TrustRadius: an HG Insights company

Symantec Advanced Threat Protection

Score8.8 out of 10

66 Reviews and Ratings

What is Symantec Advanced Threat Protection?

Symantec Advanced Threat Protection is a single unified solution that uncovers, prioritizes, and remediates advanced attacks. The product fuses intelligence from endpoint, network, and email control points, as well as Symantec’s massive global sensor network, to stop threats that evade individual security products. It leverages existing Symantec Endpoint Protection and Symantec Email Security.cloud investments, so it does not require the deployment of any new agents. It includes functionality from the former Blue Coat Advanced Threat Protection.

Categories & Use Cases

Tried and True Endpoint Portection

Pros

  • Easy to configure and deploy to client workstation.
  • Has a small footprint of the endpoint resources.
  • Effective solution for real time threat management.
  • Virus Scans are efficient and easily customizable.

Cons

  • Upgrading clients can be troublesome.
  • Admin portal lacks an up to date feel.

Most Important Features

  • Protection Policies
  • Exclusion Lists
  • Virus Protection

Return on Investment

  • Improved risk mitigation coupled with other security protocols

Alternatives Considered

Sophos Phish Threat, ESET Endpoint Security, SentinelOne and CrowdStrike Falcon Endpoint Protection

Other Software Used

KeePass, Microsoft 365 (formerly Office 365), OneNote, Darktrace, VMware Horizon (formerly VMware View)

Easy to use, scalable solution. Ideal for protecting the network and endpoints.

Pros

  • It provides a fully centralized management console that is very easy to use, which is a great help to keep total control .
  • It provides a reliable and effective protection which helps to detect in real time the risk of the network or the endpoints.
  • It allows the detection and response of threats more quickly thanks to its powerful artificial intelligence.
  • Its interface is intuitive so it is very easy to use.
  • It is ideal for remote connections, because it has the protection of endpoints (malicious Wi-Fi networks, VPN).

Cons

  • It is not very light software so sometimes the performance of the devices drops.
  • It does not work quickly in the presence of many endpoints.
  • If you have a large work station, its value can be somewhat high.
  • Its virus scan is not suitable for old systems.

Most Important Features

  • Its centralized administration because it provides a total vision of our entire network.
  • It's real time protection capable of stopping any advanced threat such as zero day exploits that want to harm our endpoints.
  • Its agile management because it makes it easier for us to manage incidents on our [own].

Return on Investment

  • By having an agile management of incidents, it is possible to reduce the time it would take to manually search for threats that tend to sneak through the network.
  • Because it provides real time protection, threat detection is much more effective, preventing them from reaching our endpoints and generating outbreaks.
  • Because we are a large company, keeping our users protected is vital and with this software we can achieve this since it easily detects advanced threats such as credential theft and phishing attacks.

Alternatives Considered

Proofpoint Advanced Threat Protection

Other Software Used

Symantec Data Loss Prevention, VMware AppDefense, Cisco Network Service Orchestrator (NSO)

The all-in-one solution for your protection against digital threats

Pros

  • It has a good overview and it is easy to dig down into specific assets
  • The set-up was quite easy
  • The admin GUI is very clear

Cons

  • It can be hard to set up automated remediations to repeated threats
  • Depending on the device, it will incur some performance penalties
  • Updates are not automatic

Most Important Features

  • Complete asset overview
  • Automated threat detection
  • Manual threat remediation

Return on Investment

  • It takes less time to maintain and troubleshoot the internal network
  • It makes the internal network more secure

Alternatives Considered

Qualys Cloud Platform (formerly Qualysguard) and WatchGuard Network Security

Other Software Used

GitLab, Icinga, Docker

Best solution to remove malware

Pros

  • What I love about Symantec is its advanced security.
  • It makes my system and devices active and without any threats.
  • It allows me to have conversations with any other users who use this same protection system to help each other and learn about the handling.
  • With its functionality I can eliminate any image that I have had for a long time, just by applying the touch and release option that ends with any risk that I get from any hidden image in the system.
  • Its speed at the beginning of the session is correct because it acts directly with the system operators.
  • It is reliable since I activate the product through messages and my computer IP, and it is effective and functional, it is of excellent execution and protection once it is already installed on the computer.

Cons

  • What I dislike about Symantec is the form of scanning that does not cover a certain amount when registering vulnerabilities and attackers.
  • Feasibly protect the computer system by giving the user peace of mind for its extensive security and durability.

Return on Investment

  • In the long term, the costs that could occur due to loss of information are reduced.

Alternatives Considered

Cisco Webex Teams (formerly Cisco Spark), UiPath Enterprise RPA Platform, mParticle, Barracuda Backup and AWS Backup

Other Software Used

UiPath Enterprise RPA Platform, mParticle, Ubuntu Linux, Cisco Webex Meetings

A very well made and customizable product that performs well, but has an outdated management

Pros

  • It seems to be very good at protecting us from threats. We don't have users who are doing stupid things or anything, but we have never had a severe compromise.
  • The management is pretty easy (we are using the on-prem version), it's full of the ability to see what's going on and customize things.
  • The client runs without much issue, and without users' knowledge or involvement.

Cons

  • I don't like that I have to maintain the client and keep it up to date. Updating the client is not a very easy process.
  • Deploying the client could be easier. They have a deployment tool, but it doesn't really get to all PCs, which means I still have to manually deploy it.
  • Because the product has so much customization, it can also be very difficult to set up and understand.

Return on Investment

  • We haven't ever suffered from a serious security compromise, and I owe that to our Symantec AV.
  • Once installed and set up, it's difficult to pull it out of the environment and try something else, so it has a way of keeping itself stable.
  • Some customers have a hard time paying the price because they don't "see" it do anything, and wonder what they are paying for.

Alternatives Considered

Webroot SecureAnywhere

Other Software Used

Webroot SecureAnywhere