Try our new research platform with insights from 80,000+ expert users

Check Point IPS vs LogRhythm NDR [EOL] comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point IPS
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
58
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (3rd)
LogRhythm NDR [EOL]
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Featured Reviews

reviewer2751156 - PeerSpot reviewer
Expert intercepts threats in encrypted data while improving risk management
Check Point IPS could be improved with more automation and focus on removing false positives. At least 60% of all the alarms generated by the IPS are false positives or something that's not important to look at, and this generates a significant workload for my team. That is my main concern about the needed improvements.
AshishDubey - PeerSpot reviewer
A scalable and stable tool that offers users a great GUI
Though I have not extensively worked on LogRhythm NDR, I know the need for a compute side since, in the past, we had required the compute side to deploy the solution in one of our company's client's infrastructure. The product's setup phase was easy and not complicated. The deployment process of LogRhythm NDR can vary between three and four weeks, depending on the skill set of the people involved in the deployment process. For deployment of the product, you have to purchase the license from LogRhythm, and you have to ensure that the compute side is ready for LogRhythm. After you deploy NDR and sensors in the premises of our company's customer on the SPAN and TAP port, and once the logs go through throughput, you can see the logs coming to LogRhythm NDR's console.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The number of the IPS protections is amazing - after the latest update I see more than 11000 in the SmartConsole."
"IPS can protect our organization with any old vulnerabilities or if any vulnerability detected minutes ago IPS can protect us as per our configured policy."
"Behavior analytics and monitoring capabilities of Check Point IPS are valuable, especially for cybersecurity purposes."
"There's an automatic update after every 2 hours which makes sure that the database is up to date and providing zero-day vulnerability protection."
"The solution's IPS functionality and firewall functionality are the solution's most valuable features."
"Check Point helps reduce downtime and costs associated with detected cyberattacks and can block those threats to ensure protection from any significant damage that may be caused within the organization."
"The autonomous threat prevention is very easy to use. The APIs and SmartConsole tool also work well."
"Check Point is one of the best security brands worldwide."
"It's an excellent security tool with a user-friendly interface that's easy for anyone to use."
"It is a stable solution...It is a scalable solution."
"The solution doesn't require the creation of rules or use cases from scratch, which assists our delivery team in installation and deployment. Its dashboard is user-friendly."
 

Cons

"After the R80 release, there are almost all feature sets available under IPS Configuration. However, further to this, adding a direct vulnerability scan based on ports and protocol for every zone (LAN, DMZ, or Outside) will make Check Point very different compared to other vendors on the market."
"There are a lot of false positives. I would like to see integration with some kind of network detection and response in order to make some automation on IPS configuration."
"From the product perspective, there have been instances where the signature download caused issues."
"Sometimes Check Point documentation is not always updated, which is why when some implementations change, it generates confusion about details."
"The firmware upgrade process is quite cumbersome."
"We have a lot of false positives and the list of IPs are not up to date in terms of their location."
"The service that we want to see in the future is a capacity to segment the IPS services by equipment."
"The only thing they could maybe improve is that we notice right away that the performance decreases when we enable the IPS, especially beyond the CPU and memory usage. If you want to enable the IPS and you have a lot of traffic, it can have an impact. The performance could be improved."
"The tool has one limitation compared to its competitors. It does have a mobile app for NDR monitoring. Moreover, there is only operational training and not deployment training."
"There are opportunities for improvement, particularly in upgrading the expertise of local professionals and addressing support issues, which could potentially lead to cost reduction."
"From an improvement perspective, I would like LogRhythm NDR to reduce the compute size. I would also like LogRhythm NDR to improve the pricing model."
 

Pricing and Cost Advice

"The module has a considerable cost but you can save by purchasing a package with several modules instead of making a single purchase."
"There is a license needed to use the Check Point IPS which is not expensive. However, the Check Point IPS device is expensive."
"The pricing for Check Point IPS is competitive and brings good value for the money."
"Enabling IPS does not require any additional license purchase from OEM, as it comes by default with the NGFW bundle."
"Pricing for this solution is negotiable and I'm happy with our pricing."
"The tool's licensing model is good. The licensing costs are yearly. I rate it an eight out of ten."
"I rate the product price an eight on a scale of one to ten, where one means it is very cheap and ten means it is very expensive. The product is expensive."
"The pricing is quite reasonable."
"When looking at the market and comparing it with other vendors, the cost seems relatively high."
"The tool costs are two million rupees for 5000 users."
"There are certain payments to be made towards the licensing costs attached to the product yearly. The pricing of LogRhythm NDR falls under the mid-range, in my opinion."
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
867,826 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
22%
Financial Services Firm
10%
University
8%
Government
8%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business31
Midsize Enterprise24
Large Enterprise23
No data available
 

Questions from the Community

What do you like most about Check Point IPS?
The most valuable feature of the solution is called tunneling. Tunneling is one of the major security features that hackers cannot penetrate through.
What is your experience regarding pricing and costs for Check Point IPS?
I am not in charge of pricing, setup cost, and licensing.
What needs improvement with Check Point IPS?
For the product itself, there is nothing that I wish worked better or was easier, but it can become complex to manage all the rules if the infrastructure is very big. I do not want to add more abou...
What do you like most about LogRhythm NDR?
It is a stable solution...It is a scalable solution.
What needs improvement with LogRhythm NDR?
The tool has one limitation compared to its competitors. It does have a mobile app for NDR monitoring. Moreover, there is only operational training and not deployment training.
 

Also Known As

Check Point Intrusion Prevention System
LogRhythm MistNet
 

Overview

 

Sample Customers

Morton Salt, Medical Advocacy and Outreach, BH Telecom, Lightbeam Health Solutions, X by Orange, Cadence, Nihondentsu, Datastream Connexion, Good Sam, Omnyway, FIASA, Pacific Life, Banco del Pacifico, Control Southern, Xero, Centrify
EMW, Conduent, University of Massachusetts, Deloitte Canada, Central Bank of Barbados, Coalfire
Find out what your peers are saying about Fortinet, Darktrace, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS). Updated: August 2025.
867,826 professionals have used our research since 2012.