Try our new research platform with insights from 80,000+ expert users

Amazon EKS vs Check Point CloudGuard CNAPP comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
3.3
Amazon EKS provides cost-effective cloud solutions with substantial savings, efficient scaling, and dynamic workload management, despite some EC2 cost concerns.
Sentiment score
7.4
Check Point CloudGuard CNAPP automates security tasks, boosting efficiency, reducing costs, and improving compliance management and risk mitigation.
Initially, not having them resulted in an unoptimized solution. However, with these tools in place, we witnessed a reduction of costs by approximately a third—if it was $100 beforehand, we brought costs down to $25.
We have cost explorer available, and a bill forecast based on usage allows us to determine whether resources are underutilized or overutilized.
It's a fast deployment, with very good documentation, and it's really helpful.
The compliance has improved as our overall compliance score against CIS benchmark has improved from around 72 to 92% within the first three months of adoption.
Monitoring cloud security automatically ensures a return on investment.
 

Customer Service

Sentiment score
6.0
Amazon EKS support is responsive and helpful, especially for paid plans, but non-paying users may experience slower response times.
Sentiment score
6.7
Check Point CloudGuard CNAPP customer service is professional with high-level commendations but improvement needed at first-level interactions.
We didn't need to manage etcd and those control management tools; it's totally handled from the AWS side, making it very beneficial.
I believe there should be a recovery solution available for at least a few hours so that we might bring it back.
They will set up a call, guide us, or provide solutions regarding integration with AWS or Amazon EKS.
When I need help or have open questions, or if I require the capability to deploy a quick test environment, there are always people I can contact at Check Point to get my information or the environment as fast as I need it.
I have a dedicated support engineer and a presales engineer dedicated to me.
Customer support for Check Point CloudGuard CNAPP has been responsive and knowledgeable.
 

Scalability Issues

Sentiment score
5.4
Amazon EKS is praised for its scalability, cost efficiency, flexibility, and effective multi-region and resource management capabilities.
Sentiment score
7.8
Check Point CloudGuard CNAPP offers scalable performance across cloud environments, with some users noting cost considerations but praising its capabilities.
The ability to scale based on requirements by deploying additional containers is a strong point for Kubernetes.
This allows us to scale our applications or APIs as needed, offering reliability through the automation of scaling processes.
If any node is not ready, the cluster autoscaler ensures that it is removed from the AWS auto-scaling group and replaces it with a new node in the cluster.
Check Point CloudGuard CNAPP scales efficiently in the multi-cloud environment.
I never had any performance-related issues.
 

Stability Issues

Sentiment score
6.4
Amazon EKS is praised for stability, reliability, and effective AWS support despite minor connectivity challenges, rating 8-10 by users.
Sentiment score
8.2
Check Point CloudGuard CNAPP is reliable and stable with minimal maintenance, despite occasional latency and false positives.
There are multiple availability zones in the regions, meaning no single point of failure.
The control plane is quite stable in Amazon EKS, and I find it to be 100% available.
We haven't faced any challenges, and it consistently delivers on its committed SLA.
If there are errors, it is sometimes challenging to elaborate or troubleshoot since it is not transparent enough to understand what to search for.
It is rapidly evolving, and sometimes mistakes occur, necessitating testing.
 

Room For Improvement

Amazon EKS needs improvements in setup, support, integration, security, and automation to enhance functionality and user experience.
Check Point CloudGuard CNAPP needs improved integration, reporting, and documentation, with enhanced automation and support for multiple cloud environments.
Simplifying these will enable more people, not just those with strong foundational knowledge, to work effectively with these services.
Amazon EKS can be improved by having the maintenance of Kubernetes versions managed better, as everything is handled by the Kubernetes team and possibly a separate team at AWS.
Adding logging would be a valuable improvement.
I need more integration from the code-to-cloud principle.
It would be nice to have periodic updates on what people should do, maybe with some analysis or something.
I require consistency in the user interface to ensure everything is streamlined into the same look and feel.
 

Setup Cost

Amazon EKS offers a scalable, pay-as-you-go model, appealing to enterprises but potentially expensive for startups.
Check Point CloudGuard CNAPP offers flexible licensing and pricing based on managed assets, with costs varying by user perspective.
The EKS service itself is free, but you will incur costs for the VMs used as nodes in that cluster.
If you want to monitor costs effectively, applying separate tools and acting accordingly in advance is essential.
The pricing structure is beneficial for large companies who pay for what they use, but it is not affordable for startups.
In terms of ROI, we can see time savings for audit preparation of at least 30-40%.
It is not cheap, of course, yet it is a necessity.
From a licensing and cost perspective, it is really competitive.
 

Valuable Features

Amazon EKS offers scalable, cost-effective Kubernetes management with security, ideal for cloud-native applications through easy integrations and auto-scaling.
Check Point CloudGuard CNAPP offers comprehensive cloud security with automation, compliance, asset management, and user-friendly dashboards for enhanced protection.
The most beneficial aspect of Amazon EKS is that it helps manage the Kubernetes master node, so I don't need to maintain the master node, including tasks like upgrading.
The main benefits that I received from using Amazon EKS are that it is a managed cluster and offers simplicity.
By default, if you just install Amazon EKS, you can deploy your application, but to have it enterprise-ready, you have to configure a number of other things that will boost productivity.
One of the main reasons we use the solution is that it is great at identifying risks that are critical to our business.
The CDR helps detect anomalous behavior and respond to threats before they become an issue.
Check Point CloudGuard CNAPP offers a unified, modular platform that combines CSPM, CWPP, CIEM, code security, and cloud detection and response.
 

Categories and Ranking

Amazon EKS
Ranking in Container Security
12th
Average Rating
8.4
Reviews Sentiment
6.1
Number of Reviews
90
Ranking in other categories
Container Management (2nd)
Check Point CloudGuard CNAPP
Ranking in Container Security
10th
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
73
Ranking in other categories
Vulnerability Management (10th), Cloud and Data Center Security (8th), Cloud Workload Protection Platforms (CWPP) (6th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (6th), Compliance Management (6th)
 

Mindshare comparison

As of October 2025, in the Container Security category, the mindshare of Amazon EKS is 0.2%, up from 0.1% compared to the previous year. The mindshare of Check Point CloudGuard CNAPP is 1.9%, down from 2.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Container Security Market Share Distribution
ProductMarket Share (%)
Check Point CloudGuard CNAPP1.9%
Amazon EKS0.2%
Other97.9%
Container Security
 

Featured Reviews

Mahesh Dash - PeerSpot reviewer
Has enabled seamless infrastructure configuration while improving identity integration and monitoring capabilities
It has been since 2019 that I started using Amazon EKS. At that time, it was completely new, and many people were not using it just yet; it started from version 1.21, and right now we are on 1.33. Recently, 1.34 has been launched, but it's not yet available in the service catalog; we can see only 1.33. A lot of improvements have been made. We had numerous add-ons to install manually because Kubernetes is a completely different service than AWS cloud provider, and everyone has opted to use it. After opting, there is an identity that you have to maintain—one at Kubernetes level and one at the AWS provider level. You have to maintain one identity at IAM level and one within the cluster, Amazon EKS. A few things do not make sense within the add-ons, many of the secret providers that read the secret from Secrets Manager and then mount it as a volume. We use a service called EBS CSI driver, which reads the secrets or sensitive data from Secrets Manager and then mounts it as a volume to the pod at runtime. However, that doesn't have a dynamic feature where, if any changes happen in the secrets, it can read and populate in the environment. Sometimes consider your RDS password or OpenSearch password rotates. Amazon EKS doesn't have that feature to read the dynamic one and consider that the password has changed overnight; there is no functionality from the provider to see the changes and then restart the pod or fetch the new value. This often leads to downtime of 12 or even 6 hours, depending on when you realize it, so that needs improvement. Nonetheless, mostly on the add-on side, they have developed a lot; earlier we were installing them manually, but now with EKS auto mode, many things VPC CLI and pod identity service—around four plugins—are installed by default, which is a good thing. However, I believe there should be some solution that is self-contained, covering generic use cases. With the 1.33 release, they have addressed most of my earlier concerns, but I am still looking for some improvements, particularly in CloudWatch monitoring. In IT, we manage two aspects: either the system or the application. Currently, the application logs and monitoring are not very robust in CloudWatch; you can only find things if you are familiar with them. Fortunately, we are familiar, as most of the monitoring involves two types of databases: one is a time series for monitoring data, and the other is an indexing solution for a streaming service. This means we need to get the logs from each node, index them, and populate them on a screen. That part remains a separate service, but if they managed it within Amazon EKS service, where the monitoring is consolidated in one place, you wouldn't need to rely on Prometheus, Grafana, or different services. It would be advantageous to have a consolidated platform for EKS, as Kubernetes is leveraged; monitoring and logging should also be integrated simply by enabling parameters or tags. This would create a self-contained platform where people can onboard and start using it. Currently, I still need to enable logging and monitoring among other things myself; that shouldn't be the case after six or seven years in the market. On a scale from 1 to 10, I would rate Amazon EKS tech support an eight. Some individuals have a deep understanding of the services and can identify potential bottlenecks, especially with load balancer endpoints and certificate management. The shift from NGINX to AWS load balancers has diminished many previous issues. However, not every support engineer meets the same level of expertise, hence why I rate it a solid eight, which I consider decent.
Bart Coddens - PeerSpot reviewer
Evolved cloud security with active monitoring but needs interface consistency
The user interface needs work. Sometimes, it is a transition from the old tool to the new CNAPP Two that I currently have, and remnants of the old environment can still be detected. I require consistency in the user interface to ensure everything is streamlined into the same look and feel. More work is needed in fine-tuning the threat data towards your CSPM and activity logs, aligning them with business intelligence, which requires a cohesive console interface. My assessment of CloudGuard CDRs in intrusion detection and threat hunting capabilities is that it still needs some work. All the threat data that comes in, you need to fine tune it a bit.
report
Use our free recommendation engine to learn which Container Security solutions are best for your needs.
869,566 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
21%
Computer Software Company
11%
Insurance Company
7%
Manufacturing Company
6%
Computer Software Company
12%
Financial Services Firm
11%
Manufacturing Company
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business32
Midsize Enterprise18
Large Enterprise38
By reviewers
Company SizeCount
Small Business54
Midsize Enterprise17
Large Enterprise57
 

Questions from the Community

What do you like most about Amazon EKS?
The product's most valuable features are scalability, observability, and performance.
What is your experience regarding pricing and costs for Amazon EKS?
My opinion on the pricing and licensing of Amazon EKS is that it is quite varied, especially when doing projects in the African continent. It's quite expensive considering the local currency with r...
What needs improvement with Amazon EKS?
When we need to deploy the application, we require a large number of instances. Therefore, I hope and believe I will not face out-of-capacity issues in AWS, especially since I have not yet experien...
What is your experience regarding pricing and costs for CloudGuard Workload Protection?
My experience with pricing, setup cost, and licensing is that the pricing model is flexible and consumption-based, which makes it easier to align with our cloud. The setup cost was moderate, not to...
What do you like most about CloudGuard for Cloud Intelligence?
The new scanning function is a valuable feature that wasn't available until recently.
What needs improvement with CloudGuard for Cloud Intelligence?
There is a lack of functionalities and usability. I used to compare it with another solution that is focused on specific features. All solutions have some gaps, and we are looking for the best one ...
 

Also Known As

Amazon Elastic Kubernetes Service
Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
 

Overview

 

Sample Customers

GoDaddy, Pearson, FICO, Intuit, Verizon, Honeywell, Logicworks, RetailMeNot, LogMeIn, Conde Nast, mercari, Trainline, Axway
Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
Find out what your peers are saying about Amazon EKS vs. Check Point CloudGuard CNAPP and other solutions. Updated: September 2025.
869,566 professionals have used our research since 2012.