Skip to main content
TrustRadius
Sophos Intercept X

Sophos Intercept X

Overview

What is Sophos Intercept X?

Sophos Endpoint Protection (Sophos EPP) with Intercept X is an endpoint security product providing an antivirus / antimalware solution that when upgraded with Intercept X or Intercept X Advanced provides advanced threat detection and EDR capabilities.

Read more
Recent Reviews

TrustRadius Insights

Sophos Endpoint Protection has become a widely-used and highly regarded solution for safeguarding machines in various environments. Users …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 7 features
  • Centralized Management (19)
    10.0
    100%
  • Infection Remediation (19)
    9.8
    98%
  • Endpoint Detection and Response (EDR) (19)
    9.6
    96%
  • Anti-Exploit Technology (19)
    8.6
    86%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

Intercept X Advanced

$28

On Premise
per year per user

Intercept X Advanced with XDR

$48

On Premise
per year per user

Sophos Managed Threat Response

$79

On Premise
per year per user

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.sophos.com/en…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Starting price (does not include set up fee)

  • $28 per year per user
Return to navigation

Product Demos

CVE-2017-11826 0day exploit vs months old Sophos Intercept X

YouTube

How WannaCry ransomware works

YouTube
Return to navigation

Features

Endpoint Security

Endpoint security software protects enterprise connected devices from malware and cyber attacks.

9.2
Avg 8.5
Return to navigation

Product Details

What is Sophos Intercept X?

Built to stop the widest range of attacks, Sophos Intercept X has been proven to prevent even the most advanced ransomware and malware by leveraging a unique combination of next-generation techniques. This includes the ability to detect never-before-seen malware with deep learning, stop ransomware with Sophos anti-ransomware technology, and deny attacker tools with signatureless exploit prevention. Intercept X also includes root cause analysis to provide insight into threats, and instant malware removal to ensure no attack remnants remain.

Sophos Intercept X Features

Endpoint Security Features

  • Supported: Anti-Exploit Technology
  • Supported: Endpoint Detection and Response (EDR)
  • Supported: Centralized Management
  • Supported: Infection Remediation
  • Supported: Malware Detection

Sophos Intercept X Screenshots

Screenshot of Screenshot of Screenshot of

Sophos Intercept X Video

Sophos Intercept X Demo

Sophos Intercept X Technical Details

Deployment TypesOn-premise
Operating SystemsWindows, Mac
Mobile ApplicationApple iOS, Android, Windows Phone, Blackberry

Frequently Asked Questions

Sophos Endpoint Protection (Sophos EPP) with Intercept X is an endpoint security product providing an antivirus / antimalware solution that when upgraded with Intercept X or Intercept X Advanced provides advanced threat detection and EDR capabilities.

Sophos Intercept X starts at $28.

Symantec Endpoint Security and Kaspersky Endpoint Security are common alternatives for Sophos Intercept X.

Reviewers rate Centralized Management highest, with a score of 10.

The most common users of Sophos Intercept X are from Mid-sized Companies (51-1,000 employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(202)

Community Insights

TrustRadius Insights are summaries of user sentiment data from TrustRadius reviews and, when necessary, 3rd-party data sources. Have feedback on this content? Let us know!

Sophos Endpoint Protection has become a widely-used and highly regarded solution for safeguarding machines in various environments. Users rely on this product to ensure that their systems are protected and receive regular updates from the Sophos Database. With its ability to send alerts when a system hasn't been updated in a while, it helps users identify computers that are not frequently used. This feature proves to be invaluable in maintaining the security of an organization's network.

One long-time user praises Sophos Intercept X as the most secure endpoint product on the market. Its ease of deployment and management, combined with its ability to catch everything, make it the preferred choice for both home and business use. By dramatically reducing instances of malware and ransomware, Sophos Intercept X has proven itself as a reliable defense against cyber threats. It also offers powerful administrative capabilities through the Sophos Central web console, allowing users to identify and address security issues effectively.

Sophos Endpoint Protection is widely used across industries for robust protection against virus infections, web and mail downloads, and real-time threats. The product adapts to the rapidly changing digital era by offering advanced features like Anti Exploit Prevention, which safeguards users against ransomware attacks. Whether deployed in the healthcare industry or small businesses, Sophos Intercept X provides peace of mind by effectively preventing malicious software issues. Furthermore, its non-invasive nature and quick response to potential threats make it an ideal choice for organizations seeking a reliable and user-friendly endpoint security solution.

Intercept X's comprehensive protection extends beyond traditional malware detection, with features such as content filtering, application management, and cloud management with MFA authentication. It ensures security compliance, preventing ransomware attacks on devices ranging from workstations to servers. Real-time protection against various forms of malware, including web and mail protection, contributes to Sophos Endpoint Protection's reputation as an industry leader in providing information security services for enterprises.

In addition to protecting against potential attacks, Sophos Endpoint Protection requires minimal user interaction, making it a hassle-free solution for organizations. Its cloud-based architecture simplifies deployment, management, and remediation across distributed locations. Users have reported successfully defending against CryptoLocker and significantly reducing monthly infections, resulting in a more secure environment. With its advanced features like malware identification and automatic quarantine, Intercept X enhances security measures and provides excellent protection against cyber threats.

Overall, Sophos has gained praise from users as a reliable, easy-to-use, and effective endpoint solution. Whether deployed globally across entire companies or implemented organization-wide, the product delivers top-notch system behavior and manageability. It seamlessly integrates with desktops, laptops, and servers, running silently in the background without causing disruptions.

One standout feature of Sophos is its ability to send email reports that alert users of various events, allowing them to proactively address any issues before they become major problems. Users have successfully deployed Sophos across their entire infrastructure, including Windows, Linux, and Apple products. While deployment on Windows machines is easy through the enterprise console, Linux and Mac installation may require manual setup. Once installed, Sophos automatically updates all machines and runs smoothly without consuming excessive computer resources.

Intercept X, a module of Sophos Central, is widely used as an anti-malware and anti-virus agent on endpoint machines and servers. Its policy-setting capabilities for web and application access provide an additional layer of security. Small businesses rely on Sophos Intercept X not only for protection but also for timely notifications of potential threats. The product's effectiveness in preventing malicious software issues and providing a safety net against ransomware has made it the go-to solution for organizations seeking peace of mind.

Sophos Endpoint Protection has established itself as an industry leader in providing information security services for enterprises worldwide. Its real-time protection against various forms of malware, including web and mail protection, ensures a secure environment for users. Those who use Sophos Endpoint Protection have experienced successful protection against CryptoLocker, saving significant time and effort in recovery.

Overall, Sophos delivers excellent endpoint security with minimal user interaction required. Its cloud-based management simplifies deployment and remediation across distributed locations. With its reputation for robust protection and ease of use, Sophos Endpoint Protection continues to be highly regarded by organizations seeking top-notch security solutions.

Attribute Ratings

Reviews

(1-6 of 6)
Companies can't remove reviews or game the system. Here's why
Beau Sorensen | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Sophos Intercept X is an all-in-one endpoint solution that has dramatically decreased malware and ransomware instances across our organization. Since we put it into place it has found thousands of potential infections that would have infected us via RATs, worms, emails, and malicious webpages. When you combine the power of Intercept X with the Sophos Central web console, it gives incredible administrative power to discover who the biggest problems are and then allows you to better target training and mitigation efforts where the problems originate.
  • Sophos Intercept X is great at preventing malware infections and rolling back their effects. I have seen this happen hundreds of times since we installed it
  • When combined with Sophos Central, you have an easy to use dashboard where you can manage all installations from a single pane of glass.
  • It's easy to deploy on machines and stays updated.
  • Good reporting features including alerts sent to the admin if there's ever something wrong with it.
  • It can be a bit resource-intensive, especially on machines that are a little older. I've seen it take up too many CPU cycles and bog down the rest of the machine.
  • Initial setup to get it working can be challenging if you do anything other than the default settings.
  • Sometimes won't update on client machines, so they have to be brought in for a manual reinstall.
Sophos Intercept X is what I would consider the premier antivirus, anti-malware, anti-ransomware software on the market today. It is easy to stand up and deploy thanks to the management side being in the cloud - there's just a small download that can be deployed via script to any computer on your domain. It scales easily from small businesses all the way up to large enterprises and comes in at a cost-effective price point for anyone along that spectrum.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
Sophos is utilized across the whole organization. It provides the layer of protection needed for endpoints and servers against various forms of viruses and attacks that batter the technology industry. The need for protection of assets is well provided with the Sophos product and its components with little interaction or annoying notifications to users.
  • Alert notifications can be sent directly to email as soon as any suspicious activity or files are discovered.
  • The endpoint agent is delivered in one installer package, allowing for ease of deployment.
  • Sophos works with common SIEM products and integrates well, giving visibility of events to security analysts for pattern detection.
  • Sophos is heavy on resource utilization for scanning and detecting.
  • Upon installation and use, there are approximately 17 services that are installed and run the product.
  • Sophos could make it easier on deployment by being able to scan a domain and push the agent out to assets that don't have protection.
Sophos works well in smaller organizations where the number of assets to be protected can be managed. If assets are not higher-end technology/memory, Sophos will "slow down" the asset with its scanning and detecting. There are, however, global settings to "tune" the product and disable scanning from files, folders, and processes that are known to be good. This does greatly alleviate utilization problems.
Alex Farling | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
ResellerIncentivized
We use Sophos Endpoint Protection on our internal equipment, as well as client computers/servers. The product enables us to manage AntiVirus, Encryption, and Next Gen AntiMalware in a single portal with a single agent. The protection we get from this combo is second to none, and that's where the real value of this product comes through - tight integration to the entire platform...
  • Simple Installation.
  • Clean reporting.
  • Single pane of glass management with other Sophos products.
  • Client can occasionally be more resource intensive than we would like...
We use it everywhere, including mixed environments / Mac and Linux deployments. Where it may not be well suited is for extremely budget-conscious customers who are not willing to adopt the whole solution stack - that said, you get what you pay for and Sophos is cost competitive against other solutions.
Alex Waitkus, CISSP-ISSAP, OSCP | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Sophos is a leader in the endpoint protection market. Manageability, system behavior, signature base are all top notch and can compete against any end-point protection software on the market. Sophos was a replacement for Kaspersky for enterprise-wide endpoint protection on workstations and servers. It is easy to deploy and is a reliable signature-based endpoint protection suite.
  • Malicious file identification
  • Signature-based detection
  • Web-based protection
  • Signature visibility
  • Direct endpoint management - it seems this feature has gone away in recent versions
I cant think of any endpoint protection scenarios where Sophos Endpoint Protection is not appropriate for deployment, perhaps restricted deployments that only allow one-way traffic (data diodes). Sophos is great for Mac, Windows, Linux, and server environments. It is easy to deploy and manage through its admin utility. Some direct endpoint management functionality has disappeared in recent versions.
Evan Miller | TrustRadius Reviewer
Score 6 out of 10
Vetted Review
Verified User
Incentivized
Sophos EndPoint is currently being utilized across the whole organization on all leased/purchased Windows based computers. It is deployed via scripting in Group Policy for OUs. It is providing adequate protection on our endpoints and provides peace of mind to end users knowing that their work PCs are being actively scanned for threats.
  • Deployment and implementation was relatively easy to do
  • Reporting of issues to users via the desktop app and steps taken to remedy
  • The application just seems bloated and resource hungry. Four different app listings in programs and features for this protection.
  • Malware remediation could be better. Doesn't remove infections of this type well.
For larger enterprises, the deployment capabilities of this protection suite are well suited. If you are in a smaller business or IT shop there are probably other more cost-effective and better-suited protection suites available.
Kyle Farago | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We are using Sophos in our entire company on all of the desktops, laptops, and servers throughout our various offices and mobile sites. With its simple integration through MSSC we are able to automatically deploy it to all of the machines on our network, as well as any new computers we bring online and pretty much forget it is even there. It runs near silently in the background taking up very little computer power at idle and during your usual active scans. It does use a bit of CPU power when performing a full system scan, but that is to be expected. The email reports you can have set to alert you for various events assist greatly in helping fix issues before they become big problems which is especially invaluable with our field techs that we cannot just go visit. At times it will send out false positives, especially if the computer has been off, or offline for a long time (as can happen in the field) and will show being out of date, out of compliance, etc., as it comes back up - but false positives aside it always syncs up and runs like a champ.
  • Simple installation (MSSC compatible.)
  • Removes all conflicting software automatically.
  • Small system footprint.
  • Powerful Scanner/Active Shields.
  • Email reports can be false positives - software should check itself and attempt to update/apply policies and then send out a notification if that fails, not before.
  • It should not require admin privileges to run a manual scan.
  • Email reports could use a little more detail on what exact policy/item is out of compliance to make issue easier to verify/fix.
Sophos offers protection for nearly every setting, from a single home computer to a small 10 computer business to a thousand computer company. It is a stable system, it has high customization, and is simple to use for your average home user or an IT professional. The only situation in which Sophos may not be a good fit is for a computer that is never connected to the internet and never has anything connected to it from the outside world. Not many standalone systems like that are present.
Return to navigation