Microsoft's BitLocker is an endpoint encryption option.
$100
One Time Fee
Sophos Intercept X
Score 8.7 out of 10
N/A
Sophos Endpoint Protection (Sophos EPP) with Intercept X is an endpoint security product providing an antivirus / antimalware solution that when upgraded with Intercept X or Intercept X Advanced provides advanced threat detection and EDR capabilities.
$28
per year per user
Pricing
BitLocker Drive Encryption
Sophos Intercept X
Editions & Modules
Windows 10 Home
$100.00
One Time Fee
Intercept X Advanced
$28
per year per user
Intercept X Advanced with XDR
$48
per year per user
Sophos Managed Threat Response
$79
per year per user
Offerings
Pricing Offerings
BitLocker
Sophos Intercept X
Free Trial
No
No
Free/Freemium Version
Yes
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
Pricing is for a 3-year commitment. Government and Education pricing available.
More Pricing Information
Community Pulse
BitLocker Drive Encryption
Sophos Intercept X
Features
BitLocker Drive Encryption
Sophos Intercept X
Endpoint Security
Comparison of Endpoint Security features of Product A and Product B
It is well suited especially for users that access or store sensitive/confidential data on their computers. In the case of where users are accessing confidential data over the network, it is highly recommended to use Bitlocker to encrypt the computer. In the case where users are storing confidential data on their computer, it should be a requirement that BitLocker is used/enabled. It would be less appropriate if someone was using a computer and they were not dealing with any sensitive data, or in cases where the computer is used for recreational purposes (browsing the web, playing games, etc).
To be frank, this product is fairly expensive. So I would recommend this to companies that are mid-sized or larger to condone the cost of the purchase. It does save me a significant amount of time in my day - being able to glance at the dashboard and see if there are any outstanding issues that require my attention, as not much digging must be done to accomplish this. So for our company, with a short-staffed IT department, it's incredibly helpful to us. We also qualify for Educational pricing which brings the cost down - which helps tremendously
Sophos Intercept X is great at preventing malware infections and rolling back their effects. I have seen this happen hundreds of times since we installed it
When combined with Sophos Central, you have an easy to use dashboard where you can manage all installations from a single pane of glass.
It's easy to deploy on machines and stays updated.
Good reporting features including alerts sent to the admin if there's ever something wrong with it.
Even if it's the best we tested, I think write performance could be improved. Maybe with dedicated hardware inside the TPM?
No integration with OS password is a shame as most others have it and it is Microsoft on Microsoft so they can probably do it better then anyone else and safer.
I wish they would support multiple passwords like FileVault on macOS. If it's a shared computer, you have to give the only password to Bitlocker to both users.
Sophos OOTB policies are very strict and they don't offer anything less strict without you creating new custom policies. I'm sure this is deliberate because the product starts you out in the safest way possible but it means that you will have lots of calls to your tech support desk when you first deploy it unless you do somewhat extensive testing beforehand.
Sophos Intercept X is currently broken (at least the DLP component) by having secure boot turned on in the UEFI/BIOS. If any user wants to be able to write data to a USB drive or floppy from their PC (yes we still have a couple users who need to use floppies) we have to turn off secure boot on their PC, even if the DLP policy for that user/PC combination specifies that the user and PC are allowed to write to USB/floppy. This would be a very serious problem if it weren't for the fact that we have very few users who need to write files to USB. For us it's OK but I bet it would be a deal-breaker for others.
I don't see a whole lot of evidence that Intercept X is any different than any other anti-virus, so maybe their admin alerts just don't clearly identify when they have identified a zero-day threat or maybe we just haven't had any zero-day threats.
The usability has never been a problem. Sophos Intercept X is a program you can install and let protect your company without much intervention. Apart from a few policies, Sophos will keep you protected better than most any product on the market. Sophos Intercept X works quite well when you are looking to "tighten your grip" on user's access to websites, programs, and add-ons.
Not good nor bad, BitLocker encryption is a symptom of our era, we need to protect ourselves and our data, BitLocker is a tool, as an IT we have to deal with it but it doesn't bring any benefit to my daily operations.
Most of the support reps are fantastic. There have been a few though that have had to be escalated via Account Manager when they haven't followed up but this is a rare instance, and often followed up by the Support Manager for APAC.
BitLocker Drive Encryption solution offering is cheaper than the one that McAfee offers, it will help you with specific business concerns like "how many encrypted assets do I have?" it's easy to maintain, easy to deploy, and easy to track. It's best suited for companies that are not trying to go far away on the disk encryption matter
Webroot Endpoint Protection is not even in the same league as Sophos Intercept-X. I have tested and compared both sides by side, run simulations and it's not even close. Plus the Sophos central management is so much better. Easier to view user activities and apply policies and remediate threats. Sophos is the clear winner between these two products.
The biggest positive impact it has on ROI is the cost savings, since there is no cost to using the software.
Since it's widely available to anyone with a Windows computer, and the program is built into the operating system, there is no need to really install anything. This helps to save time of the IT department having to do installs, and also keep track of licensing, etc.
Once our technical and commercial areas got certified, the ROI over the time spent, is great. Actual customers, and/or new ones with other tools, feel safe and advised, once they get in touch with us.
When Sophos EndPoint is being compared against Web Management Tools (competitors), we have failed to deliver, nevertheless, there is a version of Sophos Central (Cloud) which achieves this requirement at 100% and more, since is Cloud Based (on AWS).
We are grateful to be on Sophos "Radar" as a Platinum Partner, and "The Americas" valued partner, we have seen our business grow, thanks to this kind of technology, throughout the years.