Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard CNAPP vs Netskope comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 6, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Zafran Security
Sponsored
Average Rating
9.6
Reviews Sentiment
8.1
Number of Reviews
3
Ranking in other categories
Vulnerability Management (27th), Continuous Threat Exposure Management (CTEM) (3rd)
Check Point CloudGuard CNAPP
Average Rating
8.6
Reviews Sentiment
7.4
Number of Reviews
71
Ranking in other categories
Vulnerability Management (9th), Cloud and Data Center Security (9th), Container Security (7th), Cloud Workload Protection Platforms (CWPP) (5th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (6th)
Netskope
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
44
Ranking in other categories
Cloud Access Security Brokers (CASB) (4th), Secure Access Service Edge (SASE) (4th)
 

Mindshare comparison

Vulnerability Management
Cloud Access Security Brokers (CASB)
 

Featured Reviews

Israel Cavazos Landini - PeerSpot reviewer
Weekly insights and risk analysis facilitate informed security decisions
I appreciate the weekly insights Zafran provides, which include critical topics for networks and IT security, allowing us to evaluate which insights apply to our environment. The organization score feature is valuable to keep the leadership team updated on how our infrastructure fares security-wise. The applicable risk level versus base risk level feature is beneficial because prior to Zafran, we only used the base risk level, but now understand that risk depends on the asset itself. Zafran is an excellent tool.
Bart Coddens - PeerSpot reviewer
Evolved cloud security with active monitoring but needs interface consistency
The user interface needs work. Sometimes, it is a transition from the old tool to the new CNAPP Two that I currently have, and remnants of the old environment can still be detected. I require consistency in the user interface to ensure everything is streamlined into the same look and feel. More work is needed in fine-tuning the threat data towards your CSPM and activity logs, aligning them with business intelligence, which requires a cohesive console interface. My assessment of CloudGuard CDRs in intrusion detection and threat hunting capabilities is that it still needs some work. All the threat data that comes in, you need to fine tune it a bit.
Yusuf_Hashmi - PeerSpot reviewer
Centralized policy management and real-time protection provide consistent security across locations
The centralized policy management is essential for applying consistent controls across all locations. The cloud enablement feature helps eliminate on-premises infrastructure by adopting Netskope ( /products/netskope-reviews ). For threat detection and prevention, being able to lay down specific granular controls to block uploads to non-approved websites or web apps is very effective. Real-time protection enhances our security posture by providing continuous monitoring and prevention at the endpoints, which is spread across individuals working from various locations.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Zafran is an excellent tool."
"We are able to see the real risk of a vulnerability on our environment with our security tools."
"Zafran has become an indispensable tool in our cybersecurity arsenal."
"The administration portal panel is very intuitive."
"Most of the features are pretty valuable, whether that's a description of the attacks or the attack graph showing the vulnerabilities. If a single tool does all this work, the value is centralizing all these functions on a single tool. These are the cloud-native applications we talk about — containers, Kubernetes, and cloud infrastructure — and all those things are the primary focus of the CNAPP solution."
"Customer service is very good."
"It provides the most useful tools for protecting our financial account records from hackers."
"The cloud security posture management identify the risks that are the most critical to our business. We can define certain key assets that are your crown jewels. And whenever something hits on these crown jewels, you get a very high score. So you can really fine tune towards protecting your risk based assets in the cloud."
"It has an analytics service that does research for us."
"The most valuable feature is the single dashboard that enables us to manage the entire cloud environment from one place."
"The most valuable feature is the CloudBots for auto-remediation of security findings."
"Netskope is a really good product. I cannot segregate which features are the most valuable. We find most of the features to be valuable. It gives us what we are looking for."
"In Azure, we have multiple subscriptions and with every subscription, we add some kind of instance ID. We can work with the instance ID so that we allow all of the instances containing nodules. Everything else, we block. This way, if you go to outlook.com and check your email, if you log in with your company account, the instance ID will show. The network will take action according to the instance ID and say, "You are using the enterprise email. I'll let you surf. I'll let you see your email." But when you try to log in with your own email address, like Hotmail or Gmail, the instance ID will be different. This way we are not completely blocking Outlook, but we are blocking people from accessing their Outlook. We are only allowing the enterprise-level emails, and we are not allowing user-based emails."
"The initial setup of Netskope CASB is easy, it is not complex."
"They are very good at CASB as compared to other players."
"Technical support is pretty good."
"Netskope started with a cloud-first approach, which makes it adaptable to the day-to-day changes that the cloud will generate."
"It has hundreds of features and many of them are useful."
"The product's analytics part is pretty fine."
 

Cons

"Initially, we were somewhat concerned about the scalability of Zafran due to our large asset count and the substantial amount of information we needed to process."
"The reporting dashboard responds slowly, which leads to late report compilation."
"I would like to see improvements in the vulnerability assessments in terms of how the solution discovers vulnerabilities or compromised workloads. Also, customizable reports would be nice."
"The rules are not well-tuned, and many of them generate false positives or nonsensical results."
"We want to be able to customize the solution more in order to meet the needs of our company."
"In Dome9, there should be a policy validation option where we can validate the policy before we push it into production."
"I'd like to see more advanced encryption for local features, which is not present right now."
"Especially with cloud security, there's too much clutter on the screen and too many things going on."
"The biggest thing is the documentation aspect of Dome9 is a little lacking. They were purchased by Check Point about a year and a half to two years ago. When they integrated into Check Point's support system, a lot of the documentation that they had previously got mangled in the transition, e.g., linking to stuff on the Dome9 website that no longer exists. There are still a lot of spaces with incomplete links and stuff that is not as fully explained as it could be."
"Compatibility with other proxy polars would be helpful."
"Accuracy could be improved."
"There should be some granular custom roles that are not available. However, this is on the road map. There are many devices that do not have the Zero Trust feature and other enhancements available which they should have."
"It needed some fine-tuning on core business sites that we used, which were sensitive to what we term a man-in-the-middle certificate by design. Some sites were not tolerant because they presented as potentially malicious. So, we just had to make some tweaks so that it would bypass or interpret it."
"They could add endpoint security features."
"In some cases, when you have a lot of policies, it can get confusing for users and you can get lost in the GUI."
"I would like to see the product improved, especially in monitoring and security monitoring. It should be more effective so we can better identify cloud access and understand how users are accessing it. We need better visibility on security and cloud storage access."
"There could be room for improvement in the subscription process."
 

Pricing and Cost Advice

Information not available
"The price is on the higher end."
"We have the enterprise-level license and we renew it annually because it is worth the cost."
"It is a very straightforward licensing model that is based on the number of assets you are discovering and managing with the solution."
"From a pricing perspective, they are pretty expensive."
"It is difficult to contextualize the pricing because we are used to Indian pricing and licensing."
"Check Point CloudGuard Posture Management is expensive."
"I suggest that you pay attention to the product pricing because while there are no tricks, and the licensing model is transparent, the final numbers may surprise you."
"The pricing is tremendous and super cheap. It is shockingly cheap for what you get out of it. I am happy with that. I hope that doesn't get reported back and they increase the prices. I love the pricing and the licensing makes sense. It is just assets: The more stuff that you have, the more you pay."
"The pricing is very flexible."
"Netskope is a premium service, and its pricing ranges from medium to expensive."
"I wasn't involved in the initial discussions about its cost. However, within the next year, by around June, I'll need to review the vendors' quotes. Typically, our procurement team handles the process by issuing an RFP to vendors to get quotes. From there, we evaluate based on pricing and may conduct a proof of concept to assess value."
"On a scale from one to ten, where one is expensive, and ten is cheap, I rate the solution's pricing a six out of ten."
"I recall that the price was considerably cheaper than that of Zscaler. It was around 60,000 AUD for 1,000 users per year and included some training and some premier support offerings. If we wanted to take advantage of the CASB capabilities, then there was an additional subscription fee, for which we didn't have the budget. On price, I would give Netskope a three or four out of five because it's quite expensive, but it offers a lot of value."
"I would rate the pricing nine out of ten."
"Licensing fees are paid annually."
"The pricing is competitive."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
850,900 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
12%
Manufacturing Company
7%
Government
6%
Computer Software Company
14%
Financial Services Firm
14%
Manufacturing Company
8%
Educational Organization
5%
Computer Software Company
17%
Financial Services Firm
13%
Manufacturing Company
9%
Insurance Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Zafran Security?
I find that the pricing for Zafran aligns well with the comprehensive features it offers. The asset and user-based li...
What needs improvement with Zafran Security?
Zafran is a new startup. Features are continuously being added or improved. 1) Continued integrations with existing (...
What is your primary use case for Zafran Security?
We connect this to our vulnerability scanner as input, our security tools to better determine risk, and our change ma...
Which is better, Zscaler internet access or Netsckope CASB?
We researched Netskope but ultimately chose Zscaler. Netskope is a cloud access security broker that helps identify ...
What do you like most about Netskope CASB?
The product's analytics part is pretty fine.
What is your experience regarding pricing and costs for Netskope CASB?
Netskope is cost-effective compared to similar solutions like Zscaler.
 

Also Known As

No data available
Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
Netskope CASB
 

Overview

 

Sample Customers

Information Not Available
Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
NetApp, Genomic Health, Caterpillar, Apollo, Pandora, Continental Resources, Fractal, infinera, Tesla
Find out what your peers are saying about Wiz, Qualys, Tenable and others in Vulnerability Management. Updated: May 2025.
850,900 professionals have used our research since 2012.