HomeIntelligenceBrief
BREACH BRIEF ⚪ Informational Advisory

Symantec Endpoint Security Complete Certified Leader in AV‑Comparatives 2026 EPR Test

AV‑Comparatives evaluated Symantec Endpoint Security Complete and found it stopped every simulated attack, preventing any asset breach. The result offers concrete evidence that endpoint protection controls are operating as intended, simplifying audit readiness.

Verisq™ Intelligence · 📅 September 22, 2026 · 📰 security.com
Severity
Informational
AD
Type
Advisory
🎯
Confidence
High
🏢
Affected
2 sector(s)
Actions
3 recommended
📰
Source
security.com

Symantec Endpoint Security Complete Certified Leader in AV‑Comparatives 2026 EPR Test

What Happened – AV‑Comparatives ran its 2026 Endpoint Prevention & Response (EPR) evaluation, a multi‑stage attack simulation that mirrors real‑world threats. Symantec Endpoint Security Complete (SES Complete) stopped 100 % of the attacks, preventing any scenario from reaching the final asset‑breach phase.

Why It Matters for Trust & Control Assurance

  • Demonstrates that an organization’s endpoint protection controls can reliably prevent privilege‑escalation, credential‑theft, and lateral‑movement techniques – the exact behaviors a continuous control‑assurance program must monitor and evidence.
  • Independent test results provide defensible audit evidence that the “Endpoint security” control objective is operating effectively across the Protect function of NIST CSF 2.0.
  • Mapping such third‑party validation to your control framework simplifies due‑diligence and reduces audit friction.

Who Is Affected – Enterprises that rely on endpoint protection across any industry (technology, finance, healthcare, manufacturing, etc.).

Recommended Actions

  • Capture the AV‑Comparatives certification as evidence for the “Endpoint security” control objective.
  • Align your internal endpoint‑security policy with the test’s coverage (privilege escalation, credential access, lateral movement).
  • Periodically re‑validate your solution against independent labs to maintain a continuous audit trail. Source: Broadcom Symantec Blog

Technical Notes

  • The EPR test simulates attacks across three phases: compromise & foothold, internal propagation, and asset breach.
  • SES Complete blocked attacks delivered via executables, scripts, installers, add‑ins, and USB‑propagated payloads. Source: same as above
📰 Original Source
https://www.security.com/feature-stories/ses-complete-certified-leader-av-comparatives-epr-test

This Verisq Intelligence Brief is an independent analysis. Read the original reporting at the link above.

Third-party risk

Does this breach reach you?

Verisq continuously monitors your vendors for breach and ransomware activity, so the question stops being whether it happened and becomes whether it reaches you.

See a live Trust Center →