Posted on 06-15-2017 05:13 AM
Hello All, been a while since I posted here. Currently at my Organization we have adopted Trend Micro antivirus and it has worked fairly well. We used to have SEP and it was kind of hit and miss, but could have been due to configuration on the server at the time. Anyways, Im throwing this out there to see what might be trending between System admins, and what seems like the best over all solution. What Antivirus are you deploying and why? Id like to stick to solutions that are server managed client setups. Go!
Posted on 06-15-2017 06:09 AM
We are currently using ESET. It has a small footprint compared to the others we've tried like SEP and Sophos, and although there is much to be done, their new Enterprise management cloud console is not as horrible or windows-centric as it has been in the past. We allow our users to turn off certain features in a managed client.
I'm actually curious about what others are using too.
Posted on 06-15-2017 06:40 AM
We're currently using Kaspersky but are looking to switch. You might read this thread for some suggestions:
https://www.jamf.com/jamf-nation/discussions/24109/anti-virus
Posted on 06-15-2017 07:25 AM
This has been raised before, If you search the disscusions, I'm sure you will find a wealth of replies.
Posted on 06-15-2017 07:37 AM
We use SEP for 'enterprise' clients, and trying out Comodo Endpoint Security paired with Comodo Dome for a few smaller MSP clients.
Posted on 06-15-2017 07:54 AM
Count me in as curious what people are using as we're currently not using anything. The older threads are good to reference but posting a new thread like this can be good for catching the attention of people new and old with more current thoughts on the topic.
Posted on 06-15-2017 08:55 AM
IBM doesn't use anything beyond what's built into macOS (from JNUC 2016):
Posted on 06-15-2017 09:28 AM
We use Symantec endpoint protection. No issues at all locally on the clients however the management console is terrible.
Posted on 06-15-2017 09:30 AM
@jcarr Quite interested to see the workflow for IBM. Is there a link from JNUC anywhere?
thanks
Posted on 06-15-2017 10:28 AM
They've actually presented twice. Here's the 2015 and 2016 presentations:
https://www.jamf.com/blog/mac-ibm-zero-to-30000-in-6-months/
https://www.jamf.com/resources/keynote-day-2-a-user-first-mentality/
Posted on 06-15-2017 11:01 AM
We used to use Sophos, have since switched to Cylance. Took some time to get the key with the install to automatically push when a computer was imaged. Once we got it up and working, it has been going well. Windows machines are also running on Cylance. Makes it nice to have the whole company on the same AV.
“Cylance was the first AI built to statically analyze and convict malware pre-execution. We definitely didn’t invent AI, but we were the first to use it this way to deliver pre-execution protection. Many other products have been using machine learning, it’s just that it was used to support legacy methodologies of protection/detection, using ML to identify trends so static signatures could be built, which in a world where attackers are creating individual pieces of malware to avoid signatures, results in a severe lack of efficacy, thats the problem Cylance was built to solve.”
Posted on 06-15-2017 02:58 PM
Thanks! @Emmert
Posted on 06-16-2017 10:55 AM
Had Sophos, liked it well enough. Swapped the Cylance and love it!
Posted on 10-12-2017 02:39 AM
As far as I can tell Cylance on macOS just seems to verify that apps are signed.
What is the advantage of Cylance over GateKeeper?
Posted on 10-12-2017 06:17 AM
Switched from Sophos to Symantec Endpoint this summer. Symantec is much better.
Posted on 10-18-2017 06:23 AM
I use avast for business free, its cloud based and works decent on a mac. Its geared to windows but installs and works fine on our macs. It checks in and gets any updates and reports issues to the cloud.
Posted on 10-18-2017 06:31 AM
Sophos, they're pretty speedy with new definitions and have other end point protection features.
Posted on 10-18-2017 09:59 AM
Looks like we're switching to the free version of Avira this year. The overhead is pretty minimal.
Posted on 10-18-2017 10:44 AM
We also use Sophos.
Posted on 10-18-2017 12:14 PM
@ericbenfer Having moved from Sophos to Cylance I've certainly noticed the additional items that Cylance catches that neither Sophos nor GateKeeper stop. So far, this has been minor adware (genio type stuff) and 'potential' spyware but it's certainly much more than GateKeeper. I'm happy to compare notes.
Posted on 02-20-2018 03:52 PM
we are using F-Secure Business Suite. professional package with all features that we need including great protection.