No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point IPS vs Dragos comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point IPS
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
72
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (3rd)
Dragos
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
2
Ranking in other categories
Operational Technology (OT) Security (6th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Check Point IPS is designed for Intrusion Detection and Prevention Software (IDPS) and holds a mindshare of 4.1%, down 4.3% compared to last year.
Dragos, on the other hand, focuses on Operational Technology (OT) Security, holds 8.5% mindshare, down 11.2% since last year.
Intrusion Detection and Prevention Software (IDPS) Mindshare Distribution
ProductMindshare (%)
Check Point IPS4.1%
Fortinet FortiGate12.6%
Darktrace11.2%
Other72.1%
Intrusion Detection and Prevention Software (IDPS)
Operational Technology (OT) Security Mindshare Distribution
ProductMindshare (%)
Dragos8.5%
Nozomi Networks19.4%
Claroty Platform17.5%
Other54.6%
Operational Technology (OT) Security
 

Featured Reviews

GR
Support at a security firm with 51-200 employees
Real-Time Blocking Improves Response and Reduces Manual Logs
The best feature in my experience with Check Point IPS is the real-time prevention because it uses thousands of preventive protections based on both known exploit signatures and behavioral analysis to detect and block threats before they reach vulnerable systems. I find the behavioral analysis feature of Check Point IPS to be a most valuable feature because it can detect sophisticated threats that do not match known signatures. For example, when I need to view anomaly detections, instead of relying solely on known attack patterns, Check Point IPS monitors network traffic for unusual behavior such as unexpected protocol use, abnormal data flows, or suspicious command sequences. Check Point IPS impacts my organization positively because it has had a strong positive impact by strengthening our network defense, reducing manual work, and improving our incident response times.
JR
OT Cybersecurity Engineer at Nadar
Offers strong incident response features but requires more asset visibility and flexibility
Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts. One of the main features of Dragos is that they have a dedicated Incident Response team, so if clients need any help, they are there to help. Dragos does real-time monitoring as well, collecting mirror traffic from the span port of the switch, and as soon as it gets the traffic, it analyzes it in real time and shows what's going on in the networks, which relates to the real-time visibility feature for ICS networks.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I would rate this solution a 9 out of 10."
"There's an automatic update after every 2 hours which makes sure that the database is up to date and providing zero-day vulnerability protection."
"Some of the features for views and visualization are already predefined as default files."
"The most valuable feature is that it protects us against hundreds of different attack vectors, like ransomware. The protection is always being triggered. People try to access websites that are categorized as malware, so when the users do a DNS request for the IP of those malware websites, the IPS Blade replaces the real IP of the website that is malware with a bogus IP. The user gets an IP that doesn't exist and when he tries to access, it won't work."
"Check Point IPS is very easy to configure. It's part of Check Point's blade architecture, where firewall, VPN, and IPS configurations are identical, making the learning curve minimal. The feature can be enabled with a straightforward process, allowing default or customized configurations."
"The threat database and integration help me in my day-to-day work with the Check Point ThreatCloud and behavior engine, as the solution effectively detects zero-day and encrypted traffic threats."
"Intrusion prevention and detection are the most valuable pillars in the security system, which detects and prevents exploits or weaknesses in vulnerable systems or in applications and protect against threats not only based on signatures but also based on anomalies, behavioral analysis, etc."
"Overall, it give me a lot of insight into my network that I didn't have before."
"Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment."
"Dragos' best features are that they are more focused towards Incident Response, so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts."
 

Cons

"Having additional reports available would be helpful."
"Signature tuning should be more user-friendly in the tool because, as per my experience, signature tuning is tough in Check Point IPS."
"When exceptions need to be done for certain profiles, it is easy to get them done, however, implementation on some general ones may cause some extra work as the IPS is not easy to overwrite."
"Threat Prevention policies are not very easily manageable as there are several profiles/policies/etc. Therefore, there are several ways to add exceptions and check the configuration."
"So I don't think Check Point IPS is a great solution."
"Check Point IPS could be improved through adaptive policy tuning because its policies often require manual tuning to balance prevention protection and performance."
"Occasionally there are glitches and errors like false positives, which would be a nice area of this solution to improve upon."
"The area with certain shortcomings where improvements are required consist of support availability."
"Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area."
"I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future."
 

Pricing and Cost Advice

"The pricing for Check Point IPS is competitive and brings good value for the money."
"The tool's licensing model is good. The licensing costs are yearly. I rate it an eight out of ten."
"The module has a considerable cost but you can save by purchasing a package with several modules instead of making a single purchase."
"I rate the product price an eight on a scale of one to ten, where one means it is very cheap and ten means it is very expensive. The product is expensive."
"The pricing is quite reasonable."
"It is a reasonably priced product."
"There is a license needed to use the Check Point IPS which is not expensive. However, the Check Point IPS device is expensive."
"My company pays for the yearly licensing of Check Point IPS. It is a very expensive tool."
Information not available
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
885,376 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
16%
Computer Software Company
11%
Financial Services Firm
10%
Security Firm
7%
Energy/Utilities Company
15%
Manufacturing Company
13%
Construction Company
7%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business50
Midsize Enterprise22
Large Enterprise23
No data available
 

Questions from the Community

What do you like most about Check Point IPS?
The most valuable feature of the solution is called tunneling. Tunneling is one of the major security features that hackers cannot penetrate through.
What is your experience regarding pricing and costs for Check Point IPS?
I have saved around two or three hours a week since I started using Check Point IPS. My experience with pricing, setup cost, and licensing for Check Point IPS is great, and I have no problem with t...
What needs improvement with Check Point IPS?
Check Point IPS is working well for our organization. In the future, more automated and more AI-based intelligence could be fed into Check Point IPS, and that would be helpful for us.
What is your experience regarding pricing and costs for Dragos?
Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment.
What needs improvement with Dragos?
I think Dragos could be improved, as I have worked in Nozomi and compared it to Nozomi. Nozomi offers a lot of flexibility in what I am able to learn and unlearn, and I have more visibility towards...
What is your primary use case for Dragos?
I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution. I am certified in Dragos, but I have not depl...
 

Also Known As

Check Point Intrusion Prevention System
Dragos Platform
 

Overview

 

Sample Customers

Morton Salt, Medical Advocacy and Outreach, BH Telecom, Lightbeam Health Solutions, X by Orange, Cadence, Nihondentsu, Datastream Connexion, Good Sam, Omnyway, FIASA, Pacific Life, Banco del Pacifico, Control Southern, Xero, Centrify
NaturEner
Find out what your peers are saying about Fortinet, Darktrace, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS). Updated: February 2026.
885,376 professionals have used our research since 2012.