Sophos Cloud Firewall (BYOL) logo

    Sophos Cloud Firewall (BYOL)

    Sold by
    Sophos Firewall for AWS delivers advanced threat protection for AWS environments and assets. Protect networks, applications, ensure security of ingress and egress traffic, and maintain high web-application availability.

    Ratings and reviews

    4.7
    855 ratings
    81%
    17%
    1%
    0%
    1%
    0 AWS reviews
    |
    855 external reviews
    External reviews are from G2 .

    Filters

    Review type

    AWS Marketplace reviews
    External reviews
    Reviews (855)
    Luis D.

    Effective Integration: Firewall and Client/Server Checks in a Single Portal

    Reviewed on Sep 14, 2026
    Review provided by G2
    What do you like best about the product?
    Integration, within a portal, of firewall and client/server verification.
    What do you dislike about the product?
    The management of Access Points is not integrated with VLANs, making network configuration and administration less straightforward.
    What problems is the product solving and how is that benefiting you?
    In the management of clients and on the web applications we try to block
    Shashikant D.

    Sophos Firewall: Easy to Learn, Outstanding Security

    Reviewed on Sep 10, 2026
    Review provided by G2
    What do you like best about the product?
    I like that Sophos Firewall is very simple and easy to understand and maintain. As a security engineer, the simplicity helps me in my daily work. It provides proper updates, and the support from the staff is very good. I learned how to use it in a very short time, which gives me confidence to implement rules effectively.
    What do you dislike about the product?
    Nothing is there I like to dislike the firewall
    What problems is the product solving and how is that benefiting you?
    I use Sophos Firewall for security and network segmentation. It's very simple and easy to understand, making it quick to learn and implement. I shifted from older legacy firewalls due to its excellent support and updates, providing a secure environment.
    Mahendra P.

    Sophos: Reliable Performance and Feature-Rich Security

    Reviewed on Sep 10, 2026
    Review provided by G2
    What do you like best about the product?
    Sophos is a very good product. It offers multiple useful features, and we have been using it since 2018. So far, it has been working very well for us without any major issues or trouble. We are very satisfied with its performance and reliability.
    What do you dislike about the product?
    We require the option to keep one previous firmware version available as a backup to ensure the security and stability of the product.
    What problems is the product solving and how is that benefiting you?
    Sophos Firewall provides very good security. The number of external attacks has significantly decreased due to the effective IPS/IDS engine of the Sophos Firewall
    Aayushi J.

    Synchronized security is a game changer.

    Reviewed on Aug 26, 2026
    Review provided by G2
    What do you like best about the product?
    The level of network visibility and the implementation of the Xstream architecture stand out immediately. Having the Xstream Deep packet inspection DPI engine handle AV, IPS, Web Filtering, and app control in a streamlined architecture keeps throughput high even under heavy loads and heavy TLS 1 .3 inspection. From an administrator's daily workflow, synchronized security is a game-changer. The way the firewall communicates directly with endpoint agents to share health heartbeats and automatically isolate compromised machines cuts down incident response times significantly. Additionally, managing multiple distributed appliances through sophos central simplifies everything from firmware pushes backups to group rule management. The built-in SD-WAN orchestration and multi-path performance routing have also made multi-branch connectivity much more reliable.
    What do you dislike about the product?
    The unified policy paradigm-while powerful once you get used to it-takes some time to master if you are migrating over from traditional zone-and-rule firewalls like Cisco ASA or FortiGate. Finding specific NAT configurations embedded within or alongside standard firewall rules can feel slightly non-intuitive during the initial setup phase. Furthermore, initial fine-tuning of deep TLS decryption policies requires careful exception-building to prevent breaking internal web apps or line-of-business software, though the built-in pre-packaged exception lists help mitigate this.
    What problems is the product solving and how is that benefiting you?
    We primarily use it for perimeter defense, secure site-to-site SD-WAN mesh connectivity, and granular user-based application access control. It has solved issues regarding shadow IT visibility and encrypted threat blind spots. The automation features-such as active threat response tied back to endpoint logs-have lifted a heavy operational burden off our lean IT Security team.
    Computer Software

    Simple, Interactive GUI with Solid Reporting and Great Value

    Reviewed on Aug 14, 2026
    Review provided by G2
    What do you like best about the product?
    It is simple, has an interactive GUI. I can find and fix stuff fast without digging through CLI. The reporting is solid, and the cost to feature ratio is hard to beat. Works well for SMBs and mid market deployment.
    What do you dislike about the product?
    The central management console could be a bit more slick and it sometimes takes time to load. Advanced routing and VPN debugging sometimes forces you to CLI. Upgrade paths can get tricky and difficult to locate. Good box in all but not flawless.
    What problems is the product solving and how is that benefiting you?
    The locking down remote access with solid VPN, keeping malware out with good IPS and web filtering feature, and making segmentation simple. One other benefit is less time managing separate boxes, faster triage with a very clean dashboard. it's easy enough for administrator intern to handle without calling me every five minutes.
    Antony M.

    Easy-to-Configure Firewall with Responsive Support and Great Value

    Reviewed on Aug 08, 2026
    Review provided by G2
    What do you like best about the product?
    The ease of operating and understanding the firewall, first time working on firewalls i used sophos and i managed to configure the firewall, sync with office365 and ldap for auth was a great with. their support desk responsive. and the cost is great for medium sized company
    What do you dislike about the product?
    challenges when running packet inspections and slow performance and high cpu usage
    What problems is the product solving and how is that benefiting you?
    We had challenges running ipsec tunnels on dynamic public ip's now we can centralize our servers at Head office or Azure
    Tim G.

    Centralized console everywhere for complete control of firewall and client

    Reviewed on Jul 29, 2026
    Review provided by G2
    What do you like best about the product?
    The centralized console is accessible from any device and anywhere, and allows for complete control over the status of the firewalls and clients.
    What do you dislike about the product?
    The access points have a cumbersome and slow management, and furthermore, they do not allow the creation of VLANs to segregate the networks.
    What problems is the product solving and how is that benefiting you?
    Perimeter security and client control.
    Prateek T.

    Synchronized Security and Sophos Central Make XGS a Huge Time-Saver

    Reviewed on Jul 25, 2026
    Review provided by G2
    What do you like best about the product?
    The biggest selling point for our team has been Synchronized Security(the security Heartbeat link between our endpoint agents and the firewall). If an endpoint drops to red health status due to active malware or suspicious outbound calls, the XGS box automatically isolates that device at the network layer before it can move laterally into our server VLANs. that alone has saved us hours of manual incident response .

    The integration with Sophos Central is easily the best future. Managing rules ,monitoring active traffic, and handling firmware updates across our XGS series appliances from a single dashboard saves our IT team a ton of time.
    The Synchronized security feature is also a massive win having the firewall automatically isolated a compromised endpoint before threat can move laterally across our network gives us great peace of mind.
    What do you dislike about the product?
    Local Web Admin UI: While Sophos Central is fast, logging directly into the local appliance web console can feel sluggish when you are pulling live packet traces, reviewing firewall rule hits, or digging into active connection tables under heavy load.
    On-Box Reporting: The built-in local reporting is adequate for basic bandwidth monitoring, but if you want deep, customizable historical reporting, you really have to rely on Sophos Central Centralized Reporting / Data Lake.
    The initial learning curve for custom NAT rules and object based policies can be a bit tricky if you are transitioning from older legacy firewalls . Also running full Deep Packet Inspection along with heavy SSL decryption requires proper sizing upfront, so you need to make sure you pick right XGS hardware model for your bandwidth needs.
    What problems is the product solving and how is that benefiting you?
    Lateral Movement Containment: Automated isolation of compromised hosts keeps minor endpoint infections from escalating into network-wide events.
    Multi-Site Management: Before upgrading , Managing remote VPN access and controlling bandwidth hogs across our [e.g., 2 office locations / 100+ employees] was over complicated . Sophos solved this by giving us seamless SSL VPN Deployment via Sophos connect and clear web filtering policies. It streamlined our daily network administration and improved overall threat visiblity.
    Bandwidth Optimization: Easily setting traffic-shaping rules for non-essential web traffic (like streaming services) during business hours ensures VoIP and critical cloud applications stay prioritized.
    Wlado R.

    Gateway VLAN fast and efficient, seamless integration with client and web app

    Reviewed on Jul 23, 2026
    Review provided by G2
    What do you like best about the product?
    Excellent performance in terms of speed when used as a VLAN gateway for network segregation. The integration with clients and web applications is functional and has proven effective.
    What do you dislike about the product?
    The Wi-Fi is slow and offers few segmentation possibilities. Also, managing Active Directory and configuring the SSL VPN are complicated.
    What problems is the product solving and how is that benefiting you?
    Effective perimeter security. Manage external access with dedicated logs. Web filtering.
    Wosha L.

    Excellent perimeter security and a fast, intuitive console

    Reviewed on Jul 23, 2026
    Review provided by G2
    What do you like best about the product?
    Firewall with excellent perimeter security and a fast, intuitive console that allows you to control everything easily. The connection with clients is also good.
    What do you dislike about the product?
    The Wi-Fi managed by the Access Points is slow in connecting devices and does not support VLAN management, limiting the possibility of segregation.
    What problems is the product solving and how is that benefiting you?
    Protection of clients and perimeter. Control of web applications.