We performed a comparison between Check Point CloudGuard Posture Management and AWS GuardDuty based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Features: Check Point CloudGuard Posture Management offers solid incident detection and detailed reporting. It also provides control over IAM roles and advanced compliance features. AWS GuardDuty stands out for its data collection, threat detection, and monitoring capabilities. Users say Check Point CloudGuard Posture Management should improve its false positives rate, vulnerability assessments, and integration. They also want greater customizability. AWS GuardDuty could benefit from a mobile version and more dashboard analytics. Users requested better threat intelligence and integration with new AWS services.
Service and Support: Experiences with Check Point customer service have been generally positive. Some users praised its quick response times. However, others found the technical support to be lacking. AWS GuardDuty customers have reported satisfactory and quick responses from the Amazon team.
Ease of Deployment: The setup process for Check Point CloudGuard Posture Management is fast and uncomplicated, although integrating it with cloud platforms may require additional time. In contrast, the AWS GuardDuty setup is straightforward and effortless, ensuring rapid and effective deployment.
Pricing: Check Point CloudGuard Posture Management to be cost-effective, but others found that the license cost was a barrier to scalability. AWS GuardDuty offers a competitive pricing structure based on a pay-as-you-use model, with costs that vary depending on the level of usage.
ROI: Check Point CloudGuard Posture Management provides comprehensive cloud management solutions, addressing compliance challenges and minimizing administrative workload. Users have experienced a significant return on investment and witnessed substantial growth in ROI. AWS GuardDuty primarily enhances overall security posture, fostering customer trust, and creating potential business prospects.
Comparison Results: Check Point CloudGuard Posture Management is preferred over AWS GuardDuty. Users praise CloudGuard Posture Management for its comprehensive data security and protection. It offers complete coverage of users' entire cloud infrastructure. CloudGuar is commended for its granular reporting, rule customization, IAM role, and embedded machine learning for real-time attack prevention. Users said AWS GuardDuty has limitations in analytics, reporting, and monitoring.
"The ease of use of the platform is very nice."
"It saves time, makes your environment more secure, and improves compliance. PingSafe helps with audits, ensuring that you are following best practices for cloud security. You don't need to be an expert to use it and improve your security."
"The real-time detection and response capabilities overall are great."
"Cloud Native Security's best feature is its ability to identify hard-coded secrets during pull request reviews."
"Cloud Native Security has helped us with our risk posture and securing our agenda. It has been tremendous in terms of supporting growth."
"The solution is a good alerting tool."
"The most valuable feature of the solution is its storyline, which helps trace an event back to its source, like an email or someone clicking on a link."
"We really appreciate the Slack integration. When we have an incident, we get an instant notification. We also use Joe Sandbox, which Singularity can integrate with, so we can verify if a threat is legitimate."
"We have over 1,000 employees, and we monitor their activity through AWS GuardDuty."
"With anomaly detection, active threat monitoring, and set correlation, GuardDuty alerts me to any unusual user behavior or traffic patterns right away, which is great for staying on top of potential security risks."
"It is a highly scalable solution since it is a service by AWS. Scalability-wise, I rate the solution a ten out of ten."
"One of the advantages of cloud services is the ability to use them on demand. There's minimal installation involved; you can check the latest offerings and make new deployments while dismantling the previous ones. This approach keeps you ahead of potential services, showcasing the agility of AWS."
"The correlation back end is the solution's most valuable feature."
"What I like most about Amazon GuardDuty is that you can monitor your AWS accounts across, but you don't have to pay the additional cost. You can get all your CloudTrail VPC flow logs and DNS logs all in one, and then you get the monitoring with that. A lot of times, if you had a separate tool on-premise, you would have to set up your DNS logs, so usually, Amazon GuardDuty helps with all your additional networking requirements, so I utilize it for continuous monitoring because you can't detect anything if you're not monitoring, and the solution fills that gap. If you don't do anything else first, you can deploy your firewall, and then you've got your Route 53 DNS and DNSSEC, but then Amazon GuardDuty fills that, and then you have audit requirements in AU that says, "Hey, what are your additional logs?", so you can just say, "Hey, we utilize Amazon GuardDuty." You're getting your CloudTrail, your VPC flow logs, and all your DNS logs, and those are your additional logs right there, so the solution meets a lot of requirements. Now, everything comes with a cost, but I also like that the solution also provides threat response and remediation. It's a pretty good product. I've just used it more for log analysis and that's where the value is at, the niche value. Once you do threat detection, it goes into a lot of other integrations you need to implement, so threat detection is only good as the integration, as the user that knows the tools itself, and the architecture and how it's all set up and the rules that you set within that."
"Since our environment is cloud based and accessible from the internet, we like the ability to check where the user has logged in from and what kind of API calls that user is doing."
"We use the tool for threat detection. AWS includes AI features as well. AWS GuardDuty gives us reports."
"We have more visibility than ever before, appreciating the valuable and proactive insight that we receive from the platform."
"The ability to integrate it with Microsoft Azure Sentinel allows us to validate the logs in an even more complex and meaningful way."
"The tool is also very intuitive; its dashboards are very complete and provide a lot of valuable information for decision-making to improve security."
"It offers advanced detection of threats that can harm data from the cloud database."
"The most valuable feature is the single dashboard that enables us to manage the entire cloud environment from one place."
"Almost all the features are valuable, but the most important is proactive threat detection. The overall administration, seamless integration, and being able to have one platform for monitoring our applications for suspicious activities and any potential security threats are also valuable."
"Cloud security posture management is the feature we've been using the longest."
"We like the GSL Builder feature. When you're running a security operations center, you spend a lot of time monitoring endpoint activity to ensure there is no malicious traffic or anonymous access in the environment. The GSL Builder is helpful for deep investigations of a particular reason for an incident. You can use it to get more information."
"I'd like to see better onboarding documentation."
"It would be really helpful if the solution improves its agent deployment process."
"Cloud Native Security's reporting could be better. We are unable to see which images are impacted. Several thousand images have been deployed, so if we can see some application-specific information in the dashboard, we can directly send that report to the team that owns the application. We'd also like the option to download the report from the portal instead of waiting for the report to be sent to our email."
"One area for improvement could be the internal analysis process, specifically the guidance provided for remediation."
"While it is good, I think the solution's console could be improved."
"The cost has the potential for improvement."
"One of the issues with the product stems from the fact that it clubs different resources under one ticket."
"Whenever I view the processes and the process aspect, it takes a long time to load."
"Amazon GuardDuty could be better enriched in threat intelligence data."
"The product needs to improve its cost-efficiency since it is expensive."
"I work in a bank, and it would be good if AWS GuardDuty could be integrated with other monitoring and detection tools we use."
"Because it's a threat detection service, they need to keep up with the various threat factors because new threat factors and attack factors come up all the time."
"It is evolving, and at the moment, I will just need it on a larger scale. Then, it will satisfy my demand, initially."
"AWS GuardDuty needs to be more customer-oriented."
"AWS GuardDuty sometimes shows false positives and should have better detection accuracy."
"We currently find Lacework to be much better at detecting vulnerabilities than AWS GuardDuty. The engines of AWS GuardDuty have to be improved."
"The performance can be better. Sometimes, the performance is not up to the mark. There is also integration complexity with third-party software and tools."
"The platform would be significantly enhanced by incorporating data security management capabilities."
"I strongly advise that the multi-layered security system of Check Point often undergoes updates and new versions keep coming."
"You do need to pay extra in order to get better support."
"The solution could be improved with a greater analysis of its Microsoft Security score."
"We were demotivated by the lack of native automation modules for the Terraform and Ansible tools."
"The price of this solution should be reduced so that it is more affordable to scale."
"The setup can be better. With every other Check Point product, the setup is scripted. You just approve versions, and then you are off. The setup for this solution is still very much manual. I would like to see that transition to more of a scripted setup."
More SentinelOne Singularity Cloud Security Pricing and Cost Advice →
AWS GuardDuty is ranked 4th in Cloud Workload Protection Platforms (CWPP) with 20 reviews while Check Point CloudGuard CNAPP is ranked 5th in Cloud Workload Protection Platforms (CWPP) with 64 reviews. AWS GuardDuty is rated 8.2, while Check Point CloudGuard CNAPP is rated 8.6. The top reviewer of AWS GuardDuty writes "A stellar threat-detection service that has helped bolster security against malicious threats". On the other hand, the top reviewer of Check Point CloudGuard CNAPP writes "Threat intel integration provides us visibility in case any workload is communicating with suspicious or blacklisted IPs". AWS GuardDuty is most compared with Microsoft Defender for Cloud, Prisma Cloud by Palo Alto Networks, CrowdStrike Falcon Cloud Security, Wiz and Akamai Guardicore Segmentation, whereas Check Point CloudGuard CNAPP is most compared with Prisma Cloud by Palo Alto Networks, Wiz, Microsoft Defender for Cloud, Qualys VMDR and Orca Security. See our AWS GuardDuty vs. Check Point CloudGuard CNAPP report.
See our list of best Cloud Workload Protection Platforms (CWPP) vendors.
We monitor all Cloud Workload Protection Platforms (CWPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.