Cisco Secure Endpoint
TRUE
Cisco Secure Endpoint
Overview
Recent Reviews
Popular Features
View all 7 featuresCentralized Management (17)
8.7
87%
Anti-Exploit Technology (17)
8.1
81%
Endpoint Detection and Response (EDR) (17)
7.9
79%
Infection Remediation (17)
7.6
76%
Reviewer Pros & Cons
View all pros & consVideo Reviews
Leaving a video review helps other professionals like you evaluate products. Be the first one in your network to record a review of Cisco Secure Endpoint, and make your voice heard!
Pricing
View all pricingEntry-level set up fee?
- No setup fee
For the latest information on pricing, visithttps://engage2demand.cisco.com/lp=1106…
Offerings
- Free Trial
- Free/Freemium Version
- Premium Consulting / Integration Services
Would you like us to let the vendor know that you want pricing?
47 people want pricing too
Alternatives Pricing
Features Scorecard
Endpoint Security
7.9
79%
Product Details
What is Cisco Secure Endpoint?
Cisco Secure Endpoint (formerly Cisco Advanced Malware Protection [AMP] for Endpoints) offers cloud-delivered next-generation antivirus, endpoint protection platform (EPP), and advanced endpoint detection and response (EDR).
Cisco Secure Endpoint Features
Endpoint Security Features
- Supported: Anti-Exploit Technology
- Supported: Endpoint Detection and Response (EDR)
- Supported: Centralized Management
- Supported: Infection Remediation
- Supported: Vulnerability Management
- Supported: Malware Detection
Cisco Secure Endpoint Video
Watch AMP Overview
Cisco Secure Endpoint Downloadables
Cisco Secure Endpoint Integrations
Cisco Secure Endpoint Competitors
- Symantec Endpoint Security
- ESET PROTECT
- McAfee Endpoint Security
- Microsoft Defender ATP
Cisco Secure Endpoint Technical Details
Operating Systems | Unspecified |
---|---|
Mobile Application | No |
Comparisons
View all alternativesCompare with
Frequently Asked Questions
What are Cisco Secure Endpoint's top competitors?
Symantec Endpoint Security, ESET PROTECT, and McAfee Endpoint Security are common alternatives for Cisco Secure Endpoint.
What is Cisco Secure Endpoint's best feature?
Reviewers rate Centralized Management and Malware Detection highest, with a score of 8.7.
Who uses Cisco Secure Endpoint?
The most common users of Cisco Secure Endpoint are from Mid-sized Companies (51-1,000 employees) and the Information Technology & Services industry.
Reviews and Ratings
 (51)
Reviews
(1-17 of 17)- Popular Filters
Companies can't remove reviews or game the system. Here's why
February 15, 2022
Use Cisco Secure Endpoint to secure your endpoints
We use Cisco Secure Endpoint to protect staff devices within our school district. Cisco Secure Endpoint helps us make sure we take an additional step to protect our systems from cyber-attacks and threats. Cisco Secure Endpoint also provides an inventory of potentially vulnerable software. We then know which systems we need to address when vulnerabilities are announced.
- Protects endpoints from known viruses
- Protects endpoints from emerging threats
- Reports devices that have known vulnerabilities
- Navigation is just a little more complicated
- Better reporting
- MSP support models
February 14, 2022
Cisco Secure Endpoint - The Protection You Need
Cisco AMP was deployed amongst all workstations and servers, tied closely with other Cisco infrastructures such as Umbrella, FirePower, ESA, and WSA to bring in all the event telemetry to make best-informed decisions on application/file access and/or movement. Cisco AMP aimed to help solve malicious file access/movement and ransomware detection.
- Retrospective Alerting.
- Sandboxing.
- Scanning & Detection.
- Quarantining.
- Overall reporting.
- Access to endpoints via SSH/shell.
- Deployment support with SCCM.
December 27, 2021
An Amazing Business Endpoints Protection Software
Cisco Secure Endpoint is deployed in departments and works well when it comes to handling online threats/cyber attacks. We no longer have to worry about viruses, malware, among other online threats. The software is quick to detect these threats and block them before getting into our IT infrastructure. Besides scanning and blocking threats, Cisco Secure Endpoint also sends notifications to the admin for more action.
- Great viruses protection.
- Great threat detection and blocking features.
- Malware analytics.
- Easy to use.
- Affordable.
- The reports are straightforward.
- I like the notification features.
- No bad experiences.
December 22, 2021
Great solution for great security
Cisco Secure Endpoint is installed and used on all computers at our company. It is an invisible guard that you rarely notice, but it has strong protection capabilities that prevent the corporate systems from being attacked from the outside. The application runs in the background and requires very little system resources or user intervention while providing a strong shield from intruders.
- Runs in the background and does not require end-user intervention
- Uses cloud protection solution that always stays up-to-date
- Low system requirements to run
- The ability of generating a report with a summary of prevented threats
December 10, 2021
Advanced protection with Cisco Secure Endpoint
[A Cisco] secure endpoint is an advanced tool that detects and prevents malware from affecting your email and organization data. [Cisco] secure endpoint is fully capable for prevent cyber attacks on your organization. it offers cloud-based next-generation antivirus and advanced endpoint detection and response. [We] are using this for the last 2 years. malware attacks are increasing day by day. with the help of the cisco secure endpoint, we can easy to stop the malware attacks and it also sends alerts and logs which will help us in the future.
- [It] will stop the threats before the compromise.
- [Very] fast performance and quick response on attack.
- Maximize operations efficiently[.]
- Easy to configure and manage[.]
- Logging
- Dynamic malware analysis[.]
- Alert send.
- [We] can manage this through centralized management[.]
- [Quick] malware detection[.]
- The cost is little bit high[.]
October 05, 2021
Still Going Strong After 2 Years
Cisco Secure Endpoint is used across our entire network. It is on all of our endpoints and addresses the security of such. It is our sole EDR solution and protects us against malware and particularly the current rising threat of ransomware and APTs.
- Identifies malware, malicious processes/services and other events well
- Great automated actions features such as host isolation
- Detailed threat visibility such as file trajectory
- Integration with other Cisco suite of security products
- Great value
- Low false positive rate
- Lightweight agent
- Variety of reporting
- Stable agent
- Additional methods for blocking such as file path and not just file hash
- File blocking by other hashes other than SHA 256
- Email notifications of certain predefined events
July 24, 2021
Cisco AMP is unnecessarily difficult to administer
We are currently using Cisco AMP across the entire organization. All endpoints with the exception of a few servers have the agent installed. Our main use for AMP is to protect and clean any malware that may enter our environment. AMP provides an enterprise grade anti-virus/anti-malware solution with centralized cloud management.
- AMP remediates threats without administrator intervention
- AMP provides a detailed dashboard of new threats or events that occur
- AMP is very configurable, policies can be scoped granularly
- The dashboard should be easier to use
- The agent updates are very cumbersome to manage
- AMP support is difficult to use compared to Meraki. Lots of hoops to jump through to get someone on the phone.
AMP is being used across the entire organization on every domain joined workstation and server. We use it as our primary defense against malware and we use its reports combined with our case management system to create incidents for any high or critical cases. We also use it to isolate any out of compliance devices, like Windows 7 machines with no ESU.
- Endpoint Isolation. It allows us to remove EAST/WEST exposure while still giving internet to a device.
- Policy grouping. The granularity of the policies allow us to roll out updates in stages and test new settings effectively.
- Scan analysis. Allowing the scans to be submitted for analysis saves you that extra time spent parsing long log files.
- Event search function. The searching is very limited and allows for poor filtering choices.
- Slowness. The web GUI is far slower than most Cisco products.
- Sync issues. When attempting to move a device from one group to another or start isolation on a device, there is a sizable delay in communication with the device that can cause operations to fail.
April 30, 2021
Clear your endpoints of malware
Currently I'm using Cisco Advanced Malware Protection (AMP) for Endpoints but have a plan to implement it widely in my company. I think Cisco Advanced Malware Protection (AMP) for Endpoints is a very useful solution for achieving our goal to secure users from risk to be infected by malware.
- Ease of use
- Straight method to solve specific security issues and fulfill the security gap
- Cisco Advanced Malware Protection (AMP) for Endpoints could have some features to integrate with third-party solutions
March 01, 2021
Cisco AMP, good, simple and robust
Cisco Advanced Malware Protection is our antivirus and antimalware solution. It is deployed throughout the organization.
- It is simple.
- Its administration is centralized.
- Integrates with other brand products.
- Greater market penetration.
- More documentation.
- More partners with deep knowledge.
December 04, 2020
Cisco Advanced Malware Protection (AMP) for Endpoints
Cisco Advanced Malware Protection (AMP) is being used across our entire school district for endpoint protection. We have over 10K devices, that it protects from various antivirus and malware threats. Its is a very robust cloud managed solution.
- It gives great visibility of all detected threats across our devices.
- It is very easy to deploy and maintain.
- The cloud UI is constantly being updated with new features.
- I don't know if this is a bad feature but the engine is very sensitive it picks up a lot of things that are not always threats.
- While AMP is a strong product it is not cheap.
- Software upgrades usually require a reboot which can make it difficult with student devices.
Cisco Advanced Malware Protection for Endpoints is being used as the primary antivirus product across our thousands of endpoints and servers to protect our end-users before, during, and after any malicious activity or malware incident. The features of the product make it effective against both known and unknown malware but also against malicious activity using legitimate software tools.
- lightweight connector
- great integration with other security products
- highly effective
- will also alert for vulnerable software being used on your systems
- Management console is web-based, which is always less customizable.
Day-to-day use, implementation, and deployment experience were awesome! Being in internal IT support, Cisco Advanced Malware Protection provides an additional layer of security with minimal to no effort in making sure that we have visibility and security with our endpoints. Maintenance and routine work were lessened due to the feature set that this application brought!
- We utilize Cisco AMP on our ASA and our CES as well.
- Using it everywhere gives us great visibility into where a file came from and what it does.
- It provides complete protection for endpoints, from the point of entry and acts to prevent vulnerabilities.
- In addition, it provides users with a view of possible blind spots which is cross-platform (Windows, Android, iOS, Linux, macOS) and can immediately perform isolation with only a few clicks!
- Sometimes during whitelisting, other files from security tools get isolated even if it's not user intended.
- Re-syncing policies also take some time, albeit in a straightforward process.
- As with all security software, false-positives are still detected.
- Hoping that once the library is expanded further, the false positives will be fewer.
November 20, 2019
AMP is a MUST
AMP is being used across our organization on workstations and servers.
- Detects malware and viruses on endpoints.
- AMP shows a timeline associated with an event and if the malicious event has spread.
- AMP quarantines but also does retroactive pullbacks of malicious attachments or downloads if they are later discovered to be bad.
- I would like to see some emphasis put on being able to makes notes if there is an incident you are working on so other analysts do not have to open the incident or ask you if you have worked on the incident.
- More clarity around files/downloads that are quarantined...so that they do not end up in your incidents but maybe another tab for incidents that AMP resolved without need for work by an analyst.
- I would like to see silent upgrades. At this moment in order to upgrade you have to do a reboot, this is my biggest frustration.
November 16, 2019
AMP, a good choice
AMP is being used across the whole organization and several costumers. We use it to block malware, provides visibility to what is running on our endpoints.
- Detects and block malware on endpoints.
- It provides good visibility and trajectory.
- Easy to deploy.
- The need for a reboot in upgrades.
- The number of exclusions.
October 02, 2019
Review of Cisco AMP
It is being used across the entire organization. We use it to block malware attacks and other types of potential security attacks.
- Easy to install/push to computers.
- Runs in the background.
- AMP helps drastically reduce investigation and remediation cycles.
- More options for the end-user.
June 12, 2019
A realist review of AMP
AMP is used globally across the entire organization. It provides great protection and visibility to what is executing on my servers and endpoints. Operationalizing the tool with our ITSM system allows for quicker remediation.
- Provides good visibility to vulnerable software.
- Device trajectory for applications is very useful when determining if an application should really be whitelisted.
- It is very effective at mitigating command and control.
- The tool needs a facility for submitting SHA-256 and samples via the web interface to report false positives. This is a very common issue and a quicker method for submitting these types of items must be addressed.
- Reporting need to be reintroduced as it was available in earlier versions of the management portal.
- The limited number of exclusions can be challenging depending on the environment.