We performed a comparison between Check Point NGFW and Zscaler Internet Access based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The response is very quick and they can visually resolve our problems in a short period."
"The customization potential is quite impressive."
"This product is definitely scalable."
"Valuable features include the Web Application Firewall, and it even has DLP (data leak prevention)."
"The solution can scale well."
"The most valuable feature is the bundled subscription, which is IPS, TV and web filtering."
"It is quite easy to handle."
"I like that you are able to manage FortiGate from the FortiManager to create a more centralized environment."
"They have very good support. In critical scenarios, they provide us very quick solutions, are very well-trained, and have a good knowledge about the product. That is what we expect from them."
"Extracting data from the logs and utilizing the log analyzer tool provides valuable insights and enhances the product's overall effectiveness."
"Policy configuration has been consistent over the years, so there is not much of a learning curve as upgrades are released."
"Check Point NGFW has helped the company in the prevention of cyber attacks that could affect operations and slow down production."
"It improves user productivity and frees up system resources."
"We are delighted with the powerful management console and diagnostic tools."
"It is easy to administrate and maintain."
"Advanced logging capabilities: Check Point generates extensive logs which may be very useful to figure out the issues. Its logs also contain too much information which can be used to modify the policy as per user need and organizational security environment. The same can be used to figure out probable attack surface or necessary steps for mitigation."
"Zscaler Internet Access has helped us reduce the time that we spend managing security policies by about four hours a week. We can use this time to focus on other things, especially the IT team."
"Zscaler Web Security protects our users in remote locations from internet threats - even if they are not connected to our network."
"The users are at different locations, and Zscaler helps us to put the organization's central security controls on these roaming users."
"The solution’s customer service is good."
"The best thing about Zscaler Internet Access is the website filtering. In the UAE it's quite an important feature because most of the malware comes through the SQL injection and through downloads from websites. Zscaler helps protect against that."
"We enjoy all of the proxy capabilities and the capability to integrate into the SIEM/SOC solution."
"In terms of management and visibility, there is a single panel where you can configure the policies for your entire organisation worldwide."
"The cloud proxy and integration are some of the key features. Since there is cloud waste, we can quickly provision it and start working on the configuration. On top of that, they have added a few more features. They have integrated CASB, and file sandboxing is part of it."
"The support is the main thing that needs to be improved."
"FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."
"From a reporting perspective, there's room for improvement. They're providing FortiAnalyzer through which one can get some enhancements, but the visibility and reporting still need slight improvement."
"Fortinet FortiGate could improve by having better visibility. Palo Alto has better visibility."
"NGN, reporting and controls."
"Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products offer much better ROI, upgradability, and manageability."
"They need to improve their technical support."
"With the addition of some features, it is possible that FortiGate can be used in all verticals."
"Check Point doesn't warn us when rules are about to expire. It was also inconvenient that we had to change hardware when we upgraded. It would be nice if they made the new version compatible with current hardware or if it only required a minor upgrade."
"I would like less CPU-intensive features to be introduced to replace the existing heavy-duty processes."
"The price of this product could be improved."
"The API support is good. However, Check Point needs to focus on more prepared scripts for some tiresome actions."
"Check Point's study materials should be provided by the company directly and be of very good quality. This is not provided right now and something that the company can improve."
"The debugging of VPN tunnels is very stressful."
"The improvement could come from better monitoring of traffic data in and out of the firewall."
"In a VPN setup, we have Internet connection via Check Point. The connectivity is not turnkey like competing devices. We have not yet terminated our site-to-site VPN because things are fluctuating right now and Check Point needs to be upgraded. Also, their troubleshooting needs to be improved for this."
"Zscaler Internet Access needs to integrate more ISPs. It is good to have more than three ISPs."
"One thing that needs to be improved is their presence in China. I'm not sure if that's a Zscaler thing or if it's a problem with all vendors in this space, but it would be nice to have better coverage in China. This concern is a common one for vendors across the board when dealing with the Chinese market."
"Zscaler does not provide dedicated IPs to each customer. Hence, they share a pool of IPs provided by Zscaler. There is a chance of blacklisting these IPs. I also do not like the multi-management portal."
"I don't know whether it's Zscaler or not, however, sometimes I can't access my time management. I need to wait and try again a few hours later. Typically, if I let some time pass, I can access it again."
"An improvement would be if they could provide an out-of-the-box experience, like 20 to 30 features all ready to go. In comparison, LogRhythm offers out-of-the-box features. With Zscaler Internet Access, there is firewall IPS, multiple security services, filtering, DLP, and CASB browser isolation. These are things that all users are going to be using. However, when an administrator or architect would start building this, I would definitely need to engage professional services to help clients do it."
"The performance needs improvement. Some areas create performance issues and, depending on the use cases, require reconfiguration to perform again."
"The pricing is an issue. It is expensive if you have all of your users in the same location. It is expensive compared to other firewalls on the market."
"Zscaler Internet Access's troubleshooting is very limited, and their textbook logs need to be more informative."
Check Point NGFW is ranked 5th in Firewalls with 275 reviews while Zscaler Internet Access is ranked 2nd in Secure Web Gateways (SWG) with 46 reviews. Check Point NGFW is rated 8.8, while Zscaler Internet Access is rated 8.2. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Zscaler Internet Access writes "Provides integrated CASB and file sandboxing but could be less expensive ". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Azure Firewall, whereas Zscaler Internet Access is most compared with Cisco Umbrella, Microsoft Defender for Cloud Apps, Netskope , Prisma Access by Palo Alto Networks and Appgate SDP. See our Check Point NGFW vs. Zscaler Internet Access report.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.