The solution is primarily used for security. We had 48 to 50 firewalls for data center segmentation. All data centers were fitted into multiple zones. Each zone had a different data classification. We had the firewalls deployed on several overseas remote sites.
CloudGuard Network Security with Threat Prevention and SandBlast
Check Point Software TechnologiesExternal reviews
External reviews are not included in the AWS star rating for the product.
Change tracking is available in network security module
Advanced threat modeling for Cloud networks
Cloud Security Engineer
Easy of integration .
Reatl time monitoring.
And ensuring various compliances.
Protecting Securing and Enhancing our cloud network infrastructure security
Checkpoint CloudGaurd - Should you try or deny ?
A checkpoint cloud guard network security assessment for strengthening cloud enviroment
It is easy to use. It have good customer support and easy to implement.
1.Securing Cloud Workloads
2.Visibility and Control
3.Compliance Management
Has an improved GUI, unified security management, and is fairly easy to deploy
What is our primary use case?
How has it helped my organization?
For nearly three and a half years, the solution was doing pretty good security. It provides scalability in terms of the multiple firewalls that can be connected with the cluster as well. It offers us easy signature updates and rule changes. We just prepare one rule and then select how many firewalls you want to push. It is easy in terms of the management.
What is most valuable?
The GUI is getting better. It's more neat and clean now.
Its security and the definition of signatures are pretty good. Especially when you use those firewalls for a website, they pick up the signature very quickly.
Security is based on two kinds of things. One is based on the IP addresses and port numbers. Another is based on the application.
CloudGuard Network Security provides you with unified security management across hybrid clouds and on-prem. I used it only for the cloud. If you're using VMware, you can use that on-prem as well.
What needs improvement?
The GUI hadn't been that good. However, they fixed that and the GUI is pretty good now.
There may be some latency. In the beginning, you won't really notice - when you have 10 to 15 sessions. However, if you have 40,000 sessions and you are running the dev check in the background, then you will start to notice some issues. It's probably under milliseconds.
It's not as organized as a Palo Alto solution.
We wanted to go with the Azure Network solutions, and CloudGuard was a big expansion compared to Azure Dev, which is a built-in dev solution. I hear Azure is integrating Palo Alto as a back-end solution.
I had a high level of confidence in CloudGuard Network Security. We used it for nearly six months and were comparing different products. I'd rate it at an eight or nine out of ten.
For how long have I used the solution?
I've used the solution for four to four and a half years.
What do I think about the stability of the solution?
The solution is very stable. I'd rate the stability eight or nine out of ten.
What do I think about the scalability of the solution?
We didn't really check for scalability. We were more focused on features. I'm not sure how well it would scale.
We had the solution in multiple locations. When we tested it, we did so across around 100 customers.
How are customer service and support?
The product was really good, so we didn't really deal with technical support.
Which solution did I use previously and why did I switch?
Our company migrated from Check Point to Palo Alto. I've noticed there are big changes in the Palo Alto GUI. It's neat and clean in comparison. The site was easier to navigate. Check Point has the same features; however, it's not as clear. If you are searching for something, you need to click around. It's not really well organized.
We've also used Azure and decided to go in that direction.
How was the initial setup?
The deployment wasn't really complex. It depends on if you are familiar with the solution and if you follow the best practices. It's not hard to do a POC design. Within four weeks, you'd have the solution up and running.
Our infrastructure was 100% Azure, so it was much easier for us to deploy the POC.
It was pretty easy to configure.
What was our ROI?
You can save maybe 30% on costs by deploying this solution.
What's my experience with pricing, setup cost, and licensing?
CloudGuard is pretty expensive. Azure ends up being cheaper.
They are fairly priced. It's not cheap. However, you definitely need to spend some dollars on security.
While it's rather fair pricing, it was more about us having the right solution for the user base.
What other advice do I have?
For a few reasons, we decided not to go with it compared to the cloud vendor's firewall. One was the technology and integration itself. You can integrate CloudGuard into many third-party tools. However, it adds extra cost. Also, if we could find something in the Azure ecosystem, we don't need to go for a third party. That's why we decided to go with Azure.
I have not yet used its AI capabilities. That said, my understanding is that they have very good tools and built-in initial learning capabilities that can help you begin to understand the traffic.
I would recommend the solution to others, and I have never had issues with the product itself. However, we were looking for Azure-native tools, which is why using this long-term didn't work out.
I'd rate the solution eight out of ten. I'd rate it a nine if I was 100% sure you could control ransomware attacks. I'm not sure if you can do that fully with CloudGuard.
Comprehensive Security for Modern Business: Check Point CloudGuard
10 out of 10 for Network Security
Provides reasonable security for network at a reasonable price
What is our primary use case?
When we build security for companies, we use the cloud of services for building and configuring networks and Security on the company Network, including EDR or XDR on the computers, routers, and switches.
How has it helped my organization?
The customer gets reasonable security for their network at a reasonable price, except for Check Point's expensive router. Overall, the product is reasonably priced.
What is most valuable?
The router's anti-bot feature and network security for detecting malware and preventing its spread are critical components. Additionally, there are other features like antivirus, anti-malware, and a firewall. The anti-bot feature can detect if one device is hacked and has malware. It monitors the communication to and from this device and can detect and block the malware when it spreads to other computers on the network.
What needs improvement?
Every good security product requires a company with many research departments and staff. This ensures that the product is always up to date on the most relevant security threats. An excellent expert team of researchers on vulnerabilities and new cyber threats could exist.
They should start integrating AI more into the product to make it easier to use
For how long have I used the solution?
I have been using Check Point CloudGuard Network Security for one year and a half.
What do I think about the stability of the solution?
The product is stable if deployed correctly. I rate the solution’s stability a nine out of ten.
What do I think about the scalability of the solution?
I rate the solution’s scalability a nine out of ten.
How was the initial setup?
The initial setup was neither easy nor difficult.
What's my experience with pricing, setup cost, and licensing?
The product is expensive.
What other advice do I have?
Check Point is a reliable company for network security. I trust them to protect my resources when using their products. However, their solutions could be improved to be more user-friendly and easier to integrate.
I recently implemented Check Point CloudGuard Network Security for our company's new customers. I installed the features and products after consulting with them. Setting up the network configuration was moderately complex and required careful attention. Check Point offers extensive configuration options, providing enhanced control and security, although it may require more setup effort initially.
I advised others to configure their product correctly.
Overall, I rate the solution an eight out of ten.