Network protection, assessments, and best practices for cloud networks.
What is our primary use case?
We have infrastructure in both Microsoft Azure and on-premise. We wanted to centralize an environment of governance, control, and best practices, at the level of Microsoft Azure. We were able to implement Defender for the cloud at some point. However, we already had security products from Check Point. The idea was to centralize all our tools in the same environment to make it easier to support administration.
With Check Point CloudGuard we have been able to successfully implement a layer of protection for our cloud and our on-premise environments.
How has it helped my organization?
With Check Point CloudGuard Network Security, we have been able to provide advanced security and security in the Azure network in addition to all the security additions associated with Check Point which are very important. Each one provides a role or complements the security of the company.
The panel or score can help evaluate the reality of our cloud and hybrid infrastructure. It has an excellent capability. The Check Point blueprint has taken us to the next level of protection.
It really is a pretty complete solution.
What is most valuable?
Check Point CloudGuard Network Security is complemented with all the features and becomes a security giant. The most important features, at least for us, are:
1 - It allows for the implementation of centralized security through Check Point Infinity in addition to being able to manage the security of hybrid and cloud environments.
2 - The trust and security provided by advanced threat protection is a point of distinction. We have not seen any false positives. Its anti-malware prevention is very good, and protection against ransomware is one of the features we require for our infrastructure.
3 - Additionally, it can be integrated with most public clouds, making it attractive.
What needs improvement?
There are a few features or improvements that can be mentioned. One of them may be that the Infinity Portal is sometimes slow. A performance improvement could improve the administrator's perspective.
At the cost level, the solution is somewhat expensive. They could have an improvement to be a more feasible solution for everyone.
The support must improve. It is the biggest issue that Check Point currently has. Sometimes it is better to investigate oneself than to wait for a solution from the support department.
For how long have I used the solution?
We implemented this tool a few months ago to be able to validate the security associated with our cloud environment. In this case, we implemented against Microsoft Azure.
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
Previously, we used Microsoft Defender for a cloud solution. It's a very good tool, however, Microsoft is new in this field.
What about the implementation team?
It was carried out internally and was a positive experience.
What's my experience with pricing, setup cost, and licensing?
It is definitely important to test the tool before defining it in a production environment. It is also good to know the costs with a professional.
Which other solutions did I evaluate?
Previously we checked to see if we could stay with Microsoft Defender for Cloud. However, we opted for a centralized environment with more security muscle of its own.
What other advice do I have?
It is one of the best solutions on the market. I challenge you to try it so you can say the same.
Easy to manage and implement with simple configuration capabilities
What is our primary use case?
Check Point CloudGuard Network Security helps resolve potential regulatory and compliance issues when moving to the cloud. The high-visibility rule base's granular approach helps us with potential security leaks and highlights items to focus on for immediate action.
The functionality that we're using it for is the cloud firewall piece.
For this reason, it was necessary to implement this tool in our organization and the results have been very positive, providing the necessary security throughout the infrastructure.
How has it helped my organization?
One of the main characteristics that Check Point CloudGuard Network Security has given us is granularity and visibility. The data that enters our Azure environment integrates in a great way in the cloud and in on-premises. This is important for the alerts and the response to incidents that arise in our platform in the cloud, for the moment, we are very satisfied to have acquired this solution and to have implemented it in the cloud and with other systems on-premise that have given us a lot of security and peace of mind.
What is most valuable?
One of the features that I liked the most and that I feel is very useful is auto-scaling. Our Azure cloud environment is constantly growing and this allows us to expand as well.
Another very accurate feature is CloudGuard's malware prevention and exploit resistance rate and they have given us a lot of security since the database is very large.
It is easy to manage CloudGuard from on-premises and offers the same protection as we can provide to the rest of our environments, which is a great advantage for us.
What needs improvement?
One of the areas that should be improved is the updates of the products. It is somewhat problematic in the area of the cloud. In the case of migration from on-premise to the cloud, it is difficult to replace the licenses. It should be something very transparent and thus save us the time to go to support but in general, the tool is shared very well in security and protection of privacy and if they are lucky they can add more features that help us our security would be great they should always be one step ahead of cyberattacks.
For how long have I used the solution?
We have implemented it two year ago.
What do I think about the stability of the solution?
Check Point CloudGuard Network Security maintains very good stability, and, best of all, maintains excellent compatibility with Azure.
What do I think about the scalability of the solution?
The scalability is great. You can make a network scale up or down. This allows you to have good control of bandwidth in the organization or to be able to distribute it in the different departments of the company.
How are customer service and support?
Currently, since the implementation, not much support has been used, therefore, I rate it as excellent.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
The Check Point brand has always been used in our organization.
How was the initial setup?
The configuration was very simple since the tool and the wizard are very interactive and user-friendly. It was not very difficult to do the installation and configuration.
What about the implementation team?
The implementation started with a vendor and the IT team. The engineer that worked with us presented great knowledge of the product.
What was our ROI?
By using a tool of this type, the cost of personnel decreases since the tool performs quite well with the functions that it was designed for.
What's my experience with pricing, setup cost, and licensing?
The price and the licenses have been good. They maintain a competitive price with the other companies.
Which other solutions did I evaluate?
Other options were not evaluated as we like to keep the same brand across solutions.
What other advice do I have?
When doing a cloud deployment, remember you are doing this in the cloud so treat it like a cloud device, as good configuration brings good results.
SMB seemless integration of CloudGuard
What do you like best about the product?
As an SMB products and tools that are more comprehensive in nature are a must when human resources are thin. CloudGuard allows us to meet a ton of needs that may require different solutions from other providers. The onboarding was quick; when challenges arose CheckPoint stepped to the table. No solution is ever not met with challenges based on how unique everyones environment is. The ability of CheckPoint to step into the "gray areas" was absolutely critical. A lot of organizations employ a client success team but CheckPoint really owned it.
What do you dislike about the product?
Continuing to mature AppSec and shift left methodology. These tools are critical to the overall security posture of an organization. AS organizations look for more innovative ways to protect the app stack growth in this lane is important. As threat actors continue to diversify their methods we expect the same out of our security providers. From what we have seen from R&D at checkpoint we are confident that they will continue to develop this toolset. Having attended CPX 2022 it does appear that many of these things are on the roadmap.
What problems is the product solving and how is that benefiting you?
The entire toolset of CloudGuard is on point. It allows us to get granular monitoring traffic and provide business level detail for compliance with hits posture management. The detail an remediation steps provided in the posture management are a direct correlation to compliance requirement our client and auditors are looking for. This includes regulatory remediation guidelines for HIPAA/HITECH and maturity of infosec operations from ISO to NIST. The value add is tremendous our team doesnt have to dig for answers they are easily readily available in a simple to use UI.
Stong cloud protection!
What do you like best about the product?
Procurement options (like BYO license) are good, especially the support both through Checkpoint and the community is valuable.
What do you dislike about the product?
The interfacing / combining it with on-premise solutions to make it a one interface solution for all would make this the perfect proposition.
Monitoring the full stack in one interface would be preferrable!
What problems is the product solving and how is that benefiting you?
Easy to manage cloud security implemented with a click of the mouse.
Recommendations to others considering the product:
When looking for a complete Could Security solution, take a look at CloudGuard!
Best solution Cloudguard Network
What do you like best about the product?
Managing and stability look great and easy. User friendly,
What do you dislike about the product?
I didn't see any negative things yet. If I know, will be sent to you.
What problems is the product solving and how is that benefiting you?
It provides cost-saving by controlling multiple applications running in the cloud from one place.
easy deploy and implementation
What do you like best about the product?
Easy to manage, scalability ( Adding new objects and policies ) .
What do you dislike about the product?
I think there is no dislike situation...
What problems is the product solving and how is that benefiting you?
increase protect my asset on cloud environment
Simplified Management
What do you like best about the product?
User friendly gui, logging mechanism and simplified management
What do you dislike about the product?
sometimes management console can crashes
What problems is the product solving and how is that benefiting you?
increase security level and visibility
The beyond of cloud protection server.
What do you like best about the product?
I like this software because easy to use and can easy to control policy on the firewalls
And this product can protect our server on the public cloud. I think that cloud guard functions just like any other firewall. It works very well.
What do you dislike about the product?
I dislike a lot of bug software.I think that the cloud guard console is hard to monitor , such as IPS protection and antivirus protection.
I mean, the log looks hard to understand. I want it to be easy to investigate the case.
What problems is the product solving and how is that benefiting you?
The Cloudguard helps me to protect malware and virus our server on the cloud security.
Recommendations to others considering the product:
Suppose you want to find solutions that protect our cloud. I recommend that product to monitor its.
Public Cloud Firewall Solution
What do you like best about the product?
CloudGuard Network Security (IaaS) originally started with vSEC name and is an amazing solution which helps organizations save a lot of money, time and manpower which providing network security by implementing the firewall in cloud rather than on premise within minutes where as it can take months to implement a new FW in a DC sometimes.
What do you dislike about the product?
Originally it lacked many features which the on-premise firewalls were providing but now it is up to mark.
What problems is the product solving and how is that benefiting you?
Major issue we had was with the rapidly increasing traffic and load which required us to procure and implement new hardware very frequently which was increasing cost and time to mitigate the issue. With IaaS we were able to make the required changes in few days from start until end at minimal cost and upgrade as the traffic increased. Auto Scaling has really helped with managing costs.
CheckPoint CloudGuard IaaS
What do you like best about the product?
CheckPoint CloudGuard IaaS protects multiple big organisation against zero-day attacks. With CloudGuard you can deploy any kind of setup either it be HA, Single Standalone or autoscaling.
What do you dislike about the product?
Only one dislike being that CloudGuard IaaS does not support Active-Active- mode of deployment as for now in HA for any cloud environment.
What problems is the product solving and how is that benefiting you?
With CloudGuard IaaS comes plethora of features and data security being the most important part.
All of our cloud workload protection is being handled by IaaS protection firewall. We are able to view reports and treat feeds under a single pane of glass.