Our primary use case is for application control.
ICT/Systems Application Engineer at Honeywell
Works well and instantly, responsive technical support, with high scalability
Pros and Cons
- "The whole purpose of the product, like application control, is very good, and also if you need to update some policies, it works well and instantly."
- "I would like to see the user credentials feature improved. I would also like to see more reporting features and better ways to roll the reports out."
What is our primary use case?
What is most valuable?
The whole purpose of the product, like application control, is very good, and also if you need to update some policies, it works well and instantly.
What needs improvement?
I would like to see the user credentials feature improved. I would also like to see more reporting features and better ways to roll the reports out.
For how long have I used the solution?
I have been using Carbon Black CB Defense for more than a year.
Buyer's Guide
VMware Carbon Black Endpoint
May 2026
Learn what your peers think about VMware Carbon Black Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
900,644 professionals have used our research since 2012.
What do I think about the stability of the solution?
I would say the stability is high a nine on a scale of one to ten.
What do I think about the scalability of the solution?
On a scale of one to ten, I would give it a nine for being highly scalable.
How are customer service and support?
Technical support is pretty responsive. I have not had to use them a lot and when we need them we route them through our team.
How was the initial setup?
The initial setup was straightforward I had some minor issues with the web application I logged in and fixed them. The initial deployment only took about half a day. We have deployed to around one hundred systems.
What about the implementation team?
The deployment was done in-house.
What's my experience with pricing, setup cost, and licensing?
The pricing is annually based and operates through another department than mine.
What other advice do I have?
I would rate Carbon Black CB Defense an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer.
IT Manager at a financial services firm with 51-200 employees
Straightforward to set up, provides automatic site blocking, and forwards information to our SOC
Pros and Cons
- "One of the most valuable features is that it will block vulnerable sites. If there was a connection between one of our devices to a known malware site, it will block it."
- "This product should be cheaper."
What is our primary use case?
We primarily use this product to provide threat intelligence to our SOC about our endpoints.
What is most valuable?
One of the most valuable features is that it will block vulnerable sites. If there was a connection between one of our devices to a known malware site, it will block it. Then also alerts our SOC.
What needs improvement?
This product should be cheaper.
For how long have I used the solution?
I have been working with Carbon Black CB Defense for three years.
What do I think about the stability of the solution?
Stability-wise, it is good.
What do I think about the scalability of the solution?
I am satisfied with the scalability. We use it across the company and all of the users have it on their laptops. It's a mixture of IT people, finance, doctors, lawyers, dentists, and other professional services. It's a wide range of people and there are about 180 in total.
How are customer service and support?
The technical support is okay.
Which solution did I use previously and why did I switch?
We also use Sophos Intercept X in our business.
How was the initial setup?
CB Defense is pretty straightforward to set up.
What about the implementation team?
The implementation was done by my own team.
What's my experience with pricing, setup cost, and licensing?
This is a really expensive product and we pay licensing fees on a yearly basis. The subscription includes technical support.
What other advice do I have?
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
VMware Carbon Black Endpoint
May 2026
Learn what your peers think about VMware Carbon Black Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
900,644 professionals have used our research since 2012.
IT Administrator at a manufacturing company with 501-1,000 employees
Puts very little load on the servers, does an excellent job, and has very good pricing
Pros and Cons
- "I found it very valuable as a whole; it is good at detecting anything and has kept us very safe, and it is also very easy to use."
- "I haven't run into anything that needs improvement. The website interface can be a little bit better, but it's still good as compared to most others."
What is our primary use case?
It is used for protecting our file servers. Its version is kept up to date, so it should be fairly current.
How has it helped my organization?
We found that Trend Micro was producing a little bit more load on our servers than what we wanted. So, we went to Carbon Black because it was integrated with VMware. It is great on the servers. It puts very little load, and it does an excellent job.
What is most valuable?
I found it very valuable as a whole. It is good at detecting anything and has kept us very safe. It is also very easy to use.
What needs improvement?
I haven't run into anything that needs improvement. The website interface can be a little bit better, but it's still good as compared to most others.
For how long have I used the solution?
I have been using it for close to a year.
What do I think about the stability of the solution?
It is stable.
What do I think about the scalability of the solution?
I believe it is very scalable. In terms of its users, for the most part, there are only two of us using it. I am the IT administrator and primary user, and we have an IT support person who handles PCs and backs me up on servers. We are taking care of its deployment and maintenance.
We are looking at the possibility of expanding its usage in the future to include desktops.
How are customer service and support?
I've never had to call technical support.
Which solution did I use previously and why did I switch?
We were using Trend Micro Apex One on our servers, and we found that Trend Micro tended to load the servers up a little bit. That's why we switched to Carbon Black.
How was the initial setup?
It was very straightforward. It was very easy to set up.
Its deployment didn't take that long at all. We purchased it and then just installed it on different servers, one at a time.
What about the implementation team?
We did it ourselves.
What was our ROI?
I've never calculated an ROI on it.
What's my experience with pricing, setup cost, and licensing?
Its pricing was very good, which is one of the reasons I went to it as an alternative. It is on a yearly basis. There are no additional fees.
Which other solutions did I evaluate?
We did not evaluate other options.
What other advice do I have?
If you're running a VMware environment, you can definitely go ahead and use it.
I would rate it a 10 out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
SOC Manager at Nais Srl
Informative, dependable, and ideal for a medium-sized companies
Pros and Cons
- "It is a very complete platform."
- "They will most likely need to create or include a feature that checks the network."
What is most valuable?
It is a very complete platform. It is very useful for my customers.
Carbon Black CB Defense is ideal for a medium-sized business. It is not, in my opinion, suited for large enterprise companies.
Carbon Black works very well for the endpoint. It explains the situation very clearly.
What needs improvement?
I believe they could improve the new intelligence solution to monitor activity, in the network. They will most likely need to create or include a feature that checks the network.
For how long have I used the solution?
I have worked with Carbon Black CB Defense for three or four years.
What do I think about the stability of the solution?
Carbon Black CB Defense is a very stable product.
What do I think about the scalability of the solution?
The scalability of Carbon Black CB Defense is very good.
What other advice do I have?
I would rate Carbon Black CB Defense an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
CEO at Haniya Technologies
Quick to deploy with a very powerful antivirus engine and and helpful technical support
Pros and Cons
- "The product is pretty strong in terms of security and their features are very good in that respect."
- "The pricing could be more reasonable."
- "The pricing could always be a bit better. They could work to make it less expensive."
What is our primary use case?
We primarily leverage the product for its security functionality.
What is most valuable?
The product is pretty strong in terms of security and their features are very good in that respect. Their research engine, the antivirus engine, it's very strong compared to any other product on the market right now.
The solution is stable.
They do have options on the market that can scale.
Technical support is great.
It's not too difficult to set up and the deployment is fast.
What needs improvement?
Carbon Black does not have a big market in Pakistan right now. They are actually trying to penetrate the region right now. They don't have many customers. Even we are new to the Carbon Black as well, in that we knew about Carbon Black for a long time, however, as far as implementing it and giving it to our customers, we are still new to it.
The pricing could be more reasonable.
For how long have I used the solution?
I've been dealing with the solution for six to seven years or so. It's been a while.
What do I think about the stability of the solution?
The stability has been excellent. There are no bugs or glitches. It doesn't crash or freeze. It's reliable. The performance is good.
What do I think about the scalability of the solution?
There are versions of the product that can scale.
We have about three customers that use the product at this time. It's not that many as it's not a well-known product in our region.
How are customer service and support?
Normally they have pretty good technical support. Specifically, if you purchase the technical support directly from Carbon Black, then they are very responsive and very quick.
Which solution did I use previously and why did I switch?
I also deal with McAfee and Kaspersky.
How was the initial setup?
The initial setup is pretty straightforward, and the deployment is fairly quick. Of course, it depends on the environment. However, it shouldn't take more than a day or two to set up and to have everything up and running.
We have one person, an engineer, that can handle deployment and maintenance tasks as necessary.
What about the implementation team?
We are able to implement the solution for our clients.
What's my experience with pricing, setup cost, and licensing?
The pricing could always be a bit better. They could work to make it less expensive. Right now, they are far and above more expensive than other similar options on the market.
The license costs are paid yearly.
What other advice do I have?
We are resellers.
The solution can be deployed both on-premises and in the cloud.
I would definitely advise new users of just this one thing: that before thinking about Carbon Black or purchasing it, they should look for other solutions as well. As far as the cost is concerned, Carbon Black is much more expensive than any other product. That's something that needs to be taken into account.
I would rate the solution at a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer.
Senior NOC Security Engineer at a wholesaler/distributor with 51-200 employees
Implementation and upgrading difficult but operates well
Pros and Cons
- "Once the solution is installed and configured correctly it does not require a lot of hands-on attention until you need upgrading."
- "There are many different controls that are needed to be put into place for upgrading that makes it difficult. Having to re-engineer your IT infrastructure to match their software, as opposed to having it integrate and work independently causes difficulties. When there is an update to any software everyone has to be involved."
What is our primary use case?
My clients are using this solution for security as their frontline defense. They are using a whitelist that has all known software allowed.
What is most valuable?
Once the solution is installed and configured correctly it does not require a lot of hands-on attention until you need upgrading.
What needs improvement?
There are many different controls that are needed to be put into place for upgrading that makes it difficult. Having to re-engineer your IT infrastructure to match their software, as opposed to having it integrate and work independently causes difficulties. When there is an update to any software everyone has to be involved.
For how long have I used the solution?
I have been using this solution for approximately six years.
What do I think about the stability of the solution?
The solution has been working well, nothing stands out as an issue.
What do I think about the scalability of the solution?
I have found this solution to be highly scalable. We have clients that are large-size companies using this solution.
How are customer service and technical support?
The technical support was great when we used them.
I rate the technical support of Carbon Black CB Defense a nine out of ten.
How was the initial setup?
The solutions provider has made great strides in the last four years making it easier to implement. However, the way their architecture is makes it difficult, the installation is quite a cumbersome process to integrate everything together.
What other advice do I have?
My advice to those wanting to implement this solution is it not easy and it takes time and money.
I rate Carbon Black CB Defense a five out of ten.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
We can instantly respond if a false positive occurs
Pros and Cons
- "The product allows us to focus on endpoint and antivirus protection."
- "While there is an IR team that is responsible for managing EDR or deep analytics, our focus is on endpoint and antivirus protection, where we encounter signature updates, look for false positives in their relation to file interpretation, and can instantly respond by putting a policy in place to immediately stop the false positives instead of sending a sample and waiting for coverage."
- "The GUI and reporting should be addressed and the product's administration features need fine tuning."
What is our primary use case?
While there is an IR team that is responsible for managing EDR or deep analytics, our focus is on endpoint and antivirus protection. This is where we encounter signature updates. We look for false positives in their relation to file interpretation. Should anything occur, we can instantly respond. Instead of sending a sample and getting coverage, we can put a policy and place an immediate stop on the false positives.
What needs improvement?
While I consider the product to be top notch and am happy with it, its reporting aspects need to be addressed.
I would definitely recommend Carbon Black CB Defense to others who are contemplating using it, but its administration features need fine tuning. I believe this is already being addressed so that gaps can be filled as these relate to other leading technologies on the market.
The GUI and reporting should also be addressed.
For how long have I used the solution?
We have been using Carbon Black CB Defense for the past seven to eight months.
How are customer service and technical support?
I have not had occasion to make use of technical support, although I may have in the future, as I am the product person who is working with another experienced team and there is a process under way to migrate from McAfee to Carbon Black CB Defense.
How was the initial setup?
The initial setup was a bit difficult since we had to do it manually or through the use of a script.
What's my experience with pricing, setup cost, and licensing?
The price for the solution is completely at government level, meaning one which is very high, although it is up to management to consider this criteria.
What other advice do I have?
Our company has over a thousand people who utilize the product. Going forward, everything will be managed by Carbon Black CB Defense.
I would rate it an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Infrastructure and support manager at a healthcare company with 51-200 employees
Amazing EDR that is responsive but there is no support for MAC and Linux
Pros and Cons
- "The EDR and reports were helpful in improving our organization."
- "For the Windows endpoints, it was incredibly useful, nothing got through it, which is a bad thing in some cases because we hadn't tagged the certificate platform appropriately."
- "Based on all the security roles and the release privilege, it could take time for an application to be whitelisted and approved for use."
- "The Mac support needs improvement, as it had next to none."
What is our primary use case?
We used it for EDR, as well as endpoint protection, the whitelisting feature.
How has it helped my organization?
The EDR and reports were helpful in improving our organization.
What is most valuable?
The EDR was amazing. It was very responsive. It did an excellent job of providing us the information we needed in a timely fashion, as long as the latest agent was up-to-date on the client.
What needs improvement?
The whitelisting system, and the concept of it, overall, is pretty decent. The problem with the whitelisting capability is that it's pretty archaic. Based on all the security roles and the release privilege, it could take time for an application to be whitelisted and approved for use.
The Mac support needs improvement, as it had next to none.
The biggest problem we had was the Mac support. It had very little, and my C-suite is almost exclusively Mac, as is my marketing and development department.
For how long have I used the solution?
We had used the Carbon Black CB Defense for two years. We changed to another solution approximately nine months ago.
We were using the latest version at the time.
What do I think about the stability of the solution?
The stability of the on-premises servers had no issues but the resource allocation on the clients was a bit high, especially with having to run two agents. The detection agent, the Whitelist, and the control agent.
What do I think about the scalability of the solution?
We didn't have any problems scaling this solution.
It did the job. It was great for Windows, but it had no Mac support and had nothing for Linux, which makes it hard.
We had 150 users in our organization. Their roles varied from CSF departments through to my C-suite.
How are customer service and technical support?
Technical support seemed pretty good and I didn't have any problems with it.
If we had a problem or a question, and they would get back to us in a reasonable amount of time.
The only place that we ran into trouble was with Macs. That's my general theme here with Carbon Black, unfortunately.
I would rate them an eight or a nine. They were good for the most part.
Which solution did I use previously and why did I switch?
Previously, we were on the Kaspersky Enterprise Solution for a couple of years. It was a signature-based system. Signature-based systems are getting easier to get around by the attackers these days, so we swapped over to something that is a little closer to attack vectors, which says, don't run anything that we don't approve.
How was the initial setup?
The initial setup was moderate.
What other advice do I have?
For others who are interested in using Carbon Black, I would recommend checking your use case. If your use case is Linux and Mac, then it will be problematic, based on my experience.
These days, with VMware taking them over, I'm willing to bet that that's going to change.
I see some redemption in their future, with VMware owning them. VMware is a very strong player in the workspace, and especially with their workspace tool that VMware's building to work with Windows, Mac, and Linux clients, in order to do VDI.
For the Windows endpoints, it was incredibly useful, nothing got through it, which is a bad thing in some cases because we hadn't tagged the certificate platform appropriately. So, it's a bit of an improvement needed there, but the biggest complaint is around the operating systems not being available.
I would rate Carbon Black CB Defense a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Security Engineer at a tech services company with 11-50 employees
Stable and easy to set up, but needs better application control and automatic updates of the agents
Pros and Cons
- "It is stable and easy to set up."
- "Technical support is very effective."
- "The application control can be improved. It should also have an automatic update of the agents."
What is our primary use case?
We manage service providers. We provide this solution to other clients and companies that need it, and we are using the latest version.
What is most valuable?
It is stable and easy to set up.
What needs improvement?
The application control can be improved. It should also have an automatic update of the agents.
For how long have I used the solution?
I have been using this solution for six months.
What do I think about the stability of the solution?
It is stable.
What do I think about the scalability of the solution?
It is scalable.
How are customer service and technical support?
Technical support is very effective. I am satisfied with them.
How was the initial setup?
The initial setup is easy. It is not something difficult.
What other advice do I have?
I would recommend this solution. We are going to keep providing this product.
I would rate Carbon Black CB Defense a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
IT Security Solutions Engineer at Softprom
Good threat analysis, stable, and the technical support is good
Pros and Cons
- "The threat analysis functionality is good."
- "Using Open API, we were able to freely perform the necessary integration with our other security solutions."
- "I would like to see improvements made so that we can better see all of the processes."
What is our primary use case?
We are a distributor for Carbon Black and CB Defense is one of the products that we work with and demo for our customers.
How has it helped my organization?
With the Carbon Black endpoint Agent, we have automated the process of isolating the host when a threat appears on it.
What is most valuable?
Using Open API, we were able to freely perform the necessary integration with our other security solutions.
CB Defense allows us to see our whole process as it starts on our endpoint.
The threat analysis functionality is good.
What needs improvement?
To improve the ability to connect also feeds of third resources (communities).
For how long have I used the solution?
We have been using this product for more one year.
What do I think about the stability of the solution?
CB Defense is a stable solution. I do not remember any situations where there are any problems with sensors or endpoints. Just all information about the processes at the endpoint is collected and sent to the Cloud.
What do I think about the scalability of the solution?
This is a scalable product.
How are customer service and technical support?
The technical support is good and we always get answers to all our questions and necessary recommendations for using the Carbon Black Defense.
What other advice do I have?
Overall, this is a very good product.
I would rate this solution a ten out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. partner
Buyer's Guide
Download our free VMware Carbon Black Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2026
Product Categories
Endpoint Protection Platform (EPP) Security Incident Response Endpoint Detection and Response (EDR) Ransomware ProtectionPopular Comparisons
CrowdStrike Falcon
Cortex XDR by Palo Alto Networks
Microsoft Defender for Endpoint
SentinelOne Singularity Endpoint
IBM Security QRadar
Varonis Platform
Elastic Security
Huntress Managed EDR
HP Wolf Security
Trellix Endpoint Security Platform
WatchGuard Firebox
TrendAI Vision One
Microsoft Defender XDR
Check Point Harmony Endpoint
Buyer's Guide
Download our free VMware Carbon Black Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- I would like to compare CrowdStrike and Carbon Black. On what basis should I decide?
- What Is The Biggest Difference Between BigFix And Carbon Black Cb Defense?
- What is the biggest difference between Carbon Black CB Defense, CrowdStrike, and SentinelOne?
- What's the difference between Carbon Black CB Response and Carbon Black CB Defense?
- Running Carbon Black Defense Along with Windows Defender
- What Is The Biggest Difference Between Carbon Black Cb Defense And ESET Endpoint Security?
- Which product has better reputation: Carbon Black CB Defense or CrowdStrke Falcon?
- How does Microsoft Defender for Endpoint compare with Carbon Black CB Defense?
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?

















