AI Buyer Insights:

Westpac NZ, an Infosys Finacle customer evaluated nCino Bank OS

Cantor Fitzgerald, a Kyriba Treasury customer evaluated GTreasury

Michelin, an e2open customer evaluated Oracle Transportation Management

Swedbank, a Temenos T24 customer evaluated Oracle Flexcube

Moog, an UKG AutoTime customer evaluated Workday Time and Attendance

Citigroup, a VestmarkONE customer evaluated BlackRock Aladdin Wealth

Wayfair, a Korber HighJump WMS customer just evaluated Manhattan WMS

Westpac NZ, an Infosys Finacle customer evaluated nCino Bank OS

Cantor Fitzgerald, a Kyriba Treasury customer evaluated GTreasury

Michelin, an e2open customer evaluated Oracle Transportation Management

Swedbank, a Temenos T24 customer evaluated Oracle Flexcube

Moog, an UKG AutoTime customer evaluated Workday Time and Attendance

Citigroup, a VestmarkONE customer evaluated BlackRock Aladdin Wealth

Wayfair, a Korber HighJump WMS customer just evaluated Manhattan WMS

List of Sophos EDR Customers

loading spinner icon

Apply Filters For Customers

Logo Customer Industry Empl. Revenue Country Vendor Application Category When SI Insight
Clark Builders Construction and Real Estate 1500 $1.2B Canada Sophos Sophos EDR Endpoint Detection and Response (EDR) 2016 n/a
In 2016, Clark Builders implemented Sophos EDR to strengthen endpoint protection as part of a broader managed security-as-a-service program. The deployment prioritized Endpoint Detection and Response (EDR) capabilities to provide continuous endpoint telemetry and centralized threat orchestration across corporate and field environments. The Sophos EDR implementation included agent rollout across user workstations, Citrix delivered virtual desktops, and managed mobile devices, with configuration for behavioral detection, automated containment, and incident response workflow orchestration. Centralized policy management and alerting were configured to support forensic data capture and threat hunting consistent with standard EDR functional patterns. Operational coverage extended to the IT organization, project site crews, and remote workers enabled by the companys Citrix virtual desktop and co-location data center architecture. The EDR service was integrated into existing operational tooling, notably ServiceNow for incident ticketing and case management, and aligned with the companys Mobility Device Management platform and Sophos managed operations for incident response. Governance for the Sophos EDR rollout was conducted under an IT steering committee established to align security with business priorities, using Lean IT practices such as daily huddles, Kanban, and continuous improvement. The deployment was embedded into a security governance program that included cyber risk management, vulnerability scanning, control testing, awareness training, and phishing exercises, and the managed security-as-a-service approach reduced costs while improving the organizations overall security posture.
Clover Consumer Packaged Goods 10 $1M South Africa Sophos Sophos EDR Endpoint Detection and Response (EDR) 2016 n/a
In 2016, Clover implemented Sophos EDR. Sophos EDR was deployed as the company’s Endpoint Detection and Response (EDR) solution to extend its existing Sophos security footprint, complementing the Sophos email protection licence listed in Clover’s IT licence inventory. The deployment used agent based endpoint instrumentation and a centralized management console to provide continuous telemetry, threat detection, containment capabilities and forensic data capture across corporate endpoints and operational terminals that support production, warehouse management and distribution functions. Implementation centered on the IT Security function with policy driven controls, incident response workflow formalization and integration of endpoint telemetry into IT operations processes, aligning the project with Clover’s stated objective to introduce state of the art systems to automate and improve record keeping and business insight.
Ellesmere College Education 200 $20M United Kingdom Sophos Sophos EDR Endpoint Detection and Response (EDR) 2011 n/a
In 2011, Ellesmere College implemented Sophos EDR as its Endpoint Detection and Response (EDR) solution. The deployment targeted endpoint protection across the college environment, with Sophos EDR configured to deliver continuous monitoring, behavioral detection, and alerting on workstations and administrative devices. Operational activity emphasized virus removal using Sophos Endpoint Security, while Sophos EDR provided investigation, containment, and forensic trace capture capabilities. Governance and operational ownership rested with the college IT function, which operationalized incident response and endpoint remediation workflows to coordinate detection, analysis, and virus removal actions.
Italmondo Transportation 1500 $140M Italy Sophos Sophos EDR Endpoint Detection and Response (EDR) 2021 n/a
In 2021, Italmondo implemented Sophos EDR to establish Endpoint Detection and Response (EDR) capabilities across its transportation and logistics operations. The deployment explicitly aligned Sophos EDR with Italmondo's endpoint security and threat detection business function and covered more than 1500 users and endpoints. The implementation bundle included Sophos Endpoint as the on‑endpoint agent, Sophos MDR for managed detection and response, Sophos Mail for email security, and Sophos Phish Threat for phishing simulation and awareness. Configuration work centered on agent deployment, policy templates, telemetry aggregation into a central Sophos management console, and tuning of detection and automated containment workflows consistent with Endpoint Detection and Response (EDR) practices. Sophos MDR was configured to triage EDR alerts and coordinate incidents with Italmondo's IT security and operations teams, creating a clear escalation path from automated detections to human analysis. Operational coverage targeted corporate and operational user endpoints across Italmondo's business, integrating threat telemetry and alerting into existing security operations workflows. Governance and process changes included standardized incident handling playbooks, phased agent rollout to minimize disruption, and incorporation of phishing simulation results into user awareness programs via Sophos Phish Threat. The deployment positioned Sophos EDR and the associated Sophos solutions to provide centralized visibility, containment orchestration, and managed triage for Italmondo's endpoint security needs.
Milano Serravalle - Milano Tangenziali Transportation 585 $328M Italy Sophos Sophos EDR Endpoint Detection and Response (EDR) 2018 n/a
In 2018 Milano Serravalle - Milano Tangenziali implemented Sophos EDR to strengthen endpoint security operations. Sophos EDR, classified as Endpoint Detection and Response (EDR), was deployed under the Information Technology - Direzione Innovazione team to provide centralized detection and automated response capabilities across corporate endpoints. The implementation focused on standard Endpoint Detection and Response capabilities, including continuous endpoint telemetry collection, behavioral detection rules, centralized incident management, and automated response playbooks. Sophos EDR was configured alongside existing endpoint tooling, with policies and sensor deployment coordinated through the IT operations team and the company RMM/MDM processes. Sophos EDR was deployed into an environment that included NinjaOne for remote management and software deployment, Active Directory and Entra ID for identity context and policy targeting, and Microsoft 365 and Exchange for messaging environment visibility. The broader security and networking stack included Sophos XG and Cisco Firepower firewalls, Cisco ISE for identity based access controls, Cisco DNA Center for network automation, Zscaler Internet Access and Zscaler Private Access for secure web and remote access, ThousandEyes for digital experience monitoring, and virtualization platforms VMware vSphere ESXi and Nutanix for data center consolidation. Endpoint security operations also ran concurrently with Cynet, indicating a layered detection approach where Sophos EDR provided host level detection and automated containment. Governance and rollout were managed by Information Technology - Direzione Innovazione, with coordinated vendor and partner engagement on complex infrastructure tasks. Policy design and incident handling workflows were aligned with network access controls and RMM deployment processes, enabling IT to operationalize Sophos EDR alerts within existing identity and network enforcement mechanisms.
Insurance 600 $100M Malaysia Sophos Sophos EDR Endpoint Detection and Response (EDR) 2012 n/a
Professional Services 1932 $147M United Kingdom Sophos Sophos EDR Endpoint Detection and Response (EDR) 2014 n/a
Retail 6500 $5.2B United States Sophos Sophos EDR Endpoint Detection and Response (EDR) 2018 n/a
Showing 1 to 8 of 8 entries

Buyer Intent: Companies Evaluating Sophos EDR

ARTW Buyer Intent uncovers actionable customer signals, identifying software buyers actively evaluating Sophos EDR. Gain ongoing access to real-time prospects and uncover hidden opportunities. Companies Actively Evaluating Sophos EDR for Endpoint Detection and Response (EDR) include:

  1. ICP Logistica Spain, a Spain based Distribution organization with 10 Employees

Discover Software Buyers actively Evaluating Enterprise Applications

Logo Company Industry Employees Revenue Country Evaluated
ICP Logistica Spain Distribution 10 $1M Spain 2025-08-13
FAQ - APPS RUN THE WORLD Sophos EDR Coverage

Sophos EDR is a Endpoint Detection and Response (EDR) solution from Sophos.

Companies worldwide use Sophos EDR, from small firms to large enterprises across 21+ industries.

Organizations such as Under Armour, Clark Builders, Milano Serravalle - Milano Tangenziali, The Growth Company and Italmondo are recorded users of Sophos EDR for Endpoint Detection and Response (EDR).

Companies using Sophos EDR are most concentrated in Retail, Construction and Real Estate and Transportation, with adoption spanning over 21 industries.

Companies using Sophos EDR are most concentrated in United States, Canada and Italy, with adoption tracked across 195 countries worldwide. This global distribution highlights the popularity of Sophos EDR across Americas, EMEA, and APAC.

Companies using Sophos EDR range from small businesses with 0-100 employees - 12.5%, to mid-sized firms with 101-1,000 employees - 37.5%, large organizations with 1,001-10,000 employees - 50%, and global enterprises with 10,000+ employees - 0%.

Customers of Sophos EDR include firms across all revenue levels — from $0-100M, to $101M-$1B, $1B-$10B, and $10B+ global corporations.

Contact APPS RUN THE WORLD to access the full verified Sophos EDR customer database with detailed Firmographics such as industry, geography, revenue, and employee breakdowns as well as key decision makers in charge of Endpoint Detection and Response (EDR).