Try our new research platform with insights from 80,000+ expert users

AWS Shield vs Check Point DDoS Protector comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 5, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudflare
Sponsored
Ranking in Distributed Denial-of-Service (DDoS) Protection
1st
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
76
Ranking in other categories
CDN (1st), Managed DNS (1st), Cloud Security Posture Management (CSPM) (13th)
AWS Shield
Ranking in Distributed Denial-of-Service (DDoS) Protection
8th
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Check Point DDoS Protector
Ranking in Distributed Denial-of-Service (DDoS) Protection
20th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
12
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2025, in the Distributed Denial-of-Service (DDoS) Protection category, the mindshare of Cloudflare is 19.7%, up from 18.9% compared to the previous year. The mindshare of AWS Shield is 6.4%, down from 7.6% compared to the previous year. The mindshare of Check Point DDoS Protector is 1.1%, up from 0.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Distributed Denial-of-Service (DDoS) Protection
 

Featured Reviews

Carlos Alam Hernandez Baruch - PeerSpot reviewer
Fast and secure deployments simplify operations for government and fintech clients
It is a fast and secure DNS. It is very easy to deploy, and my customers are happy with this tool. Additionally, the CDN performance in Mexico is excellent, providing fast service and tools. It offers reliability during high-traffic periods, ensuring no impact on the environment. It helps my clients avoid using on-premise boxes, simplifying operations as they only use the prices on Cloudflare.
Manikandan-R - PeerSpot reviewer
Solution provides essential protection with good support and a simple setup
I have noticed a pattern developing in approximately five minutes. If it were possible to provide these patterns with historical data spanning six months, three months, or two months directly from the console, it would be extremely beneficial. It would allow for easy inquiries and facilitate the retrieval of relevant parts without having to manually check logs or examine movements. Instead, if all historical data were available, I could consult six months' worth of identified patterns efficiently through AWS without relying on external sources. This solution is particularly suitable for startups or medium-sized startups. I would rate the overall solution eight out of ten.
Petr Zemánek - PeerSpot reviewer
Protect from DDoS attacks with good management and easy setup
I have used Fortinet FortiDDoS. Fortinet is a little bit cheaper. Both solution was effective. The management of Check Point solution is a little bit better. It is 50 percent cheaper than Fortinet. It's very modern now to have an AI in the management for fast finding of attacks or investigation. Check Point have these features in a new releases.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The features of Cloudflare were found to be more beneficial and led to the decision to utilize it over other options."
"DDoS attacks target unprotected machines. Cloudflare detects and stops these attacks using internal systems. It identifies incoming DDoS attacks, issuing challenges or blocking them immediately."
"The solution is very good at mitigating threats."
"It's very user-friendly."
"I rate its stability a ten out of ten."
"It is a fast and secure DNS."
"The DDoS protection is the most valuable aspect of the solution."
"It is a fast and secure DNS."
"It is integrated with AWS. So, it gives you a good first step."
"I am impressed with the product's multiple features like security."
"The product has a good mechanism to analyze trends and trigger events."
"The product is easy to use."
"It is quite scalable, and we have not faced any issues with its scalability."
"We have integrated the tool with Active Directory. The most important feature is that it's transparent and doesn't degrade the performance of our solution. Additionally, it's easy to configure, which is crucial for us. It's easy to use and set up and stops attacks on our servers. We haven't encountered any attack problems because the solution stops them in real-time. AWS Shield specifically focuses on defending against denial-of-service attacks, making it a great solution for that type of threat."
"The solution's ease of use is the most valuable feature."
"The solution operates smoothly at its baseline level, and we do not encounter any issues at that level."
"One of its most outstanding functions is the zero-day DDOS."
"As our business continues to grow, we can grow this product simultaneously."
"The is a really low level of the false-positive alerts (when the clean traffic is marked as DDoS) due to some advanced techniques used by Check Point under the hood."
"It can be deployed as a hardware appliance, virtual appliance, or as a cloud service."
"This comprehensive tool validates and exploits complex vulnerabilities that other vendors fail to find and resolve to increase security."
"Check Point detects and automatically mitigates attacks, which helps our organization protect our infrastructure."
"Check Point DDoS Protector is a product that uses machine learning and behavior analysis."
"From my experience, the best part of this solution is behavioral DDoS protection. The DDoS Protector can monitor the traffic, and based on the behavior, it can decide which traffic is malicious and which traffic is regular. It works dynamically, and it's a very good solution."
 

Cons

"The solution could be more user-friendly."
"We are a product integrator and reseller, and we would like to have a better partner relationship, similar to a channel sales relationship. Sometimes we are on our own or get diverted by Cloudflare because they have direct sales, which competes with us and makes it difficult to build a relationship with this company since we want to be an MSP or a managed service provider for the solution."
"We're facing challenges due to an upgrade in the machine learning model. The problem arises from some users abusing the APIs, resulting in an influx of suspicious traffic. Cloudflare's learning model mistakenly identifies this traffic as human. Consequently, it assigns it a higher trust score, akin to legitimate human traffic, causing complications in our architecture. Previously, such traffic would have been categorized as suspicious, enabling us to apply appropriate blocking rules. However, we encounter difficulties distinguishing between genuine and suspicious traffic with the new categorization. Despite these challenges, overall, Cloudflare remains the preferred solution compared to Azure, AWS CloudFront, and Google Cloud Armor."
"Cloudflare doesn't have a reverse lookup. We can only do a DNS lookup to get the IP address from the hostname. It doesn't work if you want to look up the hostname from an IPA address."
"DNS Management."
"Integration involving API with other products could be more user-friendly."
"The tool needs to improve caching of servers. The product needs to include PFX certificate as well."
"An integrated SSO feature would be useful for Cloudflare DNS."
"The management of it is a bit hard. If you don't engineer it on the front side, it is hard to go back in and change it. It could be improved in terms of architecture requirements and then ongoing support requirements as a secondary component to it. People tend to set up things like this, and they just expect it to work without the care and feeding that needs to go back into it either from an application team or a network environment team."
"The product is expensive."
"Perhaps the time required to detect anomalies can be reduced."
"The product needs to improve its logs and reports to make it read better."
"Perhaps the time required to detect anomalies can be reduced. Presently, it takes some time to determine whether a situation is normal or abnormal."
"The product should give users more flexibility to customize their security policies according to their requirements."
"The time taken to detect anomalies must be reduced."
"We end up having to pay extra for features that AWS adds that we don't need."
"Monitoring and reporting are the things that can be introduced in the future."
"Check Point should develop a DDoS solution because they don't have one and we need to use another solution, in our case, Imperva. This is a problem because we need to have two firewalls. We would like to only have one solution because it would improve the management, we would have fewer incidents, and we wouldn't need to talk to more than one person for support."
"The solution should greatly improve its interface."
"The product is expensive."
"The public documentation is a detail that must be improved in order to have greater implementations with the best practices in this case of the Check Point manufacturer."
"The mitigation part could be improved."
"For a long time, there was no software version of R80.10 available for the Check Point DDoS Protector software appliances, and we had to stay on the quite outdated R77.30 version."
"I would like applications for Android and IOS where we can follow the events, and, if necessary, make changes."
 

Pricing and Cost Advice

"I give the price a five out of ten."
"In terms of licensing costs, we don't pay for licensing for Cloudflare. We only establish communication, then for peering, Cloudflare takes care of the cross-connection in different data centers."
"When you compare Cloudflare DNS to other solutions, such as Akamai, the price is reasonable."
"The pricing for the service is reasonable, neither excessively cheap nor prohibitively expensive. It aligns well with the value of their solution."
"The product's pricing is minimal compared to other products."
"I believe their performance has improved, but I'd like to refrain from discussing the pricing aspect related to the cloud. The pricing, in my opinion, could be simplified, and I think they should consider reevaluating the pricing for support, as it can be quite high. At times, this cost can make it challenging to choose CARFAGuard or opt for the support."
"There are no additional costs beyond the standard licensing fees."
"The price of the solution is expensive."
"The tool is cheap."
"It depends on your subscription level and the volume that you're spending with AWS. So, it is very relative to the consumption alignment in your subscription level. It is a well-constructed, scalable pricing option, but it is relative to how much you're spending on AWS. Because the more you spend, typically, the more you get off on services like this. I find it to be comparable to other solutions."
"The cost depends on traffic each month, so on average, it costs us between US$200 and US$300 per month."
"We pay $3000 per month for the solution."
"The tool's pricing is good."
"It's an expensive solution. It's one of the most expensive solutions in the world. It's cheaper than Palo Alto and Cisco but these are expensive solutions. Fortinet is cheaper."
"I don't deal with the pricing, but it seems that you need to get basic support in order to upgrade the DDoS database for new attacks and so on."
"The appliance comes with a loaded hardware license, and additional options such as SSL can be purchased and enabled."
report
Use our free recommendation engine to learn which Distributed Denial-of-Service (DDoS) Protection solutions are best for your needs.
865,384 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Comms Service Provider
11%
Financial Services Firm
9%
Manufacturing Company
7%
Financial Services Firm
14%
Computer Software Company
14%
Comms Service Provider
11%
Insurance Company
7%
Comms Service Provider
34%
Manufacturing Company
13%
Educational Organization
7%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Cloudflare. We are moving from Akamai prolexic to Cloudflare. Cloudflare anycast network outperforms Akamai static GR...
Which would you choose - Cloudflare DNS or Quad9?
Cloudflare DNS is a very fast, very reliable public DNS resolver. It is an enterprise-grade authoritative DNS service...
What do you like most about Cloudflare?
Cloudflare offers CDN and DDoS protection. We have the front end, API, and database in how you structure applications.
What do you like most about AWS Shield?
We have integrated the tool with Active Directory. The most important feature is that it's transparent and doesn't de...
What needs improvement with AWS Shield?
Perhaps the time required to detect anomalies can be reduced. Presently, it takes some time to determine whether a si...
What is your primary use case for Check Point DDoS Protector?
The main use case is to protect bank from DDoS attacks. We have it as a service device in network and but it's a comm...
 

Also Known As

Cloudflare DNS
No data available
No data available
 

Overview

 

Sample Customers

Trusted by over 9,000,000 Internet Applications and APIs, including Nasdaq, Zendesk, Crunchbase, Steve Madden, OkCupid, Cisco, Quizlet, Discord and more.
netflix, dow jones, mapbox, pearson, rovio, youview, moviestar planet, asurion, payplug, hour of code
Boston Properties
Find out what your peers are saying about AWS Shield vs. Check Point DDoS Protector and other solutions. Updated: July 2025.
865,384 professionals have used our research since 2012.