No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point SandBlast Network vs Symantec Advanced Threat Protection comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point SandBlast Network
Ranking in Advanced Threat Protection (ATP)
7th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
41
Ranking in other categories
No ranking in other categories
Symantec Advanced Threat Pr...
Ranking in Advanced Threat Protection (ATP)
26th
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
16
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2026, in the Advanced Threat Protection (ATP) category, the mindshare of Check Point SandBlast Network is 3.3%, down from 3.6% compared to the previous year. The mindshare of Symantec Advanced Threat Protection is 2.0%, up from 1.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Advanced Threat Protection (ATP) Mindshare Distribution
ProductMindshare (%)
Check Point SandBlast Network3.3%
Symantec Advanced Threat Protection2.0%
Other94.7%
Advanced Threat Protection (ATP)
 

Featured Reviews

Karan Pichlangia - PeerSpot reviewer
Assistant General Manager at Sunteck Realty Pvt Ltd
Advanced threat analysis has reduced malware incidents and gives our security team more confidence
The best features that Check Point SandBlast Network offers include threat emulation for zero-day attacks, which I truly appreciate, and deep file analysis across multiple OS environments. The deep file analysis from Check Point SandBlast Network makes my daily workflow much easier, as I am able to analyze everything in terms of a report about my network. Check Point SandBlast Network has positively impacted my organization, as I have seen huge changes with a notable drop in malware incidents, especially with suspicious attachments; it gives the security team confidence that known or zero-day files are checked automatically. Regarding the huge drop in malware incidents, I estimate that it may be around 20%.
Dennis O'Reilly - PeerSpot reviewer
Cyber SecOps Principal at Dotcom Security
Provides end-to-end antivirus protection and has good stability
Symantec Endpoint Protection provides end-to-end protection. Along with antivirus protection, it has a lot of key areas, including intrusive prevention, firewall features, and application and device control. It can integrate with other Broadcom solutions, such as Symantec Messaging Gateway and Symantec DLP. If you want to send an email, it gets scanned through endpoint protection and DLP. We get all Symantec functionality in a single pane.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"SandBlast updates the threat signatures frequently."
"SandBlast has opened us up to a lot more opportunities where we can offer this service to clients, that way they don't have to go to a third-party to get this specific solution. It comes in the Check Point Infinity Package so it has helped us a lot."
"Check Point SandBlast Network has positively impacted our organization by reducing incidents, improving user confidence, and saving time since implementing it. With around 2,000 users in our organization, after deploying threat emulation for network security, we haven't seen any incidents, including zero-day or ransomware attacks."
"Very few false positives are detected, which gives the confidence to raise flags when needed, ensuring the IT department is aware of threats and acting fast."
"Working for a Check Point partner we utilise Check Point's endpoint solution in our day to day work and the most valuable benefit is knowing I am being protected from email, endpoint and removable media attacks and when attacks occur I am likely to weather the storm better than other users."
"It looks out for new cyber ​​threats and generates predictions based on behaviors that are already detected on a daily basis."
"The specific security feature that stands out to me in Check Point SandBlast Network is its real-time protection, which extracts, emulates, and blocks traffic if any malicious signatures are present."
"It seems like it works all the time. We have never had an issue. We have never had something go undetected, anything major. All in all, it works pretty well."
"They manage to solve detection quite nicely, with rather elaborate detection compared to other providers, and Symantec also provides a useful set of information linked to each of the attacked computers."
"The product integrates well with our systems, and we have not encountered any problems."
"It has certainly helped out our audit efforts because we each stay compliant in terms of various security standards."
"What I like most about Symantec Advanced Threat Protection is its notification capability."
"The great advantage in using this product is it creates multiple services."
"The most valuable feature is Click-time URL protection."
"Their integrations are pretty good as are their Sandbox solutions, their proxies, and their LTAs with API or ICAP protocols."
"The most valuable feature is NetFlow threat protection."
 

Cons

"We would like to see this solution reach mobile devices more efficiently, through apps or more specific products."
"EDR and EPM solutions like Carbon Black or CyberArk have integrations with the cloud version of Sandblast, however, there must be on-premise Sandblast options also (due to the fact that there are regulations for cloud usage restrictions in some countries)."
"If any file is more than 15 GB, the inspection takes some time, so that can be reduced to make real-time protection much faster."
"Today, we have it as part of a solution or a package. However, we'd like there to be a way where we can have the solution's features available to us in a cheaper way in the future."
"There is a limit on the number of files that can be scanned in real-time, which could lead to us being found with our guard down on a high-traffic day."
"We have found a need for the application to be a bit more elastic, bringing it to SAS services and not IAS."
"I would like if it could emulate bigger files and somehow improve this usability. I don't know if this would be possible. However, if it was able to scan or emulate bigger files, then it would be safer for a company using it."
"It has some performance overhead, as sandboxing takes time and real-time delivery depends on threat extraction, requiring high performance."
"An improvement could be made on the reporting because then it would be easier to collect information and submit it for compliance."
"It also needs network-based threat protection for shared folders and files."
"It's a strange situation where the infrastructure of the consumer or customer is behind some kind of firewall and they have always used some kind of customized proxy. In this situation, the ATP has a very tough time to pass the information to the cloud and back. To fix, it requires a more elaborate and complex configuration for that particular case."
"Symantec appliances need improvement. The whole appliance environment is a robust system and it needs a massive amount of storage space. If you have to increase or speed up the background storage it's a pretty complicated process. The scalability and sizing is critical, and if you do it wrong you run into issues pretty quickly."
"One area for improvement could be the pricing model."
"There are some ‎features that would add value to this product. One of them would be a graphical presentation of threats that the system has encountered."
"I think SonicWall and McAfee are better solutions."
"The administration interface needs a lot of improvement. It should be UI based, and simple. They need to improve it. It's pretty much not that friendly compared to what we were using as Bitdefender before. It's okay but is improving, actually."
 

Pricing and Cost Advice

"The pricing is quite effective, not excessively high. On a scale of one to ten, where ten is the highest price, I rate the pricing a nine."
"We would like to try the Threat Extraction blade, but you need to buy a license. Check Point is expensive. I would like to buy things, but I would need the funding."
"Choosing the correct set of licenses is essential because, without the additional software blade licenses, the Check Point gateways are just a stateful firewall."
"The cost is not significantly high and it can be negotiated during any purchase of NGFW."
"The product's cost is high."
"I think the overall cost for introducing Check Point with SandBlast was reasonable and competitive in the market."
"We have seen ROI."
"The cost of Check Point SandBlast Network is annually, and there is only a standard license."
"Pricing is good. It is nice to have a great product at a fair price."
"The price is quite expensive."
"Symantec Endpoint Protection has an average price."
"Symantec Advanced Threat Protection's pricing is comparable."
"The pricing of this solution is inexpensive and affordable."
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
908,877 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
11%
Construction Company
11%
Financial Services Firm
10%
Manufacturing Company
9%
Financial Services Firm
11%
Outsourcing Company
11%
Manufacturing Company
10%
Marketing Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business31
Midsize Enterprise8
Large Enterprise13
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise3
Large Enterprise13
 

Questions from the Community

What is your experience regarding pricing and costs for Check Point SandBlast Network?
My experience with pricing and setup cost is that pricing was a bit high, but the setup cost was initially justified.
What needs improvement with Check Point SandBlast Network?
I feel that Check Point SandBlast Network could be improved with slight delays in cleaning the file delivery. Additionally, I think it requires proper tuning to avoid unnecessary notifications.
What is your primary use case for Check Point SandBlast Network?
My main use case for Check Point SandBlast Network is advanced threat protection, especially for scanning emails, attachments, web downloads, and incoming files through a sandbox environment. A qui...
What needs improvement with Symantec Advanced Threat Protection?
One area for improvement could be the pricing model. Future releases could further enhance integration capabilities with other platforms and simplify the licensing model to compete more with Micros...
What is your primary use case for Symantec Advanced Threat Protection?
Our primary use case for the product is to provide advanced threat protection to our clients, primarily in the banking and financial sectors.
What advice do you have for others considering Symantec Advanced Threat Protection?
Symantec ATP has proven to be a reliable and effective solution. I rate it a nine out of ten.
 

Overview

 

Sample Customers

Edenred, State Transport Leasing Company (STLC), Edel AG, Laurenty, Conseil Départemental du Val de Marne, Koch Media
ECI
Find out what your peers are saying about Check Point SandBlast Network vs. Symantec Advanced Threat Protection and other solutions. Updated: August 2026.
908,877 professionals have used our research since 2012.