Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard CNAPP vs Symantec Data Center Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 14, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point CloudGuard CNAPP
Ranking in Cloud and Data Center Security
9th
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
71
Ranking in other categories
Vulnerability Management (9th), Container Security (7th), Cloud Workload Protection Platforms (CWPP) (6th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (6th)
Symantec Data Center Security
Ranking in Cloud and Data Center Security
11th
Average Rating
7.6
Reviews Sentiment
5.0
Number of Reviews
11
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2025, in the Cloud and Data Center Security category, the mindshare of Check Point CloudGuard CNAPP is 1.0%, up from 0.5% compared to the previous year. The mindshare of Symantec Data Center Security is 1.5%, down from 3.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud and Data Center Security
 

Featured Reviews

Bart Coddens - PeerSpot reviewer
Evolved cloud security with active monitoring but needs interface consistency
The user interface needs work. Sometimes, it is a transition from the old tool to the new CNAPP Two that I currently have, and remnants of the old environment can still be detected. I require consistency in the user interface to ensure everything is streamlined into the same look and feel. More work is needed in fine-tuning the threat data towards your CSPM and activity logs, aligning them with business intelligence, which requires a cohesive console interface. My assessment of CloudGuard CDRs in intrusion detection and threat hunting capabilities is that it still needs some work. All the threat data that comes in, you need to fine tune it a bit.
Atul-Vats - PeerSpot reviewer
Offers a complete system lockdown feature and the ability to restrict users but has a complex policy structure
The negative aspect of that particular product is the fact it has a very, very, very complex policy structure. A user or administrator making the policy in the DCS should have a very thorough knowledge of the operating system or policy making. You have to be very specific about the data structure. If you want to secure a Linux server, an administrator should be very confident about how the directory structure of Linux, how Linux works, and where it puts the important logs. You have to be very cautious about the complete path, and you have to write it over there in the policy part. If you are not very specific, there will be a lot of noise in the system. You're going to receive thousands of events that are false positives. The fine-tuning of the policy is a very complex thing in the DCS itself. Another negative aspect that I have observed is if the product gets installed on the kernel level of any non-Windows server, it has some issues, comparability issues. Sometimes the product doesn't work properly, so it shuts down the machine and crashes the system. There are many cases in which I've observed the DCS crashing the system.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The ability to integrate it with Microsoft Azure Sentinel allows us to validate the logs in an even more complex and meaningful way."
"Dome9 wraps our FTP infrastructure with its network security configurations, and this also gives us the ability to monitor FTP activity."
"My overall product rating is ten out of ten."
"It presents a real-time database that is always updated."
"Assets Management as it provide complete visibility of our workload inkling EC2 instance or Serverless"
"This platform has allowed us to collect data from multiple sources, centralizing everything under a single source."
"The dashboard is intuitive. You know if you're compliant or not, and then it gives you a remediation plan."
"The most valuable feature is posture management, which gives you complete visibility of all your assets in the cloud and allows you to do governance and compliance."
"The ability to finely control permissions and restrictions on servers or assets through a customizable rule set is a key strength."
"The granularity of applying the policies is valuable."
"The most valuable feature is the endpoint protection system."
"The advantage of Data Center Security is its ease of use and that it serves as a single unified platform, where I can apply all my security policies to protect that server."
"The real strength lies in its straightforward approach, offering just two key policies: prevention and detection."
"The console and tools are very user-friendly."
"We use the product to prevent unauthorized access to data, systems, and servers. It provides essential features for data center security."
"The most valuable feature is the centralized console, which can handle different products that we have."
 

Cons

"When rules change, it messes up the remediation. They haven't found a fix for that yet. The remediation rule goes into limbo. It's an architectural design flaw within their end compliance engine—a serious bug."
"No improvements are needed."
"Scalability, particularly in workload protection, is an area that needs improvement."
"The main issue that we found with Dome9 is that we have a default rule set with better recommendations that we want to use. So, you do a clone of that rule set, then you do some tweaks and customizations, but there is a problem. When they activate the default rule set with the recommendations and new security measures, it doesn't apply the new security measures to your clones profile. Therefore, you need to clone the profile again. We are already writing a report to Check Point."
"The reporting has a lot of opportunities to continuously improve so that we can continue to show value."
"I would like to see some AI on the back-end, just to assist with doing analysis and making recommendations."
"In Dome9, there should be a policy validation option where we can validate the policy before we push it into production."
"The price of this solution should be reduced so that it is more affordable to scale."
"They need to develop a more flexible product that can be scaled such that it fits well into a small business or a bigger, enterprise-level solution."
"It would be advantageous if Symantec or Broadcom, given the rebranding, could simplify the process, enabling users to leverage the antivirus functionality more easily."
"There is room for improvement in enhancing its graphical user interface for a more user-friendly experience."
"The product blocks certain processes, even after allowlisting them."
"The support is very bad. They're not fast at all. Trend Micro's support is much better."
"Could have better reporting capabilities and better support."
"There is plenty of room for improvement with this product, and it could start with platform metrics."
"This solution clashes with Microsoft defender, which results in performance degradation on the machine."
 

Pricing and Cost Advice

"I suggest that you pay attention to the product pricing because while there are no tricks, and the licensing model is transparent, the final numbers may surprise you."
"Its price is very fair."
"I would advise taking into account the existing number of devices and add a forecast of the number of devices to be added in the coming year or two, to obtain better pricing."
"We have the enterprise-level license and we renew it annually because it is worth the cost."
"It is difficult to contextualize the pricing because we are used to Indian pricing and licensing."
"The licensing part still needs some work. The issue that I have is that we do not use all the services in the cloud, but sometimes, CloudGuard identifies them as an asset."
"Right now, we have licenses on 500 machines, and they are not cheap."
"Licensing and costs are straightforward, as they have a baseline of 100 workloads within one license and no additional charges."
"Compared to some other solutions, such as CrowdStrike, Symantec is more expensive."
"It is notably more expensive when compared to other solutions."
"The product is a bit costly."
report
Use our free recommendation engine to learn which Cloud and Data Center Security solutions are best for your needs.
849,963 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
8%
Educational Organization
5%
Manufacturing Company
20%
Computer Software Company
15%
Financial Services Firm
15%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Symantec Data Center Security?
The granularity of applying the policies is valuable.
What needs improvement with Symantec Data Center Security?
Agent management is a challenging task. We cannot do it from the console. We will have to use other tools.
What is your primary use case for Symantec Data Center Security?
One key use case for data center security is protecting files within the data center. This is especially important for Linux systems, where locking down specific files is essential to prevent unaut...
 

Also Known As

Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
No data available
 

Overview

 

Sample Customers

Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
Information Not Available
Find out what your peers are saying about Check Point CloudGuard CNAPP vs. Symantec Data Center Security and other solutions. Updated: April 2025.
849,963 professionals have used our research since 2012.