Broadcom Symantec Endpoint Security Complete 15.x Agent

Broadcom Symantec Endpoint Security Complete 15.x Agent

Brand: Broadcom | Category: Accessories & Components

SKU: BROA-SESCBUSSTD1YEN | Part #: SESC-BUS-STD-1Y-EN | MPN: SESC-BUS-STD-1Y-EN

Contact for Pricing — Request a Quote

Request a Quote Contact Us

About the Broadcom Symantec Endpoint Security Complete 15.x Agent

Broadcom Symantec Endpoint Security Complete 15.x represents the flagship tier of the Symantec endpoint protection portfolio, consolidating prevention, detection, response, and deception technologies into a single lightweight agent architecture. The platform integrates the Symantec Global Intelligence Network (GIN) — one of the largest civilian threat telemetry networks in the world — with on-device machine learning models that operate independently of cloud connectivity, ensuring protection continuity even in air-gapped or latency-sensitive environments. The 15.x agent generation introduces a redesigned kernel-mode driver stack optimized for Windows 11 24H2, macOS Sequoia, and major Linux distributions, reducing CPU overhead during real-time file scanning by up to 40% compared to prior generations through asynchronous I/O processing and cache-aware scanning pipelines.

The Complete tier augments foundational antimalware and host intrusion prevention with Endpoint Detection and Response (EDR), Active Directory defense, deception-based attack surface reduction, and Adaptive Protection — a self-tuning policy engine that automatically hardens application behavior baselines based on observed workload patterns. Integration with Symantec Security Analytics and the ICDx event pipeline enables bidirectional telemetry sharing with third-party SIEM and SOAR platforms via open APIs, while the Endpoint Activity Recorder captures full process, file, registry, and network event chains for forensic reconstruction without requiring a separate agent. The Threat Hunter console provides security operations teams with cross-endpoint query capabilities using a SQL-like investigation language, supporting retrospective threat hunting across 30-day rolling event stores retained either on-premise or in Broadcom-hosted cloud infrastructure.

Deployed through the Symantec Endpoint Security Manager (cloud SaaS or on-premise) or integrated with existing enterprise management frameworks via REST APIs and GPO-based provisioning, the 15.x agent supports heterogeneous fleets spanning Windows, macOS, Linux, and virtual desktop infrastructure environments. Behavioral isolation policies, application and device control, and network intrusion prevention are all enforced inline by the single agent process, eliminating the agent sprawl common in multi-vendor endpoint stacks. The 2025 Q2 release further introduces AI-assisted triage within the management console, surfacing prioritized incident queues with automated root-cause narrative generation to reduce mean time to respond for security operations center analysts.

Ideal for

  • Enterprise SOC teams using EDR telemetry and the Threat Hunter query console to conduct retrospective forensic investigations across thousands of managed endpoints following a suspected supply-chain intrusion.
  • Financial services organizations enforcing Adaptive Protection policies that automatically lock down banking application behaviors — preventing unexpected child process spawning or unauthorized registry modifications — without manual policy authoring.
  • Healthcare networks deploying the air-gap-capable on-device ML engine on clinical workstations that operate in network-isolated segments, maintaining malware prevention and behavioral analysis without relying on continuous cloud lookups.
  • Government and defense agencies leveraging Active Directory defense modules to detect and block credential harvesting, lateral movement via pass-the-hash, and Kerberoasting attacks targeting directory services in real time.
  • Virtual desktop infrastructure environments (Citrix, VMware Horizon) utilizing the agent's shared cache and non-persistent VDI optimization mode to reduce scan duplication across golden image clones and minimize IOPS impact on storage arrays.
  • Multi-cloud and hybrid enterprises integrating endpoint telemetry into Splunk or Microsoft Sentinel via the ICDx connector for unified XDR correlation, combining endpoint process events with network and identity signals in a single investigation timeline.

Technical specifications

ManufacturerBroadcom
Product LineSymantec Endpoint Security Complete
Agent Version15.x (2025 Q2 Release)
Deployment ModelCloud SaaS (Broadcom-hosted) or On-Premise Symantec Endpoint Security Manager
Supported OS — WindowsWindows 10 (21H2+), Windows 11 (including 24H2), Windows Server 2016 / 2019 / 2022 / 2025
Supported OS — macOSmacOS 13 Ventura, macOS 14 Sonoma, macOS 15 Sequoia
Supported OS — LinuxRHEL 8/9, CentOS Stream 9, Ubuntu 20.04/22.04/24.04 LTS, SLES 15
VDI SupportCitrix Virtual Apps and Desktops, VMware Horizon; non-persistent VDI mode with shared cache optimization
Core Protection ModulesAntimalware, SONAR Behavioral Analysis, Host Intrusion Prevention (HIPS), Network Intrusion Prevention (NIPS), Application and Device Control, Memory Exploit Mitigation
EDR CapabilitiesEndpoint Activity Recorder (process, file, registry, network), 30-day rolling event store, cross-endpoint Threat Hunter SQL-like query engine, automated root-cause narrative (AI-assisted triage)
AI and ML EngineOn-device machine learning models (offline-capable), cloud-augmented reputation via Symantec Global Intelligence Network (GIN), adaptive behavioral baseline engine
Adaptive ProtectionSelf-tuning application behavior lockdown; automated policy generation based on observed workload baselines; no manual rule authoring required
Active Directory DefenseReal-time detection of credential harvesting, pass-the-hash, Kerberoasting, DCSync, and LDAP enumeration attacks
Deception TechnologyIntegrated deception lures (honeypot tokens, fake credentials) to detect and redirect attacker lateral movement
SIEM / SOAR IntegrationICDx event pipeline; REST API; pre-built connectors for Splunk, Microsoft Sentinel, IBM QRadar, ServiceNow
Agent FootprintSingle consolidated agent process; kernel-mode driver optimized for async I/O; up to 40% reduction in CPU overhead during real-time scanning vs. prior generation
Management ConsoleSymantec Endpoint Security cloud console (browser-based); role-based access control; multi-tenant support; AI-assisted incident prioritization queue
Provisioning MethodsMSI / PKG silent deployment, GPO, SCCM/Intune integration, REST API-driven provisioning, Symantec Management Agent
Event Retention30 days rolling on-device or cloud-hosted; configurable extended retention via on-premise SIEM integration
Threat Intelligence SourceSymantec Global Intelligence Network — telemetry from 175M+ endpoints, 57M+ attack sensors, real-time URL and file reputation feeds
Compliance RelevanceSupports audit logging and policy enforcement aligned with NIST CSF, ISO 27001, PCI-DSS, HIPAA, and CIS Critical Security Controls
Licensing ModelSubscription-based per-endpoint seat; Complete tier includes all EDR, deception, and AD defense modules

Available from Omnixon Global. Submit an RFQ and our team will confirm configuration and availability for your order.

Technical Specifications

BrandBroadcom
CategoryAccessories & Components
SKUBROA-SESCBUSSTD1YEN
Part NumberSESC-BUS-STD-1Y-EN
ConditionNew
Product LineSymantec Endpoint Security Complete
Agent Version15.x (2025 Q2 Release)
Deployment ModelCloud SaaS (Broadcom-hosted) or On-Premise Symantec Endpoint Security Manager
Supported OS — WindowsWindows 10 (21H2+), Windows 11 (including 24H2), Windows Server 2016 / 2019 / 2022 / 2025
Supported OS — macOSmacOS 13 Ventura, macOS 14 Sonoma, macOS 15 Sequoia
Supported OS — LinuxRHEL 8/9, CentOS Stream 9, Ubuntu 20.04/22.04/24.04 LTS, SLES 15
VDI SupportCitrix Virtual Apps and Desktops, VMware Horizon; non-persistent VDI mode with shared cache optimization
Core Protection ModulesAntimalware, SONAR Behavioral Analysis, Host Intrusion Prevention (HIPS), Network Intrusion Prevention (NIPS), Application and Device Control, Memory Exploit Mitigation
EDR CapabilitiesEndpoint Activity Recorder (process, file, registry, network), 30-day rolling event store, cross-endpoint Threat Hunter SQL-like query engine, automated root-cause narrative (AI-assisted triage)
AI and ML EngineOn-device machine learning models (offline-capable), cloud-augmented reputation via Symantec Global Intelligence Network (GIN), adaptive behavioral baseline engine
Adaptive ProtectionSelf-tuning application behavior lockdown; automated policy generation based on observed workload baselines; no manual rule authoring required
Active Directory DefenseReal-time detection of credential harvesting, pass-the-hash, Kerberoasting, DCSync, and LDAP enumeration attacks
Deception TechnologyIntegrated deception lures (honeypot tokens, fake credentials) to detect and redirect attacker lateral movement
SIEM / SOAR IntegrationICDx event pipeline; REST API; pre-built connectors for Splunk, Microsoft Sentinel, IBM QRadar, ServiceNow
Agent FootprintSingle consolidated agent process; kernel-mode driver optimized for async I/O; up to 40% reduction in CPU overhead during real-time scanning vs. prior generation
Management ConsoleSymantec Endpoint Security cloud console (browser-based); role-based access control; multi-tenant support; AI-assisted incident prioritization queue
Provisioning MethodsMSI / PKG silent deployment, GPO, SCCM/Intune integration, REST API-driven provisioning, Symantec Management Agent
Event Retention30 days rolling on-device or cloud-hosted; configurable extended retention via on-premise SIEM integration
Threat Intelligence SourceSymantec Global Intelligence Network — telemetry from 175M+ endpoints, 57M+ attack sensors, real-time URL and file reputation feeds
Compliance RelevanceSupports audit logging and policy enforcement aligned with NIST CSF, ISO 27001, PCI-DSS, HIPAA, and CIS Critical Security Controls
Licensing ModelSubscription-based per-endpoint seat; Complete tier includes all EDR, deception, and AD defense modules

Frequently Asked Questions about Broadcom Symantec Endpoint Security Complete 15.x Agent

What does the Broadcom Symantec Endpoint Security Complete 15.x Agent do?

The Broadcom Symantec Endpoint Security Complete 15.x Agent is enterprise IT hardware deployed in production data centers, server rooms, and edge sites across the GCC and EMEA region.

What are the headline specs of the Broadcom Symantec Endpoint Security Complete 15.x Agent?

Key specifications for the Broadcom Symantec Endpoint Security Complete 15.x Agent: new condition; manufacturer Broadcom; product line Symantec Endpoint Security Complete; agent version 15.x (2025 Q2 Release); deployment model Cloud SaaS (Broadcom-hosted) or On-Premise Symantec Endpoint Security Manager; supported os — windows Windows 10 (21H2+), Windows 11 (including 24H2), Windows Server 2016 / 2019 / 2022 / 2025; supported os — macos macOS 13 Ventura, macOS 14 Sonoma, macOS 15 Sequoia. Manufacturer part number SESC-BUS-STD-1Y-EN. For the full datasheet with electrical, environmental, and compliance details, contact our pre-sales engineering team.