Most Helpful Review
Find out what your peers are saying about Check Point NGFW vs. Cisco Firepower NGFW and other solutions. Updated: March 2019.
324,339 professionals have used our research since 2012.
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
We never had an outage of the appliances or the consoles. Stability is very strong. I never had a problem related to stability.
It is easy to configure and it is a valuable antivirus protection. I especially like the IPS feature of this product.
The most valuable feature is the IPsec VPN.
The Smart Dashboard and other user interfaces are very easy to use and can be handled without any significant IT skills.
After introducing this NGFW, we have improved our security posture, and now, have peace of mind.
It filters unwanted traffic.
Because of the deeper inspection it provides we have better security and sections that allow users broader access.
We chose Cisco because it had the full package that we were looking for.
Stability is perfect. I haven't had any problems.
The architecture of FTD is great because it has an in-depth coverage and because it uses the AVC, (Application, Visibility, and Control) and also rate limits. Also, the architecture of fast paths is great.
The most valuable features are the IPsec VPN and web filtering.
We can shift traffic, block certain content, or redirect policies.
The GUI is among the most valuable features,
Valuable features include DMZ segmentation, and IDS and IPS.
I would like for them to develop the ability to manage a cloud firewall with the same console. That would be very helpful.
The presentation of the reports need to be more user-friendly.
Check Point Smart Dashboard does not support my Apple MacBook Air. It only supports Windows versions.
Check Point Smart Dashboard does not support my Apple MacBook Air.
We looked very closely at ArcSight's solution because it's a multi-vendor solution. With ArcSight we could have Check Point, we could have RSA, we could have any brand and integrate several brands, from a security point of view. With Check Point, you cannot do so, you can integrate with Check Point products.
There are some issues compared to other products. Ease of use is one.
Stability issues. I built out this firewall in a cluster, and I had stability issues day one. Needs to be rebooted frequently. Tunnels need to be bounced frequently. Their hardware compatibility guide, when I built out the servers to host them on, was not accurate.
Cisco should redo their website so it's actually usable in a faster way.
The stability and the product features have to really be worked on.
I would like for them to develop better integration with other security platforms.
The license system is also good but it's not very impressive. It's a very regular licensing system. They call it a smart license which means that your device will connect to the internet. This is a little bit of a headache for some customers. It doesn't make the customer happy because most of the customers prefer not to connect their firewall or system to the internet.
It seems very clunky and slow. I would like to be able to tune it to be a more efficient product.
I would like the ability to pick and choose different features of it to run in a packaged infrastructure or modules, therefore I would like to have more customizability over it.
The use of it has really bogged down our response time for certain problems, given we have to go through AT&T for everything.
We would like to see MS Word BPM as a feature.
Pricing and Cost Advice
The price is high in comparison to other solutions.
Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget.
I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it.
It's more expensive than Fortinet and Juniper. The price is high compared to other vendors. In general, for the license, it's not that expensive.
Based on the services that you will get, especially the AMP license, the price is very reasonable.
We pay a lot of money for it.
It is a great solution for medium or big enterprises, not so much for small businesses, mainly due to the financial costs.
Cisco Firepower is a great solution, but it is expensive compared to others that can provide similar benefits for much less.
In terms of scalability, it is really expensive. It is scalable, but when it comes to pricing, the upgrading is a bit high.
All our requirements which we need performed by the firewall (e.g. VPN, URL white-listing, or IP based white-listing, etc.) have separate licenses and costs.
out of 50 in Firewalls
out of 50 in Firewalls
Compared 53% of the time.
Compared 32% of the time.
Compared 15% of the time.
Compared 23% of the time.
Compared 21% of the time.
Compared 16% of the time.
Also Known As
|Check Point NG Firewall, Check Point Next Generation Firewall||Cisco Firepower Next-Generation Firewall, FirePOWER|
Your network is under constant threat. To secure it, you need the most advanced firewall protection. Check Point Next Generation Firewall identifies and controls applications by user and scans content to stop threats.
The Cisco Firepower Next Generation Firewall (NGFW) prevents breaches, and can quickly detect and mitigate stealthy attacks using deep visibility and the most advanced security capabilities of any firewall available today - all while maintaining optimal network performance and uptime. With Cisco NGFW you can automate operations to save time, reduce complexity, and work smarter.
Learn more about Check Point NGFW
Learn more about Cisco Firepower NGFW
Information Not Available
|Rackspace, The French Laundry, Downer Group, Lewisville School District, Shawnee Mission School District, Lower Austria Firefighters Administration, Oxford Hospital, SugarCreek, Westfield|
No Data Available
Comms Service Provider23%
Financial Services Firm17%