Check Point NGFW vs. Cisco Firepower NGFW

As of March 2019, Check Point NGFW is ranked 18th in Firewalls with 7 reviews vs Cisco Firepower NGFW which is ranked 9th in Firewalls with 14 reviews. The top reviewer of Check Point NGFW writes "I faced stability issues, both reboots and tunnels needing to be bounced, frequently". The top reviewer of Cisco Firepower NGFW writes "Supports application visibility and control, and it has great deep packet inspection". Check Point NGFW is most compared with Palo Alto Networks VM-Series, OPNsense and Fortinet FortiGate. Cisco Firepower NGFW is most compared with Fortinet FortiGate, Cisco ASA NGFW and Palo Alto Networks WildFire. See our Check Point NGFW vs. Cisco Firepower NGFW report.
Cancel
You must select at least 2 products to compare!
Most Helpful Review
Find out what your peers are saying about Check Point NGFW vs. Cisco Firepower NGFW and other solutions. Updated: March 2019.
324,339 professionals have used our research since 2012.
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
We never had an outage of the appliances or the consoles. Stability is very strong. I never had a problem related to stability.It is easy to configure and it is a valuable antivirus protection. I especially like the IPS feature of this product.The most valuable feature is the IPsec VPN.The Smart Dashboard and other user interfaces are very easy to use and can be handled without any significant IT skills.After introducing this NGFW, we have improved our security posture, and now, have peace of mind.It filters unwanted traffic.

Read more »

Because of the deeper inspection it provides we have better security and sections that allow users broader access.We chose Cisco because it had the full package that we were looking for.Stability is perfect. I haven't had any problems.The architecture of FTD is great because it has an in-depth coverage and because it uses the AVC, (Application, Visibility, and Control) and also rate limits. Also, the architecture of fast paths is great.The most valuable features are the IPsec VPN and web filtering.We can shift traffic, block certain content, or redirect policies.The GUI is among the most valuable features,Valuable features include DMZ segmentation, and IDS and IPS.

Read more »

Cons
I would like for them to develop the ability to manage a cloud firewall with the same console. That would be very helpful.The presentation of the reports need to be more user-friendly.Check Point Smart Dashboard does not support my Apple MacBook Air. It only supports Windows versions.Check Point Smart Dashboard does not support my Apple MacBook Air.We looked very closely at ArcSight's solution because it's a multi-vendor solution. With ArcSight we could have Check Point, we could have RSA, we could have any brand and integrate several brands, from a security point of view. With Check Point, you cannot do so, you can integrate with Check Point products.There are some issues compared to other products. Ease of use is one.Stability issues. I built out this firewall in a cluster, and I had stability issues day one. Needs to be rebooted frequently. Tunnels need to be bounced frequently. Their hardware compatibility guide, when I built out the servers to host them on, was not accurate.

Read more »

Cisco should redo their website so it's actually usable in a faster way.The stability and the product features have to really be worked on.I would like for them to develop better integration with other security platforms.The license system is also good but it's not very impressive. It's a very regular licensing system. They call it a smart license which means that your device will connect to the internet. This is a little bit of a headache for some customers. It doesn't make the customer happy because most of the customers prefer not to connect their firewall or system to the internet.It seems very clunky and slow. I would like to be able to tune it to be a more efficient product.I would like the ability to pick and choose different features of it to run in a packaged infrastructure or modules, therefore I would like to have more customizability over it.The use of it has really bogged down our response time for certain problems, given we have to go through AT&T for everything.We would like to see MS Word BPM as a feature.

Read more »

Pricing and Cost Advice
The price is high in comparison to other solutions.Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget.I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it.

Read more »

It's more expensive than Fortinet and Juniper. The price is high compared to other vendors. In general, for the license, it's not that expensive.Based on the services that you will get, especially the AMP license, the price is very reasonable.We pay a lot of money for it.It is a great solution for medium or big enterprises, not so much for small businesses, mainly due to the financial costs.Cisco Firepower is a great solution, but it is expensive compared to others that can provide similar benefits for much less.In terms of scalability, it is really expensive. It is scalable, but when it comes to pricing, the upgrading is a bit high.All our requirements which we need performed by the firewall (e.g. VPN, URL white-listing, or IP based white-listing, etc.) have separate licenses and costs.

Read more »

report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
324,339 professionals have used our research since 2012.
Ranking
18th
out of 50 in Firewalls
Views
408
Comparisons
147
Reviews
7
Followers
79
Avg. Rating
7.3
9th
out of 50 in Firewalls
Views
15,789
Comparisons
13,169
Reviews
12
Followers
284
Avg. Rating
7.8
Top Comparisons
Compared 32% of the time.
Also Known As
Check Point NG Firewall, Check Point Next Generation FirewallCisco Firepower Next-Generation Firewall, FirePOWER
Learn
Check Point
Cisco
Overview

Your network is under constant threat. To secure it, you need the most advanced firewall protection. Check Point Next Generation Firewall identifies and controls applications by user and scans content to stop threats.

The Cisco Firepower Next Generation Firewall (NGFW) prevents breaches, and can quickly detect and mitigate stealthy attacks using deep visibility and the most advanced security capabilities of any firewall available today - all while maintaining optimal network performance and uptime. With Cisco NGFW you can automate operations to save time, reduce complexity, and work smarter.

Offer
Learn more about Check Point NGFW
Learn more about Cisco Firepower NGFW
Sample Customers
Information Not Available
Rackspace, The French Laundry, Downer Group, Lewisville School District, Shawnee Mission School District, Lower Austria Firefighters Administration, Oxford Hospital, SugarCreek, Westfield
Top Industries
No Data Available
VISITORS READING REVIEWS
Comms Service Provider23%
Financial Services Firm17%
Transportation Company14%
Healthcare Company11%
Find out what your peers are saying about Check Point NGFW vs. Cisco Firepower NGFW and other solutions. Updated: March 2019.
324,339 professionals have used our research since 2012.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.

Sign Up with Email