TrustRadius: an HG Insights company

Carbon Black App Control vs. Microsoft System Center

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    Carbon Black App Control

    Score6.7 out of 10
    N/ACarbon Black App Control is an application control product, used to lock down servers and critical systems, prevent unwanted changes and ensure continuous compliance with regulatory mandates.N/A

    Microsoft System Center

    Score8.4 out of 10
    N/AMicrosoft System Center is an enterprise-grade IT Operations Management (ITOM) suite designed for the centralized administration of data center infrastructure, virtualized environments, and hybrid cloud workloads. The platform provides unified management across heterogeneous environments, including support for Windows Server, Linux, and Azure Stack HCI. System Center is Microsoft's ITOM stack for organizations that maintain a significant on-premise footprint, vs the company's Azure-based…

    $1,323

    per month

    Pricing
    Carbon Black App ControlMicrosoft System Center
    Editions & Modules
    No answers on this topic
    Standard Edition
    $1323
    Datacenter Edition
    $3607
    Offerings
    Pricing Offerings
    Carbon Black App ControlMicrosoft System Center
    Free Trial
    NoNo
    Free/Freemium Version
    NoNo
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details——
    More Pricing Information
    Community Pulse
    Carbon Black App ControlMicrosoft System Center
    Considered Both Products
    Broadcom
    No answer on this topic
    Microsoft
    No answer on this topic
    Key User Insights
    Would buy again
    No answers on this topic
    91%
    Would buy again
    31 Answers
    Delivers good value for the price
    No answers on this topic
    97%
    Delivers good value for the price
    33 Answers
    Happy with the feature set
    No answers on this topic
    91%
    Happy with the feature set
    31 Answers
    Lived up to sales and marketing promises
    No answers on this topic
    95%
    Lived up to sales and marketing promises
    21 Answers
    Implementation went as expected
    No answers on this topic
    97%
    Implementation went as expected
    28 Answers
    Best Alternatives
    Carbon Black App ControlMicrosoft System Center
    Small Businesses
    Rencore Code (SPCAF)
    Score8.8 out of 10
    No answers on this topic
    Medium-sized Companies
    Trend Vision One Email and Collaboration Security
    Score9.9 out of 10
    No answers on this topic
    Enterprises
    Checkmarx
    Score7.6 out of 10
    No answers on this topic
    All AlternativesView all alternativesView all alternatives
    User Ratings
    Carbon Black App ControlMicrosoft System Center
    Likelihood to Recommend
    10.0
    (3 ratings)
    9.3
    (58 ratings)
    Likelihood to Renew
    -
    (0 ratings)
    7.0
    (1 ratings)
    Usability
    -
    (0 ratings)
    8.4
    (5 ratings)
    Support Rating
    -
    (0 ratings)
    9.0
    (14 ratings)
    Implementation Rating
    -
    (0 ratings)
    8.0
    (1 ratings)
    User Testimonials
    Carbon Black App ControlMicrosoft System Center
    Likelihood to Recommend
    Broadcom
    Cb Protect is best suited somewhere where you want to maximize the lockdown of workstations. So moving past no local admin rights to blocking specific applications and peripherals. The idea would be to have a list of applications you want to run, and then anything else is not able to be used. As stated prior, if you have a very fluid environment where you are having all sorts of new applications installed frequently (I feel for you!!) this is still do-able, but it misses the general idea. I think especially in environments that are more sensitive to new applications, like banks, healthcare systems etc, this is a good fit. The ability to look at application levels, drift, unapproved software etc is very useful.
    Incentivized
    Read full review
    Microsoft
    For companies with more than 10 Windows devices and needing to standardize the OS, AV, access, share resources, and install software. SCCM is the way to go. This software is unnecessary if the business is all remote users and not in an office-type setting. There are cloud offerings or none to accomplish what a business needs.
    Incentivized
    Read full review
    Pros
    Broadcom
    • Controls file writes, executions of the scripts
    • Defends from process injections, memory protection
    • Visibility and lock down posibilities
    Incentivized
    Read full review
    Microsoft
    • Allows the grouping of devices by user.
    • Allows controlling updates being deployed to user devices.
    • Allows for the repurposing of machines by being able to load new or updated software on machines that already are in the system.
    • Allows us the ability to wipe a machine clean and restore it back to the configuration that was assigned the machine.
    Incentivized
    Read full review
    Cons
    Broadcom
    • Perhaps more specific training.
    Incentivized
    Read full review
    Microsoft
    • The product could improve in the area of having better mechanisms in place with how the SCEP client is deployed/installed from the server on the management side. We have run into this firsthand with the client not installing on an endpoint, and then having to take the time to investigate why it was not installing.
    • A second improvement that can be made is to keep trying to improve the products detection rate for finding malware/viruses. The case can be made that there are some products out there that do a better job at this and have a higher detection rate.
    Incentivized
    Read full review
    Likelihood to Renew
    Broadcom
    No answers on this topic
    Microsoft
    Microsoft System Center Operations Manager is tightly integrated to Microsoft Windows servers os monitoring with great product support.
    Incentivized
    Read full review
    Usability
    Broadcom
    No answers on this topic
    Microsoft
    It is not user-friendly for the most part. With IT infrastructure, sometimes it cannot handle excess requests. Every few months, you will need an upgrade in terms of server resources to keep up with incoming alerts and requests. This does not happen all of the time, but it does happen when there are too many requests.
    Incentivized
    Read full review
    Support Rating
    Broadcom
    No answers on this topic
    Microsoft
    There is a fair amount of documentation out there to help you when you have questions or run into issues with this product as well as tutorials on some of the more common tasks. Between the documentation and the overall ease of use we haven't had to deal with direct Microsoft support for this product.
    Incentivized
    Read full review
    Implementation Rating
    Broadcom
    No answers on this topic
    Microsoft
    Easy to install with intuitive interactive interface during the installation process a and integration to MS SQL was smooth
    Incentivized
    Read full review
    Alternatives Considered
    Broadcom
    The big difference between Protect and Barkly/AMP is how exactly it goes about what it's doing. Protect is application whitelisting and program reputation. So the way it's protecting you is using a proprietary reputation service, and hash values to identify applications, and then hitting a list of whitelisted programs to decide if you are able to run that or not, based on the policy you are in. There is a LOT of value in that. We actually are working on transitioning to Cisco Advanced Malware Protection (AMP). The main reason is cost (about the same cost as Cb Protect, but with (most of) the featureset of all 3 Carbon Black products for less than 1/3 of the total spend. AMP works differently, looking at a reputation service powered by Cisco's Talos cloud. You don't really have application whitelisting, but that also reduces how many "requests" you get for applications. So I'll have to find a different way to do whitelisting and USB blocking and the like, but I'm getting more visibility across my network and also built in antivirus (TETRA engine - ClamAV with some work). Barkly is an add that we are looking to put in as it looks at behavior of programs. So specifically it watches for privilege elevation and the like. Thus far all the big name problem children (WannaCry, other ransomware problems) have been caught natively in Barkly day 0.
    Incentivized
    Read full review
    Microsoft
    We previously used a mix of FOG and Clonezilla to image machines. The biggest issues with these products is that changing one piece of the image required you to rebuild the entire image itself. These pieces of software also did not allow you to manage applications and Windows Updates, causing IT to have to constantly touch machines after they were imaged and update or manage them with a much more hands on approach.
    Incentivized
    Read full review
    Return on Investment
    Broadcom
    • App Control can ensure Continuous Compliance.
    • Solution can reduce expenses on different security software.
    • Nowadays Zero Trust approach is very important for any organization and Application control is one of the main parts of it.
    Incentivized
    Read full review
    Microsoft
    • It has allowed the enterprise to standardize on a single platform for monitoring.
    • Easier troubleshooting of issues with Microsoft platforms.
    • Greater visibility of issues across platforms when applications are hosted in a mixed environment.
    • Additional costs for monitoring systems that are not directly supported with additional packs (iSeries, Linux on Power).
    Incentivized
    Read full review
    ScreenShots