No more typing reviews! Try our Samantha, our new voice AI agent.
reviewer2379408 - PeerSpot reviewer
Sr Security Engineer at a consultancy with 10,001+ employees
Real User
Mar 26, 2024
Makes securing our cloud workload super easy and has amazing stability
Pros and Cons
  • "It makes securing our cloud workload super easy, and we are able to push any sort of policy changes we need pretty quickly"
  • "I want the upgrades of their CloudGuard solution to major versions to be easier. We have had a few small hiccups. They have different types of cloud clusters called Geo Clusters, and those just cannot be upgraded past a certain point, which is a hurdle that we are currently experiencing."

What is our primary use case?

We mainly use the firewall part. We use it to interface with our cloud environments.

We have a CloudGuard firewall in place, and we have Azure or AWS networks at the backend. We use it to secure workloads and be a bridge to our on-prem as a hybrid solution.

How has it helped my organization?

It makes securing our cloud workload super easy, and we are able to push any sort of policy changes we need pretty quickly. It is a lot better than the native cloud firewalls that are available in terms of ease of use and features. Check Point IPS is way more advanced than the native cloud firewall solutions.

CloudGuard Network Security provides us with unified security management across hybrid clouds as well as on-prem. It is fantastic. It makes our security operations a lot smoother because we only have to push policy once to our cloud firewalls and our on-prem firewalls. We can select whichever firewalls we want and hit install. The changes are made across all different types of devices. We had evaluated the native cloud firewalls for a specific use case, but we saw that Check Point firewalls were superior in the aspects that we were looking at for our requirements. 

We just set up the firewalls and forget about them. We only have to do jumbo hotfix upgrades on the major version upgrades. For the most part, the uptime on them is fantastic. We do not have any downtime on them, so we never have to worry about them, which is why I do not have a lot of experience with them. We just set them up and forget about them.

CloudGuard Network Security has been fantastic in terms of identifying threats. Being able to log those cloud firewalls to the same place where all of our other Check Point firewalls are is a huge plus because we can see where something gets prevented by IPS or something like that.

What is most valuable?

We only use it for the firewall, so it is about security.

What needs improvement?

I want the upgrades of their CloudGuard solution to major versions to be easier. We have had a few small hiccups. They have different types of cloud clusters called Geo Clusters, and those just cannot be upgraded past a certain point, which is a hurdle that we are currently experiencing.

Buyer's Guide
Check Point Cloud Firewall (formerly CloudGuard Network Security)
August 2026
Learn what your peers think about Check Point Cloud Firewall (formerly CloudGuard Network Security). Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
911,473 professionals have used our research since 2012.

For how long have I used the solution?

We have been using CloudGuard Network Security for four years.

What do I think about the stability of the solution?

Its stability is amazing. We have never had any weird downtime issues with our CloudGuard firewalls.

What do I think about the scalability of the solution?

We do not use any of the auto-scaling features that Check Point provides. We do not have a use case for it, so I cannot attest to that.

How are customer service and support?

When you get the right person, Check Point TAC is fantastic, but sometimes, it can take a while to find the right tech engineer to be able to answer your problem within a reasonable amount of time. Most TAC engineers can answer a question, but some might take longer than others. I would rate their support an eight out of ten.

How was the initial setup?

It is super easy to deploy. In a few clicks, it is up and going. 

What about the implementation team?

I deployed it myself.

What was our ROI?

We have definitely seen an ROI, but I am not sure how to quantify that. I am satisfied with it. 

It is definitely easy to use and simple. Compared to the native cloud firewalls where if they do not have a feature, you are out of luck, I feel that Check Point has a very superior feature set.

What's my experience with pricing, setup cost, and licensing?

I like the flexibility because I am pretty sure you can use the same license on Azure or AWS. I forgot the name of the license, but there is a specific type you can use that lets you interchange them, and that is pretty good. I like that. 

What other advice do I have?

I would rate it a nine out of ten. The only reason it is not a ten is that sometimes there are hiccups when we have to interact with it, such as while upgrading. These are small things, but I wish it was more seamless than it already is. It is already pretty seamless, but there can always be improvements.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Allan Vasquez - PeerSpot reviewer
Software Development and Information Security Manager at a manufacturing company with 201-500 employees
Real User
Mar 26, 2024
Makes policy management easy and helps to improve security score and uptime
Pros and Cons
  • "The easy management of the policies is great for us because we are a small team and having easy management is great and useful for us."
  • "At CPX, we heard that we can see all the things on the same platform. That is what we have been asking for, and hopefully, we are going to start seeing it this year."

What is our primary use case?

We use it to analyze all the traffic in our network. It is the main tool for security services and networking in our company.

How has it helped my organization?

We increased our security score by introducing the tool. We are continuing to grow and improve. In terms of policies, we have a lot of benefits in terms of the security cluster and how it works.

CloudGuard Network Security provides unified security management across hybrid-clouds as well as on-prem. We have a hybrid scenario in the company. We have 3% of services in the cloud, and we can use the same clusters and the same policies that we have on the on-premise side for our cloud services. We have the same benefits for both.

We are pretty confident in our cloud network security using CloudGuard Network Security. We are not exactly an Internet-exposure company, but we have a cloud setup. We are pretty confident with its configuration assessment. With Check Point as our partners, we are protected, and we can be confident in our security.

What is most valuable?

Microsegmentation is very useful for us because we minimize the surface attack. The easy management of the policies is great for us because we are a small team and having easy management is great and useful for us.

What needs improvement?

At this point, we are very happy with what is happening with their horizon. At CPX, we heard that we can see all the things on the same platform. That is what we have been asking for, and hopefully, we are going to start seeing it this year.

For how long have I used the solution?

I have been using CloudGuard Network Security since 2020.

What do I think about the stability of the solution?

It is stable. I cannot remember a time when we had any issues with it. Our operations are 24/7.

What do I think about the scalability of the solution?

It is scalable. We do not have any problems with it.

How are customer service and support?

We have had a good experience with the support and customer service, and we are happy with them.

I would rate them a nine out of ten. A unique issue that we have is related to the language. When the first level of support cannot resolve an issue and the issue needs to be escalated, we have a language challenge because the team is based in India. There are some limitations on both ends.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We used our cloud vendor's security but did not get as many details when we had any issues. We immediately moved to Check Point, and we are more confident of Check Point.

At first, we used Azure and Defender, and before we changed to CheckPoint, we used ESET. So, we had ESET and then we started rolling out Check Point. We had a mix with the cloud vendor solution, and then we went for Check Point.

How was the initial setup?

We have a mix of on-premises and cloud. We use the Infinity services.

My team deployed it. I have three security engineers on the team, and with the help of Check Point, we deployed it. We upgraded very recently in December, and it was a good experience. It has been running well.

What about the implementation team?

We used the services of a company based in Panama. With the Infinity contract, we had some professional time with Check Point, and they helped us set up some of the things. They reviewed some of the things that we deployed, so we have all the best practices.

What was our ROI?

I do not have a lot of details on that, but our uptime is pretty high. 

What's my experience with pricing, setup cost, and licensing?

It is an expensive product, but when you realize that you need it, it does not feel so expensive.

We have had a good experience with them as partners. They have helped us with designing and having good architecture and the best equipment at the best prices. We find it a good deal. 

Which other solutions did I evaluate?

We evaluated Microsoft's security suite. The thing that made us decide on Check Point was that Check Point had the least zero-day attack score. We have a lot of solutions from Check Point, and we stayed with Check Point.

We are now not evaluating other solutions because, since 2020, we have chosen Check Point as our partner. It continues to be the best solution for us to improve our score. We are not looking for software solutions from other vendors.

We always keep track of the service and the score, and with Check Point, there has always been the highest score.

What other advice do I have?

I would rate CloudGuard Network Security a ten out of ten. We are happy with the uptime and management. It is a good tool, and it provides a lot of value for us. We are happy.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Check Point Cloud Firewall (formerly CloudGuard Network Security)
August 2026
Learn what your peers think about Check Point Cloud Firewall (formerly CloudGuard Network Security). Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
911,473 professionals have used our research since 2012.
Cloud Security SME at a computer software company with 1-10 employees
Real User
Nov 10, 2023
Provides a single pane of glass and good value for money, but the account onboarding has room for improvement
Pros and Cons
  • "The most valuable feature is the ability to apply common tools across all accounts."
  • "The integration process could be enhanced by enabling integration at the organizational level rather than requiring the manual setup of individual accounts."

What is our primary use case?

We use Check Point CloudGuard Posture Management to maintain our organization's security posture.

How has it helped my organization?

With a bit of upscaling, it is possible to write custom rules and policies using the GSL Builder. We used the GSL Builder to build the rules for our playground environment and internet-facing environments.

It takes a couple of weeks for a nontechnical person to learn how to use GSL Builder.

The Unified Security Management console is helpful because it provides a single pane of glass. 

From a control plane perspective, the solution offers excellent visibility into our framework, enabling the identification of non-compliance.

CloudGuard provides good value for money in terms of automating our security across multiple clouds.

The agentless workload posture analysis, which primarily focuses on our cloud platform, provided valuable insights into our organization's overall security posture.

CloudGuard helped to eliminate some manual processes for a few teams, freeing up some of their time.

Our organization's security operations were able to save time by using CloudGuard's unified platform.

What is most valuable?

The most valuable feature is the ability to apply common tools across all accounts.

What needs improvement?

The integration process could be enhanced by enabling integration at the organizational level rather than requiring the manual setup of individual accounts. The current workflow of creating and linking each role is time-consuming and labor-intensive. Streamlining account onboarding by allowing CloudGuard to identify and integrate at the organizational level would significantly simplify the process.

For how long have I used the solution?

I have been using Check Point CloudGuard Posture Management for one year.

What do I think about the stability of the solution?

Check Point CloudGuard Posture Management is stable.

What do I think about the scalability of the solution?

CloudGuard Posture Management is scalable, as it is a SaaS product.

Which solution did I use previously and why did I switch?

Before implementing Check Point CloudGuard Posture Management, we relied on the native CSPM of AWS Config.

For beginners in the field, AWS might be a good starting point due to its simplicity. However, for more experienced users who require more advanced features, CloudGuard offers a more mature and comprehensive solution.

What other advice do I have?

I would give Check Point CloudGuard Posture Management a rating of seven out of ten. Consolidating additional capabilities into CloudGuard, along with Fusion, would create a comprehensive package offering for customers. This, along with maintaining compatibility with the evolving AWS service, would help to avoid complicating any integration issues.

While developing our tools, there is always a need for ongoing review and updates. However, compared to AWS, the maintenance required for CloudGuard is minimal.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Sailas Jose - PeerSpot reviewer
Assistant Manager at Federal Bank Ltd
Real User
Aug 31, 2023
Provides a unified platform, no agents required, and has good visibility
Pros and Cons
  • "The visibility in our cloud environment is the most valuable feature."
  • "We have concerns regarding the pricing and would appreciate seeing some improvements."

What is our primary use case?

Check Point CloudGuard Posture Management is utilized to monitor our various cloud-related portals on AWS, Google Cloud, Azure, and other platforms. This solution offers a unified console to manage all the servers and provide us with comprehensive details.

How has it helped my organization?

We can automate certain aspects of our security through Check Point CloudGuard Posture Management. However, complete automation is not possible due to the dependencies of the applications installed in the cloud VMs.

The agentless workload posture enhances the compatibility of our VMs since there's no requirement to install any agents or assign write permissions. This approach also simplifies management, reduces the need for multiple levels of approvals, and eliminates the necessity of installing anything on our servers.

Check Point CloudGuard Posture Management saves us time by enabling communication with all of our devices within a span of two days.

CloudGuard Posture Management's unified platform has saved our organization time when dealing with our cloud environment.

What is most valuable?

The visibility in our cloud environment is the most valuable feature.

What needs improvement?

We have concerns regarding the pricing and would appreciate seeing some improvements.

For how long have I used the solution?

We are currently conducting a POC with Check Point CloudGuard Posture Management and have been testing it for one month.

What do I think about the stability of the solution?

I would give the stability an eight out of ten.

How are customer service and support?

The technical support is good.

How would you rate customer service and support?

Positive

What's my experience with pricing, setup cost, and licensing?

The price is on the higher end.

What other advice do I have?

I would rate Check Point CloudGuard Posture Management eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Consultant at a tech services company with 51-200 employees
Consultant
Top 10
Mar 13, 2025
User-friendly interface and reliable security empower financial institutions
Pros and Cons
  • "I think it is secure and user-friendly."
  • "Pricing in Jamaica is a major issue, with users often citing it as a reason for not using Check Point."

What is our primary use case?

I am based in Jamaica for the most part. Not a lot of people use Check Point CloudGuard Network Security due to pricing issues, but most banks still use it.

What is most valuable?

I think it is secure and user-friendly. The interface is easy to understand and the Check Point CloudGuard Network Security history assures me of its trustworthiness.

What needs improvement?

They could improve the documentation. The interface is fine for me since I have been using it for some time.

For how long have I used the solution?

I have been using network security from around 2003 or 2004.

What was my experience with deployment of the solution?

Deployment usually takes about two days depending on the network.

What do I think about the stability of the solution?

I have not experienced any issues with stability such as lagging, crashing, or downtime.

What do I think about the scalability of the solution?

The scalability is fine. In Jamaica, the networks tend to be relatively small.

How are customer service and support?

I have not had to contact technical support or customer support for Check Point CloudGuard Network Security specifically, but I have contacted them for other Check Point products.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I work with Cisco and FortiGate. FortiGate is popular in Jamaica, partly due to pricing. Users often choose cheaper options even if Check Point is considered better.

How was the initial setup?

The initial setup is fine. It is not difficult.

What about the implementation team?

I usually work with a team of about two or three people for deployment, totaling three or four including me.

What's my experience with pricing, setup cost, and licensing?

Pricing in Jamaica is a major issue, with users often citing it as a reason for not using Check Point.

Which other solutions did I evaluate?

I have experience with Cisco and FortiGate solutions.

What other advice do I have?

I advise new users to carefully look at the documentation and do their homework before starting deployments. Proper planning and preparation, supported by the documentation, are crucial. I would rate the solution about nine out of ten.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor. The reviewer's company has a business relationship with this vendor other than being a customer: Implementer
PeerSpot user
Chris Lynch - PeerSpot reviewer
IT Network Manager at a analyst firm with 1,001-5,000 employees
Real User
May 9, 2024
Works as an Edge firewall and East-West firewall but improvement is needed in the consolidated UI
Pros and Cons
  • "The tool's most valuable feature is its management console."
  • "Check Point CloudGuard Network Security needs to improve the management of the actual firewalls. Improvement is also needed for the consolidated UI of different security aspects."

What is our primary use case?

My company uses the solution as an Edge firewall and East-West firewall. 

What is most valuable?

The tool's most valuable feature is its management console. 

What needs improvement?

Check Point CloudGuard Network Security needs to improve the management of the actual firewalls. Improvement is also needed for the consolidated UI of different security aspects. 

For how long have I used the solution?

I have been using the product for a year and a half. My company has been using it for eight years. 

What do I think about the stability of the solution?

We recently had some issues with stability, so it's hit or miss. It seems to have more minor bugs than other platforms, but overall stability is the same.

How are customer service and support?

The speed of the support's response varies. Sometimes, you can get a good engineer who can give you the right answers. 

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have used Cisco, Fortinet, Palo Alto, and SonicWall. The worst ones on the list are Cisco, Fortinet, and SonicWall. Palo Alto is better in some areas. Check PointCloudGuard Network Security is top in terms of actual security. But in terms of managing the whole platform, I would put it below Palo Alto.

How was the initial setup?

Check Point CloudGuard Network Security's deployment is easy and takes two hours to complete. 

What about the implementation team?

I did the solution's deployment myself. However, I connected with the consultants whenever needed. 

What was our ROI?

We've been secure and haven't had any security breaches.

What's my experience with pricing, setup cost, and licensing?

The tool's pricing is been higher than other solutions, but it seems like it's turning downwards.

What other advice do I have?

I rate the overall product a seven out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
Director of Cybersecurity at a comms service provider with 10,001+ employees
User
Apr 21, 2024
The benefits were immediate, effectively providing compliance rule sets and security best practices
Pros and Cons
  • "Cloud security posture management is the feature we've been using the longest."
  • "The platform would be significantly enhanced by incorporating data security management capabilities."

What is our primary use case?

We use Check Point CloudGuard CNAPP for the application protection of our assets on Azure, AWS, and Google Cloud.

We implemented CloudGuard CNAPP to address data exposure, prevent exfiltration attempts, ensure compliance with frameworks like SOC 2 and PCI DSS, and gain improved oversight of our cloud environment.

How has it helped my organization?

We haven't had any cloud security incidents since implementing CloudGuard CNAPP in 2017. It's been a critical tool as we've grown our cloud usage, transitioning applications from data centers to the cloud. CloudGuard's scalability has kept pace with our growth. As the third-largest enterprise user of Azure, our cloud footprint is significant.

The benefits of CloudGuard CNAPP were immediately apparent upon deployment. Back in 2017, we found ourselves needing to catch up on securing our existing AWS assets. We required a solution that offered quick implementation and usability. CloudGuard was the first platform we considered, and we've continued to expand its use alongside Check Point's ongoing development of new capabilities.

We create custom rules to address our organization's unique security policies, in addition to leveraging the built-in rules within CloudGuard CNAPP's CSPM module. This flexibility is crucial for us.

While CloudGuard CNAPP's CSPM capabilities effectively provide compliance rule sets and security best practices, it's important to understand that this is just one aspect of achieving full alignment with security frameworks. To be fully compliant, additional measures outside of CloudGuard need to be addressed and implemented. However, CloudGuard CNAPP remains a valuable piece of the puzzle.

CSPM helps us identify the most critical business risks. It's a time-saver that translates into cost savings. CSPM provides insights from multiple perspectives. We can analyze what a breach would mean for the business, including brand reputation and the significant cost and time required for recovery. Even in terms of day-to-day operations, CSPM saves us employee hours by streamlining security tasks.

The security provided by the CWP for containers is good. We are extremely satisfied.

Our CI/CD environment utilizes some scanning capabilities offered by workload protection, but it's not fully integrated. This creates limitations in proactively identifying issues before deployment. When we do use the workload protection capabilities they are critical for us.

What is most valuable?

Cloud security posture management is the feature we've been using the longest. What we particularly like about it is the rule-based capability. This allows us to develop our own custom rules using the GSL language provided by the CloudGuard platform.

What needs improvement?

The platform would be significantly enhanced by incorporating data security management capabilities.

I'd like to see CloudGuard offer more agentless functionality beyond what's currently available.

For how long have I used the solution?

I have been using Check Point CloudGuard CNAPP for over seven years.

What do I think about the stability of the solution?

Check Point CloudGuard CNAPP is extremely stable and if there is an issue, Check Point is on top of it.

What do I think about the scalability of the solution?

Check Point CloudGuard CNAPP is scalable. We haven't run into any scale issues and we have scaled significantly over the last six years.

We plan on expanding it into some of the newer capabilities that Check Point is coming out with.

How are customer service and support?

The technical support is good.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial deployment was straightforward. As a SaaS platform, it is extremely easy to deploy it into environments.

We can deploy CloudGuard CNAPP and use it out of the box within hours.

Our initial strategy was to implement a basic solution and then expand its capabilities over time. Check Point, frankly, has done an excellent job of keeping its platform up-to-date by continuously adding and improving features. This is why we're still using it even after six years.

What other advice do I have?

I would rate Check Point CloudGuard CNAPP nine out of ten.

Check Point CloudGuard CNAPP is predominantly owned by and controlled by the central security organization within our company.

Details matter. When comparing features to other security solutions on the market, the ability to develop custom rules is important to us, along with security posture capabilities. The ability to scale flawlessly is also important to us. The direct and overwhelming support that we received from the Check Point account team, the support team, and the leadership team has been fantastic.

Integrating with the cloud through APIs offered by a SaaS platform has significantly reduced the burden on our organization by eliminating the need for all the complex backend work we previously had to handle. This experience highlights the importance of embracing new ways of doing things.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Network and Security Manager at a financial services firm with 1,001-5,000 employees
Real User
Apr 15, 2024
Provides unified management, but the version upgrade seems to have a limitation
Pros and Cons
  • "We have unified management. It is one of the advantages of this product."
  • "There is a limitation with the version upgrade. We are using version 81.10 and from what I understand, it is problematic to upgrade this version. I do not know if that is true."

What is our primary use case?

We are using it for network security.

The whole reason we got it was to expand and make an extension to the Azure Cloud so that we could establish services that would make a link between the on-prem and the cloud. That was the goal.

How has it helped my organization?

We have unified management. It is one of the advantages of this product.

In terms of protection, we have not yet done any kind of penetration tests. We will check them later. In the future, we would also want to use all kinds of features such as IPS, IPSec, etc.

What is most valuable?

Its advantage is its layout. You do not need to get any unique devices and install them. The installation is easy. The assimilation is less easy because you have to work with a manager in Azure and upload and define all kinds of addresses.

In essence, you do exactly what you do with on-prem. It is the same operation. You can manage it in the same way as on-prem, which is an advantage. You can manage the firewall in the cloud from on-prem, and you do not need any more interventions.

What needs improvement?

There is a limitation with the version upgrade. We are using version 81.10 and from what I understand, it is problematic to upgrade this version. I do not know if that is true. I am trying to figure it out. If I want to upgrade to a newer version, I have to make new machines. If this is true, it will negatively impact my thoughts regarding the solution.

What do I think about the stability of the solution?

It is always running. Its availability is high because it is located in two different data centers. This is the purpose of the cloud. It is located in two data centers in two different countries. We have placed one in Frankfurt, and the other one is in Amsterdam or London. That is the advantage. Because it is not the same country or city, the availability is great.

How are customer service and support?

I mainly receive support from an integrator. Check Point did not accompany me as a vendor from the beginning. I am satisfied with the integrator at the moment. He gives me the answers.

We had a few inquiries recently, and he gave me the answers. They were also very helpful during the installation. So, I have had less communication with the manufacturer. For more complex issues, I can communicate with Check Point's support.

I would rate the integrator's support a nine out of ten because sometimes, it takes a long time for the integrator to find the solution to the malfunctions. The glitch related to the deleted machines was very critical for our organization. Things were working normally on the network, but the entire project was simply blocked for a few days. I expected the integrator to open a ticket in a faster way, but he did not open any ticket at all. He resolved it all by himself, but he did not share with us what the solution was. Deleting things and opening them again is not good enough because there is no reassurance that the glitch will not happen again.

Which solution did I use previously and why did I switch?

We did not use any other solution before this.

How was the initial setup?

The installation is simple. We just had to put it in two centers and deploy it. It was easy.

During the process, we had to wipe a machine. Microsoft gave us some addresses to work with. We used those addresses because we needed public addresses to work with. At first, we were not able to do something properly, so we deleted the machine. When we came back to set up the machine, we had to take new addresses from Microsoft all over again. I do not know whether it was because of Azure or whether it was Check Point´s fault.

What was our ROI?

I do not know if I have seen a return on investment because we are at the beginning of establishing the cloud. It is not entirely working yet. At the moment, it is not in production, but I assume that there will be an ROI.

What's my experience with pricing, setup cost, and licensing?

It is not expensive.

Which other solutions did I evaluate?

I wanted to try Palo Alto at first, but because my entire setup was already in Check Point, I did not go in that direction. I wanted unified management. I also consulted my team, and they said that they do not want to come and manage another firewall because of the management and knowledge it requires. The advantage of this solution was unified management.

What other advice do I have?

My recommendation for those who are thinking of installing the product is to check its survivability at the level of downloading a machine and uploading it. Do not upload all the applications straight away to run tests. Research first.

Based on my experience, I would rate it a seven out of ten. There were some malfunctions. There were also issues at the beginning due to the lack of a dependency needed for it to function. The experience is not yet perfect, but like any product, it will improve over time. In the end, I need stability in the cloud, but right now, that feeling is not there. I do not have the feeling of stability where I can say that the production and the service will not drop again. That is the concern. I want to start uploading some kind of application to production soon.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1832184 - PeerSpot reviewer
Senior Enterpirse Security Architect at a healthcare company with 11-50 employees
Real User
Apr 15, 2024
Provides virtual machine scale sets and multi-domain security management server
Pros and Cons
  • "It was very easy to install the solution, and the architecture meant we didn't have to worry about exceeding the solution's capacity."
  • "In future releases, I would like to see the data loss prevention (DLP) feature could scale along with the virtual machine scale sets."

What is our primary use case?

When we began our digital transformation, we had already invested in on-premises Check Point firewalls. We desired the same level of security in the cloud along with the elasticity that the cloud demands.

How has it helped my organization?

We have a standard security policy across the organization. Our layered security, including North-South and East-West firewalls, is fantastic.

Compared to the other solutions for identity-based threat detection, the malware and threat prevention capabilities are key features that we have enabled – we actually use all the available features. 

On several occasions, we've benefited from zero-day protection. It acts immediately when something is discovered, while other solutions might take much longer to react.

I'm confident that as long as we keep up with the advancements that Check Point continues to make, our security posture is in good hands.

What is most valuable?

The virtual machine scale sets were crucial, offering the ability to scale up and down. 

It was very easy to install the solution, and the architecture meant we didn't have to worry about exceeding the solution's capacity.

CloudGuard Network Security provides unified security management across our cloud and on-premises environments.

We integrate our management servers with the Check Point Multi-Domain Security Management server. This allows it to interact with Check Point CASB and our SIEM. As alerts arise, we're able to triage them effectively.

What needs improvement?

In future releases, I would like to see the data loss prevention (DLP) feature could scale along with the virtual machine scale sets.

For how long have I used the solution?

I've been using CloudGuard Network Security since approximately 2019.

What do I think about the stability of the solution?

The overall stability is there. Our firewalls monitor our most crucial systems. If those firewalls went down, it would take out almost our entire cloud network.

What do I think about the scalability of the solution?

The scalability is great. 

How are customer service and support?

We have Check Point's Diamond support, and they have been fantastic. It's a true partnership, and we always work together to find solutions for anything that's needed.

We have weekly meetings with our sales team, our architecture team, and their team. They are truly integrated as part of our organization.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We had our native cloud firewall. Our native cloud firewalls lacked intrusion prevention and advanced malware protection. 

They offered basic stateful firewalling, and we wanted a more robust solution for our security needs.

When we designed our cloud architecture, Check Point was the primary solution we chose.

How was the initial setup?

It's simple to set up and easy to tear down or upgrade. This provides us with a lot of flexibility in testing.

What about the implementation team?


Which other solutions did I evaluate?

We did evaluate other solutions. We evaluated other web application firewalls (WAFs). 

The ease of use is great. Creating firewalls within templates is straightforward. 

The overall depth of features within the solution is one of the key reasons why we chose Check Point as a long-term partner.

What other advice do I have?

Overall, I would rate the solution a ten out of ten. 

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Christopher Federico - PeerSpot reviewer
VP Sales, MSSP and MDR at Torq
Real User
Mar 26, 2024
Makes the findings actionable and helps with compliance and threat hunting
Pros and Cons
  • "The most valuable feature is the ability to work with the APIs to integrate into our own backend systems."
  • "The reporting has a lot of opportunities to continuously improve so that we can continue to show value."

What is our primary use case?

One use case was for compliance. The second one was for workload protection, and the third one was for threat hunting in the cloud.

How has it helped my organization?

We are able to meet compliance very easily, and we are able to feel a lot more comfortable with the fact that when we have developers deploying things in the cloud, the right guardrails are in place. 

CloudGuard CNAPP's Cloud Security Posture Management capabilities are top-notch. We use it for misconfiguration and compliance reporting. I would rate it an eight out of ten for that. It is quite good.

We use CloudGuard CNAPP's Workload Protection capabilities. The security that it provides is very good. We like it because we are able to do it in both runtime and with Kubernetes Guardrails.

Threat intelligence is another piece that we use, and it is awesome because it lets us do a lot of threat hunting that we were not able to do before, especially in AWS.

What is most valuable?

The most valuable feature is the ability to work with the APIs to integrate into our own backend systems. 

The threat intelligence is quite unique because we could not find another vendor that had the ability to make all the findings actionable. They have this thing called Event Risk management, and it consolidates things down to make it easy for us to take action on it.

What needs improvement?

The reporting has a lot of opportunities to continuously improve so that we can continue to show value.

I would love to see more ability to automate and integrate into even more systems for automatic remediation.

For how long have I used the solution?

We have been using Check Point CloudGuard CNAPP for three and a half years.

What do I think about the stability of the solution?

It is very rare to have an outage.

What do I think about the scalability of the solution?

It scaled up for us for hundreds of accounts.

How are customer service and support?

They are pretty good, but I wish they had people who are a little bit more knowledgeable at the first level. I would rate them a seven out of ten.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We used Palo Alto's Prisma Cloud. We switched because it did not have the feature sets we were looking for. The price was not very flexible, and we did not get the type of support we needed. It was not like the support that we get from Check Point as our partner.

How was the initial setup?

Its deployment is very straightforward.

What was our ROI?

We definitely got an ROI. I do not have to put as many people as I did before with Prisma Cloud. I need two full-time employees less than Prisma Cloud to work on it.

Which other solutions did I evaluate?

We looked at Wiz, and we looked at Orca. Prisma was our incumbent, but ultimately, we picked Check Point based on the outcomes we were able to get in our proof of concept, and we felt that the support was much better.

What other advice do I have?

I would rate Check Point CloudGuard CNAPP a nine out of ten. It is a pretty awesome product, but there is always room for improvement. I would have rated everything else we tested a six out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Download our free Check Point Cloud Firewall (formerly CloudGuard Network Security) Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2026
Buyer's Guide
Download our free Check Point Cloud Firewall (formerly CloudGuard Network Security) Report and get advice and tips from experienced pros sharing their opinions.