Check Point CloudGuard Network Security Valuable Features

Amber Mishra - PeerSpot reviewer
Pre-Sales Manager at DCIPHERS IT SOLUTIONS

Check Point CloudGuard Network Security has a beautiful threat emulation different from the market. They have a threat extraction feature. The solution's zero phishing feature is pretty much commendable. The solution has one of the best reporting any vendor has in network security. The solution also has a CSPM or posture management tool inbuilt into CGNS or network security.

View full review »
PS
Principle Network and Security Consultant at Vodafone Global Enterprise

Identity awareness, URL filtering, IDS, DLP, Content Filtering, VPN, and Application Control are all excellent. They provide features to inspect internet traffic, data protection compliance, and DDoS attack detection and protection.

The Check Point firewall product that we picked up has an excellent feature set and all the required licenses, it's a nicely engineered firewall technology and has a great support team to escalate.

Features like threat prevention and protection are good to have to protect against zero-day attacks, malware, and ransomware.

View full review »
Vincent Rendon - PeerSpot reviewer
Project Manager at a training & coaching company with 11-50 employees

The notifications, the visibility, and the deployment are the most valuable. It could be packaged in such a way that it took a lot of time and resources off our hands, so it was more efficient. I don't know how to quantify the time saved. It would have saved us at least two to three hours a day just because the traditional IT department has a lot of other tasks and duties. It didn't require a lot for us to become experts on the product. It was seamless. It didn't require too much learning. It was easy to use.

View full review »
Buyer's Guide
Check Point CloudGuard Network Security
March 2024
Learn what your peers think about Check Point CloudGuard Network Security. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
765,234 professionals have used our research since 2012.
RK
Sr Security Engineer at a consultancy with 10,001+ employees

The ease of deployment has been nice. It is like managing any of our on-prem firewalls.

View full review »
SK
System Engineer at a energy/utilities company with 10,001+ employees

I like the tool's ability to manage cloud traffic locally without routing it through our data centers.

View full review »
GB
Network and Security Engineer at a retailer with 10,001+ employees

It matches what we have on-prem. We kept the same management and the same functionality that we were having on-prem. It has simplified things for us because there is no new dashboard to touch.

View full review »
Rohit Ghorpade - PeerSpot reviewer
Cloud network engineer at Bajaj Allianz General Insurance Co. Ltd.

With the solution, we just need to filter the traffic coming from the internet and Direct Connect. So it filters the traffic, basically. It permits access. In short, it just filters the traffic and permits the traffic. The aforementioned details are the purposes for which we use the tool.

View full review »
Scott Chambers - PeerSpot reviewer
Senior Network Security Engineer at a manufacturing company with 10,001+ employees

We are using gateways, and I appreciate the high-availability gateways they have. They stand out more than the competitors. 

The Check Point architecture team adapting fluently to the architecture that each cloud has is valuable. They are adaptive to customer solutions, which is a big advantage.

View full review »
Jonathan Gamlin - PeerSpot reviewer
Network Architect at Thomson Reuters

Most recently, it would be the dynamic objects or datacenter objects. The query feature is going to be a game-changer for us as we move forward. It simplifies our policy, and it gives us a way to dynamically learn and discover things in the cloud instead of having a static way.

View full review »
Alfonso Peterson - PeerSpot reviewer
Senior Network Security Engineer at Edgewell Personal Care Company

The most valuable features are the ease of administration with the cloud management extension and the cloud licensing model.

View full review »
Sony James - PeerSpot reviewer
Technical Head at Quoinx Technologies private Limited

The feature most valuable to me is the NDTX blade that Check Point provides, and I like how the solution is not vulnerable. We haven't had any vulnerabilities in Check Point in the last six months, which is a plus point because the OS Check Point provides is hardened enough that it's not vulnerable to the newer issues, so the network security solution is given in a proper way. These features are an advantage for our customers.

The solution is easy to use once deployed if the administrators have a basic understanding of firewalling. Administrators just have to check the traffic passing through the solution, which will log the traffic properly. And if anything gets dropped, the solution will showcase that to you. The management server Check Point uses is a gold standard.

View full review »
SHRINKHALA SINGH - PeerSpot reviewer
Senior Manager at Agriculture Skill Council of India

There are no security lapses and 100% restriction of threat entrants in the system or server.

It's a cost-effective solution with no false positive cases.

The product helps in bringing productivity and enhanced customer experience for users.

We have a happy workforce and more workforce retention and increased IT environment sustainability.

There is 100% proactive detection of root causes and root sources.

It is dynamic and agile, and its features and utilities continuously improve and evolve.

It's the best-unified endpoint management solution for IT systems globally. The product is available for all kinds of business users.

View full review »
DR
Head of customer operations at Pentesec Limited

Some retail customers find the scale-up and scale-down features valuable, particularly with scale sets. This is useful for handling increased loads on devices and utilizing firewalls, similar to on-premises setups with active standby configurations.

The solution allows customers to migrate workloads securely into the cloud space with a trusted vendor, maintaining everything under a single platform. This ensures visibility into their cloud environments similar to on-premises setups, all managed through a single smart console. 

Unified security management simplifies operations by providing visibility into both cloud and on-premises infrastructure. The skill set required to manage it remains the same for both environments.

The level of confidence in CloudGuard Network Security, both for myself and my customers, is very high. The product operates familiarly, consistent with what customers are used to, and it is a trusted name in the space.

View full review »
Ajdin Heric - PeerSpot reviewer
Lead Security Analyst at BH Telecom

The tool's most valuable features for us are threat prevention, HTTPS inspection, and the Anti-Bot blade. Threat prevention helps to protect our assets from threats. HTTPS inspection ensures secure communication, and the Anti-Bot blade is particularly helpful in detecting C2 servers, enhancing our ability to identify malicious activities and protect our network.

We can confidently assert that we are among the top cloud providers, protecting our customers from external threats. With Check Point's CloudGuard Network Security, we offer attack services protection. 

View full review »
Hans Moggert - PeerSpot reviewer
Head of Datacenter at a tech services company with 201-500 employees

Its centralized control, ease of use, and flexibility are the most valuable for our data center security.

View full review »
HS
Web Designer at Milestone Technologies, Inc.

The security configuration features have enhanced the reliable coordination of programs and data safety. 

The secure VPN connects the company with remote clients for efficient collaboration. 

The blueprint promotes automation processes and infrastructure as code practices. 

The process of deployment and configuration with other applications is simple. It is easy to learn how this platform operation under flexible guidelines. 

The central security management server provides consistent security coverage and enforcement in hybrid environments.

View full review »
BW
Digital Coordinator at Modis

Network security threat tools can launch and give advanced reports to the IT team on the future performance of various systems. 

The data analysis dashboards provide comprehensive reports and graphic representations of network security. 

We have secured our digital systems with high-grade security tools that cannot be bypassed by ransomware attacks. The customer service technical team provided virtual training to our team and provided the best article guidelines. 

The automatic features seal all loopholes that could be exploited by cybercriminals.

View full review »
GC
ICT Officer at Kenyatta National Hospital

The most valuable feature of Check Point CloudGuard Network Security is the increased mail protection including spam.

View full review »
Aaron Vivadelli - PeerSpot reviewer
Sr Security Engineer at a computer software company with 51-200 employees

The auto-scaling feature is undoubtedly one of the most valuable aspects of having Check Point security in the cloud. It provides excellent protection by dynamically adjusting resources based on demand. Additionally, the centralized reporting and management, accessible through a single pane of glass, offer consistency and efficiency across multi-cloud environments. This unified approach ensures seamless security management regardless of the cloud platform, making it a highly advantageous feature of Check Point's cloud security solutions.

View full review »
JS
IT Advisor at a manufacturing company with 10,001+ employees

All the features that we subscribe to from CloudGuard NGTP are valuable. All the threat prevention and access control features give us the network security that we expect.

View full review »
LT
IT Security Engineer at a healthcare company with 1,001-5,000 employees

We find all the features valuable, particularly the firewall, application control, URL filtering, and HTTPS detection, as they cover our primary security needs effectively. We realized the benefits right away upon deployment.

View full review »
MP
Cloud Engineer at a energy/utilities company with 5,001-10,000 employees

The tool's most valuable features are the REST APIs that help to automate the deployment and maintenance process. It helps us to reduce time to 15-25 minutes compared to the manual process which used to take around two to three hours. 

It eliminates the need to manually import hundreds of IP addresses into firewalls and architecture objects. This process now happens automatically. 

The tool helps us to automate processes. Operating it is relatively easy, especially for standard tasks like implementing firewall rules for source, destination, port, or URL. Our team can handle these tasks. 

View full review »
Sunil M Naik - PeerSpot reviewer
Associate Regional Head- Southern at ASCI

Data protection and threat prevention across hybrid and private cloud environments is an extremely important aspect. Check Point has aced this. Any kind of cloud environment anywhere can be protected through this effortlessly. 

The encryption technology to prevent data loss and leakage works really well for us. All security instructions and policy processes are auto-scaled up and operate on their own and keep everything in check. 

Security management is unified and can be singularly managed from a place without any hassle.

View full review »
AT
Cyber Security Manager at H2O Power Limited Partnership

It's really the whole suite that is valuable. But within that, the Identity Awareness is good because you can build your policies around each user. You can say what each user, or group of users, like HR, for example, can do. 

Also, the visibility, the one-pane-of-glass which allows me to see all of my edge protection through one window and one log, is great. Monitoring everything through that one pane of glass is extremely valuable.

Their IPS stuff is just fine. It updates the signatures regularly and it does a lot of that stuff automatically in the background so I don't need to worry much about that. It does its blocking and organizes things for me, as an administrator, to look at and to pick and choose what preventions I need to have enabled. That is user-friendly and it's very descriptive. I know what I'm looking at and what I need to enable. It's really useful and is one of the reasons I continue to use the product.

In addition, the reporting gives you a lot of flexibility in building your own custom stuff.

View full review »
Paulo Lemos - PeerSpot reviewer
Systems Engineer at Pamafe Informatica LDA

The most valuable feature for us is the ability to run the gateways as virtual machines in our virtual data center. The tool protects the virtual data centers. 

View full review »
Fabio Fukushima - PeerSpot reviewer
Director at L8 Security

The SSL spectrum proved to be the most valuable for our incoming connections. This feature enabled us, for instance, to successfully prevent Log4J attack attempts.

View full review »
RM
Service Delivery Lead - IT Security at a real estate/law firm with 1,001-5,000 employees

Security effectiveness is the most valuable feature. Operational efficiency, reporting, and support are also good.

View full review »
BR
Sr Security Engineer at a consultancy with 10,001+ employees

We only use it for the firewall, so it is about security.

View full review »
OY
Communication Department Manager at a transportation company with 5,001-10,000 employees

The CloudGuard Network Security's most valuable feature is implementing IPS for accessing our data center and server environment in Azure. It helps us to prevent attacks. By protecting our environment with Check Point, which we were already familiar with, it provided a solution that extended into the cloud environment.

View full review »
Adrian Cambronero - PeerSpot reviewer
Consultant at ITQS

One of the features that I liked the most and that I feel is very useful is auto-scaling. Our Azure cloud environment is constantly growing and this allows us to expand as well. 

Another very accurate feature is CloudGuard's malware prevention and exploit resistance rate and they have given us a lot of security since the database is very large. 

It is easy to manage CloudGuard from on-premises and offers the same protection as we can provide to the rest of our environments, which is a great advantage for us.

View full review »
JH
Database Administrator at Ordina

Real-time monitoring of the security situation in all the applications has enhanced compliance and saved the company from unnecessary risks. 

It has prevented the organization from most attacks that could destroy data and slow down workflows. When browsing, it scans sites to ensure that they are safe and that no harm can be caused. 

The overall production of set features has set a reliable way to track down security threats and offers automated recovery. 

It provides real-time analytics on network security and excellent prevention measures.

View full review »
Jonathan Ramos G. - PeerSpot reviewer
Cloud Engineer at ITQS

There are many important characteristics that for me are the best of the solution and come to support an emerging market:

  • It improves the productivity of the company.
  • It performs very complex or high value manual operations intellectual in a controlled and neglected way.
  • There's a simplicity when performing tasks.
  • It improves the availability of engineers to carry out projects.
  • To all this we can add the ability to connect via API, and integrate solutions from developers trained for management from any location.
View full review »
Justin Mcclung - PeerSpot reviewer
Director of IT Operations at a tech services company with 10,001+ employees

The visibility is most valuable. It allows us to see all of our devices from one place, and it gives us the ability to manage push updates and things like that from one place.

View full review »
BW
Senior IT Analyst at a manufacturing company with 10,001+ employees

The most valuable feature I have found in CloudGuard Network Security is the flexibility to rebuild the firewall as needed.

View full review »
Allan Vasquez - PeerSpot reviewer
Cybersecurity Manager at a manufacturing company with 201-500 employees

Microsegmentation is very useful for us because we minimize the surface attack. The easy management of the policies is great for us because we are a small team and having easy management is great and useful for us.

View full review »
AG
Network Engineer at a computer software company with 1,001-5,000 employees

The solution is easier to manage than an on-premise firewall. It is easy to manage. The use of dynamic objects for these gateways made it easy to create the right rules and the right policies. Integration with Azure is also easy where we have to just add the subnets. In an on-premise setup, we have to add everything from scratch. We can automate a lot of actions.

View full review »
NB
Sr Network Engineer at a comms service provider with 1,001-5,000 employees

The network security is the most valuable aspect of CloudGuard. I am a network engineer so it's the most relevant feature to me.

CloudGuard Network Security provides us with unified security management across hybrid-clouds and on-prem. We manage all of those environments through this one solution. 

It's user-friendly. It's a multi-domain solution. CloudGuard is really, really good. 

I have experience with FortiGate and Cisco. I worked with them at previous jobs. FortiGate is easy and user-friendly when it comes to the configuration, but it is unstable in some countries and the routing tables have problems. The configuration of the network is in the same management platform, which might be better for some.

In comparison, CloudGaurd is very stable.

Cisco is hard to use, FortiGate is easy and CloudGuard is somewhere in the middle when it comes to ease of use. 

When it comes to identifying security threats, CloudGuard is really good compared to its competition.

I am confident that CloudGuard's Network Security can protect us. It enables me to sleep very well at night.

View full review »
NG
Support at a security firm with 51-200 employees

CloudGuard Network Security provides advanced threat prevention capabilities that can detect and block known and unknown threats, including malware, viruses, and zero-day attacks. This helps a lot for companies that have their infrastructure both on-premise and in Azure.

CloudGuard Network Security includes application control features that allow administrators to control which applications can access the network and how they can be used.

The automation of Check Point CloudGuard Network Security is incredible. It helps us to deploy implementations with good practices in the network; this is a great value add to the tool.

View full review »
it_user1033941 - PeerSpot reviewer
CTO at a healthcare company with 10,001+ employees

The most valuable feature for us is the cluster support. We have been using this for a long time, so it is not a feature from the latest version.

View full review »
Iulian Urziceanu - PeerSpot reviewer
Senior Network Security Engineer at Atos IT Solutions and Services A/S

The most valuable aspects of the solution include:

  • Easy to administer and also to deploy, thanks to automated setup with pre-configured templates. On top of that, security comes first.
  • The proactive threat detection results in huge risk reduction.
  • It has a user-friendly interface; it's best in the market for policy management and log monitoring.
  • There are multiple options to deploy (clustering, standalone, VMSS and single management solution, SMS or MDS, and even better: Infinity Portal).
  • It has a really strong user community, which seems to compensate for the very poor vendor support.
  • The capability to auto-scale in or out, depending on the resource demand is great.
View full review »
MA
Software Engineer at Mercado Libre

The access control principles enacted in the applications save confidential information from leaking to unsafe hands. 

The hacking detection feature blocks any suspicious activity that is detected on our websites. The 24/7 online customer support services enhance effective operations and provide quick services in case of a system failure. 

The authentication processes deployed across applications gives only approved members the authority to connect to the company network. This data protection system has set identification controls for confirming unique IDs.

View full review »
Hugo Alexis Espinoza Naranjo - PeerSpot reviewer
Perimeter Security Administrator at a security firm with 51-200 employees

Some of the features that are considered most valuable in Check Point CloudGuard Network Security include:

Advanced threat prevention. This feature includes firewall, intrusion prevention, anti-malware, and sandboxing capabilities that can help to protect against known and unknown threats in the cloud environment.

Network segmentation and micro-segmentation. This feature allows organizations to limit the spread of malware or other malicious activities in the event of a security incident. 

Centralized management. The solution provides a centralized management console for easy administration and monitoring of security policies and events, making it easy for the security team.

View full review »
AG
Planning Analyst at Ovato

The advanced threat prevention system stops any ransomware attacks that can leak confidential information to unauthorized parties. 

Both multi-cloud and on-premises are protected from data attackers, which has boosted the company's growth. 

This software is great in overall performance since it can locate any trouble across the networking system and provide solutions before it affects workflows. 

The automated network security is efficient in monitoring CI/CD workflows. The security across the premises has improved, and the application production has improved under a secure working environment.

View full review »
BD
Senior Manager at a financial services firm with 10,001+ employees

We are using multiple security features including the firewall, DLP, IPS, application control, IPsec VPN, Antivirus, and Anti-Bot. SandBlast provides Threat Extraction and Threat Emulation for zero-day attacks.

SSL/TLS traffic inspection features are used for advanced threat prevention against secure SSL traffic.

Unified Security Management provides security policy management, enforcement, and reporting for public, private, hybrid-clouds, and on-premises networks in a single-pane-of-glass.

Seamless cloud-native integration with Azure, AWS, GCP, Oracle Cloud, and more.

View full review »
MG
IT Security Manager at a retailer with 10,001+ employees

The features of the solution which I have found most valuable are its flexibility and agility. It's a fully scalable solution, from our perspective. We can define scaling groups and, based on the load, it will create new instances. It's truly a product which is oriented toward the cloud mindset, cloud agility, and this is a great feature.

Check Point is a known leader in the area of block rate, so I don't have any complaints about it. It's working as expected. And similarly for malware prevention. When it comes to exploit resistance rate, it's excellent. I haven't seen any Zero-day vulnerabilities found in Check Point products in a very long time, which is not the case with other vendors.

The false positive rate is at an acceptable level. No one would expect a solution to be 100 percent free of false positives. It's obvious that we need to do some manual tuning. But for our specific environment and for our specific traffic, we don't see a lot of false positives.

Overall, the comprehensiveness of the solution's threat prevention security is great. It was changed in our "80." version and I know that Check Point put a lot of effort into threat prevention specifically, as a suite of products. They are trying to make it as simple as it can be. I have been working with Check Point for a long time, and in the past it was much more complicated for an average user, without advanced knowledge. Today it's more and more user-friendly. Check Point itself has started to offer managed services for transformation configuration. So if you don't have enough knowledge to do it yourself, you can rely on Check Point. It's a really great service.

Check Point recently released a feature which recognizes that many companies are going with the MITRE ATT&CK model of incident handling, and it has started to tailor its services to provide incident-related information in that format. It is easier for cyber security defense teams to analyze security incidents, based on the information that Check Point provides. It's great that this vendor looks for feedback from the industry and tries to make the lives of security professionals easier.

I highly rate the security that we are getting from the product, because the security research team is great. We all know that they proactively analyze numerous products available on the IT market, like applications and web platforms, and they find numerous vulnerabilities. And from a reactive point of view, as soon as a vulnerability is discovered, we see a very fast response time from Check Point and the relevant protection is usually released within a day, and sometimes even within a few hours. So the security is great.

View full review »
Darren Fine - PeerSpot reviewer
It manager at ReportStar Technologies

Customers appreciate the CME plugin for automatically understanding assets within the cloud. This information appears in the manager, allowing users to tag the assets and adjust policies and rules accordingly.

The IT personnel who transition from on-premises to the cloud experience the same understanding, knowledge, and comfort with the cloud environment, using the familiar interface they had on-premises.

View full review »
Erez Zelikovitz - PeerSpot reviewer
EVP, chief product and revenue officer at BBT.live

We primarily secure our network using CloudGuard Network Security's next-generation firewall features, including anti-spam, IPS, and URL filtering. Our chosen package for the go-to-market strategy is NGTP. For customers seeking more features, we provide options to upgrade to the tool's advanced packages.

The product serves as a complement to our solution. While we integrate some firewall functionality into our edge device, we do not develop complete security solutions for the cloud. The combination of CloudGuard Network Security with SD-WAN connectivity allows us to offer a holistic solution.

View full review »
Jan Vobruba - PeerSpot reviewer
Infrastructure Security Consultant at ANECT

The central management feature is a big plus, allowing us to manage both local and cloud gateways from one platform. Another advantage is the unified logging system, which makes it easy to track all communications. Index logs enable us to see all of the logs with all of the features in one place. Unlike other solutions like Palo Alto's Panorama, where checking logs can be cumbersome, CloudGuard's interface is user-friendly and efficient. I have to manually click on every log, one at a time. This helps streamline our deployment process, as I focus on the initial setup before handing it off to other departments for ongoing management.

CloudGuard's ease of policy creation and centralized logging are definite strengths.

View full review »
LV
Platform Lead at a financial services firm with 5,001-10,000 employees

The Identity Awareness blade and dynamic tagging in Azure are valuable because they make access management automatic. Instead of manually setting up access for each new resource, it happens automatically based on the same access policy. This dynamic setup is scalable. 

The tool is cloud-based and scalable. As our resources scale up or down, the system automatically adapts. This reduces the need for manual work, allowing us to manage the entire cloud infrastructure with a smaller workforce. It helps with automation. 

View full review »
Diana Alvarado - PeerSpot reviewer
Security Admin at a tech services company with 51-200 employees

We really liked almost everything about checkpoint CloudGuard network security, for example the ease of managing this service through the checkpoint infinity portal is a great relief, it is accessible from anywhere, MFA can be enabled to provide security in the administrative identity to avoid problems of loss of credentials.

In addition, this tool is complemented by the other checkpoint cloud security features, making it a very robust tool.

Also its reports, its recommendations and its automatic applications for architectures with the best practices provide the help that is required to improve an existing subscription or to start one with all the best practices.

View full review »
BS
Cyber Security Architect at a manufacturing company with 10,001+ employees

The ease of administration with the cloud management extension and the cloud licensing model is valuable.

View full review »
Fabio Carvalho - PeerSpot reviewer
Systems engineer at Pamafe Informatica LDA

The solution's most valuable feature is scalability. We can increase the number of CPUs, memory, and firewalls throughout easily. Using CloudGuard Network Security for managing cloud firewall rules is considered easier than using the normal security groups provided by Azure or AWS.

View full review »
Nagendra Nekkala - PeerSpot reviewer
Senior Manager ICT & Innovations at Bangalore International Airport Limited

The product gives analytic reports. 

View full review »
KW
Advisory Information Security Analyst at a financial services firm with 501-1,000 employees

The Auto Scaling functionality is the most valuable feature. Our cloud environments are growing to the point where we need to be able to expand and contract to the size of the environment at will. They pull you to the cloud. With the static environment that we currently have stood up, it works well. However, it would be more efficient having the Auto Scaling even bigger. We are in the middle of that now, but I can already tell you that will be the most impressive thing that we're doing.

CloudGuard's block rate, malware prevention rate, and exploit resistance rate are tremendous. CloudGuard is functionally equivalent to what we are doing on-prem. It's easy to manage CloudGuard from on-prem and offers the same protection that we're able to give the rest of our environments, which is a big plus for us.

The comprehensiveness of the CloudGuard’s threat prevention security is great, especially once they integrate Dome9 in the whole thing. That really ties the whole thing together, so you can tie your entire cloud environment together into one central location, which is nice. Previously, we had three or four different tools that we were trying to leverage to do the same stuff that we are able to do with CloudGuard.

I might be a little skewed because I have been working with Check Point for so long that a lot of the same logic and language that the rest of Check Point uses becomes intuitive, but I haven't had any issues. Anything we need to get done, we are able to do it relatively easily.

View full review »
MP
CISO and Senior Director Technical Operations at a insurance company with 201-500 employees

What's most valuable to me is that it's a contiguous solution that aligns well with the components that we've relied on and trusted from a traditional hardware, firewall, and unified threat management system. My engineers and analysts don't have to learn another platform. We have already entrusted our security controls to Check Point for perimeter and physical security, and now we can do so at the virtual layer as well, which is key to us. It really augments their current stack of capabilities. It all aligns well under their umbrella of their Infinity architecture, which we have adopted.

View full review »
RL
ICT Security Coordinator at Menarini

The most valuable feature for us is the simplicity of creating this environment. Even though our current cloud usage is limited, the process of setting up machines in the product and establishing an HR system was straightforward. 

CloudGuard Network Security helped us create stable VPN connections from our Google Cloud to our data center. This was important because we had issues with dependencies between Google, the data center, etc.

We have an on-premise management system, and it's straightforward. We use it within the same management of our other files. 

View full review »
TB
Network Engineer at a manufacturing company with 501-1,000 employees

The tool's deployment is rapid. Its dashboard is also useful. It's easy to deploy both on-premises and in Azure. In an office with VMware running, deployment is a simple process. Similarly, in Azure, deployment is easy and scalable. Adding more CPUs is a straightforward task – just shut it down, modify the security, and restart. This ease of use translates into cost and resource savings, and faster deployment times.

View full review »
LD
Cloud Support at a tech company with 1-10 employees

Check Point CloudGuard Network Security is complemented with all the features and becomes a security giant. The most important features, at least for us, are:

1 - It allows for the implementation of centralized security through Check Point Infinity in addition to being able to manage the security of hybrid and cloud environments.

2 - The trust and security provided by advanced threat protection is a point of distinction. We have not seen any false positives. Its anti-malware prevention is very good, and protection against ransomware is one of the features we require for our infrastructure.

3 - Additionally, it can be integrated with most public clouds, making it attractive.

View full review »
Derron McLarty - PeerSpot reviewer
Network Administrator at Ministry of Finanace and the Public Service

The most valuable feature of Check Point CloudGuard Network Security is the ease of use. It was not difficult to learn. 

View full review »
OP
Senior Network/Security Engineer at Skywind Group

The main benefit of the Check Point Virtual Systems solution is its ability to split up the hardware appliances that we have into several logical, virtual devices with separate traffic handling policies, as well as the switching and routing. This allowed us to save significant money on the hardware purchase, and keep our NGFWs efficiently loaded. 

As an administrator, I find the management really convenient and cozy. The usual SmartConsole is used and you don't need any additional software to be installed.

View full review »
GF
Senior System Administrator at a tech services company with 501-1,000 employees

The IPS, IDS and logging were some of the features that I found useful. Also, the automation using AWS CloudFormation, the way we deployed it to our system, was very simple.

The comprehensiveness of CloudGuard's threat prevention security, looking at the logs, was really good. It would tell me if there was any unwanted traffic on our system, it would keep track of that. We checked it to make sure that everything was okay. It gave me the information that I needed to keep our network safe.

It's also pretty user-friendly. I've used multiple firewalls, both physical and virtual, and to me, Check Point is on top when it comes to ease of use and understanding the firewall installation. It's very very simple. And the way they implemented CloudFormation and the auto provisioning, is hands-down one of the best.

View full review »
it_user583365 - PeerSpot reviewer
Head of Cyber Security Department at NGT Group

We find Check Point valuable because they are 100% focused on security. It totally closes the potential vulnerability channel. We can check our mail and our attachments and we can scan everything easily. We get an immediate report about the situation of the attachments. We can discover if the target's security attack was started from phishing, etc. We also enjoy using the additional features that protect our internal customer from targeted attacks.

View full review »
AS
Security lead at a manufacturing company with 10,001+ employees

The data center objects, checks, and other components are thoroughly examined, allowing us to incorporate them into our policy definitions. This approach has proven to be highly effective, akin to the standards typically seen in on-premises environments.

View full review »
RS
Network and Security Engineer at a consultancy with 11-50 employees

It offers an easy and nice way to manage the gateways, similar to on-prem hardware. It has packet filtering features. Our security operations are faster and less prone to errors. We selected CloudGuard Network Security due to its visibility. 

CloudGuard Network Security more or less provides us with unified security management across hybrid-clouds as well as on-prem. We manage both environments on the same console. It makes our security operations faster and less prone to error. 

View full review »
BS
Cloud engineer at a energy/utilities company with 5,001-10,000 employees

The tool's most valuable features are IPS and blades. These features are valuable for security. 

View full review »
AlexOgbalu - PeerSpot reviewer
Director at LiveFromSpace Limited

The threat prevention capabilities are very valuable.

View full review »
OP
Electronic Engineer at eBTel Cia. Ltda.

The solution, overall, has worked very well for our organization.

The reliability of the product is excellent.

The configuration capabilities are very good.

The initial setup is pretty easy.

View full review »
RT
Senior System Engineer at Gas South

We have found the overall functionality of the product to be exactly similar to the physical product. The one good advantage is that it is cloud-based and can be deployed either as a part of a scale set or one can shut down the virtual machine and adjust the physical parameters of the virtual machine easily and bring it right back up. Also if deployed as a cluster this can be done without any downtime at all since you can take down one virtual machine at a time to upgrade. Overall a very well designed product

View full review »
Achim Buettner - PeerSpot reviewer
Solution Architect at BNC Business Network Communications AG

The tool's most valuable features are threat prevention and protection mechanisms. 

View full review »
SG
Network security architect at a energy/utilities company with 10,001+ employees

The tool's most valuable features are firewalls and IPS. 

View full review »
MH
Consultant at a consultancy

The versatility is the solution's most valuable feature. 

View full review »
PL
Firewall Engineer at a logistics company with 1,001-5,000 employees

Having the whole environment be under the same management is definitely is a plus.

Using a scale set to increase/decrease the amount of firewalls in the cloud helps with saving costs in the long run, as they will only increase if traffic increases and therefore saving us on licensing costs. For a normal Cloud Guard you pay for each core, so using the SS you don't have to fully size and pay for the maximum amount of traffic.

It's possible to sync the Check Point Management with the cloud portal, therefore allowing automated rules to be set in place whenever creating a new VM.

View full review »
AG
Team Leader - Security at a tech services company with 10,001+ employees

Auto Scaling is one of the features that make me want to choose CloudGuard over actual HW.

Cloud leaders such as Amazon, Google, and Microsoft also provide an uptime of 99.99%, which might not be possible in a privately owned DC. Multiple instances where a hardware issue was found and it took weeks to replace the hardware and bring services up can now be fixed within few minutes by utilizing the available resources over CSP.

You get charged only for what resources you choose and how much traffic actually passes through the firewall, which in turn saves a lot of money.

View full review »
OP
Senior Network/Security Engineer at Skywind Group

I find it really useful that CloudGuard supports all the main players on the Public Clouds market including AWS, GCP, and Azure, as well as some exotic ones like Alibaba Cloud, Oracle Cloud, and IBM Cloud. I would say there is about a 95% probability that the platform you are using is supported, and I don't know any other solution for now that can provide the same number. Moreover, it integrates with most of the public cloud management solutions, so you could automate modification of the security policies based on some triggers or changes in your cloud infrastructure.

I also like that different licensing models are supported. For testing/evaluation/PoC projects, you could go with the Pay-as-you-go (PAYG) license without wasting a lot of money in case the solution somehow doesn't suit you. On the other hand, for production, you could use the Bring-your-own-license (BYOL) way, applying the license bought earlier.

View full review »
AM
Principal Solutions Engineer at a tech services company with 51-200 employees

The VPN features in CloudGuard Network Security have been the most valuable for us. It allows us to scale securely within our infrastructure, providing both strong security and VPN capabilities.

View full review »
JM
Network Security Engineer/Architect at Euronext Technologies SAS

It allows us to filter what the servers on AWS can access on the Internet and allows us to filter in terms of IPS, antivirus, and so on, for the contents that are accessed on the Internet.

View full review »
LA
Network, Systems and Security Engineer at SOLTEL Group

The most valuable feature is the centralized dashboard, which is used for managing all of the Check Point Security Gateways.

Whether it is hosted on-premises or on the cloud with the NGTX license, it provides additional security capabilities such as SandBlast, which is able to extract and emulate file execution in a virtual sandbox. It will identify activity and actions, and the system can be configured accordingly.

It provides hyperscaling capabilities for both on-premises and cloud-based security gateways. An on-premises security gateway can be configured for hyperscaling using the Maestro 140 or Maestro 170. In the cloud, on AWS it can be hyper-scaled using the AWS gateway load balancer.

It's able to protect against advanced threats and prevent zero-day attacks using both SandBlast and IPS signatures.

View full review »
JT
Network security at a tech services company with 5,001-10,000 employees

The tool's most valuable feature is its scalability. You will only have to pay less for scaling up. Its notable benefit is deployment complexity. Regional deployment is simpler compared to on-premise setup. 

View full review »
CD
Enterprise Security Lead

Advanced check prevention is a great feature that provides threat intelligence at speed. We can easily identify malicious activity and check for any vulnerabilities. The solution has great functionality and we can see the movement of data. If there's any malicious activity, we can easily stitch or make a story out of that data. I think when it comes to functionality, it's a good monitoring tool. 

View full review »
Hazel Zuñiga Rojas - PeerSpot reviewer
Administrative Assistant at Tecapro

The CloudGuard Network Security solution has given us an overview yet has allowed us to segment the cloud in many ways. We can create networks where we can separate the data, information, and structure of history. We can segment databases into smaller groups by type or quality of the resource. 

View full review »
Do Anh - PeerSpot reviewer
Product Consultant at M.Tech

Check Point CloudGuard is quick to deploy and easy for the customer to use. The user interface is user-friendly and easy to use.

View full review »
Bernard Otieno - PeerSpot reviewer
Technical Engineer at Harnssen Group Limited

Clients have been using it and they haven't had any negative feedback. 

The initial setup is straightforward.

The product is scalable.

We find the stability to be quite good.

Check Point is one of the few solutions that pay attention to cloud security. Many others mostly focus on providing on-premises solutions.

View full review »
it_user1042488 - PeerSpot reviewer
Senior Security Architect at a computer software company with 10,001+ employees

I think one of the valuable features is the auto-scaling, which is based on traffic and  automatically spins one more firewall and adds it to the management server. The zero touch is also a valuable feature. After re-tagging the next internal load balancer within Check Point, it automatically writes up a mac rule and an access rule. As long as you're adding a server into the internal load balancer, you won't need to touch anything. In a Check Point firewall, the mac rules and access rules are automatically written up. Zero touch means there is no need to insert rules again when you're adding servers internally. 

View full review »
US
Network Security Engineer at a government

As per the solution's blade design, there are many options. For example, you have to buy a UTM blade and an advanced malware blade, etc. If the blade license is there, we can configure from the firewall GUI. 

The net policy and routing are also great features.

View full review »
it_user919560 - PeerSpot reviewer
Consultant at a government with 10,001+ employees

The IPS, application and URL filtering, as well as Identity Awareness, are all very valuable features.

View full review »
JT
Architect, Network - Service Lead - Design Services at a manufacturing company with 10,001+ employees

It is what we use mainly for on-premise. That is really what has us using the product, as it is sort of our standard for data centers.

View full review »
Alberto Vallesa - PeerSpot reviewer
Team Lead Manager at Wizlynx

The Capsule solution and application filters are the most valuable. 

It is pretty straightforward to implement, and it also has good stability and scalability. Their technical support is also really good.

View full review »
RM
CEO at a tech services company with 51-200 employees

The solution is very easy to use.

The product is quite flexible.

The installation process doesn't take very long.

We've found the stability to be quite good overall.

You can scale the solution if you need to.

Technical support is helpful and responsive.

The user interface is okay, depending on who is using it.

We haven't had any issues with integrations. It seems to handle them quite well.

View full review »
it_user2895 - PeerSpot reviewer
Senior InfoSec Engineer at a tech services company with 10,001+ employees
Easy to setup and use as its based off Redhat Intuitive ACL menu for writing rules Pre-populated common ports Customizable ports Suite of tools to report and troubleshoot network conditions View full review »
OO
DBA Team Lead at a tech services company with 51-200 employees

After I made up my mind to migrate it to another solution, I was kind of checking all the other firewalls, the FortiGate, Check Point, pfSense and OPNsense, and Check Point has pretty simple solutions, like the virtual appliance which you just download and it is imported into VMware and you just start using it. You just have to know Check Point's GUI so you can manage your IP addresses and access rules and stuff. But as I said, Check Point is really advanced and the GUI is kind of advanced, which the customer reports actually prove.

View full review »
FN
IT Professional at a government with 10,001+ employees

The most valuable Check Point CloudGuard feature is the firewall. I also value the user authentication, IPS, and application control features.

View full review »
JM
Network Security Engineer/Architect at Euronext Technologies SAS

The most valuable feature is that we can use the same manager server that we use on our own Check Point firewalls. We integrated CloudGuard on that manager and we can use the same kind of protections that we use on the on-prem firewalls, like the IPS and antivirus policy. We can have the same kind of protection on the Cloud environment that we have on-premise.

  • The block rate is good. It's what we used on-prem. We feel protected by the Check Point threat prevention that we used for many years. We are confident that it blocks everything that needs to be blocked.
  • Malware prevention is also a good feature. It's the same kind of malware prevention we use on-prem and we never had any issues. We have used on-prem prevention for many years. 
  • Exploit resistance rate - we never had any problems with it. We never had any security issues due to exploits on our diverse infrastructure.

In terms of the comprehensiveness of its threat prevention security, it was very easy for us to start working with because it's the same. Check Point has a very wide group of protections, dozens of protections. It's very good in terms of protection.

CloudGuard is very good in terms of ease of use, especially because it's very easy to understand the blocks and why something was blocked. You can see in a log why something was blocked, if it was identified as some kind of malware or suspicious activity. You can immediately see on the log the rule or the threat prevention policy that was blocking it if you want to do some kind of exception, or if you want to verify why. And it's very well documented with the description of the threat and why it should be blocked.

View full review »
SS
Assistant Manager IT Projects at Mustafa Sultan Office Technology Co. LLC

The most valuable features are within the unique architecture that creates flexibility in the deployment.

View full review »
CM
Sysadmin at a computer software company with 51-200 employees

The tool's most valuable features are inspecting internet traffic and IPS. We can manage the firewall using shared policies from a single management server. 

View full review »
IK
Network and Security Manager at a financial services firm with 1,001-5,000 employees

We currently upgraded our devices to a new version. We have noticed a performance increase. We tested filtering features and it's an interesting feature that helps us with our tasks. We don't need very complex features.

View full review »
VS
Senior Security Engineer at a financial services firm with 1,001-5,000 employees

The ability to host multiple virtual systems, categorize them based on their function and importance and the ease of use with which these can be deployed.

View full review »
PD
Associate Consult at Atos

CloudGuard comes with the best feature sets that include protection from Zero-Day attacks, which we usually get when we have blades on the perimeter firewall. These are analyzed using SandBlast Threat Emulation and SandBlast Extraction.

We are able to easily identify users who are going to use cloud applications when they log in from either a trusted network or device.

We have complete visibility of attacks originating from email including spear-phishing, spoofing, etc.

Based on the reputation of the domain and URL, the firewall allows traffic to flow.

View full review »
it_user715161 - PeerSpot reviewer
Director at InfoGuardian

The most valuable feature of this solution is that you can start off with a simple firewall and expand it to UTM. You don't have to buy a UTM to start off with, but rather, you can buy a simple firewall and upgrade it. The simple firewall comes with many of the UTM features, in any case.

View full review »
it_user631224 - PeerSpot reviewer
Information Security Analyst at a non-profit with 1,001-5,000 employees

The multiple virtual firewalls on one box are extremely useful and the interconnection with virtual switches is simple and easy to understand.

We need a product that is logical and for which we can find people skilled who are interested in learning it. Check Point is always a winner, as its an industry standard.

View full review »
MK
Dy General Manager at a real estate/law firm with 501-1,000 employees

The solution has good features.

It has good antivirus protection.

The solution has been quite stable.

The installation was straightforward and pretty easy to execute.

View full review »
SF
Security Platform Administrator at a tech services company with 501-1,000 employees

The most valuable features are the VPN Blade, IPS Blade, URL filtering, and Applications Control Blade. They help me to align with any compliance or regulations within our financial sector. The VPN blade has helped me to establish tactical communications. The logs help with troubleshooting and they are great. The IPS blade helps me to meet regulations and protect against intrusion. The applications control makes it easy to configure and created profiles. It blocks all the non-authorized applications. 

View full review »
JC
Senior Network Engineer at a marketing services firm with 1,001-5,000 employees
  • Traps prevention
  • Security on the cloud
View full review »
VK
Cybersecurity Architect at a computer software company with 201-500 employees

The security features of Check Point CloudGuard Network Security are very good.

View full review »
it_user106689 - PeerSpot reviewer
Manager of Infrastructure with 51-200 employees
Most of all, depends upon your environment. View full review »
RR
Network Engineer at Acliv Technologies Pvt Ltd

The most valuable feature is the monitoring. We can easily monitor what kind of stuff comes over to our network and we can then check the dashboard and work accordingly.

View full review »
it_user815814 - PeerSpot reviewer
IT Security Consultant at Cilnet

In general, Check Point VSX is a good solution. Its blades and VSLS (Virtual System Load Sharing) work fine.

View full review »
AS
Co-founder & CTO at a tech services company with 11-50 employees

Valuable features include centralized management using the MDM solution of Check Point and the Log Management module. The latest version of VSX supports all blades of Check Point's security suite.

I get maximum flexibility as I can use a standard management server to manage all virtual gateways along with a dedicated log server for each virtual gateway. Sometimes I can use a single server to manage all virtual gateways.

View full review »
MS
Information security officer at a tech services company with 1-10 employees

The most valuable feature is threat prevention.

View full review »
OM
Business Manager at a tech services company with 11-50 employees

I like the firewall and the virtual machine. I also like that it's compatible with Amazon Web Services and Azure.

View full review »
it_user819654 - PeerSpot reviewer
Network Consultant Engineer at a tech services company with 11-50 employees

The IPs and the VPN are the most valuable features of this solution.

View full review »
Buyer's Guide
Check Point CloudGuard Network Security
March 2024
Learn what your peers think about Check Point CloudGuard Network Security. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
765,234 professionals have used our research since 2012.