Sophos Endpoint Tracking / Privacy

With the whole work from home, recently our org has asked us to install Sophos Endpoint on our devices. I'm aware that any banned websites will trigger an alert to the admin, and not that worried about that. However, what kind of visibility does the company have to URLs visited, etc? As well, does it have the ability to track time in apps / pull files locally from the device? A bit concerned about privacy of off the clock browsing & personal files on the device. Thanks a lot!

  • You should not expect privacy with an endpoint on your machine. They can block URLs or programs, they can detect what programs you are running, they can detect what peripherals you plug in (printer, USB stick, etc), they can run queries against your machine. The exact details depend on whether they have XDR or just endpoints and what features they enable on the endpoints, and so on.

    Your work doesn't provide their own laptops for you to use? At larger companies, that's what happens since they want total control -- Admin, endpoint, etc -- over anything they're going to allow on their VPN. It semi-defeats the purpose of an endpoint to not control Administration on the computer. (Or vice-versa, if they don't do the right thing when you leave the company, you may not recover full control over your own computer.)

    Thank you for reaching us, I agree with what mentioned, though Mostly what reflects on the Admins dashboard is the activity you've done only on your system. For your personal files. Sophos endpoint will scan those files and logs their details on your local device. For tracking time in the application mostly this will be recorded under your Event viewer, unless an investigation is required they can collect those logs. And for copying files from your local device, it all depends on your configuration. if they don't have local admin access to your system then there’s no way your administrator can access your device remotely or through Sophos endpoint to copy files. 

