We use Sophos XG firewall primarily for threat management, including firewall and endpoint equipment protection. We are in the process of upgrading to Sophos XG 33 firewall.

Sophos Cloud Firewall (PAYG)
SophosExternal reviews
External reviews are not included in the AWS star rating for the product.
User friendly but tight in security
Advanced threat prevention with efficient network security and an improved security posture
What is our primary use case?
How has it helped my organization?
Sophos has greatly improved our network's security posture. In terms of network security and user activity reporting, it has helped us to manage and analyze the activities of the users. From the reporting, we can now see areas where we need improvements, such as blocking certain sites from users.
What is most valuable?
The most valuable features are its protection capabilities like threat prevention, malware security, web protection, and web security. The security features are very good.
What needs improvement?
There should be a workaround in case of equipment breakdown, like a stopgap measure while the equipment is being returned or replaced. An improvement in the product's pricing would also be beneficial so that more people can afford it.
For how long have I used the solution?
We have been using Sophos XG since 2018.
How are customer service and support?
Sophos' technical support is very prompt and efficient. For instance, when our equipment failed to reboot, their team was quick to diagnose and resolve the problem by exchanging the equipment within two weeks.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used another firewall before Sophos.
What was our ROI?
Having a Unified Threat Management system like Sophos XG has helped us spend less on network security, thus providing a good return on investment by managing our income effectively.
What's my experience with pricing, setup cost, and licensing?
The price is reasonable, but if reduced, it could become accessible to more people. Currently, it costs about four million shillings in Kenya.
Which other solutions did I evaluate?
Before using Sophos, we used another firewall.
What other advice do I have?
Regular prompts from Sophos to the users for instant reporting of any challenges would be very beneficial. Including more YouTube videos, webinars, and other educational content would also help users understand and utilize the product more effectively.
I'd rate the solution nine out of ten.
Which deployment model are you using for this solution?
Complex setup and modular cloud-native pipelines with good community resources
What is our primary use case?
Actually, we are using Tekton for creating CI/CD pipelines for building and deploying applications to different environments.
How has it helped my organization?
It helped a lot in terms of automation. We sometimes use Tekton for purposes like sending emails, running batch jobs, and similar tasks.
What is most valuable?
The valuable features include cloud-native integration, which makes it highly available and efficient in modern containerized environments. Another feature is the modular pipeline that allows reusing CI/CD manifests for different purposes. This modularity helps in reducing redundancy and maintaining a streamlined process.
What needs improvement?
One area of improvement is the lack of cross-cluster capability, meaning you need different sets of tasks and pipelines for each Kubernetes cluster. Tekton also has an unstable API with frequent changes, making it challenging to maintain consistency across versions. Additionally, there's a need for a better dashboard and built-in authentication mechanisms.
For how long have I used the solution?
It's about one and a half years we have been working with Tekton.
What do I think about the stability of the solution?
Tekton is quite stable when used in a well-established Kubernetes cluster. The stability largely depends on the stability of the Kubernetes environment itself, which is designed for high availability.
What do I think about the scalability of the solution?
Tekton's scalability is one of its most advanced features. Since it uses the underlying Kubernetes infrastructure, it can scale easily if the Kubernetes cluster is sufficiently large. I would rate it eight out of ten for scalability.
How are customer service and support?
We primarily used community resources like Stack Overflow for addressing our issues and did not directly contact Tekton's customer service.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In my previous company, we used GitLab and Jenkins for creating CICD pipelines. Currently, Tekton is the primary tool we are using, with Jenkins as a backup solution if Tekton encounters any issues.
How was the initial setup?
The initial setup was manageable but required extensive reading and understanding of documentation. If the Kubernetes cluster is already in place, the setup can be completed in less than ten minutes.
What about the implementation team?
The deployment of Tekton was done in-house with a team of six to seven people handling deployment, creating CI/CD pipelines, and maintaining the solution.
What's my experience with pricing, setup cost, and licensing?
Tekton is an open-source tool, meaning there are no setup costs associated with it. I would rate the cost at one, indicating it is free to use.
Which other solutions did I evaluate?
In my previous company, we used GitLab and Jenkins for similar purposes.
What other advice do I have?
My advice is to avoid using Tekton if possible due to its complex setup and lack of user-friendly features like a comprehensive dashboard and built-in authentication mechanisms.
I'd rate the solution eight out of ten.
Which deployment model are you using for this solution?
Best Next generation firewall
Evaluating Sophos: Comprehensive Security Solutions for Modern Threats
One of the best Firewall
Best Firewall
Engineer Review
Identifies the threat and publishes the information across all endpoints and firewalls
What is our primary use case?
We use the product for traffic and security control.
What is most valuable?
We currently have multiple clients, and many users are working remotely. We need antivirus protection to guard against malware introduced from public networks. One of the most beneficial features of Sophos XG is its integration with Sophos Central. If any file is detected as malicious on any endpoint or firewall, Sophos Central immediately identifies the threat and publishes the information across all endpoints and firewalls. If a single system gets infected, the threat is communicated and addressed across the entire network, including all sites and remote users.
What needs improvement?
One drawback I've noticed with Sophos XG is that sometimes, the platform can become unresponsive. I've observed that it occasionally hangs, causing traffic to get stuck. During these times, users cannot access the internet or any services routed through the Sophos Firewall. This issue happens randomly and isn't something we've encountered with other firewalls like FortiGate, which we used in the past.
Dealing with licensing has been a big challenge for us. Despite our efforts to resolve issues through our sales contact, we've faced limitations. After confirming our purchase orders, we had to escalate the issue. We were ready to extend our licenses for two or three months.
For how long have I used the solution?
I have been working with the product for a year.
How are customer service and support?
We haven't seen any major issues with customer support from Sophos. We have faced some problems, but we understand that the support team can sometimes be unresponsive.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
When comparing FortiGate to Sophos XG, I would say that if I'm working on large-scale asset monitoring and security purposes, especially if I have a data center that requires firewall security, then FortiGate would be my choice. It's faster and more responsive than Sophos XG support.
How was the initial setup?
The tool's deployment takes two to three hours to complete. It doesn't require any maintenance. You would need one engineer to handle one application.
What was our ROI?
I can say there has been some return on investment. It's good, but I would still say it's higher by about 10-15 percent compared to other market products with similar configurations.
What's my experience with pricing, setup cost, and licensing?
The tool's pricing and licensing are very complex. As a developing company, we need approvals from management to make a purchase, which can take time. We asked Sophos XG to renew our current firewall license for one or two months while we plan to accommodate our increasing IT assets.
What other advice do I have?
I rate the overall product an eight out of ten.