Top Rated Carbon Black Next-Generation Antivirus Alternatives
167 Carbon Black Next-Generation Antivirus Reviews
Overall Review Sentiment for Carbon Black Next-Generation Antivirus
Log in to view review sentiment.
It's great that it allows use granular control over what people install and it also helps with compliance to make sure people don't start installing software that they are just familiar with using when it could cause legal issues and not just security concerns. Review collected by and hosted on G2.com.
Not all software is seem in their group to have given it a Cb Collective Defense Cloud Information score and if you want to allow clean software. Review collected by and hosted on G2.com.

It stops malware/ransomeware before it can execute. Fairly easy to manage considering the level of protection that it provides. Review collected by and hosted on G2.com.
We have experienced some increase in time it takes for windows patches to finish, but it isn't too bad. Review collected by and hosted on G2.com.
With Cb Defense you have complete visibility on what happens on your endpoint. This product also automatically detect malicious activity based on various TTP (Tactics, Techniques, Procedures) used by threat actors. Cb Defense allows us to define a granular protection policy that can be customised for our unique environment. For example, you can even choose to block all unknown application from running or just blocking them from connecting to Internet.
Cb Defense also offer third party integration through API. Most of its core function can be accessed through this API. This makes so easy to integrate Cb Defense with your other security solution. Review collected by and hosted on G2.com.
While the granular protection policy is very useful to balance protection and usability, it can be hard to define a policy. You need an experienced security analyst to do this. As of September 2019, Cb Defense does not have a comprehensive reporting capability. Review collected by and hosted on G2.com.
I love being able to deep dive into my endpoints/servers to see exactly what is going on, what users are doing, and what processes are being run. It helps me determine what applications and processes need to be whitelisted or blacklisted in my environment and allows me to actually report with througrough information on what is happening on our company endpoints. Review collected by and hosted on G2.com.
Deployment. It takes some doing to get used to deploying the Cb Defense sensor. I understand the reasoning for using a script to install and inject your company information, but I would like an easier approach other than having to stage the app and a script to actually install the app. Currently, I use a conjunction of MDM tools and AWS S3 to push which is the easiest method I've found so far. Review collected by and hosted on G2.com.
The API's - Ability to write Python or PowerShell Scripts allows us to pull data back faster than if we had to log into the system and it also saves a ton of time. We have also used their Community portal where customers share development scripts.
Intelligence feeds allow us to pull down data from our Threat Intel vendor into CbR and then create WatchList from it.
GoLive - I love this feature to have full access to a machine, it allows us to upload files / scripts and then pull down the results. This has speed up IR. Also gives us a quick way to determine if our AV quarantined a file or if the file still exists on the file system Review collected by and hosted on G2.com.
GoLive command interface could use some work, the commands are very limited and not like the DOS or Linux commands we are used to. Ex Can't do "dir /s" or delete a whole folder.
Creating complex watchlists are not that intuitive, it's easy to mess them up and you would not know it unless you had sample / test cases to run them thru.
Very little access control, either have Global rights or Admin rights. We are two version back, so they have made enhancements to allow access to only certain Sensor groups and GoLive.
Review collected by and hosted on G2.com.
CB Protection is a robust platform capable of repelling a majority of threats seen today. As the dominant application whitelisting platform, it gives granular controls and the ability to customize each environment to your company's needs. Review collected by and hosted on G2.com.
A double-edged sword, the platform is as strong as you make it. The dangers of low enforcement and the amount of information overload you can receive from the platform means there is significant setup time. It may also provide some user discomfort when moving into high enforcement, but it is certainly doable. Review collected by and hosted on G2.com.
The visibility on the endpoints compared to the previous anti-virus software we had. The ability to go interactive or quarantine a suspicious system. The capability to track and protect a system both on and off the enterprise network. Review collected by and hosted on G2.com.
The updates to the sensors and cloud platform are not very predictable. The sensors have had some pretty glaring issues that should have been caught in testing. Seems like more development is going into Threat Hunter than the Defense product. Review collected by and hosted on G2.com.

Positivity of this application is its ability to control device that helps me to vie and to allow / disallow the usage of certain devices in my certain environment also software blocking tool that is a little bit annoying for some organization but for some like mine where we use only some certain applications and software’s it’s a good choice. Granular Policy setting of this application can detect and block unknown malware and viruses. Intuitive user of this application helps in better understanding of the application as compare to reading its whole manual and live response is also quite appreciable in it. Review collected by and hosted on G2.com.
Cons of this application are not observed so far due to its user friendly nature but sometimes it block some files that are becomes corrupted and becomes difficult to recover them but although no bad effects observed from this particular application. Review collected by and hosted on G2.com.

Cb response on Windows endpoints it is easy deploy, maintain and support. Review collected by and hosted on G2.com.
Cb response management tool is not much user friendly especially if you are not well
trained. It may be able to start effective investigation at First side, is better there should be some training for incident response team. Review collected by and hosted on G2.com.
-Ease of use
-Easy to deploy agents
-Ability to auto upgrade sensors as new updates are released.
-Intelligence feeds that make CB response what it is.
-Ability to create custom watch lists Review collected by and hosted on G2.com.
CB tends to push out sensor updates and CB application updates that seem to not have been tested enough which leads to issues in Production that sometimes take longer then usual in resolving. The lack of development with response as there seems to be a lack of updates as CB has been concentrating more on PSC. Review collected by and hosted on G2.com.