Check Point CloudGuard CNAPP Initial Setup
Generally, the deployment is pretty easy. We have a template, so it's automatic. However, we run into problems when we're supporting multiple CSPs. AWS supports CloudGuard 100 percent, whereas for Azure, it's 75 or 80 percent. Some Azure services, like user identity, are not supported, which is a challenge. It should be available in Q1.
Deploying the threat intelligence for AWS was fine, but we had problems with Azure. I'm part of the security group, which is onboarded into the AWS. The next time I create a new security group, it automatically discovers the asset and will put it in the log. For Azure, a new network security group must be added manually. If I'm doing that manually, I want to completely remove the onboarded threat intelligence, which means I want to completely remove what we added from the portal. That is one problem we face doing the onboarding of Azure.
View full review »It was straightforward there was template provided by Dome9 (Checkpoint) and that need to be imported in our account which create ID and provide access to Dome9 on our cloud infra to monitor and collect metadata logs
View full review »We are primarily on Azure, but our customers are in AWS and Azure. We do not have a lot of work with Google Cloud. We have a little bit of Oracle cloud, but AWS and Azure are the two big players we see our customers using.
I am not involved in its deployment, but I know that for CSPM, which is probably related, you discover as you go. You deploy it, and you are able to get the overall insights into what the environment is. I presume you would lead with that and then work on the workload and CNAPP, but I have not had to do it myself.
View full review »Buyer's Guide
Check Point CloudGuard CNAPP
April 2024
Learn what your peers think about Check Point CloudGuard CNAPP. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,578 professionals have used our research since 2012.
SK
Salman Kaleem
Associate Director at Virtusa Global
The initial deployment was straightforward. Two admins from our organization along with some solution architects and one consultant from Check Point helped us with the proof of concept, and we were able to acquire the solution after the POC.
View full review »VD
Vijay Devnath
CIFO at Crisp System India Pvt Ltd
I am involved in the deployment of the solution. I am not the technical hands-on person for this project. I manage the deployment process.
AC
reviewer2379078
Senior Cybersecurity Architect at a manufacturing company with 10,001+ employees
Currently, we are just dealing with the public cloud. We have AWS and Azure clouds.
Its deployment needs a lot more collaboration. From the cybersecurity side, we can only do certain things to protect our environment. From the app side, it also needs collaboration with whoever is managing that application or server. A lot of collaboration is needed rather than just having the security person.
When we get all the permission to do the deployment, it is a lot easier. The security team does not hold the key to the kingdom, so we do not have access to all environments. Once we get that access, it can be deployed a lot easily.
View full review »The initial deployment required knowledgeable people. We had already planned the required configuration type, the necessary posture management approach, and the rules that needed to be defined. We had discussed these requirements with the CloudGuard team member and implemented them together. Four people were involved in the deployment.
View full review »Setting up CloudGuard is straightforward, and it takes a few days. We handled the deployment in-house with two full-time employees. It's a SaaS solution, so the only maintenance required is backups.
View full review »The implementation of the tool is very easy. There are several steps in the wizard where it gets complicated around the configuration, however. If you do not have extensive knowledge of the tool, it becomes complicated.
View full review »DN
reviewer2379465
Software Development Manager- Cybersecurity at a retailer with 10,001+ employees
The initial deployment of CloudGuard CNAPP was extremely straightforward since it is agentless and seamlessly integrates with public cloud tools. We began with a POC, then gradually rolled out the solution across all our cloud accounts, starting with AWS and expanding to GCP and Azure.
RD
reviewer2386959
Senior Security Consultant with 5,001-10,000 employees
Its setup is very manual. I would like to see that transition to more of a scripted setup. It is a very manual process. For the most part it is fine however I have definitely had issues with it. Sometimes, it just does not work, and I have had to open tickets.
Its deployment is very straightforward.
View full review »The initial setup is easy and not complex at all.
View full review »The setup is straightforward and seamless.
View full review »BD
BasilDange
Sr Manager IT Security at a financial services firm with 10,001+ employees
The initial setup was straightforward. The only thing that was required from our side was a cloud template, which was provided by Dome9. We need to executed that template in our cloud environment for AWS and Azure. It automatically creates a read-only ID on the AWS platform for Dome9 to connect with. There is some configuration which needs to be done on Dome9 as well as AWS, but the deployment takes around 15 to 30 minutes.
View full review »AB
reviewer2119419
Senior Accountant at SORECO
The setup procedure was straightforward.
View full review »It's very simple to set up because it's all in the cloud.
View full review »The initial setup is straightforward.
View full review »KP
Kirtikumar Patel
Network Engineer at LTTS
The initial setup is straightforward.
View full review »The configuration was very simple. The application is a very user-friendly tool - apart from training and courses for implementation.
View full review »Like all setup-type software, it is very easy to install.
View full review »Making the investment is a bit high, however, it is very effective to make the acquisition of the tool.
View full review »TG
reviewer2085951
Cloud Security Architect with 51-200 employees
Deploying CloudGuard is straightforward. I deployed it and configured the auto-remediation alone, but I also worked with another architect to discuss the design and workshop some ideas, so we could say a team of two deployed it.
After deployment, maintenance has been very low.
JH
reviewer2029350
Database Administrator at Ordina
The setup was complicated, however, the vendor support team provided effective guidelines.
SB
Schillebeeks Bart
Owner at AD Internet Consulting
The initial setup is really easy. Just submit the cloud key. It takes between an hour and two hours to deploy. When I installed it, the process did not take longer than an hour.
My implementation strategy fits into the way I design secure private clouds or multi-clouds, based on public cloud providers. It's almost a necessity. You can do it in other ways by using the local ACLs, etc, but then it becomes cumbersome. CloudGuard takes a lot of the work out of it and gives you a single point to manage all of your security firewalls.
View full review »We implemented CSPM in 30 days. Since the solution was simple to implement and the transition was painless, we added many of our cloud environments.
View full review »RR
reviewer1440831
Senior Security Engineer at a insurance company with 10,001+ employees
The initial setup of the solution was straightforward for me as a professional working in the cloud environment. For someone else who is a beginner or not familiar with cloud products, he or she might find it a bit difficult. It all depends on the level of knowledge that each person has.
The deployment took a week or two, and that was not full-time.
We have about ten users of the solution, including security engineers, analysts, cloud engineers, enterprise engineers, and architects.
View full review »The tool's deployment is very easy and takes two weeks to complete. We need engineers to install the product. You need to ensure the overall device landscape before the product's installation. Its maintenance is easy.
View full review »SM
reviewer2173374
DevOps and Security Engineer at a financial services firm with 5,001-10,000 employees
I was not a part of the initial setup.
View full review »SF
reviewer2008410
Software Engineer at Doddle
The setup was complex, however, the vendor's technical team provided effective guidance.
View full review »SW
reviewer2000268
Human Resources Executive at Randstad Nederland
The initial setup process was not complicated since the customer service team had deployed professionals to set up and provide guidelines.
View full review »RN
RonnieNunn
Freelancer at a consultancy with 51-200 employees
Setting up CloudGuard CNAPP is straightforward, as it is API-driven. Just a few quick steps, like providing credentials and configuring settings, and you're ready to go.
View full review »The initial setup is very straightforward. I don't have to do any tuning or configuration for it to work. You just need to enable it.
View full review »BW
reviewer2104284
Java Application Developer at Oesia
The initial setup was straightforward.
View full review »CF
reviewer2092263
Software Engineer at iDeals
The setup was straightforward.
View full review »KW
reviewer1459770
Advisory Information Security Analyst at a financial services firm with 501-1,000 employees
The initial setup was straightforward. A lot of the work for Dome9 is done upfront. There is an onboarding tool that Dome9 has when you want to add a cloud environment. That holds your hand and walks you through it pretty easily. It will show you everything you need to do both on the Dome9 side and on the cloud side to get the cloud environment integrated and set up. From there, the compliance rule sets that you want to apply to your company are all neatly laid out. With a single click, you can tell it that you want to run the X, Y, Z rule set against your current environment, then it will do that in a matter of minutes.
Initially, our deployment took probably a week just to get ourselves up and running. At that time, we were also trying to get the cloud deployment figured out. Knowing what we know now, we have stood up subsequent environments in minutes.
View full review »JM
Jose Mendes
Network Security Engineer/Architect at Euronext Technologies SAS
The initial setup process was very quick: Create the user on AWS, then you can log in and have all your information. On the domain side, it was very quick to log in with the account created on the AWS.
The deployment was one or two days. We had three remote session, where two of those sessions were about how it works.
Our approach was to have our accounts on Dome9. After adding accounts, we ran some reports and compliance rule sets based on the security measure recommendations from Dome9 for our AWS product. We also went through the recommendations and made some changes on some of them. That is how we deployed the solution.
Our implementation strategy was to first only add the key accounts in the first stage, seeing how it worked. Then, after some weeks of working with it, we added the rest of the accounts to production.
View full review »OP
Oleg Pekar
Senior Network/Security Engineer at Skywind Group
The setup was straightforward, and the configuration was easy and understandable.
View full review »EH
reviewer2379448
Director of Cybersecurity at a comms service provider with 10,001+ employees
The initial deployment was straightforward. As a SaaS platform, it is extremely easy to deploy it into environments.
We can deploy CloudGuard CNAPP and use it out of the box within hours.
Our initial strategy was to implement a basic solution and then expand its capabilities over time. Check Point, frankly, has done an excellent job of keeping its platform up-to-date by continuously adding and improving features. This is why we're still using it even after six years.
View full review »The initial setup is straightforward.
View full review »MS
reviewer1761732
CEO at a tech vendor with 11-50 employees
The implementation of the solution was easy.
View full review »SJ
reviewer910575
Chief Technical Officer at a government with 1,001-5,000 employees
Setting up CloudGuard is pretty straightforward. The initial setup only took a few minutes. It's essentially turnkey. However, the total deployment took about half a day. For maintenance, we have two cloud administrators. That's two in case one goes on vacation, resigns, or gets sick. So you need backup.
View full review »Initial setup was super easy. We were integrated in 15 minutes, then it was just another hour or so of tuning and kicking the tires.
View full review »VV
reviewer1666944
Cloud Security Lead at a computer software company with 5,001-10,000 employees
The initial setup was straightforward.
View full review »NG
Naveen Govindappa
Solution Architect Cloud Security at a tech vendor with 10,001+ employees
It is easy to implement Dome9 but there are many policies that need to be configured.
Once the deployment is complete, the policies have to be set up and validated. All of the policies need to be relevant to my customers, which means that some of them will have to be disabled. For example, policy requirements will vary from country to country.
This solution can be used in many different markets such as medical or insurance, and different challenges will be present depending on the market.
The process can take a month or a month and a half.
View full review »YY
Yasdy Yasin
Cloud Infrastructure Architect at Maxis Berhad
The inial setup was straightforward.
The deployment took us about six months because we had issues while integrating. The issues weren't with Dome9.
EI
ElieIfrah
Cloud & DevOps Team Leader at a tech company with 501-1,000 employees
The initial setup was straightforward, as the solution is quite intuitive.
View full review »CD
Chris Dagal
Senior Consultant at a tech services company with 11-50 employees
Setup is usually simple. It's not hard to implement it and gain visibility across two or more cloud infrastructures. It's quite fast. As long as you have the right number of assets, workloads, and applications for each cloud environment, you can easily deploy CloudGuard.
View full review »RM
reviewer1854018
Implementer at a tech services company with 51-200 employees
CloudGuard is easy to implement.
View full review »BM
reviewer1343916
Product Manager at a tech services company with 51-200 employees
The initial setup is pretty straightforward. You can get it up and running in a matter of hours. Because it is cloud-based, it pulls the information in via APIs. As long as you can put in the relevant account details, it can work almost immediately.
There is a language that you can use to create policies and rules, which gives you the ability to do more complicated things, but it will take longer to set up.
It only takes a few people to deploy this solution. One from our side and perhaps two from the customer's side.
View full review »GD
Gordan Daut-Kaiser
Cloud Security Architect at Kontex
The initial setup of Check Point CloudGuard Posture Management difficulty depends on how you want to set it up. There are always some problems when you have to connect it to your cloud systems. However, this will only add time to the process.
View full review »The initial setup is really easy. On a scale of one to five, I would rate it as a five.
View full review »This solution is easy to get going, although it requires a lot of training to get the best out of it.
It took us weeks to set it up, which was very quick. In terms of setting it up for a client, the strategy would depend on what holes they have in their security infrastructure, and how we can use this solution to close them.
View full review »DC
reviewer1416270
Managing Director at a tech services company with 5,001-10,000 employees
The initial setup was straightforward.
View full review »Buyer's Guide
Check Point CloudGuard CNAPP
April 2024
Learn what your peers think about Check Point CloudGuard CNAPP. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,578 professionals have used our research since 2012.