Check Point NGFW vs Juniper SRX Series Firewall comparison

Cancel
You must select at least 2 products to compare!
Comparison Buyer's Guide
Executive Summary
Updated on Jul 10, 2023

We performed a comparison between Check Point NGFW and Juniper SRX Series Firewall based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.

Features: Check Point NGFW is highly recommended for its extensive security features, convenient centralized management, and impressive virtualization capabilities. Juniper SRX Series Firewall is well-known for its user-friendly interface, effortless usage, and excellent support.

Check Point should focus on improving integration, upgrading hardware, reducing costs, and enhancing stability. Juniper needs to work on capacity scalability, pricing strategy, reporting capabilities, user interface, device reliability, and feature enhancements.

Service and Support: The customer service for Check Point NGFW has garnered varying opinions, with some customers finding it helpful and responsive, while others believe there is room for improvement. Juniper SRX Series Firewall's customer service is generally deemed satisfactory, with customers appreciating its helpfulness and knowledge. However, there have been occasions where response times were slower and the need for escalation arose.

Ease of Deployment: Check Point NGFW's initial setup can be complex and may need expertise and experience for specific configurations and migrations. Juniper SRX Series Firewall generally has a simple setup process, although it may require CLI experience and coordination with the vendor.

Pricing: Check Point NGFW is known for its expensive setup cost, particularly when compared to other options. Users have found the process of adding new licensing to existing devices to be complex, especially for larger enterprise-level devices. Juniper SRX Series Firewall offers a more reasonable and affordable setup cost. Its setup process is straightforward, and the pricing is considered reasonable.

ROI: Check Point NGFW offers cost savings, simplicity, and effective security enforcement, providing peace of mind once the protection level is understood. Juniper SRX Series Firewall is a valuable investment, delivering positive returns and enhanced security features.

Comparison Results: Based on the review answers, the Check Point NGFW is preferred over the Jun SRX Series Firewall. Check Point NGFW offers comprehensive security features such as URL filtering, intrusion prevention systems, identity and access management, and application control capabilities. It also provides centralized management and virtualization features, stability, ease of use, and scalability. Despite its higher pricing, Check Point NGFW is considered more reliable and secure. Additionally, its customer service and support are generally satisfactory.

To learn more, read our detailed Check Point NGFW vs. Juniper SRX Series Firewall Report (Updated: November 2023).
745,341 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The GUI is good.""FortiGate firewalls are easy to manage through a user-friendly web interface. They also have advanced features like DDoS and DLP. However, I wouldn't recommend enabling all of these features on one device because it can cause performance issues.""The scalability is good in Fortinet FortiGate.""Security management tool that's easy to integrate and easy to work with. No issues found with its stability and scalability.""The inspection and web security features are most valuable.""It works very well. It has a lot of different functionalities. Its cost is also fine for our customers.""The solution is easy to configure and maintain remotely.""Security solution with a straightforward and quick setup. It's a stable and scalable product."

More Fortinet FortiGate Pros →

"While not being cheap, their pricing models are competitive.""The Network Address Translation (NAT) will always be a valuable feature as it allows me to turn my private cloud to the public at the click of a button and have secure control over the accessible servers/applications.""The documentation is simple to understand and is easily available.""Check Point NGFW has helped us to significantly reduce our risk of cyberattacks by providing comprehensive protection against a wide range of threats, including malware, viruses, ransomware, phishing attacks, and zero-day threats.""Check Point NGFW has helped the company in the prevention of cyber attacks that could affect operations and slow down production.""The application control and URL filtering features are valuable since they allow very granular control of what is coming in and out of a network.""The separate management feature of Check Point NGFW is very convenient.""It provides end-to-end resolution."

More Check Point NGFW Pros →

"The technical support is quite good.""The solution is stable, inexpensive, and works well for medium size companies.""The IPS functionality of Juniper SRX is useful in the telecom industry.""The features that I have found valuable are the ones for the main purpose we are using Juniper - its firewall to protect our network for our internet access.""We're primarily using Juniper's EPA feature, but not the other things. We use it to manage different points of firewalling of routing.""The most powerful feature in Juniper SRX is definitely NCLS.""The security features and the model collection are the most valuable.""It's easily scalable."

More Juniper SRX Series Firewall Pros →

Cons
"I don't really have anything negative to say as far as Fortinet firewalls are concerned. If anything, they can support a user a little bit better. They can stop being so time-sensitive about how much time the support call has taken, and they can help you do it yourself.""I would like Fortinet to add more automation to FortiGate.""In some cases, its initial setup could be hard for customers.""I haven't had a single issue since using Fortinet.""Fortinet FortiGate needs to improve to be on par with its competitors, such as Palo Alto and Sophos. They are the market leaders. Fortinet FortiGate needs to improve its capabilities. However, we are happy with Fortinet FortiGate.""Fortigate's hardware capacities could be improved.""Tunnel flapping was one of the major things I had seen wherein your internet link remains but your VPN tunnel is down. However, since I got a fix from the TAC team, I have not noticed it, but the customer complained a few times that they couldn't access the internet because of this problem.""The cloud management and automation capability could be improved."

More Fortinet FortiGate Cons →

"It would be best if the security management server console access is simpler for ease of management.""In the future, some of the features that I would like to see would be the ability to integrate environmental solutions such as the metaverse or blockchain so that we can see them also in applications directly and on mobile devices or natively.""The policy installation module should be improved.""SmartEvent Settings and Policy GUI, and the rest of external apps should be improved.""The tool must improve its support.""Hopefully, in the future, these will be much more plug-and-play and orchestrated from a single administration console.""We would like to see constant improvement in anti-malware functionality and anti-threat protection.""There is a huge amount of revenue lost in the financial/banking sector due to cyber attacks, so we need to have something that can highly concentrate on future cyber attacks."

More Check Point NGFW Cons →

"Both the web management and the graphical user interface are inadequate and should be improved.""It does have its nuances in terms of deployment. There are always areas to make something easier or more intuitive or make the system auto-negotiate more with existing hardware.""To compare with Fortinet, Juniper needs to improve their security features.""The centralized management platform could be improved.""The solution's initial setup process was lengthy as I was new to Juniper.""I think improvement can be done to the security part, particularly the UDM, and the product should have a user-friendly interface similar to FortiGate. It should have the Azure RBAC in the next release.""It would be ideal if the solution could use cloud services to help update signatures or threat prevention systems.""Junos Space should be improved to be on par with FortiGate's solution for managing firewalls and routing."

More Juniper SRX Series Firewall Cons →

Pricing and Cost Advice
  • "I had to pay for the license for the firewall, but it is guaranteed to have updates. I expect a good service for it. It was about €1000 for a year, and there was no additional cost."
  • "It is more expensive than Sophos. Fortinet is overall more expensive than Sophos. The small range of Fortinet, such as 60F and 80F, is more expensive than the small range of Sophos. Sophos is cheaper. In addition, if you jump from 80F Series to 100F Series, the price doubles."
  • "The license is yearly. We pay for the top end. It's called 360."
  • "Here in Brazil, we're going through difficult economic times and the tax on the dollar is high. All the solutions from minor competitors are growing in the market. The prices have come more competitive."
  • "Licensing for Fortinet FortiGate is on a yearly basis. Pricing for it is a bit high. It could be cheaper."
  • "The licensing scheme of Fortinet is better than Cisco. It is more logical."
  • "The solution requires a license annually, it is not a user license, you can have as many users as your want. I must renew the license regularly per device."
  • "It was probably about $2,500 per firewall. It was all included. It included support, services, threat management software, and 24/7 FortiCare on it. Cisco products are more expensive."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "I don't see that Check Point is very high, but it is geared more towards enterprises."
  • "Its cost is a little higher than other products."
  • "Check Point NGFW can be expensive compared to other competitors, but the price matches the functionality and efficiency of the solution."
  • "Before you buy, check which features you need, and if possible, I recommend signing up for at least a three-year license."
  • "Check Point needs to lower its price drastically, and the licensing model is very complex."
  • "There are competitors that have more expensive solutions than Check Point NGFW, such as Palo Alto. There are times when Check Point NGFW can have good offerings with a three-year license. The presence of Palo Alto has been heavily invested in marketing."
  • "It's expensive."
  • "It may be considered relatively expensive, but the investment is justified when compared to other competitors."
  • More Check Point NGFW Pricing and Cost Advice →

  • "This is a cost-effective solution because the price is very reasonable, and some of the features are available at no extra cost."
  • "Its price is comparable to the competition."
  • "Juniper SRX is reasonably priced."
  • "For a medium-sized organization, the cost for the licensing and implementation of Juniper SRX for 10 users would be about $300-400."
  • "The pricing is very inexpensive which is the main reason I bought the solution. One device costs around 50 EUR through the University's vendor who is modernizing our network."
  • "When we are in the deployment phase, we contact Juniper and they provide a budget-free code for our budgetary work."
  • "I find the price to be reasonable for an enterprise-level solution."
  • "I rate the solution's pricing as a four."
  • More Juniper SRX Series Firewall Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    745,341 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such)… more »
    Top Answer:Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall… more »
    Top Answer:I rate the tool's stability a ten out of ten.
    Top Answer:The main features are safeguarding their data and ensuring robust security services for organizational data.
    Top Answer:The pricing appears to be cost-effective, and the cost is quite reasonable within Bangladesh and other countries, though… more »
    Top Answer:I would rate the overall solution a ten out of ten.
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Check Point NG Firewall, Check Point Next Generation Firewall
    Juniper SRX
    Learn More
    Overview

    Fortinet FortiGate is an innovative line of firewalls that aim to protect organizations from all types of web-based network threats. They come in a wide variety of product types. Fortinet FortiGate’s solutions are available in a large range of sizes and form factors and are key components of the Fortinet Security Fabric, which enables immediate, intelligent defense against known and new threats throughout the entire network.

    Fortinet FortiGate provides users with next-generation firewall solutions that provide proven protection with unmatched performance across the network, from internal segments to data centers to cloud environments. You can protect every part of your network without exception. Additionally, your protections can be managed from a single central location. This ensures that the task of protecting your network is infinitely easier to accomplish.

    Benefits of Fortinet FortiGate

    Some of the benefits of using Fortinet FortiGate include:

    • The ability to manage your firewalls from a centralized automated control console. Fortinet FortiGate’s FortiManager enables administrators to exercise control of their firewalls in a streamlined manner. Administrators have full visibility and control over their system from a single location. It utilizes automation that collects information in real time, which greatly simplifies and reduces the cost of running various types of workflows. Administrators can free up resources by automating the most basic tasks.
    • The ability to produce uniform, appropriate, and coordinated responses to threats across networks. Fortinet FortiGate’s FortiGuard feature generates system protections in near real time. This allows administrators to address threats to the system with custom-made solutions that can be uniformly enforced.
    • The ability to scale up your security to fit your changing security needs. Fortinet FortiGate’s design allows users to accelerate the transfer of data between users and escalate the number of users that are covered without compromising security of performance. This means that users can grow their networks and continue to collaborate without worrying about the system slowing down or coming under attack.

    Reviews from Real Users

    Fortinet FortiGate’s firewall solutions are cutting edge. They stand out from competitors for a number of reasons. Two major ones are the robustness and power of their firewalls. Fortinet FortiGate’s firewall provides users with many valuable features that allow them to maximize what they can do with the solution. These firewalls enable users to use a single piece of software to accomplish tasks that often require the use of multiple pieces of software.

    PeerSpot user Eric S., a Solutions Engineer and Consultant at a tech-services company, notes the robustness of this solution when he writes, "One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface.”

    PeerSpot user Jim M., a network admin at Penobscot Valley Hospital, notes the power of Fortinet FortiGate’s security software when he writes, "It does a lot for you for intrusion protection and as an antivirus. The threat management bundle is worth the money. You don't need another company to monitor your web traffic for you. You can do everything yourself on the firewall. You restrict your own black list for people on the firewall.”

    Check Point NGFW is a next generation firewall that enables safe usage of internet applications by blocking malicious applications and unblocking safe applications. Check Point NGFW, which uses deep packet inspection to identify and control applications, has features such as application and user control and integrated intrusion prevention (IPS), as well as more advanced malware prevention capabilities like sandboxing.

    Check Point NGFW includes 23 firewall models optimized for running all threat prevention technologies simultaneously, including full SSL traffic inspection, without compromising on security or performance.

    Benefits of Check Point's Next Generation Firewall

    • Robust security: Check Point NGFW delivers the best possible threat prevention with SandBlast Zero Day protection. The SandBlast protection agent constantly inspects passing network traffic for exploits and vulnerabilities. Suspicious files are then emulated in a virtual sandbox in order to detect and report malicious behavior.

    • Security at hyperscale: On-demand hyperscale threat prevention performance provides cloud level expansion and resiliency on premises.

    • Unified management: Check Point's SmartConsole makes it easy to manage and configure network security environments and policies. With the SmartConsole, users can manage all the firewall gateways and access logs and install databases from one location. Unified management control across the network increases the efficiency of security operations and reduces IT costs.
    • Continuous logging: Check Point NGFW’s Threat Management feature detects vulnerabilities and logs them. Using the logged data, users can easily create and implement efficient security policies.

    • Remote access: The remote access VPN provides a seamless connection for remote users.

    Check Point NGFW is suitable for organizations of all sizes, from small businesses to larger enterprises.

    Reviews from Real Users

    Check Point NGFW stands out among its competitors for a number of reasons. Two major ones are its intrusion prevention feature as well as its centralized management, which makes it very easy to deploy firewall policies to many firewalls with one click.

    Shivani J., a network security administrator, writes, "Check Point has a lot of features. The ones I love are the antivirus, intrusion prevention, and data loss prevention."

    G., a network administrator at Secretaría de Finanzas de Aguascalientes, writes, “Within the organization, the inspection of packages has given us great help in detecting traffic that may be a threat to the institution. The configuration of policies has allowed us to maintain control of access and users for each institution that is incorporated into our headquarters.”

    Arun J., a senior network engineer, notes, “The nicest feature is the centralized management of multiple firewalls. With the centralized management, we can easily use and operate multiple firewalls as well as create a diagram of them.”

    Juniper SRX is a next-generation security solution that enables users to expand and secure their networks without incurring heavy costs or sacrificing performance.

    Benefits of Juniper SRX

    Some of the benefits of using Juniper SRX include:

    • Easily manage and view every aspect of your system’s security. Juniper SRX enables users to manage their security from a centralized location. The central control center can control and view every Juniper connected device in a user’s network. Once a device meets the desired security requirements, an administrator can configure the device’s policy to match the other machines in their network. This both simplifies the way that the network operations run and decreases the number of resources that are needed to ensure that operations run smoothly.
    • Secure your system with a flexible and comprehensive security suite. Juniper SRX’s firewalls are flexible enough that they always match the type of applications that they are supposed to be protecting. Its security features uniformly protect your applications. This is true regardless of how your application is deployed. It can integrate with everything from cloud-based applications to those stored on physical servers in a data center. This makes it easy for administrators to maintain consistency across their systems.
    • Protect yourself from advanced threats. Juniper SRX is equipped with powerful security automation features. They can detect a wide range of known and unknown threats as soon as they appear. Once malware is detected, Juniper SRX begins to analyze it and determines what response fits the situation. Additionally, the threats are prioritized according to their severity. Administrators are then given a selection of response options from which they can choose. This enables users to prevent the spread of these threats.
    • Increase your ability to scale your security. Juniper SRX makes it easy for users to scale up their security to meet their specific needs. Its service processing cards (SPC) are designed to enable a user to meet all of their needs. Administrators do not need to buy specific hardware every time that they need to get something done. Their SPCs can be quickly and easily customized. The addition of SPCs enables users to scale up according to the particular project that they are working on at that time.
    • Reduce the number of resources that you need to expend. Juniper SRX enables users to add expansion modules to their network without expanding the cost to run their network. They accommodate growth without adding to the overall cost. Administrators will not need to spend money on more space, cooling power, or maintenance. Additionally, they will not have to dedicate more time to maintaining the network. Your network may grow, but the cost of running your system will not.

    Reviews from Real Users

    Juniper SRX stands out among their competitors for a number of reasons. Two major ones are their central management capabilities and the robustness of their suite of security features. Juniper SRX is designed to make it easy for users to take control of their network’s security. From one location, administrators can manage all aspects of their infrastructure’s security. The many features that it offers allows users to tailor their security to meet their specific needs.

    Shashidhara N., director of technology solutions & services at Connectivity IT Services Private Limited, writes, “On the SRX box, it has what I call a one model concept for security. I work especially with hybrid environments. With an SRX we have a single management dashboard. We can manage the internal framework easily with the centralized management component. You can work with threat prevention, you can work with integration, you can work with traffic management. Another good part about SRX is that you have opportunities for automation. Another thing that is very good is that all the operating systems for all Juniper boxes are the same. You do not work on different operating systems using different boxes.”

    Pradip J., the owner of Shree Atharva Sales Corporation, writes, “It is a complete security bundle. The cloud-based Sky Advanced Threat Prevention feature is very valuable. I am 100% satisfied with the performance of the Juniper firewall. It has a very good throughput. It works very fine. We use our firewall as a site-to-site VPN or Software-Defined Wide Area Network (SD-WAN). In both cases, it has a very good and optimum performance.Their service support is very good in India. I get really good support from the Juniper team."

    Offer
    Learn more about Fortinet FortiGate
    Learn more about Check Point NGFW
    Learn more about Juniper SRX Series Firewall
    Sample Customers
    Pittsburgh Steelers, LUSH Cosmetics, NASDAQ, Verizon, Arizona State University, Levi Strauss & Co. Whitepaper and case studies here
    Control Southern, Optimal Media
    7-Eleven, AARNet Pty Ltd, Allegro Networks, alltours GmbH, Apollo Hotel Papendrecht, Armstrong Atlantic State University, Atlantech Online, Availity, Bajaj Capital, Baloise Insurance, BancABC, BAS Group, Black Lotus, Blue Box, Borealis, Carilion Clinic, Catholic Health System, CATV, Champlain College, Chinas Ministry of Railways, China University of Mining and Technology (CUMT), Cloud Dynamics, CloudSeeds, Cloudwatt, CODONiS, Colt Technology Services, Cork Internet Exchange, CSS Versicherung AG, CyrusOne, Danish Crown, Deloitte Belgium, Department of Energy, Divona Telecom, DQE Communications, DreamHost, European Government Agency, Expedient, Financial Market Information Services Provider, Fluidata, Fonality, Fox Sports, Global Financial Institution, Global Investment Bank, Global Investment Company, Energy Sciences Network (ESnet), Goethe University, HEAnet, High Performance Networks Inc., Hillenbrand
    Top Industries
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization21%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company5%
    REVIEWERS
    Financial Services Firm23%
    Computer Software Company14%
    Comms Service Provider7%
    Manufacturing Company6%
    VISITORS READING REVIEWS
    Educational Organization48%
    Computer Software Company8%
    Financial Services Firm5%
    Comms Service Provider5%
    REVIEWERS
    Comms Service Provider35%
    Financial Services Firm17%
    Computer Software Company11%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization38%
    Computer Software Company12%
    Comms Service Provider6%
    Government6%
    Company Size
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise32%
    Large Enterprise41%
    REVIEWERS
    Small Business31%
    Midsize Enterprise19%
    Large Enterprise50%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise56%
    Large Enterprise29%
    REVIEWERS
    Small Business44%
    Midsize Enterprise20%
    Large Enterprise36%
    VISITORS READING REVIEWS
    Small Business19%
    Midsize Enterprise45%
    Large Enterprise36%
    Buyer's Guide
    Check Point NGFW vs. Juniper SRX Series Firewall
    November 2023
    Find out what your peers are saying about Check Point NGFW vs. Juniper SRX Series Firewall and other solutions. Updated: November 2023.
    745,341 professionals have used our research since 2012.

    Check Point NGFW is ranked 5th in Firewalls with 105 reviews while Juniper SRX Series Firewall is ranked 15th in Firewalls with 19 reviews. Check Point NGFW is rated 8.8, while Juniper SRX Series Firewall is rated 7.8. The top reviewer of Check Point NGFW writes "Robust control and security that enables a comprehensive application management". On the other hand, the top reviewer of Juniper SRX Series Firewall writes "Useful telecom industry functionality, simple deployment, but lacking features". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Netgate pfSense, Azure Firewall, Sophos XG and Meraki MX, whereas Juniper SRX Series Firewall is most compared with Cisco Secure Firewall, Palo Alto Networks WildFire, Netgate pfSense, Meraki MX and Juniper vSRX. See our Check Point NGFW vs. Juniper SRX Series Firewall report.

    See our list of best Firewalls vendors and best Firewalls vendors.

    We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.