Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard CNAPP vs Prisma Cloud by Palo Alto Networks vs Threat Stack Cloud Security Platform [EOL] comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.3
Check Point CloudGuard CNAPP improves security, efficiency, and ROI by reducing risks, staffing needs, and compliance issues from deployment.
Sentiment score
7.3
Prisma Cloud enhances security and efficiency, reducing risks and response times, offering significant value despite initial costs.
Sentiment score
7.3
Threat Stack Cloud Security boosted compliance and revenue, reduced staffing needs, enhanced security, and expanded infrastructure dramatically.
Monitoring cloud security automatically ensures a return on investment.
It eliminates the need for additional hardware, making it a financially and technically sound investment.
Reputation and data security are the two most important things to a financial institution.
We may have prevented a security breach with remediation of the findings.
 

Customer Service

Sentiment score
6.8
Check Point CloudGuard CNAPP support is engaged and knowledgeable, though initial contact and documentation could improve, generally reliable.
Sentiment score
7.1
Prisma Cloud support is praised for responsiveness, though some report slow responses and varying support quality across regions.
Sentiment score
7.4
Threat Stack Cloud Security Platform's support is praised for responsiveness, precise solutions, and effective communication with technical representatives.
When I need help or have open questions, or if I require the capability to deploy a quick test environment, there are always people I can contact at Check Point to get my information or the environment as fast as I need it.
I have a dedicated support engineer and a presales engineer dedicated to me.
Whenever I have issues with the solution, I will get an immediate response from the product team and they will try to close the issue as soon as possible.
When you send them a message, you get a response in a minute or two.
They can respond with technical documentation or pass on the case to the next level because it requires the development of a new feature or changing a feature due to a bug.
 

Scalability Issues

Sentiment score
7.8
Check Point CloudGuard CNAPP scales well, supporting multi-cloud setups, but requires careful licensing management and cost consideration.
Sentiment score
7.8
Prisma Cloud scales well across environments, integrates seamlessly, and automates operations, though costs rise with increased licenses.
Sentiment score
8.2
Threat Stack Cloud Security Platform is scalable, easy to deploy, and efficient across AWS accounts, with minor configuration concerns.
I never had any performance-related issues.
It's very scalable and very easy to use.
I am highly impressed with the product's scalability.
It's scalable.
 

Stability Issues

Sentiment score
8.2
Check Point CloudGuard CNAPP is praised for high stability, efficient cloud management, and swift issue resolution despite rare latency.
Sentiment score
8.0
Prisma Cloud offers reliable performance and stability, effectively handling environments with rare interruptions and quickly resolved issues.
Sentiment score
7.5
Threat Stack Cloud Security Platform [EOL] is stable and efficient, with minor GUI and agent issues for some users.
If there are errors, it is sometimes challenging to elaborate or troubleshoot since it is not transparent enough to understand what to search for.
It is rapidly evolving, and sometimes mistakes occur, necessitating testing.
I cannot recall any downtime with the solution.
I would rate it a ten out of ten for stability.
Prisma Cloud is stable.
 

Room For Improvement

Check Point CloudGuard CNAPP needs enhanced integration, features, usability, and communication to improve user experience and functionality.
Prisma Cloud needs improvements in documentation, UI, automation, integrations, pricing, and support, with challenges in compliance and cloud support.
Threat Stack Cloud Security Platform needs UI improvements, better API alignment, and enhanced integrations, especially for serverless and container environments.
I need more integration from the code-to-cloud principle.
It would be nice to have periodic updates on what people should do, maybe with some analysis or something.
I require consistency in the user interface to ensure everything is streamlined into the same look and feel.
From a developer's perspective, especially for organizations like banks developing their applications, ensuring API security before deploying them to the cloud is crucial.
Prisma Cloud is an excellent tool.
Even though documentation was available, it took a while for a new person to understand what integration meant, what will be achieved after the integration, or how the integration needed to be done on the Azure or AWS side.
 

Setup Cost

Check Point CloudGuard CNAPP provides flexible licensing, transparent pricing, and affordable setup for enterprises needing robust cloud security solutions.
Prisma Cloud is expensive but valued for comprehensive security, flexible licensing, and potential cost savings in multi-cloud environments.
Threat Stack Cloud Security Platform offers value with transparent pricing, ranging $15-$20 monthly, seen as competitively priced by users.
It is not cheap, of course, yet it is a necessity.
From a licensing and cost perspective, it is really competitive.
The cost was not on the higher side.
That's why a lot of our clients are shifting from cloud-native to Prisma Cloud: because of its effectiveness and because it is budget-friendly as well.
The solution is very expensive.
 

Valuable Features

Check Point CloudGuard CNAPP provides robust cloud security with compliance, access management, machine learning, and multi-platform integration features.
Prisma Cloud enhances security with dynamic identity creation, compliance management, and integration across AWS and CI/CD pipelines.
Threat Stack Cloud Security platform is esteemed for its configurability, integration, monitoring capabilities, and effective alert management.
One of the main reasons we use the solution is that it is great at identifying risks that are critical to our business.
The CDR helps detect anomalous behavior and respond to threats before they become an issue.
Detecting misconfigurations in the cloud is what the CSPM delivers.
Identifying misconfigurations and vulnerabilities at the first stage itself will help the organization save time and money - which is highly appreciated.
I have one example of a threat that Prisma proactively prevented. In 2021, Prisma discovered and resolved a Log4J vulnerability shortly after it was introduced.
CSPM can audit the current cloud configuration, identify misconfigurations, and assess risk.
 

Featured Reviews

Bart Coddens - PeerSpot reviewer
Evolved cloud security with active monitoring but needs interface consistency
The user interface needs work. Sometimes, it is a transition from the old tool to the new CNAPP Two that I currently have, and remnants of the old environment can still be detected. I require consistency in the user interface to ensure everything is streamlined into the same look and feel. More work is needed in fine-tuning the threat data towards your CSPM and activity logs, aligning them with business intelligence, which requires a cohesive console interface. My assessment of CloudGuard CDRs in intrusion detection and threat hunting capabilities is that it still needs some work. All the threat data that comes in, you need to fine tune it a bit.
Mohammad Qaw - PeerSpot reviewer
It gives you one console to see all of your assets, review their configurations, and build your processes
Most customers use Prisma Cloud for visibility and compliance. Prisma has so many features, but many organizations do not use them. They primarily use the visibility part to connect all their cloud accounts and hosts for visibility to see if they are missing any security controls or if they have any misconfigurations. You can connect it to cloud environments such as Azure, AWS, Oracle Cloud, Alibaba, etc., or to an on-prem data center. Prisma Cloud gives you so many options to automate processes related to your daily operations. When it comes to cybersecurity, you can automate things with their existing APIs. They also have out-of-the-box integrations with many solutions. I have not seen any limitations. Everything is customizable. You can do whatever you want, defining the reporting and custom use cases. They recently updated the UI, so it's much better than before.
SC
SecOps program for us, as a smaller company, is amazing; they know what to look for
They could give a few more insights into security groups and recommendations on how to be more effective. That's getting more into the AWS environment, specifically. I'm not sure if that's Threat Stack's plan or not, but I would like them to help us be efficient about how we're setting up security groups. They could recommend separation of VPCs and the like - really dig into our architecture. I haven't seen a whole lot of that and I think that's something that, right off the bat, could have made us smarter. Even as part of the SecOps Program, that could be helpful; a quick analysis. They're analyzing our whole infrastructure and saying, "You have one VPC and that doesn't make a lot of sense, that should be multiple VPCs and here's why." The architecture of the servers in whatever cloud-hosting provider you're on could be helpful. Other than that, they should continue to expand on their notifications and on what's a vulnerability. They do a great job of that and we want them to continue to do that. It would be cool, since the agent is already deployed and they know about the server, they know the IP address, and they know what vulnerability is there, for them to test the vulnerability and see if they can actually exploit it. Or, once we patch it, they could double-check that it can't be. I don't know how hard that would be to build. Thinking on it off the top off my head, it could be a little challenging but it could also be highly interesting. It would also be great if we could test a couple of other features like hammering a server with 100 login attempts and see what happens. Real test scenarios could be really helpful. That is probably more something close to what they do with the SOC 2 audit or the report. But more visualization of that, being able to test things out on our infrastructure to make sure we can or can't hit this box could be interesting.
report
Use our free recommendation engine to learn which Container Security solutions are best for your needs.
866,300 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
11%
Manufacturing Company
8%
Educational Organization
6%
Computer Software Company
15%
Financial Services Firm
14%
Manufacturing Company
10%
Government
6%
Performing Arts
13%
Manufacturing Company
11%
University
10%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business54
Midsize Enterprise16
Large Enterprise56
By reviewers
Company SizeCount
Small Business34
Midsize Enterprise20
Large Enterprise58
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

What is your primary use case for Prisma Cloud by Palo Alto Networks?
Prisma Cloud helps support DevSecOps methodologies, making those responsibilities easier to manage.
What Cloud-Native Application Protection Platform do you recommend?
We like Prisma Cloud by Palo Alto Networks, since it offers us incredible visibility into our entire cloud system. We...
What do you think of Aqua Security vs Prisma Cloud?
Aqua Security is easy to use and very manageable. Its main focus is on Kubernetes and Docker. Security is a very valu...
Ask a question
Earn 20 points
 

Also Known As

Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
Prisma Public Cloud, RedLock Cloud 360, RedLock, Twistlock, Aporeto
Threat Stack, CSP,
 

Overview

 

Sample Customers

Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
Amgen, Genpact, Western Asset, Zipongo, Proofpoint, NerdWallet, Axfood, 21st Century Fox, Veeva Systems, Reinsurance Group of America
StatusPage.io, Walkbase, Spanning, DNAnexus, Jobcase, Nextcapital, Smartling, Veracode, 6sense
Find out what your peers are saying about Palo Alto Networks, Wiz, SentinelOne and others in Container Security. Updated: August 2025.
866,300 professionals have used our research since 2012.