Try our new research platform with insights from 80,000+ expert users

Check Point IPS vs Dragos comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point IPS
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
58
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (2nd)
Dragos
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
2
Ranking in other categories
Operational Technology (OT) Security (5th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Check Point IPS is designed for Intrusion Detection and Prevention Software (IDPS) and holds a mindshare of 5.1%, down 8.8% compared to last year.
Dragos, on the other hand, focuses on Operational Technology (OT) Security, holds 11.9% mindshare, up 12.0% since last year.
Intrusion Detection and Prevention Software (IDPS) Market Share Distribution
ProductMarket Share (%)
Check Point IPS5.1%
Darktrace18.8%
Vectra AI10.7%
Other65.4%
Intrusion Detection and Prevention Software (IDPS)
Operational Technology (OT) Security Market Share Distribution
ProductMarket Share (%)
Dragos11.9%
Nozomi Networks28.9%
Claroty Platform24.7%
Other34.5%
Operational Technology (OT) Security
 

Featured Reviews

reviewer2751156 - PeerSpot reviewer
Expert intercepts threats in encrypted data while improving risk management
Check Point IPS could be improved with more automation and focus on removing false positives. At least 60% of all the alarms generated by the IPS are false positives or something that's not important to look at, and this generates a significant workload for my team. That is my main concern about the needed improvements.
JR
Offers strong incident response features but requires more asset visibility and flexibility
Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts. One of the main features of Dragos is that they have a dedicated Incident Response team, so if clients need any help, they are there to help. Dragos does real-time monitoring as well, collecting mirror traffic from the span port of the switch, and as soon as it gets the traffic, it analyzes it in real time and shows what's going on in the networks, which relates to the real-time visibility feature for ICS networks.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The best features Check Point IPS offers include finding threats hidden in encrypted data, which I find valuable."
"I can generate reports for management automatically based on the threats of the last day/week/whatever is needed."
"Check Point IPS offers granular policy control, allowing administrators to customize IPS policies based on severity, protocols, or the source and destination."
"The IPS module offers protection against malicious inbound Internet traffic to our DMZ network and inspects and blocks outbound Internet traffic to sites that could be a danger to our internal users."
"The most valuable feature of the solution is called tunneling. Tunneling is one of the major security features that hackers cannot penetrate through."
"The notifications are the most valuable feature of the solution."
"The possibility of customizing the rules is great."
"What I like best about Check Point IPS is that it can prevent attacks. I also like that it has a log feature."
"Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment."
"Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts."
 

Cons

"The dashboard reports can be easier to generate and customize."
"It requires a lot of people to maintain the solution."
"Sometimes we had false positives where packages that were legitimate for us were blocked and we had to unblock them through exceptions."
"The solution needs enhanced reporting. The reporting on Cisco Stealthwatch and Darktrace is much bigger. The visibility that they grant for the filtering capabilities over large infrastructures are far superior."
"Improvements could include more attractive dashboards, visual analytics, and automated attack path correlation in SmartEvent to enhance situational awareness and attack identification."
"Enhancements are necessary for the proficiency of notifications in the event of a Social Security incident, whether through email or alternative channels such as SMS."
"The only thing they could maybe improve is that we notice right away that the performance decreases when we enable the IPS, especially beyond the CPU and memory usage. If you want to enable the IPS and you have a lot of traffic, it can have an impact. The performance could be improved."
"Sometimes protections are 'aggregated' into a single threat name when you look at the logs. I would prefer to see all protections named individually (for example, right now, 'web enforcement' is a category that contains several signatures)."
"I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future."
"Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area."
 

Pricing and Cost Advice

"The module has a considerable cost but you can save by purchasing a package with several modules instead of making a single purchase."
"The pricing model can be more competitive."
"It is a reasonably priced product."
"I give the price of the solution a five out of ten."
"There is a license needed to use the Check Point IPS which is not expensive. However, the Check Point IPS device is expensive."
"My company pays for the yearly licensing of Check Point IPS. It is a very expensive tool."
"Pricing for this solution is negotiable and I'm happy with our pricing."
"I think that the price of support is around $40,000 USD or $50,000 USD per year."
Information not available
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
866,088 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
22%
Financial Services Firm
9%
University
8%
Government
8%
Energy/Utilities Company
16%
Manufacturing Company
13%
Construction Company
7%
Computer Software Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business31
Midsize Enterprise24
Large Enterprise23
No data available
 

Questions from the Community

What do you like most about Check Point IPS?
The most valuable feature of the solution is called tunneling. Tunneling is one of the major security features that hackers cannot penetrate through.
What is your experience regarding pricing and costs for Check Point IPS?
My experience with pricing, setup cost, and licensing for Check Point IPS has been satisfactory.
What needs improvement with Check Point IPS?
An area of improvement for Check Point IPS would be simplified configuration and performance optimization. The initial setup and tuning can be complex, and more guided wizards or templates would he...
What is your experience regarding pricing and costs for Dragos?
Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment.
What needs improvement with Dragos?
I think Dragos could be improved, as I have worked in Nozomi and compared it to Nozomi. Nozomi offers a lot of flexibility in what I am able to learn and unlearn, and I have more visibility towards...
What is your primary use case for Dragos?
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not depl...
 

Also Known As

Check Point Intrusion Prevention System
Dragos Platform
 

Overview

 

Sample Customers

Morton Salt, Medical Advocacy and Outreach, BH Telecom, Lightbeam Health Solutions, X by Orange, Cadence, Nihondentsu, Datastream Connexion, Good Sam, Omnyway, FIASA, Pacific Life, Banco del Pacifico, Control Southern, Xero, Centrify
NaturEner
Find out what your peers are saying about Darktrace, Check Point Software Technologies, Fortinet and others in Intrusion Detection and Prevention Software (IDPS). Updated: July 2025.
866,088 professionals have used our research since 2012.