What is our primary use case?

I'm using the solution mainly for its firewall application and to prevent intrusion in the system. The XG platform is very powerful from the perspective of identification and to prevent potential attacks on the system due to its the capacity to predict and to anticipate the potential damage on the system.

It's integrated inside the system, meaning that it can control all the endpoints in the system and talk with them and identify any potential situation. It can also isolate one area inside the system without compromising the entire system. This allows you to isolate the initial problem without involving the entire infrastructure. 

You have real-time control of all your infrastructure. It is integrated with the hardware and offers good performance alongside the hardware and by the firmware, and these work together to control the entire infrastructure.

What is most valuable?

The real-time control on offer is excellent.

We really appreciate that you can segment and quarantine certain sections of your system without having to shut down the entire operation.

The product has artificial intelligence that has the capability to quickly identify which could be the potential risk mainly for intrusions like ransomware or a new kind of typology of attacks that are in place right now. 

The idea is to mainly prevent the condition and not to manage the situation, as, if that happens, in many ways, it's already too late. It's to identify the condition that can help the company to prevent or mainly to reduce the risk of an intrusion. In that sense, its performance is excellent. 

The product is doing it job without affecting the system with a heavy load. The activity on offer is very light in terms of resources that are required by the system. It does not require a lot of resources in terms of memory, et cetera. There is no performance impact on the system. The customer doesn't detect its presence on the system when it's working, and yet they still get all of the great benefits of protection.

The solution has been quite stable. 

It's a product that is in continuous improvement and is following what the customer is asking. They are taking inputs and designing new releases specifically according to the client and their needs.

It's one of the best products on the market as it really understands where the market is moving and iterates based on the future. It's constantly improving. It does a great job at keeping confidentiality while guaranteeing security.

The solution doesn't just offer theoretical security, it really does offer very good, real-time security and delivers on its promise to the client.

What needs improvement?

There is no specific features request right now really. I see that all the features that Sophos is implementing and is proposing on the market follow exactly what the market is asking. It's difficult to identify something that is missing compared with what the market can ask as one of the most important things that Sophos does is have the capability to anticipate in a certain way what the market expects. As a leader on the market, they tend to have the solution just before the market is asking them for it. 

The solution could offer a bit more integration with other systems, with other platforms - just to be able to extend the capability and to interface with other kinds of platforms or systems that I can find on the market as it gives the possibility to improve the level of integration.

What do I think about the stability of the solution?

The solution is very stable. There are no bugs or glitches. It doesn't crash or freeze. It's very reliable.

What do I think about the scalability of the solution?

The solution is quite scalable. You have to consider that all Sophos products are scalable. This is one of the main characteristics of the system. It means that you can start with a base solution that is very simple and improve this step by step without losing what you have done in the past. It's scalable in the sense that you have a different layout that you can cover, however, you don't have to dismiss what you have done in the past. You have just to integrate. In this way, if you consider the cost of implementation for the company, it has the possibility to optimize the cost because the company has the possibility to appreciate the system initially, and then improve the system step by step without losing what has been done in the past.

This means the company has the possibility to distribute the cost if you're in a certain period of growth. Normally some companies start to say, "I want to guarantee to control to the outside with a certificate and give the possibility to access my data in a controlled way. After that, I want to extend the security on the email that is managed by the company. I want to encrypt the data on the server and so on." All these features can be approached in a step-by-step manner instead of all at once, and you can implement them on the system in different ways and at different times.

We normally have about 50 users and around five technicians.

Which solution did I use previously and why did I switch?

I also currently use Cisco products alongside Sophos.

However, we did not previously use a solution that was different from Sophos.

How was the initial setup?

The initial setup is not so complicated. The system is not complicated to understand and also in can be installed without a very high level of expertise. Of course, if you have this kind of expertise, you can obtain from the system the maximum performance that the system can do, however, it means that you are not obliged to be a guru to be able to use these kinds of products. You can use these kinds of products just as an IT manager inside the company without having or needing special knowledge. 

Otherwise, you can leave to Sophos with the capability of doing something like a close box. You are sure that Sophos is able to guarantee the level of security that you are expecting. You can have it be automatic, or you can choose to go more manual in its operations. For example, if you were a professional photographer, you'd probably like a manual experience, as it would allow you more leeway with your craft, and if you were an amateur, you 'ld likely prefer an automatic camera that handles the heavy lifting for you. Sophos, in that sense, is the same. If you want, you can configure single parameters, or you can leave it to Sophos to give you something out-of-the-box.

In any case, if you stay on the automatic configuration, you are guaranteed that the system can provide the correct level of service that you want. It means that it's not required to have an expert. That said, you need of course to have a minimum level of knowledge, as it's clear that you need to know what you are managing. Starting from that, you can obtain what you need without moving into an advanced configuration.

Typically, a configuration takes about half a day or so, if you go that route. It doesn't take long, as those who would handle it would know what they are doing.

What about the implementation team?

We handled the implementation ourselves, in-house. We did not need the assistance of an implementor or consultant. I have enough knowledge on the solution to manage it myself.

What other advice do I have?

I'm mainly a user. Sometimes I handle installations.

I'm using the latest version of the solution. I don't have the version number on-hand.

We do plan on continuing to use the solution. I've been quite please with it overall.

I would recommend the solution to others. It's worked quite well so far and really leads the market.

I would rate the solution at a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Product Manager at CTT
Real User
AI-enhanced features boost network security and reporting capabilities
Pros and Cons
  • "I recommend Sophos XG to other customers."
  • "The main improvement needed is in the pricing. It is a little higher when compared to competitors like Huawei."

What is our primary use case?

I use Sophos XG for security products and have two lower sites. One is for production, and one is for security. I use it for security. For our management team, I will use it for production in the future. We focus on network security, and for threat protection, customers also use other products like Bitdefender and Kaspersky on their workstations and servers.

What is most valuable?

For network security, I use Sophos XG for entire network protection. The AI-enhanced security features are important to me, as they provide enhanced features for business reporting and automation. Our customers are also happy because of its AI capabilities, which satisfy them in terms of security features. Sophos XG focuses on network security, a crucial aspect for me.

What needs improvement?

The main improvement needed is in the pricing. It is a little higher when compared to competitors like Huawei. There are many Chinese products in Myanmar, and their prices are more competitive. Sometimes, for budgets with limitations, I offer Chinese products like Huawei. Additionally, Sophos XG's response time is sometimes delayed due to time zone differences in customer support.

For how long have I used the solution?

I have been using Sophos XG for one year.

What do I think about the stability of the solution?

I rate the stability of Sophos XG as eight out of ten because there are sometimes delays in response, likely due to time zone differences.

How are customer service and support?

I have tried Sophos's technical support, and it's okay. If I rate it, I would give it an eight out of ten.

How would you rate customer service and support?

Positive

How was the initial setup?

It's not difficult for me and my team to install, but technicians need experience.

What about the implementation team?

Three to five engineers usually take part from our side in maintenance.

What's my experience with pricing, setup cost, and licensing?

The pricing is a little higher compared to Chinese products like Huawei. For those on a limited budget, I sometimes prefer Huawei. However, if the customer focuses on security features and reliability, I don't use Chinese products.

Which other solutions did I evaluate?

Comparisons were made with competitors like Huawei, Fortinet, and other Chinese products.

What other advice do I have?

I recommend Sophos XG to other customers. For overall reliability, network security, threat protection, and everything, I rate it nine out of ten. The AI-enhanced security features are significant and satisfying. Reporting and automation features are valuable. Sometimes, there are delays in customer support responses due to time zone differences. Overall, I rate the solution nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
Flag as inappropriate
PeerSpot user
Buyer's Guide
Download our free Sophos XG Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2025
Product Categories
Firewalls
Buyer's Guide
Download our free Sophos XG Report and get advice and tips from experienced pros sharing their opinions.