


Check Point Cloud Firewall and NodeZero Platform by Horizon3.ai compete in the cloud security sector, with Check Point focusing on robust firewall capabilities and Horizon3.ai excelling in automated pentesting. Based on user feedback, NodeZero Platform may have the upper hand due to its innovative approach to real-time threat detection and remediation.
Features: Check Point Cloud Firewall stands out for its advanced threat prevention, consistent security across hybrid environments, and extensive integration capabilities. Its unified security management across cloud and on-premises systems is highly beneficial. NodeZero Platform by Horizon3.ai focuses on real-time vulnerability remediation, automated pentesting, attack simulation, and threat detection, allowing users to verify security fixes instantly and effectively.
Room for Improvement: Check Point could improve integration with additional environment layers, pricing models, API and AD integration, and streamline its documentation and support. Horizon3.ai could enhance user customization and reporting flexibility, streamline threat intelligence updates, and integrate web application testing and third-party security tools.
Ease of Deployment and Customer Service: Check Point is lauded for its reliable integration across hybrid clouds and responsive technical support, although region-dependent variability is noted. NodeZero Platform offers seamless deployment and user-friendly setup with minimal manual configuration, supported by proactive and knowledgeable customer service.
Pricing and ROI: Check Point offers competitive pricing for its features, but some users feel it could be more cost-effective compared to next-gen firewalls like Palo Alto. Its licensing is scalable and flexible, though clarity could improve market reach. NodeZero Platform presents a cost-effective alternative to traditional pentesting, providing favorable ROI due to reduced vulnerability management time and enhanced risk mitigation.
It has saved about 90% of our time.
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
CallStream helps us integrate and automate tasks.
The value lies in maintaining operational integrity with zero downtime or incidents, facilitating secure, ongoing business operations.
The compliance has improved as our overall compliance score against CIS benchmark has improved from around 72 to 92% within the first three months of adoption.
This helped my team cut manual review time by roughly twenty to twenty-five percent, allowing me to reallocate effort to proactive cloud security improvements.
A reduction in remediation time has been seen because it is finding things before they happen.
Being able to find them because there have been no eyes on that particular section so far ever, and fixing those potentially prevented those companies from getting breached.
So far, I have seen a return on investment with The NodeZero Platform by Horizon3.ai, as we managed to save a lot of time and effort with this because this is an autonomous tool, and our manual effort is significantly reduced because of a product of this type.
They are helpful, respond to my queries, and can answer any question.
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
They usually respond quite fast, and they are very knowledgeable about what they do.
We had an endless loop of emails trying to fix this, and the suggestion was to reinstall the gateway and do it from scratch, which was not an option at that point because it would leave that specific location without access.
Available twenty-four by seven.
Overall, when it comes to The NodeZero Platform's tech support, you can reach them via a chat message on their website, and they respond almost immediately.
Previously, with time-sensitive engagements, I would worry about resolving issues before deadlines. That concern has diminished as they've become more responsive and require less escalation to engineering.
The vast majority of times they are able to resolve the exact questions my team has on the first attempt, which is really good for customer or technical support.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
Our organization currently uses it to manage over 1200 web applications.
It is absolutely scalable, and I would rate its scalability as nine out of ten.
Visibility scales without performance issues as my environment expands.
It is capable of managing the increased load and performs well as our needs expand.
I can deploy it everywhere I need it.
We have conducted pen tests in environments with hundreds of thousands of IP addresses without any scalability issues.
We currently scan approximately 1,500-2,000 assets and haven't encountered any scaling or throughput issues.
The platform offers various insider threats, segmentation tests, phishing tests, and PCI DSS tests.
Overall, the support provided has been excellent.
It is a stable solution, which is why we chose it.
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
If there are errors, it is sometimes challenging to elaborate or troubleshoot since it is not transparent enough to understand what to search for.
I have not observed any downtime.
For instance, when we are working on a release and do an upgrade, we start experiencing unexpected issues.
We have not encountered any issues on the platform regarding accessibility, performance, or stability.
Regarding stability, it has never crashed, and there has not been any lagging from deployment or running.
I would rate the stability of The NodeZero Platform by Horizon3.ai as a ten.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
Scalability could be improved as well; needing to purchase a new license each time I want to add a new interface is not ideal.
Better documentation would be welcome.
The user interface could be more intuitive, and the initial setup and configuration can be complex, requiring a technical team.
This service reveals which credentials and email addresses are available on the deep web, as well as which domains have been set up using typo-squatting techniques.
The one thing that is very much asked from us as a service provider is DAST testing, so when a company is building a software, they could see their current security status while they are building the application.
If that pen test could be load balanced on more than one system, I believe The NodeZero Platform by Horizon3.ai could leverage that system and complete penetration tests in a much quicker time frame, providing quicker results to customers.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
The pricing and licensing are expensive, costing between seven thousand to eight thousand dollars.
Check Point is expensive, however, with the features and capabilities, I can justify the cost.
It is the highest in the market.
The pricing is much more affordable than traditional penetration tests.
It's a bit cheaper than manual penetration testing because manual testing typically allows you to scan only a few subnets.
Usually, manual penetration test scans take considerable time and money.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
One of the most valuable features is the automated threat prevention, which helps us detect and block potential cyberattacks in real-time, minimizing data breaches.
Centralized management is the feature I like best, resulting in reduced workload and more continuous policy.
Network Security provides us with unified security management across hybrid and cloud as well as on-prem.
When a new vulnerability, such as a zero-day exploit, is identified, they review your previous scans to determine if you might be vulnerable to it, and they proactively notify you.
The detailed reports not only list the vulnerabilities that matter, but they also include direct links to patches.
The NodeZero Platform's real attack capabilities help in identifying vulnerabilities on our on-prem systems because it provides actual vulnerabilities by attacking our systems.
| Product | Mindshare (%) |
|---|---|
| Check Point Cloud Firewall (formerly CloudGuard Network Security) | 1.2% |
| The NodeZero Platform by Horizon3.ai | 1.3% |
| Qualys TotalCloud | 1.2% |
| Other | 96.3% |

| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 5 |
| Large Enterprise | 31 |
| Company Size | Count |
|---|---|
| Small Business | 132 |
| Midsize Enterprise | 55 |
| Large Enterprise | 139 |
| Company Size | Count |
|---|---|
| Small Business | 14 |
| Midsize Enterprise | 5 |
| Large Enterprise | 9 |
Qualys TotalCloud enhances security posture across cloud environments with continuous monitoring, vulnerability management, and risk visualization, ensuring efficient threat assessment and automated remediation for improved cyber risk reduction.
Qualys TotalCloud offers a robust suite of security tools essential for organizations managing multi-cloud infrastructures. By integrating cloud accounts and automating workflows, it supports AWS, Azure, and GCP, offering comprehensive vulnerability management and zero-day detection. The platform's user-friendly design, combined with its extensive risk management and unified threat assessment capabilities, enables organizations to prioritize and remediate vulnerabilities effectively. TruRisk Insights provides clear insights on cyber risks, while the automation options streamline patch management and scanning processes. API integration across IaaS and SaaS environments further enhances resource allocation efficiency and saves time, addressing misconfigurations across cloud environments.
What are the most important features of Qualys TotalCloud?Qualys TotalCloud is deployed in sectors needing rigorous vulnerability management, such as finance and healthcare. Companies utilize it to secure multi-cloud environments like AWS, Azure, and GCP, focus on compliance, and integrate security into CI/CD pipelines to detect and remedy threats pre-deployment.
Check Point Cloud Firewall, previously known as CloudGuard Network Security, provides advanced threat prevention, centralized management, and VPN capabilities, enabling robust cloud security across various platforms including Azure and AWS.
Check Point Cloud Firewall delivers seamless cloud integration with advanced automated threat prevention and centralized management to enhance security posture. It offers auto-scaling for dynamic environments and a comprehensive policy enforcement framework in hybrid settings. The unified interface streamlines administration across cloud infrastructures, ensuring consistent protection and reducing risk.
What important features does it offer?In manufacturing and conglomerate sectors, Check Point Cloud Firewall is utilized for protecting cloud environments and implementing network segmentation. It supports secure cloud migration on AWS, Azure, and GCP, ensuring compliance, perimeter defense, and traffic inspection, facilitating sophisticated threat prevention strategies.
NodeZero by Horizon3.ai is an offensive security platform that enables users to adopt an attacker’s perspective, reveal vulnerabilities, and verify defense effectiveness with evidence-backed insights.
NodeZero provides autonomous pentesting, showing how attackers exploit misconfigurations, credentials, and exposures into attack paths. It helps focus on real risks rather than hypothetical ones, integrating seamlessly into existing IT and security workflows to streamline processes. The platform drives risk-based vulnerability management and CTEM by validating vulnerabilities and measuring resilience.
What standout features improve your security?
What benefits should you expect from reviews?
NodeZero assists in automated penetration testing and vulnerability management in industries like finance and healthcare. It enhances security processes by complementing or replacing existing solutions, enabling efficient testing, feedback, and control validation.
We monitor all Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.