SmartSoft Authorised Partner Sophos
Q2 2026 promotional pricing ends IN --d --h --m --s
Sophos Intercept X with EDR - Q2 2026 Offer

See & stop the attacks
your antivirus misses.

Sophos Intercept X with EDR adds behaviour-based detection on top of next-gen AV - so the file-less, script-based and living-off-the-land attacks that slip past signatures get caught and investigated. Your IT team gets guided investigations, Live Discover queries and one-click response actions.

Servers + endpoints, one console Run by your IT team Sophos certified partner

Tool-only EDR - custom quote

Server & endpoint licences combine into one EDR coverage. Pricing on request.

Server licencePer server, 1-year or 3-year locked
On request
Endpoint licencePer laptop / PC, 1-year or 3-year locked
On request
3-year lock-in availableFreeze your security budget until 2029
Best value

All licences in INR, GST extra. Server + endpoint quoted as one solution.

Why EDR, why now

Modern attacks don't drop a file - so signature AV never sees them.

74% of ransomware in 2025 used "living-off-the-land" techniques (PowerShell, WMI, legitimate admin tools). Antivirus alone is blind to them.

File-less attacks

PowerShell scripts, in-memory payloads, signed binaries used maliciously. No file on disk = nothing for your AV to scan.

Lateral movement

Once one machine is compromised, attackers pivot using legitimate Windows tools. AV sees normal Windows admin activity.

"What just happened?"

An alert fires. Without EDR's recorded timeline, your IT team has no way to investigate scope, blast radius or root cause.

4 sec

Median EDR detection time for a behaviour-based attack chain like WINWORD → PowerShell → outbound C2 - versus 277 days average breach dwell time without EDR (IBM Cost of a Breach Report 2024).

What you actually get

Six EDR capabilities - on day one.

Continuous behaviour recording

Every process, file write, registry change & network connection is logged for 30 days - so you can rewind any incident.

Visual attack chain

Sophos shows you the full attack tree: parent process, child processes, what they touched - in one diagram, not 200 log lines.

Live Discover threat hunting

SQL-style queries across 90 days of historical data. Hunt for IoCs, compromised credentials, suspicious patterns on demand.

One-click response

Isolate a host, kill a process, delete a file or run a remediation script - directly from Sophos Central, no ticket queue.

Bundled Intercept X NGAV

EDR builds on Sophos's deep-learning AI antivirus + CryptoGuard anti-ransomware + exploit prevention - all included.

Single agent, single console

One lightweight agent (~80 MB) covers AV + EDR. One Sophos Central tenant manages every server & endpoint.

EDR vs MDR - the difference

EDR gives you the tool. MDR gives you the people too.

EDR is the right choice when you have a capable internal IT team that will watch the console, investigate alerts and act on them. If you need a 24x7 SOC to do that work for you, see Sophos MDR. Same agent, same console - we just add the analysts.

EDR (this offer)

Tool. Your team operates it.

MDR

Tool + 24x7 Sophos SOC.

Q2 2026 Promotion

One EDR solution. One PO. Two licence components.

Sophos Intercept X with EDR is licensed per server and per endpoint - quoted together as your complete coverage. Choose 1-year flexibility or lock 3-year rates to freeze your security budget until 2029. All prices per licence, GST extra.

Component 1 - Servers

EDR Server licence

Per physical or virtual server. File servers, AD, ERP, app servers, hypervisors.

1-Year
On requestper server / yr
3-Year
On requestper server / 3 yrs, locked rate
  • Behaviour recording on every server in scope
  • Linux + Windows + virtualised workloads
  • Server-grade lateral-movement detection
  • One-click host isolation & remediation
  • Live Discover queries on server telemetry
  • Bundled Intercept X for Server licence
Component 2 - Endpoints

EDR Endpoint licence

Per laptop, desktop or workstation. Windows + macOS supported.

1-Year
On requestper endpoint / yr
3-Year
On requestper endpoint / 3 yrs, locked rate
  • Continuous behaviour recording (30-day retention)
  • Visual attack-chain investigation
  • Bundled Intercept X Advanced licence
  • Centralised cloud console & reporting
  • Live Discover threat hunting
  • Co-terminus billing with existing Sophos
Request a quote

Indicative endpoint pricing

Per-laptop / PC pricing (Windows + macOS). Server pricing & volume discounts confirmed on quote.

1 Year
₹ 1,039 +GST
per endpoint / yr
3 Years · Best value
₹ 2,339 +GST
per endpoint / 3 yrs, locked rate

Indicative SmartSoft pricing. Server licences & large-volume discounts on request — final quote within 1 business day. GST extra. Server + endpoint billed as one EDR solution.

Request quote

One PO. One renewal date. One invoice. Server & endpoint licences are quoted, billed and renewed together as your single EDR solution.

From PO to protected

Live in 5 working days.

Our standard EDR onboarding playbook - no consultants, no padded SOWs.

1

Free baseline audit

30-min discovery call. We map your endpoints, servers, AD and current AV.

2

Quote & PO

Custom quote on your exact licence count - 1-yr or 3-yr term, with finance options.

3

Deploy & tune

SmartSoft engineers push the agent, tune policies, retire your old AV - remote & onsite.

4

Train your team

4-hour hands-on EDR workshop: investigations, Live Discover queries, response actions.

Bundled with this offer

Four things SmartSoft throws in - no extra charge.

Free Security Posture Audit

30-minute audit with a written top-5 risks report. Worth Rs.25,000.

Free Remote Deployment

SmartSoft handles install, policy tuning, AV migration. On orders 250+ endpoints.

4-hour EDR Workshop

Hands-on training for your IT team on investigations, hunting & response in Sophos Central.

0% EMI for 24 months

Spread the 3-yr cost across 24 EMIs on orders above Rs.3 lakh. HDFC / ICICI partner.

Get your custom Sophos EDR quote

Tell us your environment - we'll come back within one working day with a tailored quote, the offers you qualify for, and a free baseline audit.

By submitting, you agree to be contacted by SmartSoft. We never share your details. GST extra on all quotes.

Got it - we'll be in touch within one working day.

Meanwhile, our security team is preparing your custom quote and audit slot.

Quick answers

Common questions before you sign.

Do I need to switch from my current AV first?
No. Sophos Intercept X with EDR replaces your AV - we handle the migration from any vendor (Symantec, McAfee, Trend, Kaspersky, even free AV) at no extra charge. Most customers run side-by-side for 14 days, then cut over.
What's the difference between EDR and MDR?
EDR is the tool: detection, recording, investigation, response actions - operated by your IT team. MDR is the same tool plus a 24x7 Sophos SOC that does the watching, investigating and responding for you. Pick EDR if you have an in-house security capability; pick MDR if you don't.
Will EDR slow down our laptops and servers?
The Sophos agent is ~80 MB and uses <2% CPU at idle. It is independently rated as one of the lightest EDR agents on the market (AV-Comparatives 2024). Server impact is similarly negligible.
What does "GST extra" actually add?
18% IGST is added on the licence value at invoice. The good news: it's input-credit-eligible for businesses, so the effective cost is the licence value itself.
Can we upgrade to MDR or XDR later?
Yes - the agent and console are the same. You can upgrade endpoints individually to XDR (cross-domain telemetry) or MDR (24x7 SOC) at any time, prorated against remaining term.
What if the price changes after I sign for 1 year?
A 3-year term locks today's rate for the full 36 months - immune to vendor price hikes (typical 8-12%/yr). That alone usually pays back the upfront 3-yr commitment.