Product Avatar Image

Sophos

Show rating breakdown
2,656 reviews
  • 19 profiles
  • 32 categories
Average star rating
4.6
#1 in 18 categories
Grid® leader
Serving customers since
1985
Profile Filters

All Products & Services

Profile Name

Star Rating

2115
459
58
14
10

Sophos Reviews

Review Filters
Profile Name
Star Rating
2115
459
58
14
10
Prateek  T.
PT
Prateek T.
08/01/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Top-Tier Endpoint Protection with Powerful Automation and Root Cause Analysis.

From an operational standpoint, the biggest win with Sophos Endpoint is how much work Sophos Central Handles automatically without requiring constant manual intervention. Ransomware & Anti-Exploit Defense : The behavioral engines (CryptoGuard and exploits mitigation) are genuinely strong. It catches fileless threats , malicious PowerShell Scripts, and unauthorized process injection at execution time rather than relying solely on legacy signature updates. Root Cause Analysis (RCA) Graphs: When threat or suspicious file gets flagged, the threat graphs shows precisely where the vector originated , which child processes were spawned , what registry key were touched. It cuts incident triage time down from hours to minutes. Automated Device Isolation : If an endpoint exhibits malicious behavior , Sophos isolates the machine from the local network while maintaining a management tunnel back to Sophos central. This gives as breathing room to remediate without risking lateral movement across our subnets or VPN . Centralized Policy Management : Pushing global policies , web filtering , and USB control across remote and on premise endpoints is straightforward once you structure your device groups properly.
Shibu K.
SK
Shibu K.
Network Security Engineer | Firewall & Security Policy Management | Tufin | AlgoSec | Allot Secure | Cybersecurity Enthusiast | Continuous Learner
07/30/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Sophos Mobile keeps every employee device secure & compliant & takes lot of manual work off my plate

I have been using Sophos Mobile for a good amount of time now as part of my daily work as a network security engineer at Vibs Infosol Pvt Ltd. As an admin, I manage this platform every day, and it has become a very important tool for us, because our employees communicate with thousands of clients through email and calls, and a lot of that communication now happens through mobile devices, not just laptops or desktops. Protecting these mobile devices was becoming a real challenge, and Sophos Mobile has made this much more manageable for me. The feature I use most regularly is Device Enrollment. Whenever a new employee joins or gets a new company device, I enroll it into Sophos Mobile, and from that point onward I have full visibility and control over that device. Earlier, without a proper MDM solution, onboarding a new device used to be a manual and inconsistent process, sometimes security settings would get missed. Now enrollment is standardized, every device goes through the same secure setup process, which has reduced human error significantly. Policy Management is something I configure and update regularly. I can create policies for different departments or user groups, instead of applying the same rule to everyone. For example, our sales team who travel a lot need different Wi-Fi and VPN settings compared to our office based staff. Being able to customize policies per group instead of a generic one-size rule has made our security setup much more practical and effective for real daily use. Application Management is another feature I rely on daily. I can control which apps are allowed or blocked on company devices, and push required business apps directly to employee devices remotely. This has saved me a lot of time, because earlier I had to physically ask employees to install specific apps themselves, which was inconsistent and slow. Now I push it centrally and it happens automatically. Device Encryption Enforcement gives me real peace of mind. I can make sure every company device has encryption enabled, so even if a device is lost or stolen, the data on it stays protected and unreadable to anyone who doesn't have proper access. Given that our employees carry sensitive client communication on their phones and laptops, this feature directly protects our clients' trust as well. Password & Screen Lock Policies are something I enforce across all devices, so no device stays unlocked or unprotected even if left unattended for a moment. This small feature has actually prevented a few situations where devices were misplaced temporarily in the office, and having lock policies already active prevented any unauthorized access during that time. Compliance Monitoring is a feature I check regularly, since it shows me which devices are following our security policies and which are not compliant, maybe because of an outdated OS version or a disabled security setting. I can immediately follow up on non-compliant devices and get them fixed before they become a real risk. Wi-Fi & VPN Configuration is pushed directly through Sophos Mobile, so employees don't have to manually configure secure network settings themselves, which used to cause a lot of support tickets earlier when done manually. Now it happens automatically and correctly every time. Alerts & Reporting keeps me updated in real time about any risky or non-compliant device, and I use the reporting data directly for my monthly security reports to management, saving me hours of manual data collection every month. Sophos Central Integration is probably the biggest daily convenience for me, since I manage Sophos Mobile from the same Sophos Central console I already use for firewall, endpoint, and email protection. I don't need a separate login, everything is connected, which genuinely saves me time every single day and reduces the mental switching between different tools. An unexpected benefit I found is that since implementing proper mobile management, our support tickets related to lost devices or configuration issues have reduced noticeably, since most things are now handled centrally and proactively instead of reactively.
Shibu K.
SK
Shibu K.
Network Security Engineer | Firewall & Security Policy Management | Tufin | AlgoSec | Allot Secure | Cybersecurity Enthusiast | Continuous Learner
07/30/2026
Validated Reviewer
Verified Current User
Review source: G2 invite
Incentivized Review

Sophos Phish Threat helped us build our human firewall - our employees now catch phishing emails

I have been using Sophos Phish Threat for quite some time now as part of my daily security work at Vibs Infosol Pvt Ltd. As an admin, I manage platform regularly, and it has become one of the most useful tool for us, because we deal with thousands of clients and almost all our communication happens over email. No matter how strong our technical email security is, the biggest risk always come from human error, one employee clicking on the wrong link can create a big problem. Phis Threat helps us fix exactly that gap. The feature I use most regularly is Phishing Simulations. I run fake phishing emails on our own employees at planned intervals, without them knowing in advance, to test how many people click on suspicious links or enter their details on fake login pages. This has been eye opening for us, because it shows real numbers instead of just assuming our employees are careful. After running these simulations regularly, I have actually seen the click rate go down over time, which means our training is genuinely working. Ready-Made Campaigns save me a lot of preparation time. Instead of creating phishing templates from scratch every time, I get pre-built campaigns covering common real world scenarios, like fake invoice emails, fake HR notices, or fake delivery notifications. This has cut my campaign setup time significantly, what used to take me a full day to design now takes less than an hour since I just select and customize a ready template. Risk Scoring is a feature I check regularly to understand which employees or departments are more vulnerable. Instead of treating the whole company the same way, I can identify high risk individuals or teams and give them extra focused training. This targeted approach has made our overall security awareness program much more effective than a generic one size fits all training. Detailed Reporting is something I rely on heavily for my monthly security reports to management. I get clear data on who clicked, who reported the email correctly, and who ignored it completely. This data helps me show management real proof of improvement over time, instead of just saying training happened, I can show actual numbers and trends. Executive Protection is a feature I value a lot, since senior management and leadership are often specifically targeted by attackers because they have higher access and authority. Running focused simulations and awareness for this group has given us extra confidence that our top leadership is not the weak link in our security chain. Sophos Central Integration makes my daily work much smoother, since I manage Phish Threat from the same Sophos Central console I already use for firewall, endpoint, and email protection. I don't need a separate login or separate learning curve, everything is connected in one place, which saves me time and reduces confusion. Compliance Support has been helpful for us too, since some of our clients and industry requirements expect proof of regular security awareness training. Having documented simulation and training records makes audits and compliance conversations much easier for me. User Progress Tracking lets me see how individual employees improve over time after repeated training, so I am not just running one campaign and forgetting about it, I can actually track long term behavior change, which is the real goal of this whole exercise. The cycle Sophos follows, simulate, measure, train, improve, has genuinely changed how our organization thinks about security. Earlier we only focused on technical tools to stop threats, now we also focus on strengthening our people, which I believe is often the weakest and most targeted entry point in any organization. An unexpected benefit I found is that employees have actually started reporting suspicious emails on their own now, without me asking, which shows real behavior change, not just forced compliance.

About

Contact

HQ Location:
Oxfordshire

Social

@Sophos

What is Sophos?

Sophos delivers IT security and data protection for businesses. They produced our first encryption and antivirus products back in the 1980s.

Details

Year Founded
1985
Ownership
LSE:SOPH
Website
www.sophos.com