Overview
Video 1
Video 1

Product video
Check Point Security Management provides an advanced security management platform for enterprises to deploy protections across their organizations, across public, private and hybrid clouds.
Efficient: Automation and granular delegation help alleviate operational overhead. The Security Management API allows security teams to automate any task or create web portals for security self-service. Management interface features anticipate the administrator's daily needs, providing security intelligence to make better policy decisions.
Fully Integrated: Security Management has logging, monitoring, event correlation and reporting in one place. A visual dashboard provides full visibility into security across the network, helping organizations monitor the status of enforcement points and stay alert to potential threats. The customizable dashboard provides a full view of the security posture and drilldown capabilities into incident or log details. Reports are configurable and accessible from any web browser.
Security Management is required to control CloudGuard Network Security Gateways.
Customers requiring security management for up to 5 Security Gateways may deploy this offering on instances with less than 8 compute cores. Managing more than 5 Gateways on an instance with less than 8 compute cores is not supported. Customers requiring security management for up to 25 Security Gateways must deploy this offering on instances with 8 or more compute cores.
Customers requiring security management for more than 25 Security Gateways should contact Check Point or purchase BYOL.
To maintain the highest quality and security of our management solutions, Check Point recommends installing the latest recommended Jumbo Hotfix, especially after the initial deployment.
Highlights
- One Platform, One Policy a single pane of glass console manages the entire IT infrastructure - from the data center to private/public/hybrid cloud deployments - for full visibility, security efficiency and consistency. The policy can be segmented into layers for seamless network segmentation.
- Extensible, Scalable Platform: The Security Management platform scales to the most complex and dynamic environments. The RESTful APIs make it easy to integrate securely with orchestration, change management and ticketing systems, enabling automated security change control and provisioning.
- Check Point is an APN Advanced Technology Partner with Networking and Security Competencies. CloudGuard Network Security is integrated with a broad range of AWS services, including Amazon GuardDuty, Amazon CloudWatch, AWS Security Hub, AWS Transit Gateway, AWS CloudTrail and VPC Flow Logs. CloudGuard Network Security also provides a library of CloudGuard CloudFormation templates (CFTs) to simplify deployment.
Details
Unlock automation with AI agent solutions

Features and programs
Financing for AWS Marketplace purchases
Pricing
Free trial
- ...
Dimension | Cost/hour |
---|---|
c6in.xlarge Recommended | $0.62 |
r5a.4xlarge | $1.83 |
r5n.12xlarge | $1.83 |
m6i.2xlarge | $0.62 |
r5b.2xlarge | $0.62 |
c5.18xlarge | $1.83 |
r5n.xlarge | $0.62 |
c5d.18xlarge | $1.83 |
r5a.2xlarge | $0.62 |
c5n.4xlarge | $1.83 |
Vendor refund policy
Terminate the instance at any given time to stop incurring charges.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Additional details
Usage instructions
Once the instance is running, connect to it using SSH, set an admin password using: 'set user admin password' followed by 'save config'. Then connect to https://[instance] using Internet Explorer (IE) to finalize the configuration. Notes:
- SSH password authentication is disabled in /etc/ssh/sshd_config
- For information regarding Firefox and Chrome refer to sk121373.
Resources
Support
Vendor support
This offer includes Premium Support. For the full list of included support services visit: https://www.checkpoint.com/support-services/support-plans/ To open a support ticket, you would need to have a Check Point user center account. If you do not have a user center account, you can sign up for one here: https://accounts.checkpoint.com . Need support? Contact us at https://www.checkpoint.com/support-services/contact-support/Â
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

Standard contract
Customer reviews
Improved organizational security and efficiency with intuitive management
What is our primary use case?
My main use case for Check Point Security Management is as a firewall. I have connected it in my office premises as a firewall. The people who connect to the internet in the internal network have their packet captures go through the firewall itself, ensuring everything is safe and secure.
What is most valuable?
The best feature Check Point Security Management offers is the GUI. The GUI shows everything in different categories such as mobile phones, connected devices, laptops, and desktops. It displays everything in different dashboards, making it easy to understand what is connected to what.
Having that dashboard helps me in my day-to-day work because it saves time. It shows all the devices that have been connected and how many devices are connected in different ways. Through this, I am able to track how many laptops and mobile phones have occupied my IP addresses.
What needs improvement?
If I had to pick one thing that could make my experience even better, I would say they need to change the support resolution time. Everything else meets expectations.
For how long have I used the solution?
I have been using Check Point Security Management for 1.8 years.
What do I think about the stability of the solution?
Check Point Security Management is stable in my experience with no downtime.
What do I think about the scalability of the solution?
Regarding scalability, I have given the rating of nine out of ten. The support is the only aspect having a glitch; everything else is satisfactory.
How are customer service and support?
I choose a nine out of ten specifically because sometimes the support has a glitch.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I used a different solution before but prefer not to disclose that name. Currently, there are no issues with anything, and everything is functioning properly.
What was our ROI?
I have seen a hundred percent return on investment with Check Point Security Management.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for Check Point Security Management is positive. The products they provide from Check Point are reasonably priced and satisfactory.
Which other solutions did I evaluate?
Before choosing Check Point Security Management, I did not evaluate other options. I chose only one option, which is Check Point.
What other advice do I have?
My advice to others looking into using Check Point Security Management is to ask all vendors and customers to take the demo for five to 10 times. After ensuring it is supported by their organizations, then proceed forward. I rate Check Point Security Management a nine out of ten.
Which deployment model are you using for this solution?
Years of using the solution significantly improve log management and troubleshooting efficiency
What is our primary use case?
My main use case for Check Point Security Management is that we use it to manage all our firewalls and also look at the logs that the firewalls generate.
I use the logs in Check Point Security Management both for troubleshooting, seeing traffic from one IP to another IP, and for threat detection, viewing what the IPS and IDS and anti-bot and antivirus generate. It gives a very nice overview where you can see what has happened, when, and what client has generated the logs. It's very easy to get an overview of what's happening in the network.
How has it helped my organization?
Check Point Security Management has positively impacted my organization because, after migrating from our previous firewall, a Cisco ASAÂ , we were able to see what traffic was passing through the firewall and from that, build out least access privilege firewall rules. So only what's actually needed by the organization is being let through. The rest is being dropped.
The measurable outcomes with Check Point Security Management show that the troubleshooting is definitely quicker. Now it just takes a few minutes to find out where the error is and resolve it. Before, it was at least an hour or two of troubleshooting to locate the issue.
What is most valuable?
The best feature Check Point Security Management offers is definitely the log management. I've worked with other firewall vendors and the overview of the logs that you get in Check Point Security Management is superb. You don't get that anywhere else. It's very easy to troubleshoot what traffic is being dropped, what traffic is being passed. It's easy to build firewall rules and everything else. It's miles ahead of anyone else.
What needs improvement?
Check Point Security Management could definitely improve the lag inside the application. The application has a tendency to get slow when you have a lot of firewall rules inside it. Additionally, it crashes pretty regularly, so they could resolve the stability issues as well.
Regarding the crashes in Check Point Security Management, at least once a day, the application crashes with some random error message. Then you have to close it out and open it up again. The process takes around a minute or two to get back to where you were. It's very frustrating.
For how long have I used the solution?
I have been using Check Point Security Management for about seven years now.
What do I think about the stability of the solution?
Check Point Security Management is stable, but the SmartConsole used to administrate the security management is somewhat unstable. The application crashes at least once a day with some random error message. Then you have to close it out and open it up again. The process takes around a minute or two to get back to where you were.
How are customer service and support?
The customer support for Check Point Security Management is great. We have had no issues with them.
I would rate the customer support for Check Point Security Management an eight on a scale of one to 10.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Before Check Point Security Management, I previously used a Cisco ASAÂ .
I switched from Cisco ASA to Check Point Security Management because the Cisco ASA was standalone and had no central management. We went from that to using Check Point Security Management for centralized management of all of our firewalls.
What was our ROI?
In terms of return on investment, we definitely need fewer employees to manage the amount of firewalls than before. The time to resolve issues is very much better now with Check Point Security Management.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for Check Point Security Management is that the licensing is straightforward. We pay on a three-year base. It's very fair pricing.
Which other solutions did I evaluate?
Before choosing Check Point Security Management, I did not evaluate other options.
What other advice do I have?
I would definitely give Check Point Security Management a 10 out of 10 because the logging oversight that Check Point Security Management gives is superb compared to anything else I've ever tried.
My advice to others looking into using Check Point Security Management is to definitely talk with Check Point Professional Services on how to deploy it since creating management of remote sites over VPN can be challenging. Having a plan on how to actually do that is great beforehand.
Overall rating: 10/10
Which deployment model are you using for this solution?
User-friendly interface aids troubleshooting but licensing proves challenging
What is our primary use case?
My main use case for Check Point Security Management is to troubleshoot or add policy, depending on the situation. It could be both, but mainly troubleshooting. We go and take care of the customer's management and resolve issues, create new configurations, and such.
What is most valuable?
I find very useful the central view offered by Check Point Security Management , as you're able to have all your gateways and policy and different policy packages. The maintenance and addition of new policy is fairly easy. The GUI is also very simple and user-friendly.
The logging feature in Check Point Security Management is effective because the view is one single view and you can have multiple log servers to retrieve the logs from.
What needs improvement?
The needed improvements in Check Point Security Management depend very much on the customer's infrastructure. For example, an appliance has an easier time than someone with VMs. With VMs, there can be multiple issues related to performance.
For how long have I used the solution?
I have been working in my current field for around two years.
What was my experience with deployment of the solution?
Since I mainly work on other customers, Check Point Security Management does not much affect my scenario positively, so I cannot provide specific information about deployment issues.
What do I think about the stability of the solution?
Check Point Security Management has experienced some reliability issues, but it depends on VM, appliance, and any other implementation.
What do I think about the scalability of the solution?
The scalability of Check Point Security Management for a VM depends because you can only enlarge the disk size once and then you probably have to remake it. Also, when you upgrade multiple times, you leave many files that are useless. They are dated, so it's always better to create a new machine every few versions, for example, three or four major versions.
How are customer service and support?
I reach out for help multiple times with Check Point Security Management because many issues are related to the hotfix and known issues or new issues, which we have to work with R&D. The customer support quality varies significantly depending on who you get, what you get, and what the issue is.
I would rate the customer support of Check Point Security Management around a six because recently there's been a decrease in quality.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I am not sure if I previously used a different solution before Check Point Security Management.
How was the initial setup?
I am not aware of the specifics regarding pricing, setup cost, and licensing for Check Point Security Management, but as far as I know, licensing is quite expensive.
What about the implementation team?
My company is not a customer for Check Point Security Management specifically, but we are a partner.
What was our ROI?
I am not sure if I have seen a return on investment with Check Point Security Management.
What's my experience with pricing, setup cost, and licensing?
I am not aware of the specifics regarding pricing, setup cost, and licensing for Check Point Security Management, but as far as I know, licensing is quite expensive.
Which other solutions did I evaluate?
I evaluated other options before choosing Check Point Security Management, specifically the Panorama equivalent from Palo Alto Networks.
What other advice do I have?
The challenging part I have experienced with Check Point Security Management has been related to the central licensing. We had some issues where the license got duplicated and it's been a year going around and trying to clean it, but it also made me able to learn multiple things, which included CME and the VSec licensing.
If you have VSec licensing and you add a license that's central, you're going to be able to see it inside the CPMELG file as a VSec common.
I would advise others looking into using Check Point Security Management to put their hands on it. It's easier to learn that way. It's really something you can study, but you're going to be able to know it better when you work on the management itself. At first, people are going to make policy, which is fine. It's the beginning of the CCSA certification. That's the first step.
I was offered a gift card or incentive for this review.
On a scale of 1-10, I rate Check Point Security Management a 7.
Centralized management of extensive firewall infrastructure reduces errors and saves time
What is our primary use case?
My main use case for Check Point Security Management is to manage about 500 Check Point firewalls, and we manage all this equipment with this solution.
In my day-to-day work, I manage typical tasks with Check Point Security Management such as policy updates, monitoring, and troubleshooting, and it's easy to manage all the firewalls in this big environment with this solution.
I do not have anything else to add about my main use case or how I use Check Point Security Management.
What is most valuable?
In my opinion, the best feature Check Point Security Management offers is the ability to upgrade firewalls directly from the management console of the security management, which stands out to me.
Being able to upgrade firewalls directly from the management console makes a big difference for me because it reduces errors, and we do a lot of things automatically, which improves the upgrade process.
Check Point Security Management has positively impacted my organization by saving a lot of time because we have a lot of firewalls, and it provides a console where I can see directly all the managed firewalls, allowing us to manage all of our firewalls from just one point.
What needs improvement?
I have used Check Point Security Management for several years and have seen its evolution, and I believe they can improve the management by allowing better API functionality because the API now is a little complicated, making it difficult to do automation.
The improvements I would like to see in the API specifically relate to ease of use because the REST API is not easy to use.
For how long have I used the solution?
I have been using Check Point Security Management for more than 13 years.
What do I think about the stability of the solution?
Check Point Security Management is really stable, and I have not experienced any downtime or issues with reliability except for when we do upgrades, but after the upgrade, the platform is very stable.
How are customer service and support?
I have reached out to customer support for Check Point Security Management many times, and they answer quickly, with the level of support depending on the difficulty of the problem.
Which solution did I use previously and why did I switch?
Before using Check Point Security Management, I used a Cisco solution, and we switched to Check Point because Cisco management was not user-friendly, had a lot of bugs, and was very difficult to use.
What was our ROI?
I can't respond to how much time I've saved or how many incidents have been reduced since I started using Check Point Security Management because I'm pretty sure we saved a lot of time due to the central point of this tool, but I can't share examples.
I have not seen a return on investment in terms of time saved, fewer employees needed, or other benefits since I cannot share any relevant metrics.
Which other solutions did I evaluate?
We use Fortinet and Cisco as other tech products.
What other advice do I have?
My advice to others looking into using Check Point Security Management is that if you're looking for an easy tool to manage your firewall, you have to use this tool.
I do not have any additional thoughts about Check Point Security Management before we wrap up.
On a scale of one to ten, I rate Check Point Security Management a ten.
Which deployment model are you using for this solution?
Unifies security policies and streamlines rule updates across sites
What is our primary use case?
My main use case for Check Point Security Management is to unify firewall and threat prevention policies across multiple international sites, so I use SmartConsole to streamline rule updates and monitor security events in real-time.
What is most valuable?
The best features Check Point Security Management offers me are unified management console, automated policy management, and real-time monitoring and reporting.
Check Point Security Management has positively impacted my organization by providing centralized control, allowing us to manage all security policies and gateways from a single console, reducing complexity and saving time, and by enabling faster policy updates, which allowed quicker roll-out of rule changes across multiple sites, improving agility and reducing configuration errors.
What needs improvement?
I see areas of improvement for Check Point Security Management such as GUI stability and performance, and simplified firmware upgrades.
I and my colleagues occasionally report glitches or missing data views with the GUI stability and performance issues, and sometimes SmartConsole crashes.
The main things regarding needed improvements are GUI stability and performance, and there is no need to add more.
For how long have I used the solution?
I have been using Check Point Security Management for five to six years.
What do I think about the stability of the solution?
Check Point Security Management is stable, although sometimes it is not.
What do I think about the scalability of the solution?
Check Point Security Management is scalable.
How are customer service and support?
The customer support for Check Point Security Management is good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I did not previously use a different solution before Check Point Security Management.
What was our ROI?
I have seen a strong ROI from using Check Point Security Management through unified policy management, reduced misconfigurations, and faster incident response.
Which other solutions did I evaluate?
I did not evaluate other options before choosing Check Point Security Management.
What other advice do I have?
My advice for others looking into using Check Point Security Management is that if you manage complex or multi-site networks, it is a powerful tool for centralizing control and improving security consistency.
I don't have specific metrics or examples of time saved, fewer errors, or other measurable benefits.
I don't have information regarding pricing, setup cost, and licensing.
My company does not have a business relationship with this vendor other than being a customer.
I was offered a gift card for this review.
On a scale of one to ten, I rate Check Point Security Management an eight.