Try our new research platform with insights from 80,000+ expert users

Check Point SandBlast Network vs Microsoft Defender Threat Intelligence comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
8.1
Check Point SandBlast Network provides 80% ROI by enhancing security, reducing incidents, ensuring compliance, and promoting business continuity.
Sentiment score
8.1
Microsoft Defender Threat Intelligence consolidates security, reduces costs, enhances intelligence, and effectively prevents breaches, offering significant ROI.
Protecting around 2,000 users from cyber threats, including ransomware, has positively impacted the organization's growth by reducing disruptions and business loss.
I have seen both money and time saved as a return on investment.
 

Customer Service

Sentiment score
6.5
Check Point SandBlast Network's support is generally praised for responsiveness, though some users desire quicker resolutions and improved documentation.
Sentiment score
7.4
Microsoft Defender support varies, with excellent technical help praised but mixed experiences with contact ease and expertise levels.
Level two support is knowledgeable and knows how the product works, which is very good.
 

Scalability Issues

Sentiment score
7.9
Check Point SandBlast Network is scalable and adaptable, praised for cloud features, but larger organizations may face resource challenges.
Sentiment score
7.9
Microsoft Defender Threat Intelligence offers scalable security, favored for flexibility, ease of use, and seamless cloud integration despite potential costs.
The scalability of Check Point SandBlast Network meets our organization's needs as we grow.
If there were some customizations available, I would rate its scalability as nine out of ten.
 

Stability Issues

Sentiment score
7.9
Check Point SandBlast Network is generally stable but can have cloud connectivity issues and high resource usage.
Sentiment score
8.3
Microsoft Defender Threat Intelligence is praised for stability, performance, security features, and resilience, despite occasional outages and delays.
It provides a high level of security and avoids phishing and scam emails.
 

Room For Improvement

Check Point SandBlast Network needs improved integration, usability, performance speed, cost efficiency, and better support for wider market appeal.
Microsoft Defender Threat Intelligence needs pricing, integration, support, AI, automation, and customization improvements for better affordability and usability.
Simplification of granular tuning for false positive reduction and bypassing benign files would benefit non-expert users.
Check Point SandBlast Network can be improved by adding more integration capabilities, such as integration with third-party firewalls, third-party EDR solutions, and SIEM.
Providing code customization would help keep pace with new vulnerabilities and threats.
From the telemetry data standpoint, I would prefer Defender data to be more open in future updates.
 

Setup Cost

Check Point SandBlast Network is seen as pricey, yet offers value with integrated security and potential cost savings through licensing.
Microsoft Defender Threat Intelligence is cost-effective in E5 bundles but can be complex and costly standalone for SMEs.
Pricing is a bit costly, but considering the features and security offered by Check Point SandBlast Network, it is reasonable.
 

Valuable Features

Check Point SandBlast Network enhances security with threat prevention, forensic analysis, and AI integration for comprehensive threat management.
Microsoft Defender Threat Intelligence integrates globally informed threat detection with seamless Microsoft product integration for comprehensive, automated protection and analysis.
The key features of Check Point SandBlast Network include its ability to detect zero-day attacks, provide sandboxing capabilities, and offer real-time protection with threat extraction.
It's effective in meeting the specific needs of customers through deployment and integration.
If a new phishing attack is detected, users can report it, enabling the solution to analyze and take corrective actions.
Our threat detection is enhanced due to the AI agents in Microsoft Defender Threat Intelligence, which helps in detecting automatically.
 

Categories and Ranking

Check Point SandBlast Network
Ranking in Advanced Threat Protection (ATP)
8th
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
38
Ranking in other categories
No ranking in other categories
Microsoft Defender Threat I...
Ranking in Advanced Threat Protection (ATP)
10th
Average Rating
8.4
Reviews Sentiment
7.4
Number of Reviews
32
Ranking in other categories
Threat Intelligence Platforms (4th), Microsoft Security Suite (15th)
 

Mindshare comparison

As of June 2025, in the Advanced Threat Protection (ATP) category, the mindshare of Check Point SandBlast Network is 5.1%, down from 5.3% compared to the previous year. The mindshare of Microsoft Defender Threat Intelligence is 1.6%, up from 1.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Advanced Threat Protection (ATP)
 

Featured Reviews

GaneshKhutwad - PeerSpot reviewer
Provides advanced threat prevention and utilizes geographic-based policies to mitigate attacks
Check Point offers three types of support: Gold, Platinum, and Diamond. The level of support you receive should be based on the criticality of the issue, not solely on your client's support tier. While there are established support levels, I have experienced instances where the support provided was not categorized as Gold, Platinum, or Diamond but rather a standard support level. In such cases, the response times were slower, and getting support personnel on the call was more difficult.
TapabrataSamanta - PeerSpot reviewer
A cost-effective solution for monitoring and security but lacks supports for non-Microsoft products
There are weaknesses, and Microsoft is working on addressing them. Over the past three to four years, the ATP and other components have improved significantly, and the integration has also advanced. We are using third-party services. While we have Microsoft Threat Intelligence, which leverages Microsoft's facilities, we also utilize additional third-party threat intelligence. As of today, we don't completely rely on Microsoft for certain regions. This is an area where Microsoft needs to improve. Consequently, we use Anomali, a third-party threat intelligence provider. We integrate our product's intelligence with Anomali, from which we obtain threat insights. Microsoft products offer significant advantages, especially in the realm of threat intelligence. It works very well with Microsoft products. However, you might need additional services if you have non-Microsoft products in your environment. For instance, if you use Apple or Linux, Microsoft's solutions alone might not be sufficient. If they can work more effectively, especially with zero-day attack speed and other sophisticated threats, it will help us provide our customers with timely newsletters about new attacks.
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
859,129 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
15%
Government
9%
Energy/Utilities Company
6%
Computer Software Company
15%
Financial Services Firm
13%
Educational Organization
10%
Government
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Check Point SandBlast Network?
The solution can detect and prevent attacks that may be encrypted.
What needs improvement with Check Point SandBlast Network?
Check Point SandBlast Network ( /products/check-point-sandblast-network-reviews ) can be improved by adding more integration capabilities, such as integration with third-party firewalls, third-part...
What do you like most about Microsoft Defender Threat Intelligence?
It just runs in the background. I don't have to worry about, making sure it's Intelligence. So, you know, this kind of makes it very easy, have to worry about installing. It is easy to use.
What needs improvement with Microsoft Defender Threat Intelligence?
From the telemetry data standpoint, I would prefer Defender data to be more open in future updates.
What is your primary use case for Microsoft Defender Threat Intelligence?
We have tried Microsoft Defender Threat Intelligence. I have expertise with Microsoft Defender products. I am not familiar with Microsoft Defender for IoT because we did not use that in our environ...
 

Overview

 

Sample Customers

Edenred, State Transport Leasing Company (STLC), Edel AG, Laurenty, Conseil Départemental du Val de Marne, Koch Media
Information Not Available
Find out what your peers are saying about Check Point SandBlast Network vs. Microsoft Defender Threat Intelligence and other solutions. Updated: June 2025.
859,129 professionals have used our research since 2012.