


In the security solutions market, Check Point Web Gateway and Check Point Harmony SASE are contenders with distinct offerings. Harmony SASE seems to have an edge in ease of integration and user-centric features, which are increasingly important in supporting remote work environments.
Features: Check Point Web Gateway provides URL filtering, application control, and threat prevention, which enhance secure browsing and bandwidth management. It also offers stable cloud deployment. Harmony SASE features strong VPN functionalities, Zero Trust Network Access, and multi-factor authentication for secure remote access, making it highly integrative and user-friendly.
Room for Improvement: Check Point Web Gateway requires better technical support, documentation, and competitive pricing. Its complexity poses challenges for less technical users. Harmony SASE could improve its reporting, scalability, and third-party integrations, alongside enhancing its documentation and Zero Trust features.
Ease of Deployment and Customer Service: Check Point Web Gateway supports various environments including hybrid configurations but faces support challenges that affect customer satisfaction. Harmony SASE is also cloud-compatible but shares similar support concerns, emphasizing the need for more efficient service and platform integration.
Pricing and ROI: Check Point Web Gateway is noted for its high cost, which could limit accessibility despite good ROI in performance and bandwidth savings. Harmony SASE presents competitive pricing, yet may still be expensive for smaller firms, though its ROI benefits from flexibility and market positioning.
With iboss, whenever you turn on your laptop, the iboss agent automatically connects to the iboss cloud, enforcing all security policies. So with respect to the security side, it strengthens measures.
Deploying iboss leads to good return on investment, estimated around 70% to 80%.
I have seen some cost effectiveness from iboss; it has reduced certain support requirements, making it a more hands-off solution.
Check Point Harmony SASE (formerly Perimeter 81) blocked access to those URLs at the network level before users could click through.
We are saving 40% of our time, which is good.
They are very fast, responsive, and knowledgeable.
The quality of the support is fantastic.
We had promising discussions about resolving these issues, but no real action followed.
I would rate support 10 out of 10.
People working really hard, listening to every issue and request, and replying within hours.
Our organization has private engineers who are certified by Check Point.
They are also able to meet on-demand requirements based on your contract with them, and can easily provide adequate resources and scalability.
I would rate it a nine out of ten for scalability.
If I start seeing sluggishness or anything like that, I just reach out to my rep, and they connect with their dev team, typically resolving it the same day.
The cloud-native model ensures we are not tied to any specific location or hardware, which has been a great game changer in terms of agility.
I would rate it nine out of ten for scalability.
Check Point Harmony SASE's scalability is good; it can handle growth easily, allowing me to easily add another region and gateway to have more people join in.
The cloud solution can be scalable, but in most cases, it is not because it is bound to specific firewalls.
It's been pretty solid; I've never had an outage with them, and if I ever had, it's only been once out of the seven years.
We've experienced zero downtime.
Our biggest problem with their service was it did not recognize the device despite our ClearPass sending information to the iboss box.
There are some lags and glitches with connectivity, so I would rate the stability as between seven or eight out of ten.
After the last improvement, I can say it is much more stable now.
Check Point Harmony SASE is stable most of the time, but there are still some issues that are hard to troubleshoot.
It is not as intuitive as the rest of the platform.
iboss's single pane of glass console gives centralized visibility into web traffic, user activity, security policies, and alerts from one dashboard.
We also had a problem with a transition when we upgraded from one appliance of theirs to another, but their engineer lost a good deal of our data.
A local data center in Turkey would enhance the product, as currently, our Internet traffic goes to another country, which is problematic for us.
One area for improvement is integration with third-party identity providers.
The product is lacking features that other competitors have, making it quite challenging to migrate customers to this solution because it feels very much unfinished.
Deployment issues on Linux have been noted, especially with agents on endpoints.
Check Point asks for the registered mail ID and number, which sometimes you can't quickly provide when under pressure because your client's network is down.
Support for operational technology (OT) is not as comprehensive in Check Point Web Gateway as it is in competing products.
It offers the same features you would get from a vendor that charges 250,000 British pounds for a fraction of the price.
The following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs.
Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern.
Cost efficiency is a consideration, as SASE products are not the cheapest security products.
The cost is a bit expensive for most users.
It is a bit expensive.
The pricing and discounts for Check Point Web Gateway are similar to Fortinet, making it cost-effective with fair pricing.
Fortinet is the cheaper product, while Palo Alto and Check Point Web Gateway are similarly priced.
The solution's mental health function can detect if someone needs help.
It's given us a lot more visibility into our computer assets that may be infected with viruses and also shows us people who have unusually large uploads or might be engaging in high-risk activities, such as searches or going to sites not categorized by their web crawler.
iboss was the best solution for us because, no matter what domain you were in, everything is under a single pane of glass, which is exactly what we wanted.
The firewall management is the most valuable feature for me.
The Zero Trust Network Access (ZTNA) feature is a major highlight as it gives users seamless and secure access to internal resources without requiring a full-blown VPN, which improves both security and user experience.
The Zero Trust and segmentation have helped my team and our customers significantly because we are able to protect every scope and allow the work-from-home users to access internal resources while passing through a threat prevention gateway, ensuring that everything is safe.
It provides behavioral analysis and a Copilot feature implemented in the management console, allowing users to receive assistance in an automated format.
We are satisfied with the effectiveness of the multi-layered defense approach in Check Point Web Gateway.
We are using the real-time threat intelligence feature. It helps to manage web threats effectively with qualified alarms.
| Product | Mindshare (%) |
|---|---|
| iboss | 3.2% |
| Check Point Harmony SASE (formerly Perimeter 81) | 4.3% |
| Check Point Web Gateway | 1.5% |
| Other | 91.0% |


| Company Size | Count |
|---|---|
| Small Business | 13 |
| Midsize Enterprise | 7 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 53 |
| Midsize Enterprise | 19 |
| Large Enterprise | 14 |
| Company Size | Count |
|---|---|
| Small Business | 21 |
| Midsize Enterprise | 4 |
| Large Enterprise | 9 |
iboss is the Zero Trust SASE platform that gives organizations complete visibility and governance over their AI, data, and applications through one unified platform, one console, one policy engine, and one data lake.
Your endpoints may already stop malware. Your data and application activity can still be invisible. iboss decrypts and understands every connection, then turns that signal into answers security leaders can act on.
The platform leads with three capabilities in this order: AI Security and Visibility, Data Security and Visibility, and App Visibility and Control. Zero Trust Network Access, VPN replacement, and SD-WAN sit underneath as the access fabric that carries those three. Trusted by global enterprises and government agencies.
What are the most important features of Iboss?
- AI Security and Visibility: conversation capture, shadow-AI discovery, AI DLP, and agent governance across Claude, Co-Work, ChatGPT, Gemini, and Grok, and emerging services.
- Data Security and Visibility: full SSL/TLS decryption, deep content inspection, MIP label compliance, and one-click compliance reporting.
- App Visibility and Control: signatureless CASB, dual risk scoring, in-app controls, and SSPM for major SaaS.
- Containerized Zero Trust SASE: dedicated containers, isolated SSL keys, one console, one policy engine, one data lake.
- Access fabric: ZTNA, VPN replacement, and SD-WAN under the same platform.
What benefits should users consider in reviews?
- Complete visibility over AI, data, and applications from one platform instead of separate point tools.
- Encrypted traffic is inspected by default so data decisions use content and context together.
- Shadow SaaS and new web tools appear as they are used, with enforceable controls in one console.
- Native data sovereignty through dedicated containers, in-region inspection, and per-customer SSL key custody.
- Scale proven in published materials: 10M+ users, 100+ countries, 150B+ transactions, 2.5B+ threats blocked.
Economic buyers are CISOs, CIOs, and VPs of Security. Champions include security architects, network and infrastructure leaders, SecOps, and GRC. Primary segments: enterprise and business, financial services, government (including FedRAMP Gov Cloud), healthcare, manufacturing, legal and professional services, retail and hospitality, and MSP/MSSP partners. Education, including K-12, is one vertical among these.
Check Point Harmony SASE, formerly Perimeter 81, offers robust security features like split tunneling, MFA, and Zero Trust Network Access focused on secure remote access and optimized connectivity for remote teams.
Check Point Harmony SASE delivers advanced security through a user-friendly interface, efficient VPN connections, and a centralized management console. It enhances security with real-time threat intelligence from ThreatCloud and traffic management via built-in optimization. Firewall as a Service and Secure Web Gateway safeguard against unauthorized access and phishing. While users seek enhanced networking customizations and better integration with identity providers, there's an emphasis on improving reporting, real-time analytics, and policy management. Requests also include a Chrome extension, traffic balancing, and simplified configuration to address some resource-intensive aspects.
What are the key features of Check Point Harmony SASE?
How can organizations benefit from using Check Point Harmony SASE?
Check Point Harmony SASE is used across industries for secure remote access and connectivity, protecting sensitive data, and managing access to corporate resources. It is ideal for those with hybrid cloud models and requires comprehensive security measures combined with existing IT infrastructures to meet specific industry demands.
Check Point Web Gateway is designed for network security with a focus on protecting against threats like malware and phishing. It offers cloud deployment, URL filtering, malware protection, and real-time threat intelligence.
Check Point Web Gateway ensures stable performance through a cloud-based infrastructure and offers a range of capabilities such as URL filtering, application control, and malware protection. It supports granular policies and real-time threat intelligence, playing a crucial role in enhancing web traffic filtering and compliance enforcement. The gateway provides intuitive security management features, including antivirus, DLP, encryption detection, and behavioral analysis. While it supports role-based access control and prevents access to malicious websites, there is room for improvement in response times and documentation. Users find challenges in interface appeal, deployment complexities, and authentication policy management. Cost and scalability concerns exist, with a need for enhanced mobile integration and endpoint accessibility.
What are the key features of Check Point Web Gateway?In industries such as banking and e-commerce, Check Point Web Gateway is used widely for securing network infrastructures against data breaches and ensuring compliance. Its multi-layer architecture supports seamless integration with site-to-site VPNs and user access management, enhancing overall security.
We monitor all Secure Web Gateways (SWG) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.