Check Point CloudGuard CNAPP vs Rapid7 InsightCloudSec comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Ranking in Cloud Security Posture Management (CSPM)
5th
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
5th
Average Rating
8.6
Number of Reviews
82
Ranking in other categories
Vulnerability Management (5th), Cloud and Data Center Security (7th), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (6th), Compliance Management (4th)
Check Point CloudGuard CNAPP
Ranking in Cloud Security Posture Management (CSPM)
4th
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
4th
Average Rating
8.6
Number of Reviews
65
Ranking in other categories
Vulnerability Management (6th), Cloud and Data Center Security (8th), Container Management (6th), Cloud Workload Protection Platforms (CWPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (3rd)
Rapid7 InsightCloudSec
Ranking in Cloud Security Posture Management (CSPM)
28th
Ranking in Cloud-Native Application Protection Platforms (CNAPP)
18th
Average Rating
7.6
Number of Reviews
3
Ranking in other categories
Cloud Management (29th)
 

Market share comparison

As of June 2024, in the Cloud Security Posture Management (CSPM) category, the market share of SentinelOne Singularity Cloud Security is 2.1% and it increased by 47.3% compared to the previous year. The market share of Check Point CloudGuard CNAPP is 3.7% and it increased by 7.9% compared to the previous year. The market share of Rapid7 InsightCloudSec is 1.8% and it increased by 64.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Security Posture Management (CSPM)
Unique Categories:
Vulnerability Management
1.8%
Cloud and Data Center Security
0.2%
Cloud Management
0.1%
Cloud-Native Application Protection Platforms (CNAPP)
1.7%
 

Featured Reviews

Nilesh Jadhav - PeerSpot reviewer
May 6, 2024
Improves security posture, reduces false positives, and speeds up remediation time
Our infrastructure is on AWS and we integrate PingSafe with our enterprise accounts to identify misconfiguration on the Cloud The offensive security engine helps us visualize any potential attacks. PingSafe helps us maintain and improve our security posture. It has helped reduce the number of…
Ilaria Buonagurio - PeerSpot reviewer
Dec 22, 2023
Good monitoring, compliance, and reporting of remediation actions
The service is already top-notch; both on the commercial side and on the technical side. I had the luck to be put in contact with a very talented and skilled technical after-sales team that guided us step by step through the configurations. Also, the commercial team was very comprehensive with our situation and allowed us to create a package that best fit our needs. One feature of the product that I would like to enhance is the possibility to connect to vulnerability management platforms so that the issues that emerge from the scans can then be ingested directly into the vulnerability management process. It would be very nice to provide, on top of API connections, built-in plugins for the major ticketing systems.
SR
Aug 3, 2023
Agentless scanning helps monitor workloads, but the solution needs a better UI and should include CNAPP features
Overall, Rapid7 ICS is good. There are no major drawbacks. However, there are a lot of other solutions in the market, not only providing the features of a CSPM, but also CNAPP. When it comes to CNAPP, if you have deployed many containerized-based applications within your environment, plus the containers, managing all those things becomes complex. It can't be easy to keep an eye on those resources because sometimes doing so requires an additional agent that one needs to deploy so that they can perform the scans on those workloads. However, there are a lot of tools in the market that provide these scans at the API level. One could connect Rapid7 with an API at the workload or cluster level, and you'll get all that information. However, the challenge is how easily you can implement those things within the environment. Sometimes, you'll encounter some complexity while implementing APIs. Some customers won't be happy getting complex things implemented. At the end of the day, they would prefer that things be simpler. That is something Rapid7 could improve on. Besides, the UI is a bit complex and not user-friendly, but they're working on that.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I did a lot of research before signing up and doing the demo. They have a good reputation as far as catching threats early on."
"With PingSafe, it's easy to onboard new accounts."
"PingSafe stands out for its user-friendly interface and intuitive software, making it easy to navigate and use."
"The multi-cloud support is valuable. They are expanding to different clouds. It is not restricted to only AWS. It allows us to have different clouds on one platform."
"Support has been very helpful and provides regular feedback and help whenever needed. They've been very useful."
"Cloud Native Security's best feature is its ability to identify hard-coded secrets during pull request reviews."
"Atlas security graph is pretty cool. It maps out relationships between components on AWS, like load balancers and servers. This helps visualize potential attack paths and even suggests attack paths a malicious actor might take."
"The cloud misconfiguration is the most valuable feature."
"I love the work involved in maintaining and scaling security services and configurations across multiple public clouds using this solution, versus using native native cloud security controls. It is so much better. The different cloud platforms all have their own way that they handle a lot of the stuff that Dome9 handles. Even within their platform, they are in a lot of disparate places, e.g., in AWS, there are five different tools. You have to jump between them to get the same information that you can just pull in automatically on Dome9, which is just one platform. We are using multiple platforms, so that makes it even more complicated and time consuming if you had to just rely on them to get all of your information. Whereas, it's all just summarized and put together on the Dome9 end."
"The CloudGuard for Cloud Intelligence tool has several significant features that provide security to our company."
"It presents great visibility of the traffic flow of our cloud, providing information on what data and users are circulating and in the event of a threat, it immediately identifies them by providing detailed and granular information from our entire environment."
"The solution offers an excellent price, benefit, and installation relationship."
"Gives us centralized firewall management for both Windows and Linux distros. Also provides a clear view of the security configurations and connections across environments (DMZ, external and internal networks)."
"It offers advanced detection of threats that can harm data from the cloud database."
"The automatic learning and an AI engine help to find more modern vulnerability problems."
"Helps identify and correct misconfigurations in cloud environments, ensuring that infrastructure and applications are secure and optimized."
"The tool provides centralized visibility through dashboards and alerts, allowing customers to receive reports on cloud vulnerabilities and security posture. Rapid7 InsightCloudSec provides customers with a robust understanding of cloud security."
"I find the security frameworks and security tools valuable. I think they're good in the infrastructure of the code security. They are also good at threat protection."
"The tool's most valuable feature is workload protection for Kubernetes and container security. It has agents that identify bugs or lack of security on runtime containers."
"Agentless scanning is a possible use with Rapid7 InsightCloudSec."
 

Cons

"It does not bring much threat intel from the outside world. All it does is scan. If it can also correlate things, it will be better."
"We use PingSafe and also SentinelOne. If PingSafe integrated some of the endpoint security features of SentinelOne, it would be the perfect one-stop solution for everything. We wouldn't need to switch between the products. At my organization, I am responsible for endpoint security and vulnerability management. Integrating both functions into one application would be ideal because I could see all the alerts, heat maps, and reports in one console."
"PingSafe filtering has some areas that cause problems, and to achieve single sign-on functionality, a break-glass feature, which is currently unavailable, is necessary."
"The recommended actions aren't always specific, so it might suggest recommendations that don't apply to the particular infrastructure code I'm reviewing."
"They could generally give us better comprehensive rules."
"For vulnerabilities, they are showing CVE ID. The naming convention should be better so that it indicates the container where a vulnerability is present. Currently, they are only showing CVE ID, but the same CVE ID might be present in multiple containers. We would like to have the container name so that we can easily fix the issue."
"One of the issues with the product stems from the fact that it clubs different resources under one ticket."
"There's room for improvement in the graphic explorer."
"The main issue that we found with Dome9 is that we have a default rule set with better recommendations that we want to use. So, you do a clone of that rule set, then you do some tweaks and customizations, but there is a problem. When they activate the default rule set with the recommendations and new security measures, it doesn't apply the new security measures to your clones profile. Therefore, you need to clone the profile again. We are already writing a report to Check Point."
"We're looking for a solution that can incorporate legacy infrastructure for some of our business needs."
"One feature of the product that I would like to enhance is the possibility to connect to vulnerability management platforms so that the issues that emerge from the scans can then be ingested directly into the vulnerability management process."
"I’d like to see more integration with third-party tools. For example, it would be helpful to have an integration between Dome9 and ServiceNow to manage security incidents and security changes."
"We have had some issues with the performance. In some cases, the performance of CloudGuard CNAPP is impacted. Particularly during the intensive security scans in high-traffic environments, there has been a performance impact."
"The costs are high."
"The performance can be better. Sometimes, the performance is not up to the mark. There is also integration complexity with third-party software and tools."
"The false positives can be annoying at times."
"Rapid7 InsightCloudSec could be better at showing dashboards for virtual firewalls and appliances. Compared to other solutions like Palo Alto, this area is not as good. So, they should work on improving this for virtual devices."
"Technical support could be better. It could also be easier, more user-friendly, and intuitive. The API keys aren't easy to understand, and the cloud layouts aren't intuitive and user-friendly. We should be able to integrate IM governance and APIs into non-compliant workloads like legacy solutions."
"There are a lot of other solutions in the market, not only providing the features of a CSPM, but also CNAPP."
"The tool needs to improve its documentation."
 

Pricing and Cost Advice

"Singularity Cloud Security by SentinelOne is cost-efficient."
"Its pricing was a little less than other providers."
"Singularity Cloud Workload Security's pricing is good."
"It's a fair price for what you get. We are happy with the price as it stands."
"It was reasonable pricing for me."
"Singularity Cloud Workload Security's licensing and price were cheaper than the other solutions we looked at."
"PingSafe is less expensive than other options."
"PingSafe is not very expensive compared to Prisma Cloud, but it's also not that cheap. However, because of its features, it makes sense to us as a company. It's fairly priced."
"The solution’s pricing is a little bit high."
"The pricing is tremendous and super cheap. It is shockingly cheap for what you get out of it. I am happy with that. I hope that doesn't get reported back and they increase the prices. I love the pricing and the licensing makes sense. It is just assets: The more stuff that you have, the more you pay."
"The price is on the higher end."
"I would advise taking into account the existing number of devices and add a forecast of the number of devices to be added in the coming year or two, to obtain better pricing."
"The license fee is high."
"In the beginning, the price of Dome9 was cheap, whereas now it is not."
"Its price is very fair."
"Right now, we have licenses on 500 machines, and they are not cheap."
"We're doing an annual subscription. There are additional expenses, but not within the confines of this platform."
"Companies generally buy this tool because the pricing is not that high."
report
Use our free recommendation engine to learn which Cloud Security Posture Management (CSPM) solutions are best for your needs.
787,226 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
21%
Financial Services Firm
15%
Manufacturing Company
11%
Insurance Company
4%
Financial Services Firm
17%
Computer Software Company
15%
Security Firm
8%
Manufacturing Company
7%
Computer Software Company
14%
Manufacturing Company
13%
Financial Services Firm
10%
Retailer
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What needs improvement with PingSafe?
When I joined my organization, I saw that PingSafe was already implemented. I started to use the tool's alerting feat...
What do you like most about Rapid7 InsightCloudSec?
The tool provides centralized visibility through dashboards and alerts, allowing customers to receive reports on clou...
What is your experience regarding pricing and costs for Rapid7 InsightCloudSec?
Companies generally buy this tool because the pricing is not that high. ICS's pricing is still per the market standar...
What needs improvement with Rapid7 InsightCloudSec?
Rapid7 InsightCloudSec could be better at showing dashboards for virtual firewalls and appliances. Compared to other ...
 

Also Known As

PingSafe
Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
DivvyCloud
 

Overview

 

Sample Customers

Information Not Available
Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
Fannie Mae, 3M, PizzaHut, Spotify, Autodesk, Discovery
Find out what your peers are saying about Check Point CloudGuard CNAPP vs. Rapid7 InsightCloudSec and other solutions. Updated: May 2024.
787,226 professionals have used our research since 2012.