Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

32 AWS reviews

External reviews

248 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Pedro Leão

Cloud security has reduced alerts and improves real-time protection for critical workloads

  • December 23, 2025
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Check Point CloudGuard Network Security has been securing cloud network traffic, and I mainly rely on it to protect workloads in the cloud and enforce consistent security policies across cloud environments.

A quick example of how I use Check Point CloudGuard Network Security to protect my cloud workloads is by inspecting inbound traffic to public-facing services; recently, it blocked suspicious scans and unauthorized access attempts before they could reach my cloud applications.

What is most valuable?

The best features Check Point CloudGuard Network Security offers include cloud-native threat prevention that inspects traffic in real time, consistent policy enforcement across multi-cloud environments, and automation and integration with cloud platforms for easier deployment.

The feature that made the biggest difference for me is the real-time threat prevention because it stops malicious traffic and risky behavior before it ever reaches my cloud workloads. This has significantly reduced actual incidents and false positives that I need to chase.

Check Point CloudGuard Network Security has positively impacted my organization by reducing successful attacks and risky cloud traffic, meaning fewer incidents reach production systems. It has also cut down the time my team spends troubleshooting threats, letting us focus more on proactive cloud security, which has freed up my time.

Since deploying Check Point CloudGuard Network Security, I have seen about a 40% drop in cloud network alerts, which has cut down noise and false positives, helping my team save roughly 25% of time previously spent on manual investigation and threat cleanup.

What needs improvement?

I think the initial setup of Check Point CloudGuard Network Security can be simpler; onboarding could be more intuitive for new cloud teams, and it could also have more flexible custom reporting and better documentation examples.

For how long have I used the solution?

I have been using Check Point CloudGuard Network Security for about a year.

What do I think about the stability of the solution?

Check Point CloudGuard Network Security is stable.

What do I think about the scalability of the solution?

The scalability of Check Point CloudGuard Network Security has been very good; it handles growth in workloads and traffic smoothly, and the policies scale across accounts without performance issues.

How are customer service and support?

I think the customer support for Check Point CloudGuard Network Security has been responsive and helpful.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I previously relied mainly on AWS Native security controls, and I switched to Check Point CloudGuard Network Security because I needed stronger threat prevention, better visibility, and centralized policy management, as the AWS Native security controls were too limited for me, necessitating a solution with greater visibility.

How was the initial setup?

I think the initial setup of Check Point CloudGuard Network Security can be simpler; onboarding could be more intuitive for new cloud teams, and it could also have more flexible custom reporting and better documentation examples.

What was our ROI?

I have seen a return on investment from Check Point CloudGuard Network Security, with a clear impact reflected in a 40% reduction in cloud network alerts and about 25% less time spent by my team on manual investigations and threat analysis. This means less operational overhead and more time for proactive cloud projects, translating to measurable cost savings and better efficiency overall.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup cost, and licensing for Check Point CloudGuard Network Security was a bit complex to map out at first; the setup cost was fair, especially through the AWS Marketplace, though planning the right license levels took some initial effort, so overall, it feels like good value for the level of cloud protection I get.

Which other solutions did I evaluate?

I evaluated other solutions, including Palo Alto, the AWS Native Controls, and Fortinet.

Compared to Palo Alto, AWS Native Controls, and Fortinet, Check Point CloudGuard Network Security was easier to integrate with my AWS environment and roll out consistent policies across accounts, so the day-to-day ops felt quicker. Compared to AWS Native, it is more feature-rich, and versus Palo Alto, it is similar in capability but slightly friendlier for multi-cloud automation.

What other advice do I have?

Check Point CloudGuard Network Security provides me with unified security management across my cloud and hybrid environments, and having a single console for policies and visibility simplifies operations, reduces errors, and makes it much easier to manage security consistently as I scale.

I utilize Check Point CloudGuard Network Security alongside other Check Point products like Check Point Quantum Force and Harmony Endpoints, which integrate through a shared management and threat intelligence layer, giving me consistent visibility and protection across cloud, network, and endpoints.

My advice to others looking into using Check Point CloudGuard Network Security is to plan your cloud architecture and policies early and start with a phased rollout.

I would rate Check Point CloudGuard Network Security an eight on a scale of one to ten because I think there is always room to be better.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Devraj Kc

Cloud security has strengthened compliance and now protects internet access for our workloads

  • December 15, 2025
  • Review from a verified AWS customer

What is our primary use case?

The main use case of using Check Point CloudGuard Network Security is to secure all of our cloud infrastructures while they are browsing the internet and scanning everything.

We use Check Point CloudGuard Network Security for HTTPS inspection as well as URL filtering and providing only a certain limited access for the VMs to certain websites.

What is most valuable?

The best features Check Point CloudGuard Network Security offers are its threat emulation and threat extraction blade as well as bring your own license where you can use the on-prem Check Point CloudGuard and decommission it to use in the cloud.

I believe Check Point CloudGuard Network Security has impacted our organization positively because it is one of the stable products that I have used till now, and we do not have to upgrade Check Point CloudGuard Network Security for any sort of CVE or bug in its OS and it is very stable.

Check Point CloudGuard Network Security has decreased the organizational risk because it provides compliance with HIPAA as well as PCI DSS by means of its compliance blade. It makes it easier for us to determine if we are compliant or not.

It made me more secure because when you talk about security, Check Point CloudGuard Network Security is on top of the list with 99.8 in blocking malware according to the Miercom list. I believe it has had a positive effect and we have not had any incidents.

What needs improvement?

Check Point CloudGuard Network Security needs to focus more on the VPN side by being more flexible with configuring the VPN with route-based VPN and having a failover with it.

For how long have I used the solution?

I have been using Check Point CloudGuard Network Security for about five to six months, and we are still in the evaluation phase.

What do I think about the stability of the solution?

We have not faced any incident to date when using Check Point CloudGuard Network Security. We have faced zero downtime, and we have not been compromised.

Check Point CloudGuard Network Security is one of the stable products I have used.

What do I think about the scalability of the solution?

Check Point CloudGuard Network Security is very scalable. It depends upon your license, and if you purchase the right kind of license, then it is very scalable.

How are customer service and support?

The customer support for Check Point CloudGuard Network Security is on point. If you raise a case, they will reply within half an hour. I would rate the customer support for Check Point CloudGuard Network Security at a 10.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We did not use a different solution previously.

How was the initial setup?

The setup was acceptable. We got a good deal.

What about the implementation team?

We only need fewer employees because Check Point CloudGuard Network Security is easier to use in the cloud and we do not have to tweak every setting. However, we are yet to see a good return on investment.

What was our ROI?

We do not need as many employees because Check Point CloudGuard Network Security is easier to use in the cloud and we do not have to tweak every setting. However, we are yet to see a good return on investment.

What's my experience with pricing, setup cost, and licensing?

We are a partner with Check Point CloudGuard Network Security.

Which other solutions did I evaluate?

We did not evaluate any other options.

What other advice do I have?

Currently, we have not used Check Point CloudGuard Network Security alongside with any other Check Point products.

Check Point CloudGuard Network Security does provide unified management access. Currently, we do not have any on-prem devices, but you can use the CloudGuard management system to onboard both cloud as well as on-prem gateways, where you can see the logs for both the devices. Currently, we have not used it on-prem, so we do not have this capability.

If you are looking at the value and security and you do not want to compromise, then Check Point CloudGuard Network Security is one of the best solutions you could have in your organization. I would give this review an overall rating of 9.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Raxit Manandhar

Unified policy management has simplified operations and improved visibility across environments

  • November 12, 2025
  • Review from a verified AWS customer

What is our primary use case?

Our main use case for Check Point CloudGuard Network Security is to provide a service to third-party organizations, as we are the vendor that implements firewall devices. Currently, we have implemented the network Check Point security firewall in many of our clients that is on-premises, but now we are exploring options for clients that are on cloud and we are trying to achieve the same level of security for the clients' machines that are on the cloud.

The main use case would be to use HTTPS inspection as well as a DLP feature that is provided in the Next Generation Firewall so that none of the traffic containing PII or PHI and personal HIPAA traffic does not get over the internet from our customers or from our end.

What is most valuable?

The best feature that Check Point CloudGuard Network Security provides is CDR, Content Disarm and Re-arm, where it inspects the files and then looks into the file, takes out the malicious code, reconstructs it and sends it to the user. Another valuable feature would be its Zero-phishing capabilities.

I have found the effectiveness of CDR and Zero-phishing features to be great, and we are even seeing it in our environment. We have not yet faced any phishing links in our organization as a result of the zero-phishing features of Check Point CloudGuard Network Security.

Check Point CloudGuard Network Security has positively impacted our organization by making our cloud platform more secure. Traditional firewalls cannot be relied upon to protect everything, and the firewall ratings for AWS as well as cloud native firewalls are not that high. Having Check Point CloudGuard Network Security in the cloud has helped us secure our cloud platforms.

What needs improvement?

The only thing that Check Point CloudGuard Network Security lacks is that for VPN, you need to buy a different model. You need to be in the HA sort of things to establish the IPSec between another firewall or maybe another cloud vendor, and that is the only thing that bothers me about Check Point CloudGuard Network Security.

For how long have I used the solution?

We have recently been using Check Point CloudGuard Network Security.

What do I think about the stability of the solution?

Check Point CloudGuard Network Security is a stable product.

What do I think about the scalability of the solution?

The pay-as-you-go model is very good for its scalability feature.

How are customer service and support?

Customer support has been awesome, and they respond within fifteen to twenty minutes of opening the ticket. I would rate the customer support a ten out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We did not use any other solution prior to Check Point CloudGuard Network Security, as it is the first solution that we are testing.

How was the initial setup?

The experience with pricing, setup cost, and licensing has been that the pricing is very competitive because of the bring your own license as well as pay-as-you-go model. We got the best pricing available.

What was our ROI?

I have seen a return on investment, and we are still in evaluation mode using a trial license. I believe that it will save our time because we can manage everything from a single platform.

Which other solutions did I evaluate?

We have not used any of the other products competing with Check Point CloudGuard Network Security. We are exploring it, and after this evaluation, we may think of exploring others.

What other advice do I have?

I would rate Check Point CloudGuard Network Security around eight or nine out of ten.

We are currently using Check Point CloudGuard Network Security on public cloud on AWS. AWS is our cloud provider.

We did not purchase Check Point CloudGuard Network Security through the AWS Marketplace. We directly talked to the distributor and have been using a trial license for this.

Check Point CloudGuard Network Security provides unified security management across hybrid clouds as well as on-premises, which makes everything easy because you can push policies and see everything across every Check Point Next Generation Firewall across your entire cloud and on-premises in a single management server. This helps tremendously and makes our job much easier to view logs, push policies, and manage everything.

Check Point CloudGuard Network Security has helped us reduce our organizational risk significantly, and I believe in Check Point strongly because it has only four critical CVEs from 2020 to 2025. We do not have to have a major upgrade every time compared to its competition, which has had more than fifteen to sixteen critical vulnerabilities from 2020 to 2025. This certainly proves that Check Point's secured firewall OS security is better than its competitors and it will provide the best security to its network.

I feel very comfortable using Check Point CloudGuard Network Security because I have been using Check Point on-premises as well. Migrating to Check Point CloudGuard Network Security feels similar to doing the migration on Check Point Next Generation Firewall on-premises.

I utilize Check Point CloudGuard Network Security alongside Check Point Infinity Playbooks to have some automated tailored solutions. For example, if a certain IP address has a request of multiple times, maybe fifteen times per second, then I block that traffic, saying that it is a DDoS. This is what I am testing right now and it is working perfectly.

If you are considering using Check Point CloudGuard Network Security and do not want to compromise on security, then Check Point CloudGuard Network Security is the only product you should look for.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    reviewer2753559

Improved security posture and streamlined compliance while user interface could be more intuitive

  • August 29, 2025
  • Review from a verified AWS customer

What is our primary use case?

The main use case for Check Point CloudGuard Network Security is for perimeter security and analyzing traffic in the network environment.

Check Point CloudGuard Network Security offers deep visibility into traffic, detailed logs, and real-time monitoring to see what applications, users, and devices are communicating on the network. Apart from that, it prevents lateral movement, stops phishing attacks, and mitigates DDoS. The main use case is to provide protection for a hybrid environment such as on-prem and multi-cloud by having consistent security. It enforces zero trust access to critical applications.

What is most valuable?

The best features that Check Point CloudGuard Network Security offers include deep visibility into traffic, detailed logs, and real-time monitoring to see what applications, users, and devices are communicating on the network. Apart from that, it prevents lateral movement, stops phishing attacks, and mitigates DDoS. The solution provides protection for hybrid environments such as on-prem and multi-cloud by having consistent security and enforces zero trust access to critical applications.

The best feature is unified threat prevention, including IPS, antivirus, anti-bot, URL filtering, and Sandboxing in one platform. It provides seamless integration with AWS, Azure, and GCP. Furthermore, it offers centralized management from which we can manage security policies across cloud and on-prem solutions in a single console, known as Smart Console. From this, we can implement automation and DevOps support, as well as infrastructure as code security templates for faster deployment.

Cloud-native integration automatically adapts to changes in our AWS, Azure, or GCP environments; for instance, if a new workload is spun up, policies are applied instantly. Centralized management offers one console for both on-prem and multi-cloud environments. Additionally, automation and DevOps support allow security policies to be deployed as code and integrated into CI/CD pipelines.

Check Point CloudGuard Network Security has positively impacted our organization by improving our security posture. We have seen a sharp reduction in successful intrusion attacks because of its unified threat prevention, along with greater visibility and control. CloudGuard gave us full visibility into east-west traffic inside our local or cloud environment. Previously, we monitored north-south traffic, which helped detect unauthorized lateral movement early. It has enabled faster incident response and stronger compliance with standards such as PCI DSS, HIPAA, and GDPR, which made audits smoother and helped us maintain continuous compliance in the cloud.

What needs improvement?

Areas for improvement for Check Point CloudGuard Network Security include user interface and usability, pricing and licensing, integration with third-party tools, reporting and analytics, depth of automation, and support.

In terms of user interface and usability, the Smart Console UI is feature-rich; however, for new admins, navigation is not always intuitive, and log search feels clunky compared to SIM tools. Policy editing could be faster with bulk or drag-and-drop options, and dashboards need more customization. Streamlining these would make day-to-day use much better.

For how long have I used the solution?

I have been using Check Point CloudGuard Network Security for the past one year.

What do I think about the stability of the solution?

Check Point CloudGuard Network Security is stable.

How are customer service and support?

Customer support for Check Point CloudGuard Network Security is average. I would rate the customer support as six on a scale of 1 to 10.

How would you rate customer service and support?

Neutral

What was our ROI?

I have seen a return on investment from using Check Point CloudGuard Network Security in both money and time saved.

What's my experience with pricing, setup cost, and licensing?

My experience with the pricing, setup cost, and licensing for Check Point CloudGuard Network Security is that it was good.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Idrees Zargar

Network security automation and management improve productivity and save time

  • June 16, 2025
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Check Point CloudGuard Network Security is network security for my network tunnel.

I have additional examples about my main use cases; it helps us with overall network security.

How has it helped my organization?

Check Point Cloud Guard provides a unified security management platform for consistent policy enforcement across all environments. Which makes scalability easy & decreases overall TSO.

What is most valuable?

The best features Check Point CloudGuard Network Security offers include automation of network security and unified security management, which stand out to me because they streamline our operations.

The automation and unified security management have helped me significantly; it saves me eighty percent of the time and reduces errors.

Check Point CloudGuard Network Security has positively impacted my organization, leading to better productivity. It has increased our productivity.

It increased productivity by allowing my team to spend less time on manual tasks, which helps us to focus on other projects.

What needs improvement?

Check Point CloudGuard Network Security can make deployment and configuration less complex.

For how long have I used the solution?

I have been using Check Point CloudGuard Network Security for around one year.

What do I think about the stability of the solution?

Check Point CloudGuard Network Security is stable.

What do I think about the scalability of the solution?

The scalability of Check Point CloudGuard Network Security is good.

How are customer service and support?

The customer support is good.

I would rate the customer support an eight on a scale of one to ten.

Which solution did I use previously and why did I switch?

I did not previously use any other solution like this.

How was the initial setup?

The initial setup with Check Point CloudGuard Network Security is straightforward, with no complications.

What was our ROI?

I am still calculating the return on investment; it has only been one year, so there are no answers right now.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup costs, and licensing is satisfactory.

Which other solutions did I evaluate?

I did not evaluate other options before choosing Check Point CloudGuard Network Security.

What other advice do I have?

My thoughts about the metering and billing experience are that it's fair and okay, though not very clear.

My advice to others looking into using Check Point CloudGuard Network Security is to go for it.

I chose that number because of the performance.

I have no additional thoughts about Check Point CloudGuard Network Security before we wrap up.

On a scale of one to ten, I rate Check Point CloudGuard Network Security an eight.


    reviewer2648223

Enhanced network security with improved visibility and ease of management

  • February 07, 2025
  • Review from a verified AWS customer

What is our primary use case?

We use Check Point CloudGuard Network Security to replace an Azure Firewall, securing the network flow in our organization.

What is most valuable?

The URL filtering provides a lot of added value compared to the Azure Firewall. It is easier to use and offers much more visibility on the network activities. It helps us manage our security operations by reusing on-prem solutions with the cloud, therefore improving ease of use.

What needs improvement?

The reporting needs enhancement. Currently, we are not always aware of the gateways' status, like CPU and RAM usage. It would be beneficial to have a report that manages everything and gives an overall view of what is going on.

For how long have I used the solution?

I have been using it for six to ten months.

What do I think about the stability of the solution?

I have experienced a few issues where connectivity is lost temporarily, however, it does not affect traffic processing. It is more about not having management information for a few seconds.

What do I think about the scalability of the solution?

The scalability is really good and relies totally on CloudGuard, whether it is on Azure or AWS. At least on Azure, it works fine.

How are customer service and support?

The customer service is good. They helped me with the few issues I had, meeting my expectations. Their support for traditional security projects is good, and I found the same support quality for cloud projects.

Which solution did I use previously and why did I switch?

I have used solutions for on-prem security management, yet not for the cloud.

How was the initial setup?

The initial deployment was easy, taking about a week.

What other advice do I have?

I rate the overall solution an eight out of ten. It would be ideal to have improved reporting features for a comprehensive overview.


    reviewer2647578

Provides comprehensive protection and a single pane of glass management

  • February 05, 2025
  • Review from a verified AWS customer

What is our primary use case?

We primarily use the solution for protecting the network perimeter and monitoring incoming and outgoing packets. Over the years, the product has evolved significantly by inspecting HTTPS and IPS and having antivirus and anti-bot capabilities. It has been interesting to observe how Check Point keeps pace with global security challenges and addresses them efficiently through policies on CloudGuard gateways.

How has it helped my organization?

In addition to blocking attacks and protecting the network, we benefit from the visibility into the logs, the simplicity, and the accuracy of reaching the events. All the capabilities are inside the solution. Unlike its competitors, it does not require extra licenses. It is well-integrated and very detailed. We can pinpoint the details to minutes, seconds, or milliseconds, and see what is going on. We can also see smart events and smart reports with pictures, graphs, etc. Through a single pane, we can see how our network environment is behaving. We can see any changes in the attack patterns, the number of logs, or any new events, which may give insights into an attack going on. We can also see if a new application was released by DevOps teams without telling us.

A big benefit of Check Point is that the same policy can be installed on-premises, on the cloud, with Kubernetes, with Dockers, etc. It works on huge devices or gateways on the cloud. It can work with Azure, Google Cloud, and others. The SmartConsole view helps handle all the environments with a single policy which makes it very easy. It enables working with a small team. A small team of five to ten people is enough for a global, worldwide network.

What is most valuable?

I found the access control policy through SmartConsole, which was formerly SmartDashboard, to be very valuable. It deeply explores source, destination, and port protocols. Competitors struggle to match this simplicity and effectiveness. The evolution of HTTPS inspections, threat prevention, and autonomous threat prevention are commendable. The consistent interface across versions ensures familiarity despite minor tweaks, maintaining a long-standing valid approach.

The visibility provided through logs, charts, and graphs, without requiring extra licensing, is excellent.

What needs improvement?

I believe that presentations on artificial intelligence indicate that analyzing logs via SmartEvent and SmartLog Security Event Information Management can offer insights into emerging trends and potential next steps. By correlating logs related to BYOD, BYOL, and Shadow IT, it will become easier to manage and hopefully mitigate or understand risks.

For how long have I used the solution?

I have used Check Point solutions since NGX R65, which was a lot of years ago.

What do I think about the stability of the solution?

In my experience, recent versions with recommended jumbo hotfixes offer remarkable stability. There have been no unexplained reboots reported by customers.

What do I think about the scalability of the solution?

While working with a customer using 561k gateways, handling 140 gigabits of peak traffic was successful. After that, they changed the product but maintained the same big picture while enhancing throughput and scalability. Adding more devices to security groups is straightforward. The complexity managed by Check Point developers is amazing. Check Point developers in Israel are ninjas. They have built a complete solution with amazing throughput and details. With a few clicks, there is elastic and protected network growth.

How are customer service and support?

Sometimes I find that the VPN teams provide exceptional service, identifying issues promptly. Occasionally, ticket handling delays arise due to repetitive questions despite detailed notes. However, overall, my experience is positive, achieving a more than 75% success rate. Issues are eventually resolved through hotfixes or innovative solutions, supported by a robust knowledge base.

Which solution did I use previously and why did I switch?

As an integrator and partner, we have the opportunity to see how other products work. SmartConsole itself is an excellent idea, and the management aspect of Check Point products significantly differentiates them. However, my opinion will be biased because I have been working with Check Point products for a long time, but I find Check Point's approach more simple and integrated. We do not need several devices or appliances to do verification at various layers. A simple gateway can deliver everything and secure the network.

On the perimeter of the network, it works as an employee hired to allow or deny based on the policies. It is able to follow the rules. There is simplicity. The capability of SmartDashboard to create rules, receive logs back from the gateway, generate all those insights, and pinpoint the events is amazing.

Compared to open-source solutions, there is more than 95% security. It does not handle only access controls; it has the capability of deep packet inspection to see what is going on and have insights into the intention of the malicious activity.

How was the initial setup?

Its deployment model is a mix-and-match. Sometimes it is better to have it on the cloud because of the elasticity, but sometimes it is better to have it on-premises due to regulations. With the single configuration on SmartConsole, it can deploy policies on the cloud and on-premises. Some customers use Azure, and some use AWS. Having a Check Point solution makes them more comfortable because they know that it is a robust and mature product. It is not something built by a startup six months or one year ago.

I can set it up with my eyes closed, though typing the IP address is necessary. I am very comfortable handling initial client configurations and cabling. Although some view configuration as tedious, the results are satisfying once complete.

What was our ROI?

I believe that the return on investment largely revolves around network protection. An investment, such as 10,000 euros, aims to prevent costly outages or security breaches, which could be more expensive than the solution itself. Despite views on cost, the value lies in maintaining operational integrity with zero downtime or incidents, facilitating secure, ongoing business operations.

What's my experience with pricing, setup cost, and licensing?

As a partner and solution provider for the last fifteen years, I have distanced myself from specific numbers. However, customer trust in the product is evident due to its comprehensive protective capabilities. Centralized appliances have mitigated previous CPU usage concerns, thanks to multi-threading and processing enhancements. Correct sizing assures minimal CPU usage, even at high traffic levels.

What other advice do I have?

I would rate the solution a nine out of ten. A ten might impede progress. They might relax and stop the progress. They should keep doing a good job.


    Shebin Matthew

Security engineering benefits and management insights improvement needed

  • February 05, 2025
  • Review from a verified AWS customer

What is our primary use case?

This solution would be more beneficial for my AWS side, for our applications. The platform is utilizing AWS, so it requires further protection through some enhancements, which involve allocating more resources into AWS. Check Point serves as our system. I consider it a business case to protect that application work on the cloud.

How has it helped my organization?

Check Point is one of the key aspects of our security. It's protecting the e-commerce side and some functions on the public side of the website. It plays a large role in protection.

What is most valuable?

The types of prevention functions, such as the IPS and other advanced features, provide significant value.

Check Point is a product that doesn't require a lot of patching throughout the year compared to some competitors. This stability is beneficial for my customer-facing application workload, as it minimizes changes to the infrastructure.

Maintaining a stable infrastructure that doesn't demand frequent attention is important to me. For our security engineering team in the bank, Check Point is definitely a key aspect. It safeguards our e-commerce side, functions hosted on the public website, our DMZ zones, and the e-commerce hyper-converged infrastructure.

Overall, it plays a vital role in protecting both our customer-facing and internal company infrastructure.

CloudGuard Network Security provides us with unified security management across hybrid clouds as well as on-premise. We can have a hybrid solution which can be managed easily alongside what we already have on-premises. Rather than than have team layers of management, for example, one cloud separate and one cloud on something else, doesn't make sense.

The centralization affects our security operations. We are already using a lot of Check Point. What they are already doing has been good for us. However, CloudGuard will add another layer of protection for the things we have in AWS. Any reluctance the organization may have for goign into the cloud, or multiple clouds, will be overcome by solutions like Check point, which is giving us a layer of comfort for our critical workloads.

We're confident in secure cloud deployment and migration. We're already an existing customer and we have a level of comfort with the solution. We know it will give us that extra layer of security and play their role and do what they are supposed to do.

What needs improvement?

One aspect that I noticed is that we already have a substantial Check Point setup, so management is a consideration. I'd like to have an ease of management. That's important. I am anticipating the introduction of features like AI or advanced supporting functions on the on-premises side. This would be beneficial by providing insights into capacity and enabling me to project future needs, such as enhancements or additional layers for the Check Point infrastructure. Ease of management and reporting would be crucial for capacity planning and budgeting. If I see capacity increasing, I want to be able to plan appropriately.

For how long have I used the solution?

I have been using Check Point for many years. However, we began doing some changes in firewalls and handling replacements since last year.

What do I think about the stability of the solution?

I believe it will perform quite well if it remains similar to what we are already using.

What do I think about the scalability of the solution?

There have not been any scalability issues yet.

How are customer service and support?

I have never had to struggle with customer service. My suppliers are really good partners. They always support us, backed by Check Point. Even if I encounter issues, Check Point's account managers maintain a close relationship with us. Whether through suppliers or direct contact, they are always helpful.

Which solution did I use previously and why did I switch?

I have used previous solutions, however, I won't mention specific names. Since 80% of us are using Check Point, it doesn't make sense to replace the remaining 20% with something else.

How was the initial setup?

The setup cost is reasonable, and many engineers are familiar with Check Point, making it easy to find someone to do the job. Suppliers and Check Point account managers maintain good relationships with the customers and suppliers.

What about the implementation team?

I use a supplier, one of Check Point's partners, to support us. We utilize two Check Point partners, Indiguity 360 and D2B, to assist us in our Check Point journey and management.

What's my experience with pricing, setup cost, and licensing?

The setup cost is okay. The cost overall is somewhat high compared to other vendors, whether firewalls or cloud-native solutions. Check Point may be on the pricier side, however, in the long run, it proves its value.

Which other solutions did I evaluate?

We have not done a POC with any other product.

What other advice do I have?

I'm not on the technical side; I'm more on the management side of the product. We do have some rollouts still pending with Check Point.

I would rate it an eight out of ten since I've never had a negative experience.


    Rui-Pereira

Integration into the cloud ecosystem enhances network security

  • February 04, 2025
  • Review from a verified AWS customer

What is our primary use case?

I am tasked with deploying firewalls in Azure Cloud, AWS, and VMware. This involves setting up virtual machines in VMware and is essentially focused on these tasks.

What is most valuable?

It does a great job protecting the clouds.

The important point is that the solution is integrated into our management system (if they already have Check Point). It's just one more gateway to add. We have it on Azure and others. The advantage lies in the integration within our existing ecosystem, which is amazing.

It's good at identifying threats and on par with the market - at least, in comparison to the others we work with.

We have confidence in secure cloud deployments and integrations. It's important to have confidence. Even if nothing happens, you are protected, You never know when bad luck will happen. There are some public cases that were missing network security on the cloud, and they were affected. It's a must-have, like an insurance policy.

What needs improvement?

The license model could be simpler. We have some issues with the license since it tries to be simple, and yet in some cases, it tends to be complex. Apart from that, I do not recall any other issues.

For how long have I used the solution?

I have been using the solution for roughly four years.

What do I think about the stability of the solution?

The stability is generally good. Sometimes there are issues we do not understand, especially with older features. Outside of that, the stability is good. It could be better. For instance, when we are working on a release and do an upgrade, we start experiencing unexpected issues. New features might have problems, however, for existing ones, we expect the same level of functionality as before.

What do I think about the scalability of the solution?

We do not use scalability. I do not have much experience with auto scaling, however, it could be beneficial. Usually, our customers use a model that involves bringing their own licenses with static gateways, not scaling out.

How are customer service and support?

Check Point support has its ups and downs. Sometimes, the support is good, and other times, we are a bit desperate. Overall, I would say the customer service is good, not marvellous. There are some challenges.

Which solution did I use previously and why did I switch?

As integrators, we also work with other solutions. The main difference is we can take advantage of integrative management. If you already have an environment with Check Point, it's easy and an advantage.

How was the initial setup?

We typically deploy to the cloud. We create an implementation strategy with our clients.

What about the implementation team?

Usually, the customer is very savvy and knows what they want. We provide some advice, however, usually, they have their own ideas on what to do and when to do it.

What was our ROI?

It is important to have this solution because even if nothing happens, you are not protected without it. You never know when bad luck might knock at your door.

What other advice do I have?

I rate it eight out of ten.

You need to have some kind of protection in the cloud. Maybe the native protection is enough, maybe it is not. Having protection gives more confidence in the solution.


    Stefan Baumgartner

Unified management and policies enable secure workload transitions to the cloud

  • February 04, 2025
  • Review from a verified AWS customer

What is our primary use case?

I use Check Point CloudGuard Network Security to ensure we have the same management system for managing firewall policies both on-premises and in the cloud.

How has it helped my organization?

Check Point CloudGuard Network Security enabled us to move to cloud workloads safely while having the same level of security as we have on-prem.

What is most valuable?

The unified management, unified log management, and unified policies are all invaluable. We like that everything is unified.

CloudGuard Network Security provides us with unified security management across hybrid clouds as well as on-premise. Security operations are simplified by unified management, easing troubleshooting, and maintenance. Using the same objects in both the on-prem and cloud policies reduces the need to switch between different interfaces and log stores, enhancing our security operations significantly.

It's helped us reduce organizational risk. I cannot say by how much. Just having the same policies everywhere without having to move around different management interfaces and log stores just helps with security operations. We can see everything in one pane of glass.

We have confidence in our secure deployments and migrations. In fact, it has enabled us to move to the cloud securely. The confidence is there based on our confidence in Check Point products on-prem.

What needs improvement?

Improvement is needed in the deployment models. Currently, I have deployed VMs and installed CloudGuard as if they were gateways. Having some as-a-service models would be great.

Scalability could be improved as well; needing to purchase a new license each time I want to add a new interface is not ideal.

For how long have I used the solution?

I have used the solution for three years now.

What do I think about the stability of the solution?

The solution works adequately, meeting my expectations for a firewall.

What do I think about the scalability of the solution?

Scalability could be improved. When we need to buy a new license, to add a new interface is not ideal.

How are customer service and support?

Support is okay. Sometimes, it is necessary to reiterate the importance of a case; however, generally, the cases are handled to our satisfaction.

Which solution did I use previously and why did I switch?

We did not use a different solution previously.

How was the initial setup?

We have an on-prem and cloud environment. The setup was relatively easy, even the first time. I just select it from the marketplace, and it appears. After that, it's the same as installing on-premise gateways, including a first-time installation wizard.

What about the implementation team?

I received assistance from an external third-party company. The experience was great and has continued to be good over the seven years I've employed them.

What's my experience with pricing, setup cost, and licensing?

The cost is adequate. I am not responsible for pricing and licensing aspects, I would say pricing is adequate. It is not cheap, however, I am not seeking cheap solutions; I want the best solutions.

Which other solutions did I evaluate?

We have not evaluated other solutions.

What other advice do I have?

I would give it a solid eight out of ten. I am not yet fully utilizing all its functionalities and I cannot assess all features. There is always room for improvement.