Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

CloudGuard Network Security All-In-One

Check Point Software Technologies

Reviews from AWS customer

22 AWS reviews

External reviews

201 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Meir Carmel

Makes things easier and helps on a daily basis because it optimizes the understanding of what we have

  • February 04, 2025
  • Review provided by PeerSpot

What is our primary use case?

My primary use case is for the protection of environments that are in the cloud and multiple branches and areas that are in the layout of all the systems.

How has it helped my organization?

This solution helped us migrate to cloud environments from environments that were on premises. It helped us implement protection for our systems. The fact that it is part of Check Point's overall protection system within some kind of central management system allows us to easily manage and gain visibility on everything that happens in the organization.

What is most valuable?

The protection is at a very good level. There's a very high catch rate. It has good flexibility in operating and implementing the system.

Protection is valuable to me because security is the most important aspect. At the end of the day we are looking for what will give us the answer at the best level.

It is easy to implement, and it has a lot of flexibility compared to other systems you have in the organization. In the end, this is a parameter that, in my eyes, is very central.

In the end, it saves time. It's all in one place and you can quickly see how you're doing with the cloud environment. It just makes things easier and helps on a daily basis because it optimizes the understanding of what we have. 

Instead of logging into the system by yourself and starting to check, there's another management system that sees logs. It examines the data daily, and it creates flexibility regarding what we want to investigate. It is much easier for everything to be in the same management and not scattered in all sorts of different places.

Check Point helped me a lot to know that I have a solution that is stable and answers my needs. It really gave me the confidence to move forward with the whole migration to the cloud. It was very helpful.

When I moved to the cloud, I looked at Check Point's solution and as soon as it suited me, I bought it. We chose CheckPoint right away, it was our go-to choice.



What needs improvement?

From my point of view and my needs, I don't see room for improvement. In my opinion, the more it has support for more environments and the more integration there is with wider areas, not only in Check Point's systems, but also with other systems, then I think it will allow access to more customers which is not specifically my case, but in principle the wider the system, the more it will be able to appeal to a larger audience; integration with other manufacturers in other words.

For how long have I used the solution?

I have been using CloudGuard Network Security for two years.

What do I think about the stability of the solution?

The platform is very good in terms of stability. We never encountered any issue with it.

What do I think about the scalability of the solution?

Scalability is very good.

How are customer service and support?

Support is very good. The response time is good and fast, and they are also very professional.

How would you rate customer service and support?

Positive

How was the initial setup?

I had help from a Check Point CS and it all went smoothly. There was only one person from Check Point who was in constant communication with us and provided us service in installing the solution, my experience with him was very good.

What was our ROI?

After running a test against what alternatives exist in the market and seeing what they offer, this is the solution that fits perfectly into our budget. This is a very important parameter for us, and Check Point CloudGuard Network Security did so.

What's my experience with pricing, setup cost, and licensing?

The price was really good, that's the main reason we chose it. In addition, the licensing model was very simple.


What other advice do I have?

I appreciate the cloud network security. I find it to be very effective, and I am pleased with securing cloud deployments.

I would rate CloudGuard Network Security an eight out of ten. There's always room for improvement. It could become a 10 if they had more accessibility to other platforms. Overall, it is a good product.

Which deployment model are you using for this solution?

On-premises


    Amaratunga Arachchige VimukthiAmaratunga

Comprehensive security and proactive alerts enhance data management

  • November 27, 2024
  • Review provided by PeerSpot

What is our primary use case?

We are dealing with customer data, so we use a firewall to cover all API calls. If you access our sites, it will be via Check Point Firewall. Or if you send a file, it will go via Check Point Firewall.

What is most valuable?

Check Point CloudGuard provides comprehensive security coverage. The solution covers all entry points and helps manage customer data securely by covering all API calls and processing data efficiently. 

It offers alerts for suspicious activities and an automated system that updates itself to detect irregular patterns, providing notifications for possibly compromised situations.

What needs improvement?

The pricing is too high. We pay more than twenty-five thousand USD per year, which could be reduced. 

Moreover, Check Point does not initially support serverless architecture, requiring additional efforts from our team to manage it.

For how long have I used the solution?

Our company has been using Check Point tools for five years.

What do I think about the stability of the solution?

There are no issues with the stability of Check Point CloudGuard.

What do I think about the scalability of the solution?

The solution is scalable to support our growth for at least two to three more years.

How are customer service and support?

Customer support is efficient with no major issues. The support team is responsive and cooperative. However, the knowledge and expertise of the professional services staff were inconsistent.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We experienced a lower pricing offer from Trend Micro, however, due to security preferences and support, we chose Check Point.

How was the initial setup?

The initial setup faced challenges due to knowledge gaps on the professional services team. However, the technical side was supportive and helped address these issues.

What about the implementation team?

The professional services used for implementation had inconsistent expertise, requiring involvement from our technical team to resolve gaps.

What's my experience with pricing, setup cost, and licensing?

Pricing is high, over $25,000 USD annually. The package offered includes features we may not need, and more flexible licensing could be cheaper.

Which other solutions did I evaluate?

We considered alternatives like Trend Micro, which offered more competitive pricing.

What other advice do I have?

I would recommend Check Point CloudGuard. The solution is rated eight out of ten overall.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    Krishna KantUpadhyay

Effortless threat prevention with seamless cloud integration and responsive support

  • November 11, 2024
  • Review provided by PeerSpot

What is our primary use case?

Our primary use case for CloudGuard Network Security is to secure the cloud environment where we host our backend systems. The platform helps to guard the network security of our infrastructure by securing the traffic and preventing cyber threats. 

It also ensures compliance with industry regulations. Moreover, it integrates easily with AWS and Google Cloud, allowing us to apply a unified security policy throughout our cloud infrastructure.

How has it helped my organization?

Check Point CloudGuard has been very helpful in maintaining a high level of security across our cloud environments as our apps integrate with multiple cloud services. 

It ensures secure communication between services and user devices, protecting sensitive data like user information and financial transactions. This has resulted in increased client satisfaction and retention, particularly in sectors requiring stringent data protection like finance and healthcare.

What is most valuable?

One of the most valuable features is the automated threat prevention, which helps us detect and block potential cyberattacks in real-time, minimizing data breaches. 

The ability to integrate with multiple cloud platforms provides a centralized view of our applications, enhancing security management. The solution also offers real-time visibility and protection against network threats.

What needs improvement?

The user interface could be more intuitive, and the initial setup and configuration can be complex, requiring a technical team. 

Additional improved documentation and support would make it easier for beginners and small-scale startups. Furthermore, the pricing model is quite expensive, which could be a barrier for smaller companies.

For how long have I used the solution?

I have been using the solution for approximately one year.

What do I think about the stability of the solution?

The platform is quite stable. We have not faced any difficulties with its stability.

What do I think about the scalability of the solution?

The solution is very scalable. I would rate its scalability as nine out of ten.

How are customer service and support?

My experience with customer support has been positive. They are responsive and knowledgeable, available twenty-four by seven. However, they could improve by providing documentation for offline issues to better assist users who may not reach out to them directly.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

Before using Check Point CloudGuard, we managed security through a team of experts. Due to budget cuts during a recession, we switched to using this solution to maintain our security standards.

How was the initial setup?

The initial setup was quite complex, requiring a technical team to understand the processes and implement the solution. More intuitive configuration tools and better documentation would be helpful.

What about the implementation team?

We deployed the solution with a team of fifty-seven people, including cybersecurity engineers and cloud experts, along with support from customer service.

What was our ROI?

Implementing CloudGuard has resulted in an excellent return on investment over one hundred percent ROI. It has saved costs in our security team, saved potential security breach costs, and enhanced client satisfaction.

What's my experience with pricing, setup cost, and licensing?

The pricing and licensing are expensive, costing between seven thousand to eight thousand dollars. While it offers good features like threat prediction management, reducing the cost will make it more accessible to a broader audience.

Which other solutions did I evaluate?

We have not used other network security solutions before Check Point CloudGuard.

What other advice do I have?

It is important to prioritize security if managing data in multi-cloud environments. Having a technical team familiar with cloud security is recommended. Working closely with Check Point's support team can help in navigating complex terminologies and enhancing security across cloud platforms.

I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other


    dharani a.

Change tracking is available in network security module

  • August 20, 2024
  • Review provided by G2

What do you like best about the product?
We can able to track the changes of network security group rules and we can able to visualise the vpc route traffics detailly and can manage the configured IP address and it's CIDR.
What do you dislike about the product?
The change tracking of network security group rules is available only in AWS.
What problems is the product solving and how is that benefiting you?
We can easily find and manage the server IP address on single console


    RAJA S.

Advanced threat modeling for Cloud networks

  • August 20, 2024
  • Review provided by G2

What do you like best about the product?
It has the capabilities to check and observe if any unusual behaviour happened on our network. It has the feature we can have the custom use case's to observe the traffics.
What do you dislike about the product?
It only supported on cloudtrail and vpc logs.
What problems is the product solving and how is that benefiting you?
We can easily monitor the unusual network traffic and user behaviour on cloud infras


    Computer & Network Security

Cloud Security Engineer

  • August 13, 2024
  • Review provided by G2

What do you like best about the product?
As a Cloud security engineer I have been using and used many and multiple tool,s, softwares and platforms for the network security, network testing and network analysis, etc. Nowdays experiencing my hands on with check points Cloud security tools for my new cloud Security Analysis projects and this particular tool from Check Point has been proven a most adavanced and most secure platform for the our cloud projects. With features I loved and fan of as below-
Easy of integration .
Reatl time monitoring.
And ensuring various compliances.
What do you dislike about the product?
Little bit of learning curve for first time users.
What problems is the product solving and how is that benefiting you?
I would highly recommend and suggested this tool for the industries and companies Working on projects such as Cloud Network Security Solutions.


    SanjayPatel3

Has an improved GUI, unified security management, and is fairly easy to deploy

  • July 24, 2024
  • Review provided by PeerSpot

What is our primary use case?

The solution is primarily used for security.  We had 48 to 50 firewalls for data center segmentation. All data centers were fitted into multiple zones. Each zone had a different data classification. We had the firewalls deployed on several overseas remote sites.

How has it helped my organization?

For nearly three and a half years, the solution was doing pretty good security. It provides scalability in terms of the multiple firewalls that can be connected with the cluster as well. It offers us easy signature updates and rule changes. We just prepare one rule and then select how many firewalls you want to push. It is easy in terms of the management. 

What is most valuable?

The GUI is getting better. It's more neat and clean now.

Its security and the definition of signatures are pretty good. Especially when you use those firewalls for a website, they pick up the signature very quickly. 

Security is based on two kinds of things. One is based on the IP addresses and port numbers. Another is based on the application. 

CloudGuard Network Security provides you with unified security management across hybrid clouds and on-prem. I used it only for the cloud. If you're using VMware, you can use that on-prem as well. 

What needs improvement?

The GUI hadn't been that good. However, they fixed that and the GUI is pretty good now.

There may be some latency. In the beginning, you won't really notice - when you have 10 to 15 sessions. However, if you have 40,000 sessions and you are running the dev check in the background, then you will start to notice some issues. It's probably under milliseconds.

It's not as organized as a Palo Alto solution.

We wanted to go with the Azure Network solutions, and CloudGuard was a big expansion compared to Azure Dev, which is a built-in dev solution. I hear Azure is integrating Palo Alto as a back-end solution.

I had a high level of confidence in CloudGuard Network Security. We used it for nearly six months and were comparing different products. I'd rate it at an eight or nine out of ten.

For how long have I used the solution?

I've used the solution for four to four and a half years. 

What do I think about the stability of the solution?

The solution is very stable. I'd rate the stability eight or nine out of ten. 

What do I think about the scalability of the solution?

We didn't really check for scalability. We were more focused on features. I'm not sure how well it would scale.

We had the solution in multiple locations. When we tested it, we did so across around 100 customers. 

How are customer service and support?

The product was really good, so we didn't really deal with technical support. 

Which solution did I use previously and why did I switch?

Our company migrated from Check Point to Palo Alto. I've noticed there are big changes in the Palo Alto GUI. It's neat and clean in comparison. The site was easier to navigate. Check Point has the same features; however, it's not as clear. If you are searching for something, you need to click around. It's not really well organized.

We've also used Azure and decided to go in that direction. 

How was the initial setup?

The deployment wasn't really complex. It depends on if you are familiar with the solution and if you follow the best practices. It's not hard to do a POC design. Within four weeks, you'd have the solution up and running. 

Our infrastructure was 100% Azure, so it was much easier for us to deploy the POC. 

It was pretty easy to configure. 

What was our ROI?

You can save maybe 30% on costs by deploying this solution.

What's my experience with pricing, setup cost, and licensing?

CloudGuard is pretty expensive. Azure ends up being cheaper. 

They are fairly priced. It's not cheap. However, you definitely need to spend some dollars on security. 

While it's rather fair pricing, it was more about us having the right solution for the user base. 

What other advice do I have?

For a few reasons, we decided not to go with it compared to the cloud vendor's firewall. One was the technology and integration itself. You can integrate CloudGuard into many third-party tools. However, it adds extra cost. Also, if we could find something in the Azure ecosystem, we don't need to go for a third party. That's why we decided to go with Azure. 

I have not yet used its AI capabilities. That said, my understanding is that they have very good tools and built-in initial learning capabilities that can help you begin to understand the traffic.

I would recommend the solution to others, and I have never had issues with the product itself. However, we were looking for Azure-native tools, which is why using this long-term didn't work out. 

I'd rate the solution eight out of ten. I'd rate it a nine if I was 100% sure you could control ransomware attacks. I'm not sure if you can do that fully with CloudGuard. 


    IdoSarusi

Provides reasonable security for network at a reasonable price

  • July 02, 2024
  • Review provided by PeerSpot

What is our primary use case?

When we build security for companies, we use the cloud of services for building and configuring networks and Security on the company Network, including EDR or XDR on the computers, routers, and switches.

How has it helped my organization?

The customer gets reasonable security for their network at a reasonable price, except for Check Point's expensive router. Overall, the product is reasonably priced.

What is most valuable?

The router's anti-bot feature and network security for detecting malware and preventing its spread are critical components. Additionally, there are other features like antivirus, anti-malware, and a firewall. The anti-bot feature can detect if one device is hacked and has malware. It monitors the communication to and from this device and can detect and block the malware when it spreads to other computers on the network.

What needs improvement?

Every good security product requires a company with many research departments and staff. This ensures that the product is always up to date on the most relevant security threats. An excellent expert team of researchers on vulnerabilities and new cyber threats could exist.

They should start integrating AI more into the product to make it easier to use

For how long have I used the solution?

I have been using Check Point CloudGuard Network Security for one year and a half.

What do I think about the stability of the solution?

The product is stable if deployed correctly. I rate the solution’s stability a nine out of ten.

What do I think about the scalability of the solution?

I rate the solution’s scalability a nine out of ten.

How was the initial setup?

The initial setup was neither easy nor difficult.

What's my experience with pricing, setup cost, and licensing?

The product is expensive.

What other advice do I have?

Check Point is a reliable company for network security. I trust them to protect my resources when using their products. However, their solutions could be improved to be more user-friendly and easier to integrate.

I recently implemented Check Point CloudGuard Network Security for our company's new customers. I installed the features and products after consulting with them. Setting up the network configuration was moderately complex and required careful attention. Check Point offers extensive configuration options, providing enhanced control and security, although it may require more setup effort initially.

I advised others to configure their product correctly.

Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

Private Cloud


    Information Technology and Services

Advance platform for cloud infrastructure network protection and security

  • June 26, 2024
  • Review provided by G2

What do you like best about the product?
We can sync this tool with our whole cloud and hybrid cloud infrastructure for advance network security.
Protection to cloud server gateways.
Automations is biggest advantage of this tool.
Our VPC security.
What do you dislike about the product?
Nothing comes top of the my mind for dislikes for this tool.
What problems is the product solving and how is that benefiting you?
NSPM and helping or benifiting in our VPC server security.


    PRASHANT GARJE

Cost-effective, supports automation, and provides good security

  • May 22, 2024
  • Review from a verified AWS customer

What is our primary use case?

We are using Check Point CloudGuard as a firewall. Along with the firewall, we have incorporated multiple blades. Initially, the firewall used to be a single security device, and along with that, we required antibot, antivirus, IPS, and IDS devices. Check Point CloudGuard is a combination of all the devices and functionalities in a single device. It is a next-generation firewall. The main use case of this firewall is to protect our entire cloud and provide perimeter cloud security at L3 and L4 levels.

How has it helped my organization?

It is a next-generation firewall. Threat prevention and threat detection blades are available with the firewall. As soon as you enable the blades and you have the license for it, you are good in terms of threat prevention. You do not need to do any specific settings. You just need to enable the blade, and the firewall will take care of the rest of the things. That is how it works.

We are using the Check Point CloudGuard firewall with autoscaling in the AWS and Azure cloud. We have a minimum capacity of two firewalls and a maximum capacity of ten firewalls. If the CPU utilization increases or the memory utilization increases, the capacity will be increased to three from two. Till the service comes down to the threshold level, it will keep on adding more firewalls, so we have ease of operations. We do need not to worry about what we will do if a firewall fails.

When I joined my organization, we were using this CloudGuard firewall in the active/standby firewall cluster. In such a setup, the firewall that is active processes your traffic. The other firewall is in the standby mode. It is not processing the traffic, but it is still costing you. Even though it is not being used, it is still cost-consuming at the cloud level. We changed the setting to autoscaling. After adopting the autoscaling mode for this firewall, we need a lower number of CPU and memory. All the firewalls are active, so we need not worry about the standby firewalls and all those things. So, we have transitioned from these conventional active/standby firewalls to autoscaling firewalls. With this, we are able to save costs and improve performance. All the firewalls are active/active but with fewer CPU cores. When we have fewer CPU cores, we need less number of licenses, so we were able to save the cost. The performance has also been great.

What is most valuable?

The most important feature is that we are able to use Check Point CloudGuard Firewall for our cloud security. We can make the deployment automated. We do not require manual intervention. With the help of automation, we are able to deploy it within minutes, and we are able to discard it within minutes. We can do hardening and create policies. All those things are very advanced.

Secondly, Check Point is one of the big OEMs available in the world from the firewall perspective. It is better than Palo Alto and Juniper firewalls. It is one of the best firewalls available in the industry.

What needs improvement?

We have done a lot of automation with the firewall, but sometimes, there are some failures because of some bugs. The fixes for them are still not available. We have daily or weekly communication with the Check Point people giving support in the India region, but we have not seen much improvement or response to our requests for some additional features. We are moving to infra as a code, so we are expecting more advancements in this product. Just installing the patches is not going to help us. They need to focus on this area.

I expect Check Point CloudGuard to come up with some AI/ML integration. A firewall is the first L3 security device available to you. It is the single point that manages or processes the traffic for an organization. There is a possibility that the device goes down or gets rebooted for any reason. The integration of artificial intelligence with the devices can help us to know in advance that there might be a surge in traffic. There might be a spike in the traffic, so we can have some additional firewalls integrated. This predictive analysis has to be there. This way, if required, a second, third, or fourth firewall can come into the picture. All the firewalls will process the traffic simultaneously. I am expecting such capability. This sort of feature is available with AWS. We are deploying all the firewalls on AWS, but it would be easy if, in the future, such a feature is available from the OEM or Check Point itself. It will be very helpful for the organization.

We have had a couple of outages because of some misconfiguration. They were human errors but there were no prior indications that if we were making these sorts of changes, this would happen. People making the changes on the firewall were not aware of this, and that is the reason why the outage happened. In a financial organization, an outage of even five minutes can cost a lot.

For how long have I used the solution?

In our organization, we have been using it for more than four or five years, but I have hands-on experience with it for the last three years. 

What do I think about the stability of the solution?

I would rate it an eight out of ten for stability.

What do I think about the scalability of the solution?

It is scalable. I would rate it a ten out of ten for scalability.

How are customer service and support?

I would rate their support a five out of ten because I never got good support. Whenever I have raised a TAC case, their support has not been great. It is not as good as others.

They need to improve from a knowledge perspective. I had a couple of issues, and they could not understand those issues easily. They should not just take the logs and analyze the logs. They should be providing a solution. Being a financial organization, we cannot afford a long downtime. We expect a faster resolution. If a support engineer is not capable of handling a case, he or she should escalate it to a higher level, but they are not doing that on a regular basis. They make you lose days by dragging the case.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

In my organization, we have two different Infra teams. We have the Network Security Infrastructure team that manages the on-premises setup, and then we have the Cloud Network Security team that manages the cloud. I am a part of the Cloud Network Security team, and we are using the Check Point firewall. The on-premises team was using Juniper and Palo Alto firewalls, and they are now using the Check Point firewall. It is one of the most effective products we have ever used, and that is the reason why that team has moved from other OEMs to Check Point CloudGuard.

How was the initial setup?

We have deployed it on the cloud. We have AWS, Azure, and GCP clouds.

The deployment was done with the help of AWS CloudFormation templates which are very generalized. I just downloaded the templates and customized them as per our requirements. I faced a few challenges because I was not completely knowledgeable about CloudFormation, etc. It was not very challenging from the Check Point side. It was an easy deployment.

I faced a couple of challenges while integrating it with our existing ecosystem. Even though Check Point is the OEM, we have third-party vendor support here in India. The challenges that I was facing at the time were also new for them, so I sorted out those issues myself by referencing some online articles on Check Point. I was able to overcome those challenges at the time. It was not a big deal. There was no huge challenge.

What about the implementation team?

Initially, we involved people from Check Point and the third-party vendor of Check Point, but at later stages, we were capable enough to develop things in-house, so we did it ourselves.

The Cloud Network Security team has ten people. I am handling the AWS cloud deployment along with a colleague. Other colleagues are involved in Azure and GCP deployment. Overall, there are ten people for deployment and management, but mainly, two or three people are involved in the deployment at a time.

We have deployed it in two regions. It is deployed in the Mumbai and Hyderabad regions of AWS in India.

What was our ROI?

We have seen 70% to 80% ROI. 

What's my experience with pricing, setup cost, and licensing?

I do not know the exact price, but it is fairly priced. It is neither cheap nor costly.

As compared to other OEM vendors in the market, it is cost-effective for us. There are multiple things we need to consider while selecting a certain product. We have AWS, Azure, and GCP clouds, and we have multiple firewalls. All of our firewalls are Check Point CloudGuard firewalls. The cost can vary based on the licenses that you are using. For IPS, IDS, antivirus, antibot, and other capabilities, additional licensing costs might be there. When it comes to security, it gives us great security. Considering that factor, it is cost-effective for us.

Which other solutions did I evaluate?

I have not evaluated other solutions. Based on the input from my seniors, this is the best solution available in the market. I have heard that Palo Alto also has a cloud-based product called Prisma Cloud, which has some advanced features integrated by using AI/ML technologies. I would love to evaluate Prisma Cloud.

What other advice do I have?

I feel confident using this product. In fact, I have completed a few certifications related to Check Point CloudGuard. I am a Check Point certified administrator, and I am also a Check Point Certified Cloud Specialist. I have also been working with automation-related things, and sometimes, we do some bash scripting and shell scripting to make things easier for us. Traditionally, you can only access the firewall via a CLI. That is the basic level, and at the next level, you should be able to do a few daily things in an automated way. I am very good at that.

I would recommend this solution, but it also depends on the requirements. It is a cost-effective solution. If you are a small organization or a startup, you do not need to have this solution. If you are a big organization with 5,000 to 10,000 users, you can go ahead with it. The ROI for our organization was up to 80%, but it necessarily would not be the same for other organizations.

Overall, I would rate it a nine out of ten.