Check Point CloudGuard CNAPP Initial Setup

Yokesh Mani - PeerSpot reviewer
Deputy Manager at Computer Age Management Services Pvt. Ltd.

Generally, the deployment is pretty easy. We have a template, so it's automatic. However, we run into problems when we're supporting multiple CSPs. AWS supports CloudGuard 100 percent, whereas for Azure, it's 75 or 80 percent. Some Azure services, like user identity, are not supported, which is a challenge. It should be available in Q1. 

Deploying the threat intelligence for AWS was fine, but we had problems with Azure. I'm part of the security group, which is onboarded into the AWS. The next time I create a new security group, it automatically discovers the asset and will put it in the log. For Azure, a new network security group must be added manually. If I'm doing that manually, I want to completely remove the onboarded threat intelligence, which means I want to completely remove what we added from the portal. That is one problem we face doing the onboarding of Azure.

View full review »
reviewer1398609 - PeerSpot reviewer
Senior Manager at a financial services firm with 10,001+ employees

It was straightforward there was template provided by Dome9 (Checkpoint) and that need to be imported in our account which create ID and provide access to Dome9 on our cloud infra to monitor and collect metadata logs

View full review »
Matt Comstock - PeerSpot reviewer
VP Service Delivery at Atlantic Data Security

We are primarily on Azure, but our customers are in AWS and Azure. We do not have a lot of work with Google Cloud. We have a little bit of Oracle cloud, but AWS and Azure are the two big players we see our customers using.

I am not involved in its deployment, but I know that for CSPM, which is probably related, you discover as you go. You deploy it, and you are able to get the overall insights into what the environment is. I presume you would lead with that and then work on the workload and CNAPP, but I have not had to do it myself.

View full review »
Buyer's Guide
Check Point CloudGuard CNAPP
April 2024
Learn what your peers think about Check Point CloudGuard CNAPP. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,578 professionals have used our research since 2012.
SK
Associate Director at Virtusa Global

The initial deployment was straightforward. Two admins from our organization along with some solution architects and one consultant from Check Point helped us with the proof of concept, and we were able to acquire the solution after the POC.

View full review »
VD
CIFO at Crisp System India Pvt Ltd

I am involved in the deployment of the solution. I am not the technical hands-on person for this project. I manage the deployment process.

View full review »
AC
Senior Cybersecurity Architect at a manufacturing company with 10,001+ employees

Currently, we are just dealing with the public cloud. We have AWS and Azure clouds. 

Its deployment needs a lot more collaboration. From the cybersecurity side, we can only do certain things to protect our environment. From the app side, it also needs collaboration with whoever is managing that application or server. A lot of collaboration is needed rather than just having the security person.

When we get all the permission to do the deployment, it is a lot easier. The security team does not hold the key to the kingdom, so we do not have access to all environments. Once we get that access, it can be deployed a lot easily.

View full review »
Nagendra Nekkala. - PeerSpot reviewer
Senior Manager ICT & Innovations at Bangalore International Airport Limited

The initial deployment required knowledgeable people. We had already planned the required configuration type, the necessary posture management approach, and the rules that needed to be defined. We had discussed these requirements with the CloudGuard team member and implemented them together. Four people were involved in the deployment.

View full review »
reviewer2054484 - PeerSpot reviewer
Principal Cybersecurity Architect at a manufacturing company with 10,001+ employees

Setting up CloudGuard is straightforward, and it takes a few days. We handled the deployment in-house with two full-time employees. It's a SaaS solution, so the only maintenance required is backups. 

View full review »
Fabian Miranda - PeerSpot reviewer
Cloud computing at Tech Data Limited

The implementation of the tool is very easy. There are several steps in the wizard where it gets complicated around the configuration, however. If you do not have extensive knowledge of the tool, it becomes complicated.

View full review »
DN
Software Development Manager- Cybersecurity at a retailer with 10,001+ employees

The initial deployment of CloudGuard CNAPP was extremely straightforward since it is agentless and seamlessly integrates with public cloud tools. We began with a POC, then gradually rolled out the solution across all our cloud accounts, starting with AWS and expanding to GCP and Azure.

View full review »
RD
Senior Security Consultant with 5,001-10,000 employees

Its setup is very manual. I would like to see that transition to more of a scripted setup. It is a very manual process. For the most part it is fine however I have definitely had issues with it. Sometimes, it just does not work, and I have had to open tickets.

View full review »
Christopher Federico - PeerSpot reviewer
VP Sales, MSSP and MDR at Torq

Its deployment is very straightforward.

View full review »
SHRINKHALA SINGH - PeerSpot reviewer
Senior Manager at Advertising Standards Council of India

The initial setup is easy and not complex at all.

View full review »
Mantu Shaw - PeerSpot reviewer
Project Manager at Incedo Inc.

The setup is straightforward and seamless.

View full review »
BD
Sr Manager IT Security at a financial services firm with 10,001+ employees

The initial setup was straightforward. The only thing that was required from our side was a cloud template, which was provided by Dome9. We need to executed that template in our cloud environment for AWS and Azure. It automatically creates a read-only ID on the AWS platform for Dome9 to connect with. There is some configuration which needs to be done on Dome9 as well as AWS, but the deployment takes around 15 to 30 minutes.

View full review »
AB
Senior Accountant at SORECO

The setup procedure was straightforward.

View full review »
Shay Zer - PeerSpot reviewer
Presale security at a comms service provider with 5,001-10,000 employees

It's very simple to set up because it's all in the cloud.

View full review »
Emanuel Kjellin - PeerSpot reviewer
Cloud Analyst at Cloud2Go

The initial setup is straightforward.

View full review »
KP
Network Engineer at LTTS

The initial setup is straightforward.

View full review »
Adrian Cambronero - PeerSpot reviewer
Consultant at ITQS

The configuration was very simple. The application is a very user-friendly tool - apart from training and courses for implementation.

View full review »
Adrian Cambronero - PeerSpot reviewer
Consultant at ITQS

Like all setup-type software, it is very easy to install.

View full review »
Adrian Cambronero - PeerSpot reviewer
Consultant at ITQS

Making the investment is a bit high, however, it is very effective to make the acquisition of the tool.

View full review »
TG
Cloud Security Architect with 51-200 employees

Deploying CloudGuard is straightforward. I deployed it and configured the auto-remediation alone, but I also worked with another architect to discuss the design and workshop some ideas, so we could say a team of two deployed it.
After deployment, maintenance has been very low.

View full review »
JH
Database Administrator at Ordina

The setup was complicated, however, the vendor support team provided effective guidelines.

View full review »
SB
Owner at AD Internet Consulting

The initial setup is really easy. Just submit the cloud key. It takes between an hour and two hours to deploy. When I installed it, the process did not take longer than an hour.

My implementation strategy fits into the way I design secure private clouds or multi-clouds, based on public cloud providers. It's almost a necessity. You can do it in other ways by using the local ACLs, etc, but then it becomes cumbersome. CloudGuard takes a lot of the work out of it and gives you a single point to manage all of your security firewalls.

View full review »
Mohan Janarthanan - PeerSpot reviewer
Assistant General Manager- IT Security at a tech services company with 1,001-5,000 employees

We implemented CSPM in 30 days. Since the solution was simple to implement and the transition was painless, we added many of our cloud environments.

View full review »
RR
Senior Security Engineer at a insurance company with 10,001+ employees

The initial setup of the solution was straightforward for me as a professional working in the cloud environment. For someone else who is a beginner or not familiar with cloud products, he or she might find it a bit difficult. It all depends on the level of knowledge that each person has.

The deployment took a week or two, and that was not full-time.

We have about ten users of the solution, including security engineers, analysts, cloud engineers, enterprise engineers, and architects.

View full review »
Nagendra Nekkala - PeerSpot reviewer
Senior Manager ICT & Innovations at Bangalore International Airport Limited

The tool's deployment is very easy and takes two weeks to complete. We need engineers to install the product. You need to ensure the overall device landscape before the product's installation. Its maintenance is easy. 

View full review »
SM
DevOps and Security Engineer at a financial services firm with 5,001-10,000 employees

I was not a part of the initial setup.

View full review »
SF
Software Engineer at Doddle

The setup was complex, however, the vendor's technical team provided effective guidance.

View full review »
SW
Human Resources Executive at Randstad Nederland

The initial setup process was not complicated since the customer service team had deployed professionals to set up and provide guidelines.

View full review »
RN
Freelancer at a consultancy with 51-200 employees

Setting up CloudGuard CNAPP is straightforward, as it is API-driven. Just a few quick steps, like providing credentials and configuring settings, and you're ready to go.

View full review »
SANDRA SUAREZ - PeerSpot reviewer
CEO at SAFEID

The initial setup is very straightforward. I don't have to do any tuning or configuration for it to work. You just need to enable it. 

View full review »
BW
Java Application Developer at Oesia

The initial setup was straightforward.

View full review »
CF
Software Engineer at iDeals

The setup was straightforward.

View full review »
KW
Advisory Information Security Analyst at a financial services firm with 501-1,000 employees

The initial setup was straightforward. A lot of the work for Dome9 is done upfront. There is an onboarding tool that Dome9 has when you want to add a cloud environment. That holds your hand and walks you through it pretty easily. It will show you everything you need to do both on the Dome9 side and on the cloud side to get the cloud environment integrated and set up. From there, the compliance rule sets that you want to apply to your company are all neatly laid out. With a single click, you can tell it that you want to run the X, Y, Z rule set against your current environment, then it will do that in a matter of minutes.

Initially, our deployment took probably a week just to get ourselves up and running. At that time, we were also trying to get the cloud deployment figured out. Knowing what we know now, we have stood up subsequent environments in minutes.

View full review »
JM
Network Security Engineer/Architect at Euronext Technologies SAS

The initial setup process was very quick: Create the user on AWS, then you can log in and have all your information. On the domain side, it was very quick to log in with the account created on the AWS.

The deployment was one or two days. We had three remote session, where two of those sessions were about how it works. 

Our approach was to have our accounts on Dome9. After adding accounts, we ran some reports and compliance rule sets based on the security measure recommendations from Dome9 for our AWS product. We also went through the recommendations and made some changes on some of them. That is how we deployed the solution.

Our implementation strategy was to first only add the key accounts in the first stage, seeing how it worked. Then, after some weeks of working with it, we added the rest of the accounts to production.

View full review »
OP
Senior Network/Security Engineer at Skywind Group

The setup was straightforward, and the configuration was easy and understandable.

View full review »
EH
Director of Cybersecurity at a comms service provider with 10,001+ employees

The initial deployment was straightforward. As a SaaS platform, it is extremely easy to deploy it into environments.

We can deploy CloudGuard CNAPP and use it out of the box within hours.

Our initial strategy was to implement a basic solution and then expand its capabilities over time. Check Point, frankly, has done an excellent job of keeping its platform up-to-date by continuously adding and improving features. This is why we're still using it even after six years.

View full review »
LucianoMiguel - PeerSpot reviewer
Security Consultant at a consultancy with 501-1,000 employees

The initial setup is straightforward.

View full review »
MS
CEO at a tech vendor with 11-50 employees

The implementation of the solution was easy.

View full review »
SJ
Chief Technical Officer at a government with 1,001-5,000 employees

Setting up CloudGuard is pretty straightforward. The initial setup only took a few minutes. It's essentially turnkey. However, the total deployment took about half a day. For maintenance, we have two cloud administrators. That's two in case one goes on vacation, resigns, or gets sick. So you need backup.

View full review »
it_user810990 - PeerSpot reviewer
Director, Information Security & Service Transformation at a insurance company with 1,001-5,000 employees

Initial setup was super easy. We were integrated in 15 minutes, then it was just another hour or so of tuning and kicking the tires.

View full review »
VV
Cloud Security Lead at a computer software company with 5,001-10,000 employees

The initial setup was straightforward.

View full review »
NG
Solution Architect Cloud Security at a tech vendor with 10,001+ employees

It is easy to implement Dome9 but there are many policies that need to be configured.

Once the deployment is complete, the policies have to be set up and validated. All of the policies need to be relevant to my customers, which means that some of them will have to be disabled. For example, policy requirements will vary from country to country.

This solution can be used in many different markets such as medical or insurance, and different challenges will be present depending on the market.

 The process can take a month or a month and a half.

View full review »
YY
Cloud Infrastructure Architect at Maxis Berhad

The inial setup was straightforward.

The deployment took us about six months because we had issues while integrating. The issues weren't with Dome9.

View full review »
EI
Cloud & DevOps Team Leader at a tech company with 501-1,000 employees

The initial setup was straightforward, as the solution is quite intuitive.

View full review »
CD
Senior Consultant at a tech services company with 11-50 employees

Setup is usually simple. It's not hard to implement it and gain visibility across two or more cloud infrastructures. It's quite fast. As long as you have the right number of assets, workloads, and applications for each cloud environment, you can easily deploy CloudGuard.

View full review »
RM
Implementer at a tech services company with 51-200 employees

CloudGuard is easy to implement.

View full review »
BM
Product Manager at a tech services company with 51-200 employees

The initial setup is pretty straightforward. You can get it up and running in a matter of hours. Because it is cloud-based, it pulls the information in via APIs. As long as you can put in the relevant account details, it can work almost immediately.

There is a language that you can use to create policies and rules, which gives you the ability to do more complicated things, but it will take longer to set up.

It only takes a few people to deploy this solution. One from our side and perhaps two from the customer's side.

View full review »
GD
Cloud Security Architect at Kontex

The initial setup of Check Point CloudGuard Posture Management difficulty depends on how you want to set it up. There are always some problems when you have to connect it to your cloud systems. However, this will only add time to the process.

View full review »
HariOmKanth MS - PeerSpot reviewer
DevSecOps Engineer at a tech services company with 11-50 employees

The initial setup is really easy. On a scale of one to five, I would rate it as a five.

View full review »
it_user731871 - PeerSpot reviewer
Owner at Liversidge Consulting Ltd

This solution is easy to get going, although it requires a lot of training to get the best out of it.

It took us weeks to set it up, which was very quick. In terms of setting it up for a client, the strategy would depend on what holes they have in their security infrastructure, and how we can use this solution to close them.

View full review »
DC
Managing Director at a tech services company with 5,001-10,000 employees

The initial setup was straightforward. 

View full review »
Buyer's Guide
Check Point CloudGuard CNAPP
April 2024
Learn what your peers think about Check Point CloudGuard CNAPP. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,578 professionals have used our research since 2012.