Try our new research platform with insights from 80,000+ expert users

Check Point Quantum Force (NGFW) vs Fortinet FortiGate vs Stormshield Network Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

As of October 2025, in the Unified Threat Management (UTM) category, the mindshare of Check Point Quantum Force (NGFW) is 7.9%, down from 9.2% compared to the previous year. The mindshare of Fortinet FortiGate is 35.1%, down from 39.2% compared to the previous year. The mindshare of Stormshield Network Security is 3.7%, up from 3.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Unified Threat Management (UTM) Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate35.1%
Check Point Quantum Force (NGFW)7.9%
Stormshield Network Security3.7%
Other53.3%
Unified Threat Management (UTM)
 

Featured Reviews

Hailemichael Yigrem - PeerSpot reviewer
Advanced security features enhance threat detection and prevention
Check Point NGFW provides granular application control and detailed visibility over application and user activity. It integrates with the ThreatCloud ecosystem, enabling real-time threat detection and prevention. The User Identity Awareness blade integrates with Active Directory, identifying user traffic sources. Check Point NGFW is highly scalable and has centralized management through SmartConsole, which manages policies, logs, and threat data. It reduced our incidents and decreased the time to analyze cyber threats by 70 percent.
Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Benjamin - PeerSpot reviewer
The intrusion detection system helps our organization by automatically detecting and responding to potential threats
The tool's most valuable feature is its dashboard, which helps you manage different aspects of a single page. The intrusion detection system helps our organization by automatically detecting and responding to potential threats. It operates similarly to Darktrace, which detects and responds automatically based on the security rules you apply. Initially, you configure everything to block, and then you can whitelist specific items as needed.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Being able to access almost everything in one location manage all your gateways and get all your logs is great."
"We do not have any problems with stability."
"The product's ease of use is a significant advantage, and the interface is very intuitive."
"The interface and the IPS intrusion prevention are the most valuable features of this solution."
"Check Point Quantum Force (NGFW) has positively impacted my organization because it is our core security system, and it performs effectively."
"The software upgrade procedure is very easy; it just needs few clicks & we are done."
"By far, it's the best security solution one can adopt for their organization."
"Check Point's support is probably the best of the major players in that space."
"What I like the most is the configuration and that it's simple, and straightforward to maintain."
"The most significant aspect of IPS is self-explanatory as it primarily focuses on intrusion prevention, which is crucial for Fortinet's internal outbreak prevention efforts and ensuring compliance on endpoint devices."
"Fortinet FortiGate provides combined features that other firewalls do not offer, offering a full package cost-effective manager with all integration supported."
"I like several features that this product has, such as antivirus and internet navigation inspection. It is also simple to use."
"The base firewall features are quite valuable to us."
"The simplicity of the configuration and the stability of the product are most valuable. The VPN concentrator is very useful."
"The most valuable features of Fortinet FortiGate IPS are the dashboard and reporting which give us very good visibility."
"The features that we have found most valuable are the SSL VPN and the User Portal."
"This solution is quick and easy to configure."
"I like how you can configure the rules. There is the task for the rules and a task for the network configuration. It also provides SMD filtering, and it can be integrated with the active directory for the users, their mission, and the VPN configuration. We are here in Sudan, and Stormshield didn't work in Sudan for more than a decade. Stormshield is a very strong firewall and very easy to configure and maintain. I am just working with the firewall solution, and we don't have any other solutions like endpoint solutions or something like that."
"It's an easy, straightforward management platform to use."
"A very robust product."
"The most valuable features are the IPS, the firewall function, and the price."
"Easily manageable in a variety of environments."
"Ease of use is the best feature of the product."
"Our organization's main concern is stability, and this is a stable solution."
 

Cons

"It requires enhanced automation tools for regulatory compliance to ease the burden of compliance reporting and auditing."
"The product could provide an easier user interface and management, by combining all functions (network and policy configuration) into one single application rather than split it into different applications."
"Sometimes, the firewall doesn't pick up on certain things. If an attacker is clever and uses a low-profile indicator, the firewall might flag an anomaly but not give enough information to decide if it's worth investigating. The threat intelligence component also has challenges. It doesn't always tie alerts to active campaigns or threat actor groups. We often have to do extra work and use other products to figure these out."
"With the increase of volume of traffic, the required resource/hardware to properly run goes up. Therefore, the hardware engineering to architecture flow has to be more efficient."
"The naming in the inline layers and ordered layers needs improvement. It makes things very complicated. I've seen quite a lot of people saying that. For audit policies, it is okay since it's very simple to see. However, this area is for very large organizations, which have too many policies, and they need to share all these policies. For small to medium-sized businesses, they don't need it. Even if somebody has 500 rules, if they try to use it, it can be very confusing."
"The interface can be more user-friendly in terms of design and the location of critical and commonly used icons."
"Integration with a third-party authentication mechanism is tricky and needs to be planned well."
"It's too expensive for mid-market companies."
"The feature which gives us a lot of pain is ASIC architecture."
"In their datasheet, they put the throughput as huge, but once you enable all the features of the box, the performance is impacted dramatically."
"There are some license issues. Not every feature must have a separate license. There must be some of kind synergy between the license so we don't have to pay for every individual license that we would like to have."
"One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum."
"The performance could be a bit better. Right now, I find it to be lacking. Having good performance is very important for our work."
"We had some issues in the beginning while setting it up, but after doing the firmware update, it is working fine."
"There should be better customization in the IPS."
"One of the most important areas for improvement for Fortinet FortiGate is the limited resources for tests."
"This is not a next-generation firewall."
"The biggest issue was their support department was not able to help us, then everything stops. This is a no-go area for me."
"The filtering configuration could be better. We have some difficulties with the filtering configuration and the filter extension. It's not that easy. It's not that straightforward. In the next release, I would like to see a reporting system. Stormshield doesn't have any tutorials on how to do the configuration and things like that. They just have documentation on the website. If you want to configure, for example, Cisco or Fortinet, you can find tutorials on YouTube. They show you how to configure the features, and so on. In Stormshield, there is nothing on social media or the internet on how to configure different things. The lack of documentation or the lack of material makes it difficult for others to adopt this solution."
"This solution has a big problem with web filtering and it needs to be improved."
"Stormshield Network Security is quite expensive."
"A more user-friendly interface would be helpful."
"Not all the fields are activated yet and we were informed that it will take at least one month."
"With Stormshield, there are difficulties joining things, and it can be complex depending on the architecture."
 

Pricing and Cost Advice

"Compared to Sophos and others, Check Point pricing is good for the current market."
"You get licensing bundles, so depending on which features you want to activate, your license is going to be more expensive. Some things, like Threat Extraction and Threat Emulation, require subscriptions."
"The pricing and licensing are the worst part of Check Point. I usually don't know what I really am buying. When I have to do an inventory of the license, I don't know what it is being used for. Sometimes I feel I am being cheated, and the others times, I feel it is a bargain. Nobody knows! Even the Check Point representatives, they aren't clear on somethings, such as, what is the right license for what I need."
"The pricing of Check Point is fair when compared to others."
"Check Point Firewall costs more compared to the other firewalls in the markets, as pricing is little high. However, it is easy to take the license and use it in the firewall."
"Before you buy, check which features you need, and if possible, I recommend signing up for at least a three-year license."
"The pricing for Check Point depends on your environment."
"It is not a cheap solution, which is why we are looking for another one."
"We are on an annual license to use Fortinet FortiGate."
"Fortinet FortiGate is expensive."
"The solution's pricing is competitive."
"If you compare the price of Fortinet FortiGate IPS to other firewalls, Check Point is priced very high followed by Palo Alto and Sophos. Fortinet FortiGate IPS price is more reasonable."
"It is too expensive for us. My organization is very small, and we have a total of ten users. We have three internal users and seven external users. The FortiGate 100D series is too expensive for renewing the licenses."
"On a scale of one being cheap and ten being expensive, I rate the tool's price as an eight."
"The pricing for the product is alright."
"The price of Fortinet FortiGate is reasonable."
"We chose Stormshield for its price, as the Azure firewall was too expensive."
"The price of this solution and the price of support are ok."
"The pricing could be better."
"I think the price is good."
"For mid-sized companies, they sell their appliances for good prices."
"We bought a three-year license, and we renew it whenever it expires. The price could be better. It's always very expensive."
"The SN200 series costs between $500 USD and $600 USD per year, whereas the SN700 series costs approximately $1,000 annually."
report
Use our free recommendation engine to learn which Unified Threat Management (UTM) solutions are best for your needs.
869,095 professionals have used our research since 2012.
 

Comparison Review

it_user216600 - PeerSpot reviewer
Jan 3, 2016
Sophos UTM vs. Fortinet FortiGate
I have used both Sophos and Fortinet products in production and I have found the Sophos UTM appliances (hardware and virtual) to be a better fit most of the time -- with a few caveats which I will touch on below. In both instances, the transition from TMG will be mostly straightforward. The main…
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Financial Services Firm
9%
Comms Service Provider
6%
Manufacturing Company
6%
Computer Software Company
15%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
19%
Comms Service Provider
18%
Government
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business134
Midsize Enterprise97
Large Enterprise195
By reviewers
Company SizeCount
Small Business350
Midsize Enterprise130
Large Enterprise187
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What do you like most about Check Point NGFW?
Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion...
Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What advice do you have for others considering Stormshield Network Security?
The tool is like a firewall and works well. I don't have any issue with it. I rate it an eight out of ten.
 

Also Known As

Check Point NG Firewall, Check Point Next Generation Firewall
No data available
NETASQ Firewalls
 

Overview

 

Sample Customers

Control Southern, Optimal Media
Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
ACESUR group, Ministry of Education Oman, Anios Laboratories, Zain, DLM Location
Find out what your peers are saying about Fortinet, Check Point Software Technologies, WatchGuard and others in Unified Threat Management (UTM). Updated: September 2025.
869,095 professionals have used our research since 2012.