We have many clients using this solution for different use cases.
The solution can be deployed on the cloud and on-premise.
Check Point Harmony Endpoint is mainly used for protection.
We have many clients using this solution for different use cases.
The solution can be deployed on the cloud and on-premise.
Check Point Harmony Endpoint is mainly used for protection.
The most valuable feature of Check Point Harmony Endpoint is centralized management.
Check Point Harmony Endpoint could improve by allowing it to work on older systems by reducing the system requirements. Since our systems are dated we can only use the antivirus module features.
I have been using Check Point Harmony Endpoint for approximately two years.
Check Point Harmony Endpoint is very stable.
The scalability of the Check Point Harmony Endpoint is good. It can scale easily.
We have some clients with 10,000 users that are using this solution.
I have opened up many tickets with the support and they have been responsive. I have not had any problems with them. They have helped whenever I faced a problem.
I rate the support from Check Point Harmony Endpoint a four out of five.
The initial setup of the Check Point Harmony Endpoint is easy. We use the main policy for the installation across the organization.
We have had some problems with connection management because if we install the initial client on the computer, we cannot stop or delete this client or install the full package afterward.
If we have a new signature technical support ticket, they add this signature to the database in three to five days which they could improve.
I rate the initial setup from Check Point Harmony Endpoint a four out of five.
Check Point Harmony Endpoint does not have some features that SentinelOne or CloudStrike has.
I rate Check Point Harmony Endpoint a seven out of ten.
As a financial company, we use the solution to provide security to our CDE environment and compliance with all PCI requirements. This tool enables us to provide security to the endpoints and also, to comply with local and foreign regulations regarding platform security.
We use this solution to protect all our endpoints, including personal computers and mobile phones.
We have deployed the solution in Windows, Linux servers, workstations, and mobile phones.
We also use the web filter capabilities both on mobile phones and on corporate computers.
We now have so many capabilities we did not have before, as follows:
The most valuable aspects include:
We now have the ability to block a compromised machine from the network.
We now have the ability to block in near real-time IOC.
It would also be great to include DLP capabilities for the endpoint so that we do not have to deploy additional agents on servers or PCs or use additional products.
It would also be great to include FIM capabilities for the Endpoint so that we do not have to deploy additional agents on servers or PCs or use additional products.
It would be great if we could have additional DLP capabilities to identify personal information or any kind of information to comply with regulations that require information protection.
I have been using the solution for about three months.
We haven't had any problems or downtime since we acquired the solution. It is stable.
The solution is scalable. It is quite simple to add new endpoints to the solution or add additional features, all with zero downtime.
Customer support and channel support are also always willing to help.
Positive
We have been using McAfee Endpoint protection for about ten years. We were missing so many features and needed additional tools and effort to protect our endpoint.
It took a few minutes to deploy the whole solution.
It was through a vendor. They were experts on the product.
The costs depend on the company size. In my case, I was able to have all the features, including email protection, remote access, mobile protection, and endpoint protection, for a great price.
I evaluated Trend Micro and McAfee.
Check Point Harmony Endpoint is used for protection.
The most valuable feature of Check Point Harmony Endpoint is it can be used for all kinds of endpoints, including mobile phones.
Check Point Harmony Endpoint could improve mobile device management (MDM).
I have been using Check Point Harmony Endpoint for approximately one year.
The stability of Check Point Harmony Endpoint is good.
Check Point Harmony Endpoint is scalable.
The support from Check Point Harmony Endpoint is excellent.
I rate the support from Check Point Harmony Endpoint a five out of five.
The initial setup of Check Point Harmony Endpoint is easy.
For 100 users of Check Point Harmony Endpoint, we only need one person for maintenance.
The price of Check Point Harmony Endpoint is comparable to SonicWall. The price could be a bit lower.
I rate the price of Check Point Harmony Endpoint a four out of five.
I rate Check Point Harmony Endpoint an eight out of ten.
The solution is primarily used to protect us. It's a tool that we have installed on all the users from sales.
Overall, it's a good tool. It's doing a good job for what it is designed for.
It is easy to set up.
The solution is stable.
It's a scalable product as it is a cloud offering.
You can layer in this solution with others. I like layering myself with various technologies, depending on the environment we're working in.
The product offers good pricing.
Everything can always be improved. Specifically, there are gaps when it comes to security.
I've been using the solution for a couple of years now.
If you go by the recommended version, yes, it's stable.
The cloud offering is scalable.
We have about two hundred or more users on the solution.
We're also using Sophos.
The solution is very straightforward to set up. It's not overly complex or difficult.
To set it up from the server-side, the deployment takes a couple of hours. To set it up from the user side, it's a couple of minutes.
The product is reasonably priced. It's not overly expensive.
Currently, we're looking at CrowdStrike. We have not yet bought it. We're currently talking about options. I'm already set with a good partner on it and just discussing right now, discussing what is best suited as a product, rather than pricing.
I am a customer and an end-user.
I'm not sure which version we are using currently, however, it is visible in the portal. The solution is a software as a service.
I'd rate the solution nine out of ten.
The first use case is to detect malware as well as advanced threat protection for known, unknown, and zero-day malware, sandbox emulation and extraction, and enhanced by automated endpoint forensics analysis.
Zero-day attacks are a risk for the company which seemed very important to us, plus the sandbox in the cloud. We have a cloud console that is easy to use and easy to monitor.
The details of our environment are Harmony Endpoint Advanced for 100 on-premise users with cloud managment console, and support for one year.
It has improved the detection of malware. We are very satisfied with the friendly and easy-to-monitor console. We chose the advanced version as it seemed very important to have advanced threat protection for known, unknown, and zero-day malware plus sandbox emulation and extraction, enhanced by automated endpoint forensics analysis.
At the moment we are very satisfied and confident with Check Point.
All of these features quoted below are valuable for us, as the set of solutions is what makes the solution really valuable.
If we had to choose one, we really like the EDR included.
The Check Point Harmony Endpoint is a very complete solution. Even in the most basic version, it already includes EDR, which today is very important and something that all endpoint solutions should consider having from the most basic versions. We would like to have one more step and that's to give and have full-disk encryption.
Compared to other brands, we would like a dedicated anti-spam to be included in order to close the full circle. We could have it with Check Point Endpoint, mobile, cloud, or firewall. An all-in-one console would be great.
I've been using the solution for six months.
The stability has been positive.
The scalability has been positive.
We did not have any problems. We got good solution training
Positive
We did not previously use the solution.
We had a positive experience with the implementation via a vendor.
Our ROI has been positive.
If you need the on-premise management console, you have to pay an additional cost. It's not much, however, it's good to ask for a quote.
We also looked into Sophos.
We primarily use the solution for protecting our endpoints from malware. We've provided features to group the endpoints and apply specific policies by including or excluding them in a certain policy group.
It's great for endpoint security and protection. We are using the VPN feature as well to connect to the corporate network of our organization, which is a good feature. It's used for scanning malware and other malicious files on endpoints which greatly enhances our security posture for endpoints, including Windows and Macs and other operating systems as well.
Check Point Harmony Endpoint benefits a lot to organizations by providing endpoint protection. There is centralized management through the Harmony portal, which is really nice.
It is quite easy to use and deploy the agent on endpoints to protect them from bad actors.
Daily signatures updates are really good and helpful in protecting against zero day vulnerabilities and exploits.
The firewall and application control greatly improves our security posture. End users are unable to install any suspicious or malicious apps in our environment.
The sandblast agent, policies implementation, and logs are quite valuable aspects of the solution.
Threat emulation and anti-exploits are great features to protect the endpoints.
The remote access VPN within the endpoint agent is quite easy to set up and use.
The Harmony portal allows us to do a single sign-on using our active directory which makes the life of admins easy.
Harmony Endpoint scans all website before opening and also scans fields on the website that protects from XSS and CSRF attacks which is really an advanced level feature.
The endpoint scanning tools are quite enhanced and detect most malicious files.
Sometimes the portal loads slowly which should be improved.
There should be an easy option for the administrator to turn off or disable malware protection on a specific asset or computer instead of adding a specific asset in a Disable group as that will make it easy for the admin to disable if and when required for some testing purpose. I would like this feature to be added.
Logs searching also needs to be more quick and enhanced and more metadata should be stored in the logs for Endpoint for a better view for admins.
I've been using the solution for two years.
We were looking for a solution as complete as possible to replace the existing antivirus and, if possible, integrate it with other products that we have, such as the CheckPoint firewall.
We decided to use the Check Point SandBlast agent to prevent ransomware on users' computers.
We subsequently expanded the scope of the solution to detect malicious activity on our network.
It is a very complete product but you have to know how to parameterize it well to avoid high CPU consumption.
It is also missed that it does not have a client for Linux.
Check Point SandBlast Agent allows us to centralize all the security software used in a console and avoid, mainly, ransomware in the company.
Many of our users have laptops to carry out teleworking, with this tool we can secure their web browsing, and in the event of suffering some type of attack, the computer is notified by SandBlast Agent and provides information about it and the security actions carried out. It even allows you to restore files modified during the attack.
You also have the option of performing a forensic analysis of the infected computer by providing a lot of information.
What we liked the most about the product, apart from detecting any attempted attack, is the graphical interface.
The graphical interface is very easy to use and intuitive, which greatly facilitates the work and greatly facilitates the work and the location of threats on the users' computers.
We also highly value the anti-ransomware functionality, which creates a copy of the files on the computers and in case of infection by ransomware is able to restore them to a date when the computer was not infected.
It is a very complete product but you have to know how to parameterize it well to avoid high CPU consumption.
SandBlast Agent had moments in which it had a high load, we escalated it to the CheckPoint support that helped us to stabilize it. We had a problem with the parameterization of the solution. Once corrected by following the CheckPoint instructions, everything worked normally again.
It is also missed that it does not have a Linux client since some administrators use this type of operating system.
I have been using SandBlast for over 1 year now.
It is a very mature product that provides great stability in service.
It is a very mature product with good performance. Currently we have not needed to use its scalability.
Our experience with customer service and support is very good, the support is totally professional and responds quickly.
Positive
Previously, we used third-party antivirus software and switched to Check Point SandBlast Agent for its ease of integration with other Check Point products and to improve protection against ransomware.
Initial setup is easy, policies and user groups are defined and then applied. Then we adjusted the policies until we got what we needed.
We implemented it with an internal team and when we had doubts, we consulted the manufacturer's support with a totally satisfactory result due to their great experience.
Currently we have not quantified our ROI but we have avoided the loss of information on user computers due to viruses, ransomware, ...
The cost of the solution is similar to other products on the market.
We have been evaluating other products, such as Bitdefender and Broadcom (Symantec Enterprise).
It is a very complete product but you have to know how to parameterize it well to avoid high CPU consumption.
It is also missed that it has no client for linux.
I have found the Zero phishing and IPS features the most useful in Check Point Harmony Endpoint. Additionally, threat emulation sandboxing is effective.
The management in Check Point Harmony Endpoint could be improved.
In a future release, the solution could add more threat intelligence features.
I have been using Check Point Harmony Endpoint for approximately three years.
The solution is approximately 80 percent stable. It can have some bugs at times and can show very unexpected behaviors.
The support could improve, there are long wait times, and the agents are not properly trained. The troubleshooting is complex.
There are a lot of complications in the implementation. There are a few bugs and there is not enough documentation.
My advice to others is they need to have Check Point expertise internally, if they don't have any in-house Check Point expertise, I wouldn't recommend this product.
I rate Check Point Harmony Endpoint a six out of ten.
We use the solution for many things. We don't only use it as an Endpoint client for antivirus. It is used for our next-generation antivirus. We are also using Harmony on other things, for example, our email. There's a Harmony email and office solution, which we also are using in order to protect our email.
The fact that everything is centralized is great. For example, the management is centralized on one portal in the cloud.
We like the fact that we have a lot of visibility with this solution and the protection is very good. I have seen cases where customers, get attacked by ransomware and it is very easy for Check Point to restore a file that has been compromised with ransomware. It's 100% effective.
They are developing new technologies. For example, they added SASE to their portfolio with Harmony. They also have Infinity SOC. If one of the Harmony Endpoints gets compromised, Check Point Infinity SOC is going to see it, and it's going to highlight that.
They're on the very edge of technology and are very fast with implementing new technologies.
The solution is very stable.
They have a great knowledge base that you can leverage as a user.
The product scales well.
Technical support is knowledgeable and responsive.
Every now and then, every vendor does have a vulnerability that is discovered. For example, when many vendors were using open SSL, they had to do some fixes on their software in order to fix that particular vulnerability. Check Point was the first one to fix that. It's clear that, unlike the competition, it is always keeping up with the patching of its own software.
We'd like it if the solution continued to add new features. For example, what would be specifically useful to us is a feature that allows threat hunting. They may be already working on that or have something available, however, we need something robust and effective.
I'm not sure if they need to improve anything right now. They are already developing new aspects that are quite innovative.
The only thing that our customers want, is lower prices.
I've been using Check Point for 18 years.
The product is very stable. There are no bugs or glitches. It doesn't crash or freeze. It's reliable.
We have found the solution to be very easy to scale. If you need to expand it you can do so.
They have good technical support. They have very knowledgeable people, depending on the solution. Some specialize in Harmony Endpoint. It's very good.
The initial setup is very easy. The management is on the cloud, and therefore, you practically don't have to do any installation. You only log in and then you begin to use it and you begin to deploy on your network, the endpoints. The time it takes to deploy depends on the size of endpoints you have. With a small network, such as 100 endpoints, you can do it in one day or a couple of hours.
But they are a leader in detecting threat, therefore, it's reasonable that they are a little more expensive than some other competitors. However, customers always want to pay a bit less.
We are a reseller.
My advice to new users would be to reconsider installing administration servers on-premise. The cloud solution can do it. It's going to lower the maintenance costs. Also, if you are on-premises, you often need some sort of expert on-side, whether it's a vendor or someone else - especially if you are upgrading. That requires knowledge. In contrast, on the cloud, everything is done for you. They have a high availability network so that when you upgrade the servers can keep up. You can upgrade without downtime if you choose the cloud.
I would rate the solution at a ten out of ten.
We primarily use it for end-to-end security for endpoints and the co-relation of events from one single console. We have been able to protect our endpoints with Harmony. The user experience is also good and there is not too much to be done with respect to the endpoint changes (the best part). Features like Threat Emulation/Threat Extraction, Antibot, Anti- Exploit, Anti Ransomware protection, UBA, Zero-day Phishing protection, Behavioral Guard, Encryption, VPN, and compliance makes it more powerful and helpful to our security team in order to protect the environment.
Our organization's overall security posture has improved with Harmony Endpoint protection. This has helped to secure against all modern age threats and risks that came in during the pandemic.
During the pandemic, the users, for example, have been forced to work from home and that's been forcing the IT to do overtime to protect the endpoints. After introducing Harmany Endpoint we have seen the incident levels going down to close to zero.
The single dashboard provides complete visibility over endpoint security and the administration can view the actionable tasks to follow up easily without searching across multiple reports/consoles.
All of the available features are good (for example Threat Emulation/Threat Extraction, Antibot, Anti-Exploit, Anti-Ransomware protection, UBA, Zero-day Phishing protection, Behavioral Guard, Encryption, VPN, and compliance), however, the one I have thought to be very valuable is the Ransomware Protection Feature which has been used widely during the pandemic. It protects as well as saves original file copies to prevent data loss.
Forensic Analysis provides a complete analysis of threats via detailed reports. The threat prevention, which includes a detailed threat landscape is very good.
The VPN connectivity and compliance check are also very good features.
Support's service and the response times can be improved. The triaging of the tickets takes a long time and the tickets are only resolved with escalations.
With respect to the product, we feel Endpoint vulnerability management is one of the modules that is missing and it is something that is required. Adding this will strengthen the product and help in taking proactive steps towards protecting the environment.
DLP Module & Patching are required from an endpoint perspective. It would be good to add those in an upcoming release/version.
I've used the solution for more than 6 months.
We have deployed it on the cloud which helps it to be scalable and cost-effective.
We were using multiple solutions to protect the environment in the past. These include solutions such as McAfee, Websence DLP, encryption, etc. however, now it is all happening with this one tool and console
Easy to set up and start using.
A single administrator can manage the complete solution. It's easy to deploy and does not require any additional effort. We're able to have multiple solutions within a single solution.
We implemented the product with the help of our OEM and our in-house team. There were no major challenges during implementation or even in day-to-day operations.
Harmony Endpoint, in terms of the deployment, integration, and setup, costs less than other solutions.
Yes, we evaluated other products as well, however, with respect to feature price and integration availability, we selected this product.
Harmony Endpoint is a good product and scalable with business growth.
