Check Point Harmony Mobile Room for Improvement

JG
Head of Special Projects Unit-RCJA (SANDETEL) at Junta de Andalucia

It could expand the functionalities to, in addition to security functionality, incorporate Mobile Device Management (MDM) functionalities such as remote device management, administration of installed applications, etc. In a wide network like ours, it would be a very desirable feature, since, in the same product, we would have all the device management and security capabilities we need. Another capacity that I would add to the product would be greater performance optimization options for older terminals. Our fleet is very varied and some devices are up to 5 years old.

View full review »
AshleyMorales - PeerSpot reviewer
Cloud computing at ITQS

The tool is very effective and proactive, I don't have much to say about the improvements it should have. It already has a very intuitive interface. Yet they should improve the order of each of the options a little since it is difficult to get used to the location of each one. They should rearrange each of the options since time is wasted finding each one.

They could make a more beautiful interface.

When an update is going to be done, it should be less heavy and should streamline operations.

View full review »
Nurullah Kazar - PeerSpot reviewer
Network Security Group Manager at Cyberwise

If you want a customized feature, it is generally rejected or takes too much time to integrate. 

If you face a problem on your console, only R&D from the support team can check the backend of the product. Sometimes this causes delays in solution time. 

The errors should be more visible to admin users. 

If you are responsible for regulations such as keeping your corporate important data in your country, this scenario is also possible with this product but sometimes it creates problems with viewing encrypted data.

View full review »
Buyer's Guide
Check Point Harmony Mobile
April 2024
Learn what your peers think about Check Point Harmony Mobile. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
767,847 professionals have used our research since 2012.
rb6k - PeerSpot reviewer
Business Co-Ordinator at Pentesec

I would love to see what other features they can add in the future. I would quite like to be able to block ads on my phone by blocking known inbound ad websites and services. 

I honestly am surprised that they have not simply gone to the mobile phone firms that build these devices, to have the solution installed at source and baked into the OS. It feels like the kind of business proposal that would benefit all parties except the scammers and criminals out there. 

A personal use license for my family would also be a handy thing. If you could go into the app store and buy it, then manage from home, that would be ideal. It seems like you need to have management to be able to do that - which is obstructive. 

View full review »
Avesh Kumar - PeerSpot reviewer
Software Tester at a tech services company with 51-200 employees

The tool is excellent for security purposes, and it gives a lot of information. That said, there needs to be some improvement in everything related to administration and assistance. 

The ability to integrate local and cloud technologies to create a hybrid scenario would be an upgrade. 

Making this tool compatible with Google MDM is one of the enhancements that must be made. 

The increased load on an outdated terminal, which slows them down, is another item to consider. 

It would be preferable if they could incorporate application vulnerability management.

View full review »
JJ
Project Manager at Junta de Andalucia

Check Point SandBlast Mobile solution is not a Mobile Device Management (MDM), it only takes care of device security. It should have the main functions of Mobile Device Management (MDM), such as automating tasks, automatic updates of applications, etc...

Compatibility with other Mobile Device Management (MDM) products on the market should be improved, ensuring correct operation between SandBlast Mobile and MDM.

Another aspect to take into account is the increased load on old terminals, causing them to work slowly.

View full review »
Prateek Agarwal - PeerSpot reviewer
Manager at Indian Institute of Management Visakhapatnam

Sometimes, the mobile app crashes and stops responding. We need to restart it to make it work. If restarting doesn’t work, we uninstall and install the app again. We also check the internet connectivity. If nothing works, we contact the technical support team. I rate the performance of the solution an eight out of ten.

The updates are very frequent. It should be once a month or once a quarter so the user can work on the mobile app without interruptions. The solution must be integrated with AI and machine learning so that we can predict threats and minimize attacks.

View full review »
RA
Founder - Director at a tech services company with 1-10 employees

Documentation may need a revisit, and on additional features: The problem comes when something goes haywire and customers have changed some elements of the mobile which affects the Android software environment. For the same, we looked for remote connectivity for revisiting the consumer's device safely and securely for which we tried a couple of openly available apps (in a controlled environment) which does not look very safe for consumers. Hence, would be interested to see an add-on or an extension software to be a part of 'Check Point Harmony' and can be used for remote monitoring and controlling (keeping all possible security and compliance aspects in mind!)

View full review »
LW
IT Security Manager at Telecommunications Services of Trinidad & Tobago Limited (TSTT)

Harmony has more support for Android OS as opposed to iOS. You need a third-party MDM solution to integrate with iOS. If you don't have an MDM, your app can't scan on an iOS device. The solution can scan everything on Android. It sees all your apps. 

View full review »
KP
Network Engineer at LTTS

We can say that this is a very good solution but Check Point has to reduce the cost. The cost is huge compared to other products, and it seems this solution is only for companies with a large budget.

If Check Point can reduce the cost with all of the required security software blades then this product can be used by companies with a medium level of budget, as well.

View full review »
Mitesh D Patel - PeerSpot reviewer
Senior Technical Consultant- Cyber Security at Ivalue Infosolution

At times, when configuring policies, the tool takes some time to apply the policy. If I configure a new policy and apply it to the management console, it may take time. The product should work on policy enforcement so that users can quickly enforce the policies within a fraction of a second.

View full review »
Jessica Muñoz - PeerSpot reviewer
Account Manager at a tech vendor with 11-50 employees

There are certain shortcomings in the integration capabilities that a product offers. In the future, I would like to see the product offer more integration features.

View full review »
IE
Cyber Security Consultant at Wirespeed

While it's great, there's always room for improvement. Adding capabilities for automatic deployment in an enterprise environment would be useful. Also, the ability to see licenses per mobile device would be handy.

So, in future releases, the ability to see the environment and licensing per device would be good.

View full review »
Dave Eversden - PeerSpot reviewer
Managing Director at Forever Group

We had some issues with loopback VPN DNS filtering stopping working periodically, however, this is something that we could probably iron out with support. In the end, we ended up disabling this feature and using Umbrella (which we also use). It is of course highly possible that we could have addressed this with their support team but in our scenario, it was easier to disable the functionality and run with a separate product that we already had available. Certainly, everything else worked fine and the alerts were very useful.

View full review »
Adrian Cambronero - PeerSpot reviewer
Consultant at ITQS

Harmony Mobile is one of the first tools that we implemented in the organization when we entered into the protection of mobile devices. For many years all our staff did not have any restrictions on mobile devices. 

An improvement would be the compatibility of linking local and cloud solutions to create a hybrid scenario. They should allow adding a SIEM for additional functions. That said, in relation to the characteristics that it currently presents, it satisfactorily complies with the security of mobile devices.

One of the improvements that can be made is that they become compatible with Google MDM. 

When it comes to scanning the network, sometimes my SSI ID does not appear; it would also be a great plus if they could make a unified console where you can manage several Check Point products and thus not be opening different consoles to manage different products.

View full review »
Jonathan Ramos G. - PeerSpot reviewer
Cloud Engineer at ITQS

Having a unified solution developed by one of the most reliable brands in the market gives our organization the peace of mind that data is safe anytime, anywhere. 

We know that for many companies, the management and administration of device and data security have been complex. However, Check Point Harmony Mobile solves and supports is in all this with solutions made for this need. At the moment, I would not change anything; from my perspective, it is complete.

Something that could be improved is the compatibility with older versions. In distribution centers where Android devices with version 4.4.0 used, the solution gives many errors. In newer versions, the tool complies with its proper functioning.

View full review »
reviewer1523535 - PeerSpot reviewer
IP LAN and Integrity Specialist at Chevron

There are more features for Android devices than Apple, but, think is more related to the Apple API than Check Point.

Some configuration options inside the management console are a little confusing because the interface is not always user-friendly.

Some policies that can cause problems on the devices, like remediation, cannot be implemented by the administrator and are required to be done by Check Point. This is inconvenient because in some cases, we need a remediation policy immediately and we cannot wait for Check Point to implement it.

View full review »
BD
Senior Manager at a financial services firm with 10,001+ employees

Reporting is quite complicated once more users are enrolled and they need disparate access. It needs to be maintained separately, which adds work for the admin and can lead to errors.

Enrollment emails are sent for each device, which means that when a user needs to change devices or enroll more than one, admins need to generate and send additional tokens.

The product does not provide deep capabilities for sharing specific data to users or groups separately, nor does it provide visibility as to whether a user has access to the data or not.

For example:

  • HR sharing certain learning videos or documents to a group of users. The solution does not provide reports as to whether these have been accessed by the user or not.
  • It does not provide a solution in the case where a device is being shared by multiple users
  • A site where one iPad is being shared between five users is a problem. Each user has their own access to the device but this solution does not have the capabilities of providing each user with specific access to data or applications.
View full review »
Hugo Alexis Espinoza Naranjo - PeerSpot reviewer
Perimeter Security Administrator at a security firm with 51-200 employees

One thing that should be improved in the future of the ability to ensure that mobile devices are protected from connections in environments with unlimited connectivity. 

In some cases, devices may be found in areas with little or no signal, which can make it difficult to connect to the network. That makes it difficult to use the solution. We ned to ensue we have something that allows users to work effectively even without a strong network connection. This would allow us to have a solution that adapts to the challenged presented by limited connection environments.

View full review »
Edwin Solano Salmeron - PeerSpot reviewer
Soporte técnico superior at Acobo

I would like to see management and remote administration functions in the same portal. I would like us to see it from the same centralized portal and be able to share its rules, its characteristics, and the advantages of cloud computing power. That way, we would have a more central way to manage the computers that belong to or are managed by us. Check Point Harmony Mobile is one of the features that we can see that is easy to install. We would like to have that same flexibility when it comes to managing it on the same platform where we share it with other features of Harmony Endpoint, Harmony Browser, or the NGFWs.

View full review »
Adam Coulibaly - PeerSpot reviewer
Suporta engineer at Novasys

If possible, it would be better if they can include vulnerability management for applications. When a user installs many applications, if there is a way to manage a pack of applications, it would be helpful.

View full review »
LW
IT Security Manager at Telecommunications Services of Trinidad & Tobago Limited (TSTT)

This is the first time we have ventured into protection of mobile devices. We have had many years where staff didn't have any restrictions on a mobile device. Since the migration from the BlackBerry Bell solution that we had back then, there has been a gap. Nobody was able to protect Android as well as iOS devices. And given that we were going into that space, we did not go in with the ability to do any serious lockdown or removal of apps. Mobile threat defense is not supported fully for Google MDM, so we're not using it within the Google MDM. It was supposed to be supported as of this month. We don't have Google MDM being supported by the solution as of yet.

It is a feature requirement, but they wrote me saying it was supposed to have been rolled out at the end of the second quarter of 2020, which would have been in the last month. We should have had something coming back from them so I wrote them last week, asking them where we are in terms of this roadmap. They are aware that it is something that I need.

My objective is to be able to have the MDM integration and to have some level of control over the asset itself.

Also, the one thing I don't see with it is that when I'm doing a scan on my network I'm not seeing my SSI ID showing up. I don't know if that means there's a bug or something we need to work out. But it's still giving me a good report in terms of the network scan and the device protection.

Another thing I would really like to see is a unified console where I don't have to use multiple devices or multiple consoles to manage my Check Point solutions. I am thinking of a unified console that could be linked back with some of the other solutions that we already have from Check Point, like CloudGuard. For all of the on-prem firewalls that we have, there would be one console, as opposed to these multiple consoles, and we would be able to link on-prem and cloud solutions to create that hybrid scenario. I haven't seen that feature yet.

I would also like to see support for other SIEM solutions such as Splunk.

View full review »
OP
Senior Network/Security Engineer at Skywind Group

I think that the pricing for the Check Point products should be reconsidered, as we found it to be quite expensive to purchase and to maintain. Maintenance requires that the licenses and the support services be prolonged regularly.

Alternatively, they should create some additional bundles of the software blades with significant discounts in addition to the current Next Generation Threat Prevention & SandBlast (NGTX) and Next Generation Threat Prevention (NGTP) offers.

We have also had several support cases opened for software issues, but none of them were connected with Check Point Mobile Access.

View full review »
Hendrik-Du Plooy - PeerSpot reviewer
Regional Manager at Saber1

The product needs to improve its user awareness. 

View full review »
MS
Senior Information Technologist at a energy/utilities company with 1,001-5,000 employees

The area that I find could use the most improvement would be in the forensics section of the administrator console. It would be super helpful if there were more details around the risks that were found on our mobile devices. A simple click to find out more information would be excellent. Also, a reporting option would be beneficial as well. Maybe the option to send an email to the administrators when a high-risk vulnerability is found and also the option to run a monthly report to send to administrators would be great. 

View full review »
GS
Manager, Infrastructure Services at a energy/utilities company with 1,001-5,000 employees

The admin portal is slightly clunky and sometimes shows a different status than what the device is actually doing. A simple refresh of that device corrects the issue and displays real-time data. Overall, it works well and the improvements so far for this product have been great. Allowing the user to control the real-time scan is important. In recent updates of the app version, this can be achieved easily, but the user doesn't always see that. Perhaps making a separate button or leveraging the menu ribbon for this feature may work better.   

View full review »
Diana Alvarado - PeerSpot reviewer
Security Admin at a tech services company with 51-200 employees

The improvement point may be the costs. They could be lower. In addition to that, they could also improve the Check Point Infinity Portal. It sometimes responds slowly.

The service provided by Check Point at the technical support level is somewhat slow, and they only provide help in English, which limits some clients.

We would like this solution to have more public documentation since sometimes it is difficult to find it.

View full review »
MK
Founder at Softnetx

There could be more automation features for the solution.

View full review »
LD
Cloud Support at a tech company with 1-10 employees

I feel that the implementation of users in a massive way should improve so that we can easily load some Excel, which can provide all the users that are required to be implemented.

Also, the solution or support service must improve, its newer applications are a little more difficult for the support teams since they take longer to solve.

The only language that is available is English. The hours of attention are somewhat uncomfortable as they are generally on the other side of the world, which is why they are not compatible with Latin America.

View full review »
Rodrigo Nalda - PeerSpot reviewer
Responsable de Ciberseguridad. CISO at a printing company with 501-1,000 employees

Based on the fact that we do not have an MDM system, the deployment of the solution has been a bit difficult. The deployment in the Android system is very simple but in the case of iOS, it is more complicated so the users require attention from our CAU.

View full review »
JK
Security Consultant at Synergy

In Harmony Mobile mobile, there is a part for network protection and it actually affects some Messenger apps. For example, in the LINE app, you can receive important messages from friends if you turn on the option in the default settings.


View full review »
RA
Security Sales Engineer at BT - British Telecom

I would like to see more visibility into the actual devices that it's protecting. In some cases, you don't want to see a lot. However, for our purposes, I would like to see more information about the applications which are installed, then have more control over what can and what cannot be installed. That would be very useful for us.

The GUI could be a bit more intuitive, as far as going from page to page and understanding what you're looking in the beginning. After you use it for a while, you get used it.

View full review »
SD
Information Technology Security Specialist at Telecommunications Services of Trinidad & Tobago Limited (TSTT)

Harmony Mobile could be improved with increased built-in DLP coverage.

View full review »
OP
Senior Network/Security Engineer at Skywind Group
  1. Some of our employees reported slow performance of the application on the old Android devices (Android version 2.4 and less), but I think it is mostly connected with the poor hardware resources on the older devices.
  2. The feature set between the Android and Apple devices is not fully equal. For example, with Android, it is possible to configure in the policy the file system tampering and keylogging and credential theft detection options. This is unavailable for the Apple devices. I don't think it is the fault of Check Point, but rather restrictions based on the different operating system capabilities. Nonetheless, I would like the policies to be more alike.
View full review »
KC
IT Security Analyst at a energy/utilities company with 1,001-5,000 employees

In the next release, I would like to see a Wi-Fi scanner to be able to identify whether a wireless network is malicious before you join it. That would be very valuable.

View full review »
CS
Systems Administrator at a retailer with 201-500 employees

Integration needs improvement. We use Check Point for email. We use Check Point Capsule Workspace and I wish that it tied into that better and was integrated with their email application so that when it's secure, then they're able to access their email and it could be deployed as one group instead of two separate applications. It's a little bit more work for us to deploy both of those so it'd be nice if they could be integrated.

With that, I think that having the functionality of being able to test the URL would be an improvement. For example, if you had an email with a URL address in it, you can copy and paste it in there and it can test it and tell you if it's a safe site or something like that. 

View full review »
ND
Security officer at a construction company with 11-50 employees

The project point needs improvement. 

View full review »
ST
Technology consultant at a tech services company with 501-1,000 employees

When adding users sometimes we were not able to send SMS to users also even after the application user was not visible in the dashboard. Upon troubleshooting, we found that the same user has previously integrated with our old Check Point SandBlast Mobile.

Also, we found configuring device groups & mapping policies is quite confusing. There should be a simpler interface.

Other than this, we did not have any problem as of now. In case of any problem, Check Point tech is always available to help.

View full review »
HV
Engineer at Caldoo

From my perspective, it's a very good product. I can't recall a moment where I thought a feature was missing.

It would be ideal if, one day, this product was bundled into a larger offering so that it's not just a standalone product.

View full review »
JK
Business Tranformation Project Manager at a financial services firm with 501-1,000 employees

The interface could be more user-friendly. They should improve the look and feel.

I would like to see more meaningful logs in the next release. The way the system is now, it's pretty expensive. 

View full review »
it_user1288029 - PeerSpot reviewer
Security Engineer at DGIT

For SandBlast Mobile, the only thing that is lacking is that it wasn't available for all types of users. However, Check Point has since fixed this, with ZoneAlarm. With ZoneAlarm for mobile, it will also direct from the Google Apps, or the Play Store. And then they get to pay for it too. I think it's a very nice solution. 

In terms of features, I believe they really have everything covered. I can't say if anything needs to be added. In this part of the world, we're still trying to bring ourselves up to speed in terms of what works best.

View full review »
SB
Senior Engineer at Spacertron

In terms of what needs improvement, the web interface should be simplified. It should be more user-friendly. It's too technical. 

View full review »
it_user967395 - PeerSpot reviewer
In-Charge (IT Support) at a financial services firm with 501-1,000 employees

It does the process in the background and it does a wonderful job but the methodologies don't pop up. They should make it more interactive. 

View full review »
Buyer's Guide
Check Point Harmony Mobile
April 2024
Learn what your peers think about Check Point Harmony Mobile. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
767,847 professionals have used our research since 2012.