No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Cloud Firewall (formerly CloudGuard Network Security) vs Stormshield Network Security comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 13, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point Cloud Firewall ...
Ranking in Unified Threat Management (UTM)
4th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
243
Ranking in other categories
Firewalls (8th), Managed Security Services Providers (MSSP) (1st), Vulnerability Management (5th), Software Defined WAN (SD-WAN) Solutions (3rd), Cloud and Data Center Security (3rd), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (5th), WAN Edge (3rd), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (5th)
Stormshield Network Security
Ranking in Unified Threat Management (UTM)
14th
Average Rating
7.8
Reviews Sentiment
5.4
Number of Reviews
18
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Unified Threat Management (UTM) category, the mindshare of Check Point Cloud Firewall (formerly CloudGuard Network Security) is 5.7%, up from 1.8% compared to the previous year. The mindshare of Stormshield Network Security is 3.7%, up from 3.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Unified Threat Management (UTM) Mindshare Distribution
ProductMindshare (%)
Check Point Cloud Firewall (formerly CloudGuard Network Security)5.7%
Stormshield Network Security3.7%
Other90.6%
Unified Threat Management (UTM)
 

Featured Reviews

Oscar Nunez - PeerSpot reviewer
Ingeniero en redes y Telecomunicaciones at K-IT
Centralized management has reduced policy time and provides reliable multitenant protection
What I would like, what I think they should improve a little is the management of objects at large scale. When you work with multiple domains, there are thousands of network objects. Detecting duplicates and consistency across domains is a very manual process that should be more automated. Another thing: the SmartConsole interface is very powerful and very good, but the learning curve, compared to other solutions in the market from other manufacturers, could be modernized. I think it does not necessarily have to be done from a client application; it could be done via web, because via web I know that not all the options you have in SmartConsole are available. So it would be good if it could also be done from the web and all the options were available. Another thing that I would really like is more automation with Ansible or Terraform. I know it has improved in recent versions, but I think it is still not mature enough. Compared to other manufacturers that do have a bit more in terms of automation capabilities in integration flows with Ansible or Terraform, Check Point Cloud Firewall (formerly CloudGuard Network Security) could improve. Another thing that could be improved a little would be the TAC response time, because when there are very complex cases, I think there should be more speed initially, more ownership of those urgent cases, and not leave the customer waiting. This has happened to me: when I have cases open with Check Point Cloud Firewall (formerly CloudGuard Network Security) TAC, sometimes they do not respond and I have to keep insisting, and I think that part should improve. I do not know if it depends on who takes the ticket or on the severity of the ticket, but sometimes I have had to insist a lot, and that would be the only problem. Once they attend to me and become involved in the case, the responses they give are very professional and really help directly resolve the problems when there is a bug or troubleshooting to do. As I said, I would like to see a specific improvement in SmartConsole. I think if they improved it—how to say it—gave it a facelift so you could access all the options directly from a browser, that would be great, because sometimes, for one reason or another, you cannot download SmartConsole or, for some reason, the SmartConsole client does not start correctly, and you could do it directly from the browser. I think that would be a good option to improve. Another thing would be that in multidomain environments, I would like a global search function for objects and rules. That is, you could enter and search across all domains at once, because right now you have to go domain by domain, and in environments with many customers, you spend quite a bit of time; you have to exit one domain and enter another. So those would be the improvements I would like to see.
Zsolt Jónás - PeerSpot reviewer
System Administrator at NaxoNet
Advanced GUI and layered security have supported compliance and simplified intrusion prevention
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability solution would be beneficial because currently, if you build a high availability solution with Stormshield Network Security, you have a main device and another one is a backup device. The HA can switch between them, but it would be good to have a master-master solution, not just a master-slave one. I could set a URL that I can call to update the DNS record. Currently, Stormshield Network Security devices support DynDNS, which is not a usual feature request from a server environment. I have my own solution instead of DynDNS because I don't prefer it, so I have my own service for that. However, the GUI does not support using a custom service instead of DynDNS. I had to solve it in the console on Stormshield Network Security device, but it would be much better if it was reachable on the GUI. I had to figure out a trick for the IPsec configuration. In the IPsec config, we have to provide the remote side's IP address, but it's always changing. This means that an office, for example a company that has an office but without a fixed IP address, cannot be used with IPsec VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The main benefit of the Check Point Virtual Systems solution is its ability to split up the hardware appliances that we have into several logical, virtual devices with separate traffic handling policies, as well as the switching and routing."
"Dome9 has improved our organization in the way that we have a centralized view of all of our assets, our visible assets, our ECs, our inventories, and then all the policies are centralized and it is easier to manage because everything is one component console."
"Check Point has pretty simple solutions, like the virtual appliance which you just download and it is imported into VMware and you just start using it."
"The ease of administration with the cloud management extension and the cloud licensing model is valuable."
"The technical support is excellent and they always responded when we had an issue."
"It makes my life easier. I have on-prem and cloud firewalls. I can use the same policies in both places."
"The complexity managed by Check Point developers is amazing."
"Some retail customers find the scale-up and scale-down features valuable, particularly with scale sets. This is useful for handling increased loads on devices and utilizing firewalls, similar to on-premises setups with active standby configurations."
"Ease of use is the best feature of the product."
"The scalability of the solution is good."
"The StormShield solution has enabled us to fully implement best practices from Microsoft in the cloud : the hub and spoke architecture."
"The most valuable features of this solution are the URL filtering database, which is great and contains all internet categories, the highly scalable interface that I can turn into what I want including hybrid, bridge, or router mode, the security with no back doors that is more secure than other solutions, and the hardware performance that is also better than others."
"Fortinet, Dell SonicWall and Check Point because these products offer a wide range of features that are not available with Netasq."
"A very robust product."
"The tool's most valuable feature is its dashboard, which helps you manage different aspects of a single page."
"Stormshield is a very strong firewall and very easy to configure and maintain."
 

Cons

"Greater automation would reduce the need for manual configuration and management."
"The initial setup is complex and could be made simpler."
"Stability wise the product is stable but we had issues when we had really old hardware that had a less than stable OS."
"Check Point CloudGuard Network Security could be improved by enhancing its user interface, simplifying policy management, and expanding third-party integrations."
"We want to be able to customize the solution more in order to meet the needs of our company."
"Dome9 is very scalable, although as it scales it can become quite costly."
"When rules change, it messes up the remediation. They haven't found a fix for that yet. The remediation rule goes into limbo. It's an architectural design flaw within their end compliance engine—a serious bug."
"I'm quite satisfied with the solution. I don't have any notes for improvements."
"Stormshield Network Security is quite expensive."
"The biggest issue was their support department was not able to help us, then everything stops. This is a no-go area for me."
"The main area of this product that has room for improvement is pricing. Stormshield Network Security is quite expensive."
"The filtering configuration could be better. We have some difficulties with the filtering configuration and the filter extension. It's not that easy. It's not that straightforward. In the next release, I would like to see a reporting system. Stormshield doesn't have any tutorials on how to do the configuration and things like that. They just have documentation on the website. If you want to configure, for example, Cisco or Fortinet, you can find tutorials on YouTube. They show you how to configure the features, and so on. In Stormshield, there is nothing on social media or the internet on how to configure different things. The lack of documentation or the lack of material makes it difficult for others to adopt this solution."
"I don’t recommend this product at all."
"Support is always an issue because they're constantly busy."
"With Stormshield, there are difficulties joining things, and it can be complex depending on the architecture."
"The SD card could be more secure."
 

Pricing and Cost Advice

"The solution's licensing is based on the number of users of the VMs. We follow a pay-as-you-go model. Its pricing is competitive."
"The tool's pricing is not cheap."
"I would advise taking into account the existing number of devices and add a forecast of the number of devices to be added in the coming year or two, to obtain better pricing."
"The tool's monthly costs have undergone a significant reduction, dropping from approximately 12,000 euros to around 4,000. This represents a cost reduction of over 60 percent. However, it's essential to note that while costs decreased in some areas, they increased in others due to shifts in our environment. As our overall environment has grown, currently connecting 50 accounts to the cloud, it's challenging to directly compare costs with the state of our setup three years ago."
"We got discounts on pricing."
"Check Point CloudGuard Network Security's pricing is far better than Palo Alto's because Palo Alto is very expensive."
"Everything in this field is very expensive."
"In the beginning, the price of Dome9 was cheap, whereas now it is not."
"The SN200 series costs between $500 USD and $600 USD per year, whereas the SN700 series costs approximately $1,000 annually."
"We chose Stormshield for its price, as the Azure firewall was too expensive."
"For mid-sized companies, they sell their appliances for good prices."
"We bought a three-year license, and we renew it whenever it expires. The price could be better. It's always very expensive."
"The price of this solution and the price of support are ok."
"I think the price is good."
"The pricing could be better."
report
Use our free recommendation engine to learn which Unified Threat Management (UTM) solutions are best for your needs.
911,769 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
14%
Outsourcing Company
14%
Financial Services Firm
9%
Manufacturing Company
8%
Comms Service Provider
15%
Manufacturing Company
12%
Construction Company
10%
Computer Software Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business132
Midsize Enterprise53
Large Enterprise142
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

What is your experience regarding pricing and costs for Check Point CloudGuard Network Security?
Since we use a unified standard for using policies and modules in Check Point Cloud Firewall (formerly CloudGuard Network Security), we can clearly plan which modules we need to activate on a parti...
What needs improvement with Check Point CloudGuard Network Security?
The main limitations of Check Point Cloud Firewall (formerly CloudGuard Network Security) are not in Check Point itself but in the cloud platforms on which it is deployed. Because not all clouds ha...
What is your primary use case for Check Point CloudGuard Network Security?
Check Point Cloud Firewall (formerly CloudGuard Network Security) is the main manager that provides network security in different forms in my organization. The primary task that Check Point solves ...
What needs improvement with Stormshield Network Security?
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability solution would be beneficial because currently, if you build a high availability so...
What is your primary use case for Stormshield Network Security?
I already use Stormshield Network Security, and I am now looking for a new solution. I am already working with Stormshield Network Security, and the official reseller of Stormshield.
What advice do you have for others considering Stormshield Network Security?
The pricing is increasing, and I would say it is a bit expensive. Palo Alto and others are much more expensive, but Stormshield Network Security is also not inexpensive. My overall review rating fo...
 

Also Known As

CloudGuard IaaS, Check Point vSEC, CloudGuard IaaS, Check Point Virtual Systems, Check Point CloudGuard Network Security, Check Point CloudGuard CNAPP
NETASQ Firewalls
 

Overview

 

Sample Customers

Physicians Choice Laboratory Services, Helvetica Insurance
ACESUR group, Ministry of Education Oman, Anios Laboratories, Zain, DLM Location
Find out what your peers are saying about Check Point Cloud Firewall (formerly CloudGuard Network Security) vs. Stormshield Network Security and other solutions. Updated: August 2026.
911,769 professionals have used our research since 2012.