Check Point NGFW vs Sophos XGS comparison

Cancel
You must select at least 2 products to compare!
Fortinet Logo
120,425 views|88,209 comparisons
90% willing to recommend
Check Point Software Technologies Logo
27,173 views|16,714 comparisons
96% willing to recommend
Sophos Logo
6,071 views|4,100 comparisons
92% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Check Point NGFW and Sophos XGS based on real PeerSpot user reviews.

Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Check Point NGFW vs. Sophos XGS Report (Updated: May 2024).
772,277 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"One of the valuable features is a standardized OS.""The main reason why I purchased the particular unit was that it had good reviews and what other people were saying as far as its completeness and its leading capabilities in terms of endpoint security was very good.""It can expand easily.""Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure.""User-friendly and affordable security solution that's recommended for SMB customers. This solution has good technical support.""The security on offer is very good.""It's super reliable. I don't think I've ever had a reliability issue with it.""The most valuable feature is the policy routing and application control."

More Fortinet FortiGate Pros →

"The ability to split single hardware into multiple virtuals along with support for dynamic routing using BGP is very useful for our environment.""The way in which it manages the nodes within a cluster architecture is excellent, offering fault tolerance which is, in my experience, practically imperceptible when one of the nodes fails.""It's offering great security while also being rather easy to manage.""It creates granular security policies based on users or groups to identify, block or limit the usage of web applications.""The documentation is simple to understand and is easily available.""It's a lightweight solution, requiring minimal storage, resources, and memory to operate effectively.""It also gives us a single console for everything. Rather than having one device for URL filtering and a different device as a firewall, this gives us everything in one place.""The detection rate for any cyberattacks/suspicious activity is very high (more than 90%)."

More Check Point NGFW Pros →

"There are good KCL rules and policies as well as NATing rules.""Sophos XGS' most valuable features are protection and intrusion prevention detection.""It offers an easy initial implementation.""Web filtering and intrusion detection are essential features. As system integrators, we also like the dashboard because it's easier to configure all the features.""The most valuable features in Sophos XGS are bandwidth management, content filtering, and WAN link management failover. If one internet activity or one link would fail, automatically it will switch over to another one.""The most valuable feature of Sophos XGS is the application control.""The solution is cost-effective and easy to manage.""The initial setup is very simple."

More Sophos XGS Pros →

Cons
"The monitor and the visibility, in this proxy, is very weak.""The main aspect of FortiGate that could be improved is load balancing. Our management team does not want to buy another appliance for only load balancing.""We sometimes have issues with FortiGate's routing table in the latest firmware update. We had to downgrade the device because our customers complained about bugs.""We would like to see an upgrade to the VPN feature, we are using the VPN from outside of our office and there is a limitation to 10 connections, more connections would be suitable.""In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface.""Some configuration elements cannot be easily altered once created.""We would like to see a better training platform implemented.""There are problems with the custom reporting of the unique traffic. The data is there, but it is too difficult for us to extract."

More Fortinet FortiGate Cons →

"Although they have it now, we don't have a license for it, and I think mobile device security should be a standard feature. I cannot control someone bringing their device to my network and what they do.""SmartEvent Settings and Policy GUI, and the rest of external apps should be improved.""Lately, Check Point seems to be pushing new products too early.""The upgrade is something we would like to be improved in the future as the frequency of hotfixes is too much, and by the time we finish the one round, we already have the new version released and are required to upgrade.""Check Point can scale but at times we have experienced some issues.""Check Point is a bit difficult to use and manage so it would be nice to see some improvement in those areas.""Reporting has to be improved.""The exterior of the physical device can be improved with the use of a display and not just simple lights."

More Check Point NGFW Cons →

"Its pricing could be better.""Sophos XGS would benefit from further development in the SD-WAN area.""It has recently started to suddenly block and crash.""Sophos XGS needs improvement with the threshold values. Other solutions have the capacity to handle more users.""In version 18 of Sophos XGS, the log details are not very good. However, in version 19 they are more detailed. The Fortinet FortiGate has better detail overall compared to Sophos XGS. They provide updates to the solution frequently, but they do not fix the problems that exist.""Sophos XGS's response to zero-day attacks could be improved.""In future releases, this solution could have more graphical elements on the dashboard to make it easier to understand.""They should customers who are facing issues with their product reviews; they found bots in it. If they can do their proper research and use the user analysis and testing, that would greatly help the clients."

More Sophos XGS Cons →

Pricing and Cost Advice
  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it."
  • "Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget."
  • "The price is high in comparison to other solutions."
  • "We pay $5,000-$6,000 a year."
  • "Maybe the pricing is a bit high but you get the durability and the duration."
  • "Licensing issues may be confusing at times."
  • "It is quite an expensive product, although security is a top priority."
  • "This product is not cheap and there are additional costs that depend on what model or package that you buy."
  • More Check Point NGFW Pricing and Cost Advice →

  • "I live in Bolivia and the price of Sophos XGS is high. However, they have adjusted their price a little over the past while but the price could still be less expensive to be affordable."
  • "Once you pay for the Sophos XGS hardware there is no license required. There are additional costs if you want the support. We have purchased support for three years."
  • "The price of the solution is reasonable and their target market is small to medium-sized companies."
  • "Sophos XGS is priced lower than some of its competitors, such as Fortinet"
  • "The license for Sophos XGS is for three years, paid on a yearly basis. Everything is included with the license; there are no additional fees."
  • "The cost is comparable to other similar solutions."
  • "The price of Sophos XGS is less than competitors worldwide. However, in Turkey the solution is expensive."
  • "The licensing cost is in the normal range and is not very costly."
  • More Sophos XGS Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    772,277 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such)… more »
    Top Answer:Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall… more »
    Top Answer:Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion… more »
    Top Answer:The policies are the greatest feature. They allow us to configure granular control over our network traffic.
    Top Answer:The product’s pricing is average compared to other solutions.
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Check Point NG Firewall, Check Point Next Generation Firewall
    Learn More
    Overview

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    Check Point NGFW is a next generation firewall that enables safe usage of internet applications by blocking malicious applications and unblocking safe applications. Check Point NGFW, which uses deep packet inspection to identify and control applications, has features such as application and user control and integrated intrusion prevention (IPS), as well as more advanced malware prevention capabilities like sandboxing.

    Check Point NGFW includes 23 firewall models optimized for running all threat prevention technologies simultaneously, including full SSL traffic inspection, without compromising on security or performance.

    Benefits of Check Point's Next Generation Firewall

    • Robust security: Check Point NGFW delivers the best possible threat prevention with SandBlast Zero Day protection. The SandBlast protection agent constantly inspects passing network traffic for exploits and vulnerabilities. Suspicious files are then emulated in a virtual sandbox in order to detect and report malicious behavior.

    • Security at hyperscale: On-demand hyperscale threat prevention performance provides cloud level expansion and resiliency on premises.

    • Unified management: Check Point's SmartConsole makes it easy to manage and configure network security environments and policies. With the SmartConsole, users can manage all the firewall gateways and access logs and install databases from one location. Unified management control across the network increases the efficiency of security operations and reduces IT costs.
    • Continuous logging: Check Point NGFW’s Threat Management feature detects vulnerabilities and logs them. Using the logged data, users can easily create and implement efficient security policies.

    • Remote access: The remote access VPN provides a seamless connection for remote users.

    Check Point NGFW is suitable for organizations of all sizes, from small businesses to larger enterprises.

    Reviews from Real Users

    Check Point NGFW stands out among its competitors for a number of reasons. Two major ones are its intrusion prevention feature as well as its centralized management, which makes it very easy to deploy firewall policies to many firewalls with one click.

    Shivani J., a network security administrator, writes, "Check Point has a lot of features. The ones I love are the antivirus, intrusion prevention, and data loss prevention."

    G., a network administrator at Secretaría de Finanzas de Aguascalientes, writes, “Within the organization, the inspection of packages has given us great help in detecting traffic that may be a threat to the institution. The configuration of policies has allowed us to maintain control of access and users for each institution that is incorporated into our headquarters.”

    Arun J., a senior network engineer, notes, “The nicest feature is the centralized management of multiple firewalls. With the centralized management, we can easily use and operate multiple firewalls as well as create a diagram of them.”

    Sophos XGS is a comprehensive network security solution designed to protect organizations from advanced threats. It combines next-generation firewall capabilities with advanced threat protection, web filtering, and application control. 

    XGS has powerful deep learning technology and can detect and block even the most sophisticated malware and ransomware attacks. It also offers granular control over web access, allowing organizations to enforce policies and prevent access to malicious or inappropriate websites. Additionally, XGS provides application control features, enabling organizations to manage and prioritize network traffic based on specific applications or user groups. 

    With its intuitive management interface and centralized reporting, XGS offers easy deployment and monitoring of network security. 

    Sample Customers
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    Control Southern, Optimal Media
    Information Not Available
    Top Industries
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company6%
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company15%
    Comms Service Provider7%
    Manufacturing Company6%
    VISITORS READING REVIEWS
    Educational Organization51%
    Computer Software Company8%
    Financial Services Firm5%
    Government4%
    REVIEWERS
    Comms Service Provider20%
    Manufacturing Company10%
    Transportation Company7%
    Insurance Company7%
    VISITORS READING REVIEWS
    Computer Software Company17%
    Comms Service Provider8%
    Construction Company7%
    Manufacturing Company7%
    Company Size
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business28%
    Midsize Enterprise32%
    Large Enterprise40%
    REVIEWERS
    Small Business32%
    Midsize Enterprise18%
    Large Enterprise49%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise59%
    Large Enterprise27%
    REVIEWERS
    Small Business69%
    Midsize Enterprise11%
    Large Enterprise20%
    VISITORS READING REVIEWS
    Small Business43%
    Midsize Enterprise18%
    Large Enterprise39%
    Buyer's Guide
    Check Point NGFW vs. Sophos XGS
    May 2024
    Find out what your peers are saying about Check Point NGFW vs. Sophos XGS and other solutions. Updated: May 2024.
    772,277 professionals have used our research since 2012.

    Check Point NGFW is ranked 5th in Firewalls with 279 reviews while Sophos XGS is ranked 17th in Firewalls with 62 reviews. Check Point NGFW is rated 8.8, while Sophos XGS is rated 7.8. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Sophos XGS writes "Easy to use, simple to learn, and offers great reporting". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and SonicWall NSa, whereas Sophos XGS is most compared with Sophos XG, OPNsense, Netgate pfSense, WatchGuard Firebox and Sophos UTM. See our Check Point NGFW vs. Sophos XGS report.

    See our list of best Firewalls vendors.

    We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.