Product Avatar Image

Sophos

Show rating breakdown
2,656 reviews
  • 19 profiles
  • 32 categories
Average star rating
4.6
#1 in 18 categories
Grid® leader
Serving customers since
1985
Profile Filters

All Products & Services

Product Avatar Image
Sophos PhishThreat

27 reviews

Sophos Phish Threat is a cloud-based security awareness training and phishing simulation platform designed to educate employees on identifying and responding to phishing attacks. By simulating realistic phishing scenarios and providing interactive training modules, it helps organizations strengthen their human firewall against cyber threats. Key Features and Functionality: - Realistic Phishing Simulations: Offers hundreds of customizable templates that mimic real-world phishing attacks, enabling organizations to test and improve employee vigilance. - Automated Training Modules: Provides over 30 interactive training courses covering security and compliance topics, automatically enrolling users who fall for simulated attacks. - Comprehensive Reporting: Delivers actionable insights through intuitive dashboards, tracking user susceptibility, training progress, and overall organizational risk levels. - Multi-Language Support: Available in nine languages, ensuring accessibility for diverse workforces. - Seamless Integration: Integrates with Sophos Central, allowing unified management alongside other security solutions like email and endpoint protection. Primary Value and Problem Solved: Sophos Phish Threat addresses the critical challenge of human error in cybersecurity by transforming employees into proactive defenders against phishing attacks. By combining realistic simulations with targeted training, it reduces the likelihood of successful phishing attempts, thereby enhancing the organization's overall security posture and minimizing the risk of data breaches and financial loss.

Product Avatar Image
Sophos Cloud Optix

22 reviews

Sophos Cloud Optix is an AI-powered security and compliance platform designed to provide comprehensive visibility and control over public cloud environments. It offers real-time inventory management of cloud assets, including servers, storage, and network components, enabling organizations to monitor security, manage resources, and ensure compliance with industry standards through a unified interface. Key Features and Functionality: - Multi-Cloud Visibility: Supports monitoring across AWS, Azure, Google Cloud, and Kubernetes, offering detailed inventories and visualizations to detect security risks, over-privileged access, and spending anomalies. - Security Monitoring: Conducts scheduled, daily, and on-demand scans to identify vulnerabilities and compliance issues, providing contextual alerts with remediation steps. - Compliance Management: Automates assessments and generates audit-ready reports for standards such as CIS, ISO 27001, GDPR, HIPAA, and PCI DSS, streamlining compliance processes. - DevSecOps Integration: Integrates security checks into the development pipeline, scanning container images and Infrastructure-as-Code templates to prevent vulnerabilities before deployment. - Cost Optimization: Monitors cloud service expenditures, provides recommendations to reduce costs, and identifies indicators of compromise to prevent financial losses. Primary Value and Problem Solved: Sophos Cloud Optix addresses the challenges of managing complex, multi-cloud environments by offering a centralized platform for security monitoring, compliance management, and cost optimization. It reduces the complexity and cost associated with governance, risk, and compliance by providing continuous assessments and collaboration tools that integrate seamlessly into existing processes. By automating security and compliance tasks, it enables organizations to proactively detect and remediate vulnerabilities, ensuring robust protection of cloud assets and adherence to regulatory requirements.

Product Avatar Image
Sophos NDR

19 reviews

Sophos NDR works together with your managed endpoints and firewalls to monitor network activity for suspicious and malicious patterns they cannot see. It detects abnormal traffic flows from unmanaged systems and IoT devices, rogue assets, insider threats, previously unseen zero-day attacks, and unusual patterns deep within the network.

Product Avatar Image
Sophos Professional Services

17 reviews

Sophos delivers the best IT security and data protection for businesses. We produced our first encryption and antivirus products back in the 1980s. And today our products protect over 100,000 businesses and 100 million users, in more than 150 countries.

Product Avatar Image
SophosLabs Intelix

14 reviews

SophosLabs Intelix is a cloud-based threat intelligence and analysis platform that empowers developers and security professionals to enhance their applications and infrastructure with advanced cybersecurity capabilities. By leveraging over 30 years of threat research, machine learning models, and vast datasets, Intelix provides real-time assessments of files, URLs, and IP addresses, enabling informed security decisions. Accessible via RESTful APIs, it integrates seamlessly into existing systems, offering detailed analyses and just-in-time verdicts for suspicious objects. This platform is designed to support informed decisions by providing detailed, explainable, and proven threat intelligence. Key Features and Functionality: - High-Fidelity Threat Intelligence: Delivers comprehensive threat classification and deep analysis for known clean and malicious objects, including files, web pages, and IP addresses. - Incremental Protection: Integrates with Sophos products like Sophos Firewall and Sophos Email to submit suspicious files for deep analysis, accurately detecting zero-day threats. - Detailed Analysis: Provides threat hunters and security analysts with timely and relevant information, reducing the time required to make informed decisions. - API Integration: Offers easy integration into any application or environment through API requests, available via AWS Marketplace or OEM partnerships. Primary Value and Problem Solved: SophosLabs Intelix addresses the critical need for real-time, high-fidelity threat intelligence in the rapidly evolving cybersecurity landscape. By providing detailed analyses and classifications of potential threats, it enables organizations to proactively identify and mitigate risks, enhancing their overall security posture. The platform's seamless integration capabilities allow businesses to incorporate advanced threat detection into their existing systems without significant overhead, ensuring robust protection against both known and emerging cyber threats.

Product Avatar Image
HitmanPro

13 reviews

HitmanPro digs deep to rid your computer of any lingering infections. Quick, specialized scanning, with easy removal, gets your computer back to a pre-infected state in no time. It can also run right alongside your current security software if you’re looking for another layer of security, or a second opinion on how that security is performing.

Product Avatar Image
Secureworks Taegis XDR

6 reviews

SCWX is a cybersecurity company that works to provide an early warning system for evolving cyber threats, enabling to prevent, detect, rapidly respond to and predict cyberattacks.

Product Avatar Image
Secureworks Cybersecurity Services

5 reviews

Our Intelligence Driven Information Security Solutions Help Organizations of All Sizes Prevent, Detect, Respond To, and Predict Cyberattacks

Product Avatar Image
Secureworks Taegis VDR

1 review

Secureworks® Taegis™ VDR is a cloud-native vulnerability management solution designed to help organizations identify, prioritize, and remediate critical vulnerabilities efficiently. By leveraging advanced machine learning and continuously updated threat intelligence from the Secureworks Counter Threat Unit™, Taegis VDR offers a risk-based approach that focuses on the most significant threats within your unique environment. This proactive strategy enhances your organization's security posture by reducing the time and effort required to address vulnerabilities, thereby minimizing the risk of breaches. Key Features and Functionality: - Risk-Based Prioritization: Taegis VDR assesses over 40 internal and external risk factors to prioritize vulnerabilities, ensuring that remediation efforts are focused on the most critical threats. - AI-Driven Asset Discovery: Utilizing machine learning, the platform continuously discovers and assesses all assets within your IT environment, providing comprehensive coverage. - Continuous Vulnerability Assessment: Taegis VDR offers ongoing scanning and evaluation to promptly detect new vulnerabilities, keeping your security measures up to date. - Seamless Integration: The solution integrates with existing vulnerability scanners and security infrastructures, allowing for a unified approach to vulnerability management. - Automated Remediation Guidance: Taegis VDR provides actionable insights and recommendations to effectively address identified vulnerabilities, streamlining the remediation process. Primary Value and Problem Solved: Taegis VDR addresses the challenge of managing an overwhelming number of vulnerabilities by intelligently prioritizing them based on their potential impact on your organization. This targeted approach reduces remediation efforts by up to 15 times, allowing security teams to focus on the most significant risks. By integrating threat intelligence and machine learning, Taegis VDR enhances your organization's ability to proactively defend against attacks, ultimately improving your overall security posture.

Profile Name

Star Rating

2115
459
58
14
10

Sophos Reviews

Review Filters
Profile Name
Star Rating
2115
459
58
14
10
Prateek  T.
PT
Prateek T.
08/01/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Top-Tier Endpoint Protection with Powerful Automation and Root Cause Analysis.

From an operational standpoint, the biggest win with Sophos Endpoint is how much work Sophos Central Handles automatically without requiring constant manual intervention. Ransomware & Anti-Exploit Defense : The behavioral engines (CryptoGuard and exploits mitigation) are genuinely strong. It catches fileless threats , malicious PowerShell Scripts, and unauthorized process injection at execution time rather than relying solely on legacy signature updates. Root Cause Analysis (RCA) Graphs: When threat or suspicious file gets flagged, the threat graphs shows precisely where the vector originated , which child processes were spawned , what registry key were touched. It cuts incident triage time down from hours to minutes. Automated Device Isolation : If an endpoint exhibits malicious behavior , Sophos isolates the machine from the local network while maintaining a management tunnel back to Sophos central. This gives as breathing room to remediate without risking lateral movement across our subnets or VPN . Centralized Policy Management : Pushing global policies , web filtering , and USB control across remote and on premise endpoints is straightforward once you structure your device groups properly.
Shibu K.
SK
Shibu K.
Network Security Engineer | Firewall & Security Policy Management | Tufin | AlgoSec | Allot Secure | Cybersecurity Enthusiast | Continuous Learner
07/30/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Sophos Mobile keeps every employee device secure & compliant & takes lot of manual work off my plate

I have been using Sophos Mobile for a good amount of time now as part of my daily work as a network security engineer at Vibs Infosol Pvt Ltd. As an admin, I manage this platform every day, and it has become a very important tool for us, because our employees communicate with thousands of clients through email and calls, and a lot of that communication now happens through mobile devices, not just laptops or desktops. Protecting these mobile devices was becoming a real challenge, and Sophos Mobile has made this much more manageable for me. The feature I use most regularly is Device Enrollment. Whenever a new employee joins or gets a new company device, I enroll it into Sophos Mobile, and from that point onward I have full visibility and control over that device. Earlier, without a proper MDM solution, onboarding a new device used to be a manual and inconsistent process, sometimes security settings would get missed. Now enrollment is standardized, every device goes through the same secure setup process, which has reduced human error significantly. Policy Management is something I configure and update regularly. I can create policies for different departments or user groups, instead of applying the same rule to everyone. For example, our sales team who travel a lot need different Wi-Fi and VPN settings compared to our office based staff. Being able to customize policies per group instead of a generic one-size rule has made our security setup much more practical and effective for real daily use. Application Management is another feature I rely on daily. I can control which apps are allowed or blocked on company devices, and push required business apps directly to employee devices remotely. This has saved me a lot of time, because earlier I had to physically ask employees to install specific apps themselves, which was inconsistent and slow. Now I push it centrally and it happens automatically. Device Encryption Enforcement gives me real peace of mind. I can make sure every company device has encryption enabled, so even if a device is lost or stolen, the data on it stays protected and unreadable to anyone who doesn't have proper access. Given that our employees carry sensitive client communication on their phones and laptops, this feature directly protects our clients' trust as well. Password & Screen Lock Policies are something I enforce across all devices, so no device stays unlocked or unprotected even if left unattended for a moment. This small feature has actually prevented a few situations where devices were misplaced temporarily in the office, and having lock policies already active prevented any unauthorized access during that time. Compliance Monitoring is a feature I check regularly, since it shows me which devices are following our security policies and which are not compliant, maybe because of an outdated OS version or a disabled security setting. I can immediately follow up on non-compliant devices and get them fixed before they become a real risk. Wi-Fi & VPN Configuration is pushed directly through Sophos Mobile, so employees don't have to manually configure secure network settings themselves, which used to cause a lot of support tickets earlier when done manually. Now it happens automatically and correctly every time. Alerts & Reporting keeps me updated in real time about any risky or non-compliant device, and I use the reporting data directly for my monthly security reports to management, saving me hours of manual data collection every month. Sophos Central Integration is probably the biggest daily convenience for me, since I manage Sophos Mobile from the same Sophos Central console I already use for firewall, endpoint, and email protection. I don't need a separate login, everything is connected, which genuinely saves me time every single day and reduces the mental switching between different tools. An unexpected benefit I found is that since implementing proper mobile management, our support tickets related to lost devices or configuration issues have reduced noticeably, since most things are now handled centrally and proactively instead of reactively.
Shibu K.
SK
Shibu K.
Network Security Engineer | Firewall & Security Policy Management | Tufin | AlgoSec | Allot Secure | Cybersecurity Enthusiast | Continuous Learner
07/30/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Sophos Phish Threat helped us build our human firewall - our employees now catch phishing emails

I have been using Sophos Phish Threat for quite some time now as part of my daily security work at Vibs Infosol Pvt Ltd. As an admin, I manage platform regularly, and it has become one of the most useful tool for us, because we deal with thousands of clients and almost all our communication happens over email. No matter how strong our technical email security is, the biggest risk always come from human error, one employee clicking on the wrong link can create a big problem. Phis Threat helps us fix exactly that gap. The feature I use most regularly is Phishing Simulations. I run fake phishing emails on our own employees at planned intervals, without them knowing in advance, to test how many people click on suspicious links or enter their details on fake login pages. This has been eye opening for us, because it shows real numbers instead of just assuming our employees are careful. After running these simulations regularly, I have actually seen the click rate go down over time, which means our training is genuinely working. Ready-Made Campaigns save me a lot of preparation time. Instead of creating phishing templates from scratch every time, I get pre-built campaigns covering common real world scenarios, like fake invoice emails, fake HR notices, or fake delivery notifications. This has cut my campaign setup time significantly, what used to take me a full day to design now takes less than an hour since I just select and customize a ready template. Risk Scoring is a feature I check regularly to understand which employees or departments are more vulnerable. Instead of treating the whole company the same way, I can identify high risk individuals or teams and give them extra focused training. This targeted approach has made our overall security awareness program much more effective than a generic one size fits all training. Detailed Reporting is something I rely on heavily for my monthly security reports to management. I get clear data on who clicked, who reported the email correctly, and who ignored it completely. This data helps me show management real proof of improvement over time, instead of just saying training happened, I can show actual numbers and trends. Executive Protection is a feature I value a lot, since senior management and leadership are often specifically targeted by attackers because they have higher access and authority. Running focused simulations and awareness for this group has given us extra confidence that our top leadership is not the weak link in our security chain. Sophos Central Integration makes my daily work much smoother, since I manage Phish Threat from the same Sophos Central console I already use for firewall, endpoint, and email protection. I don't need a separate login or separate learning curve, everything is connected in one place, which saves me time and reduces confusion. Compliance Support has been helpful for us too, since some of our clients and industry requirements expect proof of regular security awareness training. Having documented simulation and training records makes audits and compliance conversations much easier for me. User Progress Tracking lets me see how individual employees improve over time after repeated training, so I am not just running one campaign and forgetting about it, I can actually track long term behavior change, which is the real goal of this whole exercise. The cycle Sophos follows, simulate, measure, train, improve, has genuinely changed how our organization thinks about security. Earlier we only focused on technical tools to stop threats, now we also focus on strengthening our people, which I believe is often the weakest and most targeted entry point in any organization. An unexpected benefit I found is that employees have actually started reporting suspicious emails on their own now, without me asking, which shows real behavior change, not just forced compliance.

About

Contact

HQ Location:
Oxfordshire

Social

@Sophos

What is Sophos?

Sophos delivers IT security and data protection for businesses. They produced our first encryption and antivirus products back in the 1980s.

Details

Year Founded
1985
Ownership
LSE:SOPH
Website
www.sophos.com