

Sophos Firewall and Check Point Harmony SASE cater to different security markets, focusing on small businesses and large enterprises, respectively. Sophos Firewall seems to have the edge in cost-effectiveness for smaller setups due to its pricing flexibility and package inclusivity, whereas Check Point Harmony is favored by larger companies for its advanced security features and robustness.
Features: Sophos Firewall offers anti-malware protection with two engines, IPS for preventing network exploits, and synchronized security that integrates with endpoint protection identifying compromised endpoints. It also provides comprehensive VPN features and a user-friendly interface. Check Point Harmony SASE provides Zero Trust Network Access improving security without a traditional VPN, advanced threat prevention with Check Point's ThreatCloud integration, and a centralized management console for policy management and threat responses across multiple sites.
Room for Improvement: Sophos Firewall could improve its pricing transparency and adjust the initial costs affected by currency exchange rates. Enhanced features for larger enterprises would also be beneficial. Check Point Harmony SASE should consider reducing its minimum licensing requirements to appeal to smaller businesses and improve user documentation to facilitate easier setup and integration.
Ease of Deployment and Customer Service: Sophos Firewall is known for its straightforward deployment process, especially for small to medium-sized businesses, with effective customer support available in various regions. Check Point Harmony SASE provides cloud-based management and good technical support, suitable for large organizations that require comprehensive guidance during deployment.
Pricing and ROI: Sophos Firewall presents competitive pricing models suitable for smaller companies by bundling licenses with hardware and offering significant discounts. Its cost-effectiveness contributes to a strong ROI in small setups. Check Point Harmony SASE, while more expensive due to its high-level security features, justifies its cost for larger enterprises needing advanced security and is acknowledged for providing a solid ROI by improving security and reducing overall operational risks.
Check Point Harmony SASE (formerly Perimeter 81) blocked access to those URLs at the network level before users could click through.
We are saving 40% of our time, which is good.
The costs have increased with Sophos XGS in the last few years, with license prices going up by 30%, doubling from $2,500 to about $5,000, which is a big challenge for us.
The graphical interface of Sophos XG simplifies configurations, saving time in support and troubleshooting compared to the Linux-based solution I previously used.
We purchased endpoint security for the first time last year, and even without endpoint security, it provides comprehensive security.
I would rate support 10 out of 10.
People working really hard, listening to every issue and request, and replying within hours.
Their team was quick to diagnose and resolve the problem by exchanging the equipment within two weeks.
Any issues are quickly addressed by their support team, which is not common among all OEM manufacturers.
When my customers raise a ticket, a customer representative calls them immediately to address their queries.
The cloud-native model ensures we are not tied to any specific location or hardware, which has been a great game changer in terms of agility.
I would rate it nine out of ten for scalability.
Check Point Harmony SASE's scalability is good; it can handle growth easily, allowing me to easily add another region and gateway to have more people join in.
You can scale up to multiple firewalls with centralized management.
You can't upgrade memory or storage on a specific model, which limits scalability.
Since it uses the underlying Kubernetes infrastructure, it can scale easily if the Kubernetes cluster is sufficiently large.
There are some lags and glitches with connectivity, so I would rate the stability as between seven or eight out of ten.
After the last improvement, I can say it is much more stable now.
Check Point Harmony SASE is stable most of the time, but there are still some issues that are hard to troubleshoot.
It is rated at nine out of ten for stability and is very reliable.
Sophos XG is very stable, even when serving as a DHCP server.
Sophos XGS is stable now, and I would rate its stability as a ten out of ten.
A local data center in Turkey would enhance the product, as currently, our Internet traffic goes to another country, which is problematic for us.
One area for improvement is integration with third-party identity providers.
The product is lacking features that other competitors have, making it quite challenging to migrate customers to this solution because it feels very much unfinished.
Tekton also has an unstable API with frequent changes, making it challenging to maintain consistency across versions.
It would be beneficial if Sophos XGS offered an end-to-end solution with competitive pricing.
The DDNS features are essential for any organization, as it is better not to have a static IP address from an ISP.
Cost efficiency is a consideration, as SASE products are not the cheapest security products.
The cost is a bit expensive for most users.
It is a bit expensive.
Currently, it costs about four million shillings in Kenya.
The cost depends on the package you are in, such as full threat management or basic.
The last instance I purchased was for three years, around $3,700 for SDG 125.
The firewall management is the most valuable feature for me.
The Zero Trust Network Access (ZTNA) feature is a major highlight as it gives users seamless and secure access to internal resources without requiring a full-blown VPN, which improves both security and user experience.
The Zero Trust and segmentation have helped my team and our customers significantly because we are able to protect every scope and allow the work-from-home users to access internal resources while passing through a threat prevention gateway, ensuring that everything is safe.
The firewall feature of Sophos XG has been the most effective for threat prevention.
It's able to detect cloud applications like Zoom or Microsoft Teams and allows traffic shaping based on the application.
By prioritizing bandwidth for our ERP hosted in Amazon Cloud and de-prioritizing non-essential sites, it has greatly improved our network management.
| Product | Mindshare (%) |
|---|---|
| Sophos Firewall | 6.9% |
| Check Point Harmony SASE (formerly Perimeter 81) | 1.0% |
| Other | 92.1% |


| Company Size | Count |
|---|---|
| Small Business | 53 |
| Midsize Enterprise | 19 |
| Large Enterprise | 14 |
| Company Size | Count |
|---|---|
| Small Business | 209 |
| Midsize Enterprise | 61 |
| Large Enterprise | 53 |
Check Point Harmony SASE, formerly Perimeter 81, offers robust security features like split tunneling, MFA, and Zero Trust Network Access focused on secure remote access and optimized connectivity for remote teams.
Check Point Harmony SASE delivers advanced security through a user-friendly interface, efficient VPN connections, and a centralized management console. It enhances security with real-time threat intelligence from ThreatCloud and traffic management via built-in optimization. Firewall as a Service and Secure Web Gateway safeguard against unauthorized access and phishing. While users seek enhanced networking customizations and better integration with identity providers, there's an emphasis on improving reporting, real-time analytics, and policy management. Requests also include a Chrome extension, traffic balancing, and simplified configuration to address some resource-intensive aspects.
What are the key features of Check Point Harmony SASE?
How can organizations benefit from using Check Point Harmony SASE?
Check Point Harmony SASE is used across industries for secure remote access and connectivity, protecting sensitive data, and managing access to corporate resources. It is ideal for those with hybrid cloud models and requires comprehensive security measures combined with existing IT infrastructures to meet specific industry demands.
Sophos Firewall provides comprehensive network security with web filtering, VPN capabilities, and cloud integration. Users highlight its effective threat prevention and flexibility for customizable policies, enhancing network visibility and management.
Renowned for its robust security, Sophos Firewall simplifies network protection through advanced features like intrusion prevention and endpoint protection integration. Its user-friendly interface allows seamless remote management and tailored rule creation, making it ideal for varied environments like healthcare and education. While the system excels in threat detection, areas such as interface navigation, support response times, and VPN integration face challenges. Enhanced reporting and bandwidth management are essential for improved performance.
What are the standout features of Sophos Firewall?Industries such as healthcare, education, and finance implement Sophos Firewall for secure VPNs, improved threat management, and effective traffic monitoring. Its load balancing and email security features support compliance and governance, ensuring robust protection tailored to sector-specific requirements.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.