We just raised a $30M Series A: Read our story
2019-03-11T07:21:00Z

What needs improvement with CylancePROTECT?

16

Please share with the community what you think needs improvement with CylancePROTECT.

What are its weaknesses? What would you like to see changed in a future version?

ITCS user
Guest
1818 Answers

author avatar
Top 10Real User

Having worked with SentinelOne, Cylance is good, however, it probably needs to add a feature similar to SentinelOne's rollback functionality. With this feature, if you get infected, with a click, you can go back to the pre-infection state. If Cylance could add this functionality to their offering as well, that would be ideal.

2021-04-14T12:52:54Z
author avatar
Top 20Real User

The product needs to continue to offer better alerts. In particular, around false positives. It needs to reduce them from happening. I can't speak to the solution lacking any features per se.

2021-03-10T08:57:00Z
author avatar
Top 10Real User

The implementation was complicated requiring some things that felt unsafe. After that, it was easy

2021-02-04T02:54:55Z
author avatar
Top 10MSP

I'd like them to do software distribution too, but they said that that's architecturally not at the product line. I'd like to see where they can push to avoid using another product to push the agents.

2021-01-05T19:42:15Z
author avatar
Top 5LeaderboardReal User

They could improve on the false positives, reporting and whitelisting features. For future releases, it would be helpful to have an easy uninstall button. The reason being, unless you connect the system to the internet, which you may not want to do, Cylance cannot be uninstalled easily. They claim it's practically impossible. If you have access to the online admin panel, it's very easy to uninstall Cylance. There is no easy way to uninstall locally. I have read online there is a convoluted way with a series of reboots and safety reboots that you could possibly do it locally.

2020-12-13T10:02:00Z
author avatar
Top 10Real User

It would be very important to have any kind of utility in the computer for Cylance to install monitoring into it in a simpler way. A computer should be able to self-scan on command. It is not easy to do that just yet. The company that sells us the licenses sometimes doesn't know how to do certain things. They should be offered more training or something, or maybe we could cover out channels ourselves and could have the knowledge of how to do everything ourselves without a third party needing to be involved.

2020-12-12T07:50:59Z
author avatar
Top 10Consultant

It could have integration with industrial base HMIS or Human Machine Interfaces Solutions. This is the industrial environment where you have a control center for all the automation that's happening, whether it is oil, gas, or chemical manufacturing. They often have to set up a computer at the back and watch the other stuff to get alerts. In these autonomous or on-premises environments, they often don't have access to email readily. Integration with other industrial solutions, such as HMIS, will allow them to communicate and get an alert that something has been found. This way, they can react to it sooner than having somebody watch the screen and keep checking the screen. Rockwell has its own suite. Similarly, Honeywell has its own suite. There's also an independent HMI/historian solution provider out there called VTSCADA. We actually get asked if we can get it to show up on a screen, which is difficult. Getting those alerts to work within an industrial environment would be a huge plus.

2020-12-01T03:07:13Z
author avatar
Top 5Reseller

The process of whitelisting a script that you want to be able to run can be a little bit difficult, or awkward. Some enhancements to this process would be an improvement.

2020-11-02T18:45:06Z
author avatar
Top 10Real User

I would like to see a little bit of additional reporting or insight as to what it is doing exactly. I do not think I need anything else included in the next release that I know of. Honestly, just improvement in the reporting would be good enough.

2020-10-06T06:57:40Z
author avatar
Top 20MSP

The user interface could be improved, it's very outdated. The solution could also do with more help actions and explanations such as what has been identified, things like that.

2020-06-15T07:33:55Z
author avatar
Top 20Real User

It should have better support for Windows and Mac.

2020-03-22T06:49:00Z
author avatar
Top 5Real User

There are a lot of false positives and it takes up a lot of time. This is something that should be improved. I would like to see them fix the alerting system so that the endpoint reporting is a bit more streamlined. The vendor should be more widely advertising this product because not many people know that these types of solutions exist.

2020-03-16T06:56:14Z
author avatar
Top 10Real User

The OPTICS component could be made more user-friendly with respect to giving people more information. There are some issues that we have around our configuration, so I think that more training with respect to setup and configuration would be helpful.

2020-01-22T12:44:00Z
author avatar
Top 20Real User

To be honest, I think the product is, overall, quite good. It's working with AI Technology and machine learning that is connected to the Cylance Infinity Cloud. It picked up malicious files that other vendors didn't. It's actually been great on its own. Cylance is also launching mobile protection in 2020. At the moment the Cylance agent supports Windows, Mac OS and Linux devices, but they do not have an app for Android and IOS yet.

2019-07-04T07:00:00Z
author avatar
Real User

The downside is that the information displayed is not enriched enough. There was not much information available, that we could see. It should provide more details about the events that they have detected. There should be more information available post-incident. Basically, the user is informed that they have caught a threat, stopped it, and that's it. Users want to know what the threat was, the type of attack, how it got in, which IP address, did it go into lateral movement, etc. The kind of information that could be analyzed by IT experts to take forward and understand whether the attack is continuing, or not. They have some of this information but compared to other products, it's basic.

2019-06-30T10:29:00Z
author avatar
Real User

Improvements could be made on the user interface of the console. Also, right now it's just an antivirus and there's no firewall or anything. So we have to use the Windows firewall. It's a good firewall. But I think other companies have integrated products. The solution needs better dashboards that are easier to use. Also, a better user interface. Maybe even firewall integration of some kind. It would be helpful if you could see which threats have been detected, and have more information about what is going on. What I'm missing is a backup. In Norton, there was a backup included. In Cylance there is no backup, or at least no backup for the relevant system, programs, or software parts.

2019-06-30T10:29:00Z
author avatar
Real User

Security is an issue because they don't get Powershell. They scan the usual software and they don't scan deeper. The security scripting needs improvement. It needs deeper security for scripting. Also, more speed, less RAM, and less CPU.

2019-06-23T09:40:00Z
author avatar
Real User

I would like to see a better UI in terms of sifting through more specific data and providing analytics. A little bit more would be nice.

2019-03-11T07:21:00Z
Learn what your peers think about Blackberry Protect. Get advice and tips from experienced pros sharing their opinions. Updated: November 2021.
552,695 professionals have used our research since 2012.