
Explore Sophos central endpoint security with EDR, learning to install and configure from scratch while building foundational knowledge of endpoint protection.
Identify common endpoint threats—malware, memory attacks, trojan horses, spyware, ransomware, and rootkits—and explore defenses with endpoint security and EDR.
Explore foundational and modern endpoint security techniques, from signature-based antivirus to machine learning and EDR, for proactive threat detection and incident response.
Explore Sophos Central endpoint protection with EDR and cloud-based management. Learn how synchronized security between endpoints and the network firewall blocks ransomware, exploits, and unknown threats.
Explore five Sophos endpoint protection features across central endpoint protection, including attack surface reduction, web security and URL filtering, deep learning malware detection, anti malware scanning, and threat investigation.
Understand Sophos central endpoint licensing, including per-user endpoint licenses, per-device government and education licenses, renewal rules, offline device effects, and how mixed licenses and multiple devices are managed.
Explore system requirements for Sophos central endpoint security with EDR, covering Windows, macOS, Linux, and server deployments, plus RAM, disk, and performance guidelines.
Register for the Sophos Central free trial using the pretrial or online demo flow, create a password, and enable multifactor authentication for endpoint protection.
Explore the Sophos central dashboard overview, log in to the support center, and manage endpoint protection, licensing, alerts, cloud optics, email security, logs, and reports.
Install the Sophos Central endpoint agents on Windows 10 and Windows 7 using the complete Windows installer, selecting components under your license and deploying from the cloud console.
Learn to configure Sophos agent email deployment by selecting a user and sending a welcome email to link the device to that user for endpoint protection.
Execute bulk deployment of Sophos Central Endpoint using an ERP script and startup script via a shared network location and group policy, enabling automatic installation across many devices.
Deploy and monitor the Sophos endpoint agent on Windows PCs, view the agent dashboard and events, and manage detections, scans, and tamper protection from the central console.
Discover Sophos agent components and services on endpoints, including antivirus, auto update, management communication, firewall, network protection, health checks, and the self-help diagnostic tools for centralized security management.
Explore managing users, groups, and roles in the Sophos central endpoint security console, including manual and bulk user creation, role assignments, and policy control with Active Directory sync.
Learn to add users and manage groups in Sophos central endpoint, using manual entry or csv bulk import via templates, and assign users to groups.
Integrate Active Directory with Sophos Central Endpoint Security by installing the directory service utility, configuring domain credentials, and synchronizing users and groups on a schedule.
Configure Sophos Central global settings to manage endpoint protection, server settings, cloud optics, proxy configuration, global exclusions, and MFA, enabling synchronized security, website control, and cross-product integrations.
Explore how to configure Sophos central endpoint protection policies, including base and production protection policies, policy types, real-time and scheduled scanning, threat protection features, and remediation workflows.
Learn to create two threat protection policies for IT and accounts groups in Sophos central endpoint security with EDR, configuring user-based policies, real-time scanning, and scheduled scans.
Test ransomware and malware defenses in Sophos Central Endpoint Security with EDR, enforcing threat protection policies, simulating phishing and command-and-control, and blocking web access to protect and quarantine data.
Configure device control policies in Sophos Central Endpoint Security with EDR, enforcing monitor, read-only, or block settings for removable storage and other devices.
Configure and customize web control policies in Sophos Central, enabling or disabling controls, blocking risky downloads, social networking, streaming media, and custom websites while monitoring with logs and reports.
Learn to configure user-based application control policies in Sophos Central, select applications and categories, set detection options as access-based, on-demand, and scheduled scanning, and enforce blocks across account groups.
Learn update management for product updates and scheduling, the update cache role in central distribution, and configure Windows firewall policies to control inbound connections and remote desktop with exceptions.
Configure data loss prevention policies in Sophos Central Endpoint Security with EDR to monitor and block transfers of sensitive data with customizable content rules and file-type controls.
Define endpoint detection and response (EDR) as a solution that records endpoint data and system events, analyzes them to detect suspicious activity, and provides remediation, isolation, and forensic information.
Sophos central endpoint security with EDR guides malware investigations, case management, device isolation, on-demand scanning, discovery, and threat intelligence across endpoints.
Learn to clear alerts in Sophos endpoint security with EDR by manually cleaning malware, marking as resolved, and updating dashboards to restore devices from red or critical states to green.
Configure multifactor authentication in Sophos Central, enable admin MFA, set up Google Authenticator, and access Live Response for remote device sessions.
Set up the update cache and message relay in Sophos Central to distribute updates and messages to endpoints, balancing bandwidth via a central intercepts advanced server on Windows Server.
Learn to access and customize Sophos Central logs and reports, including event audit logs, looks templates, device control, application control, and server reports.
Uninstall the Sophos endpoint agent by disabling tamper protection—either per device or globally—then complete removal and reboot; verify central management reflects the change.
Sophos Endpoint Protection is the industry’s most comprehensive endpoint protection built to stop the widest range of threats. Intercept X Advanced combines the capabilities of Intercept X and Central Endpoint into a single solution and single agent. Intercept X Advanced with EDR also integrates intelligent endpoint detection and response (EDR). It is managed by unified console, Sophos Central.
No servers to build—just log in to download the agent and configure all your policies from one place.
Highlights
Stops never seen before threats with deep learning AI
Blocks ransomware and rolls back affected files to a safe state
Prevents the exploit techniques used throughout the attack chain
Answers critical IT operations and threat hunting questions with EDR
Easy to deploy, configure and maintain even in remote working environments
In this courses, feature lecture and hands-on labs, you will learn to install, configure, manage and Sophos Central Endpoint Security from scratch. You will gaining the skills and expertise needed to protect all your enterprise endpoints ,servers from security threats. The student will get hands-on experience of Sophos Central Endpoint security in a lab environment.
This course dives deeper into Sophos Central Endpoint Security Configuration to give the students a clear understanding on several topics. Topics covered include Sophos Central Endpoint Basic Configuration, Anti-Virus Basics, EDR Basics, Protect Your Endpoint & Servers from threats, Threat Hunting Basics, Web Filtering & Application Control, Device Control, DLP Policies, File Integrity Monitoring, Synchronized Security, Alerts, Report & Logs & more.