Symantec Critical System Protection Review
Pros
- Prevents exploits, unwanted executables, registry changes, and system file changes
- Can allow exceptions for software vendors such as Microsoft or Adobe
- Prevents lateral movement with certain network rules configured
- Can record file changes
Cons
- Tuning takes a very long time
- Turning the product on or off can take time
- When an action is prevented by CSP, there is no pop up or notification, making this a burden for server administrators
Return on Investment
- Great protection for unchanging systems
- We have comfort that the protected systems are safe from intrusion
- Excellent price
Other Software Used
Palo Alto Networks PA-3000 Series, Qualysguard, Symantec Endpoint Protection

