Check Point Security Management (BYOL)

Check Point Software Technologies

Reviews from AWS customer

4 AWS reviews

External reviews

323 reviews
from and

External reviews are not included in the AWS star rating for the product.


4-star reviews ( Show all reviews )

    Mithilesh_Kumar

Securely manage and deploy configurations to firewall devices with IPS protection

  • June 04, 2024
  • Review from a verified AWS customer

What is our primary use case?

The main function is to securely manage and deploy configurations to firewall devices and logs through its security management console. We configure and test all settings within the security manager and subsequently push these configurations to the relevant firewall devices.

How has it helped my organization?

Check Point Security Management in cloud environments focuses on securing cloud services and managing traffic within the cloud environment. Network security typically involves managing Layer 3 to Layer 4 services. Access Control Lists are used to secure network access.

What is most valuable?

It offers numerous features and blades, including intrusion prevention (IPS) and malware detection. It excels in network security and VPN capabilities, including IPSec VPNs. IPS is particularly powerful due to its signature-based detection, which automatically checks for and identifies malicious software.

What needs improvement?

Check Point is highly regarded for its effectiveness and the three-layer architecture for security, comprising the client, Security Management, and secure management console, integrated with firewall capabilities. This architecture differentiates it from other security solutions like Palo Alto, Cisco, and FortiGate. Our files are more secure against potential compromises with three layers, as configurations are managed centrally on the Management servers. The SmartConsole facilitates easy configuration and management, aligning with modern automation trends. Integrating Check Point with AI and API security features enhances its effectiveness and user-friendliness. Customizable logs tailored to sources, businesses, and IPs can be automated for delivery via email, ensuring accessibility without needing to log into devices directly.

For how long have I used the solution?

I have been using Check Point Security Management as a partner for ten years.

What do I think about the stability of the solution?

The product is stable. I rate the solution’s stability a ten out of ten.

What do I think about the scalability of the solution?

600 users are using this solution.

I rate the solution’s scalability a ten out of ten.

How are customer service and support?

There are multiple ways to contact Check Point Security Management, such as phone calls, chats, and emails. We receive responses based on the ticket's priority and the business need.

How was the initial setup?

The initial setup is straightforward and takes three hours to complete. I rate it a ten out of ten, where one is difficult and ten is easy.

What's my experience with pricing, setup cost, and licensing?

The product is a bit expensive. It has yearly licensing, costing around 48 bucks.

What other advice do I have?

It is very effective nowadays due to its ability to provide feedback from DDoS attacks and man-in-the-middle attacks, which are powerful and useful in today's enterprise scenarios. It integrates with various software APIs and provides web firewalls and security, which are crucial in security. These features protect against DDoS attacks, man-in-the-middle attacks, and other implementation vulnerabilities. It provides security and ensures that our services are available 24/7.

I recommend the solution because it is proactive and easy to use.

Overall, I rate the solution a nine out of ten.


    reviewer1098015

Easy to open and edit policies, search within them, and view logs

  • May 17, 2024
  • Review from a verified AWS customer

What is our primary use case?

We utilize the security management solution to oversee all our Check Point products, including firewall, IPS, and antivirus policies. It serves as our primary tool for managing all Check Point devices.

What is most valuable?

Check Point Security Management excels over Forti Management in daily operations, policy management, and graphical interface. It is easy to open and edit policies, search within them, and view logs.

What needs improvement?

The only issue is that, you need to install an application instead of managing it through a browser. Thus, it requires installation. Additionally, it can be slow when multiple users access the manager simultaneously. Even with increased CPU and memory resources, some performance issues may still occur when multiple users check simultaneously.

For how long have I used the solution?

I have been using Check Point Security Management for ten years.

What do I think about the stability of the solution?

Sometimes, we encounter crashes while working on Check Point Security Management, necessitating application restarts. We also face connectivity issues with certain firewalls, making it less stable than other products.

What do I think about the scalability of the solution?

The solution’s scalability is good ; adding more CPUs and memory can give you more gateways.

20 managers are using this solution.

I rate the solution’s scalability a nine out of ten.

How are customer service and support?

We currently have at least two or three cases open, and some are regarding demand. We struggle to find a good engineer who can truly help us instead of just sending some comments for us to run and provide feedback. They need to improve, especially in their initial client support.

How was the initial setup?

The initial setup is complex.

Compared to Forti Management, Check Point Security Management involves much more work and is more difficult. You need to establish connections to all the firewalls manually, one by one. However, with the function manager, you point the firewall to the manager and accept it on the Management, and it's done. Additionally, you need to manage certificates on Check Point, making the process less straightforward than FortiManager.

You depend entirely on the manager to edit the security gateway policies. If the manager encounters an issue with Fortinet, you can still access the FortiGate and delete policies. In Check Point, you cannot delete firewall policies directly on the firewall itself if you encounter a Management issue.

Deployment, including firewall synchronization, takes about four days to complete.

You usually need to create and use the VM Manager VM. So, you need to deploy the VM, configure the IPs, and install the Check Point console software. Then, you need to perform an SIP IT connection to all the firewalls to manage them. After that, you need to configure the firewall networks and public IPs.

I rate the initial setup as seven out of ten, where one is difficult, and ten is easy.

What's my experience with pricing, setup cost, and licensing?

The product is more expensive than Fortinet. We need to pay the license for the Management. I rate the product’s pricing a seven out of ten, where one is cheap and ten is expensive.

What other advice do I have?

It enhances our daily operational efficiency. Therefore, all management personnel prioritizing working on Check Point policies over Fortinet would benefit. However, maintenance upgrades, backups, snapshots, and synchronization between primary and secondary management can become cumbersome. These tasks tend to be more challenging and time-consuming.

The learning curve for Check Point is quite steep. Sometimes, when we recruit new members to our company, they take a lot of time to understand how our Check Point system works, including the connection between the Management and the firewall, among other components. With Fortinet, it takes only two or three weeks for them to get acquainted with everything. With Check Point, they need at least three months to become accustomed to upgrades, managing policies, and maintenance of the Management system. So, it takes at least three or four times longer than with Fortinet.

AI is essential for correlating logs and presenting the ones that matter. They could strengthen how they present logs by giving more attention to the ones that matter most.

Check Point is easy to use, allowing users to drag and drop objects effortlessly. However, it's essential to note that deploying and maintaining the solution may require a bit more expertise than some competitors.

Overall, I rate the solution an eight out of ten.


    Manikandan U.

Endeavours security solution for Cloud

  • May 09, 2024
  • Review provided by G2

What do you like best about the product?
It was an amazing experience when i was working with Cloud Guard CNAPP. The module contains lot of features like, posture, continuous assessment, GSL builder, Cloud Bots, etc. it has the market leading complaince ruleset to scan our environment to fetch the misconfigured assest findings based on the severity. The engine will support the custom usecases it self.
What do you dislike about the product?
Sometimes the portal have some latency.
Some of cloudbots not working properly
What problems is the product solving and how is that benefiting you?
It helps us to find the misconfigurations on cloud infrastructure level.


    Sai K.

Advanced Threat Intelligence Engine feature

  • April 23, 2024
  • Review provided by G2

What do you like best about the product?
It has a advanced features of Threat Intelligence engine which can detect and prevent the malicious and anomaly IP address.
It has having the customized intelligence rulesets to detect our organization use cases.
What do you dislike about the product?
The custom policy is not supported on Threat intelligence engine.
What problems is the product solving and how is that benefiting you?
It helps us to cover the complete Threat Intell monitoring on our applications.


    Hitesh S.

CloudGuard CNAPP is excellent tool for cloud security detection for multiple cloud platform.

  • March 15, 2024
  • Review provided by G2

What do you like best about the product?
Features like AWP,Serverless protection and it is easy to implement and integration.
What do you dislike about the product?
Support response is very slow.We should be wait for 3-4 working days to get proper resolution on issue.
What problems is the product solving and how is that benefiting you?
Feature which are provided by CNAPPP like runtime protection,serverless protection.it is benefits to check if any vulnerabilities comes up with runtime Lambda function invocation and serverless function.


    Abnet Tsegaye Belay

Centralized management, intuitive user interface, and comprehensive security features

  • March 09, 2024
  • Review provided by PeerSpot

What is our primary use case?

Check Point Security Management Server is a comprehensive solution designed to streamline and centralize the management of security policies across an organization's network infrastructure.

One of the standout features of the Check Point Security Management Server is its ability to manage security policies across multiple Check Point security gateways centrally. This centralized approach simplifies policy deployment, monitoring, and updates, making it easier for administrators to maintain a consistent security posture.

How has it helped my organization?

The Check Point Security Management Server has the ability to centrally manage security policies across multiple Check Point security gateways. This centralized approach simplifies policy deployment, monitoring, and updates, making it easier for administrators to maintain a consistent security posture.

It offers high-performance capabilities to handle large volumes of traffic while maintaining low latency, ensuring minimal impact on network performance. This product greatly improved our company customers and allowed us to implement the solution easily.

What is most valuable?

The most valuable aspects of the solution are:

1. Centralized Management: It can centrally manage security policies across multiple Check Point security gateways. This centralized approach simplifies policy deployment, monitoring, and updates, making it easier for administrators to maintain a consistent security posture.

2. Intuitive User Interface: The management console provides an intuitive user interface that allows administrators to configure and monitor security policies with ease. The interface is well-designed, with clear navigation and comprehensive options for managing security rules, network objects, and logs.

3. Comprehensive Security Features: Check Point Security Management Server offers a wide range of security features, including firewall, intrusion prevention, VPN, application control, and threat prevention capabilities. These features work together to provide multi-layered protection against various cyber threats.

What needs improvement?

Check Point Security Management Server integrates seamlessly with other Check Point security products, providing a cohesive security ecosystem for organizations. It also offers compatibility with third-party security solutions, however, it is not a lot. This needs to be improved.

Check Point offers comprehensive product support and documentation, including online resources, knowledge bases, and technical support services. This ensures that administrators have access to the assistance they need to deploy and maintain the Security Management Server effectively, but when customers raise issues, the support is not satisfactory and timely.

For how long have I used the solution?

I've used the solution for more than one and a half years.


    Yokesh M.

Good monitoring, compliance, and reporting of remediation actions.

  • February 29, 2024
  • Review provided by G2

What do you like best about the product?
Cloudsecurity posture Management,Cloudservice Network Security, Cloud Workload Protetion Platform in a single holistic platform. We like the GSL builder feature. When you're running a security operations center, you spend a lot of time monirong endpotint activity to ensure there is no malicious traffic or anonmymous access on the environment.
What do you dislike about the product?
The user interface could be improved. Sometimes, the visibility is not immediately available for the environment. We have the native servers that come with the solutions, but we cannot see them in the Checkpoint log, another issue is with the integrated file monitiring.
What problems is the product solving and how is that benefiting you?
Our environment includes a hybrid cloud and three public service providers: AWS, Azure, and GCP. CloudGuard enables us to manage all the cloud provides from one dashboard. It enbaled a team approach, so we are more flexible and operationally efficient. The solution provides a holistic view from a single dashboard, making posture management and threat prevention more effective. Detection is not a siginificant challenge, when I block a particular incident, CloudGuard will implement some kind of orevention activity so that those types of activities are prevented automatically in the future. Prevention is more benefical for us.


    CBMMishra

Alert classifications help prioritize critical issues

  • February 20, 2024
  • Review provided by PeerSpot

What is our primary use case?

We utilize Check Point Security Management for our daily security operations, including managing firewall rules, reviewing alerts, and generating reports on a weekly basis.

How has it helped my organization?

We've integrated Check Point Security Management with some of our business associates' portals for HR, finance, and payroll activities, which are outsourced. Check Point alarms us about any version changes on these sites, allowing us to block unauthorized changes. So far, we haven't encountered any serious incidents that require immediate action. We receive incident reports, but they usually involve blocked or quarantined threats rather than major security breaches. Additionally, our internal management console provides us with alerts, adding another layer of security monitoring.

What is most valuable?

Over the past 1.5 years, we've started monitoring it more regularly, analyzing alerts closely. The most beneficial features for us are the alert classifications, which help us prioritize critical issues, and the detailed reports that provide insights into attack origins and purposes, such as TLS violations or content violations.

While we use a cloud-based Security Control console, we primarily conduct in-depth analysis of reports on a weekly basis to enhance our security posture.

What needs improvement?

Check Point EDR has room for improvement, especially in the area of Data Loss Prevention where it currently lacks functionality.

I'd also like to see enhancements in content filtering and categorization features.

I would appreciate the ability to restrict forwarding of confidential documents to specific groups, ensuring tighter security measures.

For how long have I used the solution?

I have been using Check Point Security Management for the past 1.5 years.

What do I think about the stability of the solution?

I would rate the stability 9 out of 10.

What do I think about the scalability of the solution?

I would rate the scalability 8 out of 10.

How was the initial setup?

We faced issues, but with the help of tech support, it was solved. It took almost one week approximately to set the solution through firewall.

What about the implementation team?

We rely on tech support to enhance our capabilities.

We have a small, focused team of four engineers.

What was our ROI?

Currently, we only use Check Point and are satisfied with its benefits in terms of time-saving and security performance, estimating a 30% time savings.

What's my experience with pricing, setup cost, and licensing?

The pricing can be estimated around 3 or 4 out of 10 in terms of expense.

Which other solutions did I evaluate?

I have evaluated another product before Check Point but found the local account manager to be more aggressive.

What other advice do I have?

I would rate the product overall at 8 out of 10, mentioning that while functionalities are there, improvements could be made to make it more user-friendly for laymen, such as incorporating drag-and-drop functionality.


    Aamir A.

Assess the performance and reliability of CloudGuard CNAPP.

  • November 30, 2023
  • Review provided by G2

What do you like best about the product?
Assess the performance and reliability of CloudGuard CNAPP. Look for information on how well it handles security tasks, the accuracy of threat detection, and its overall impact on system performance.
What do you dislike about the product?
Search for user reviews and feedback on forums, social media, or dedicated review platforms. This can give you insights into real-world experiences and challenges faced by users.
What problems is the product solving and how is that benefiting you?
Network Security in the Cloud


    Irshad M.

CloudGuard CNAPP: Revolutionizing Cloud Security Through Advanced Protection Protocols.

  • November 20, 2023
  • Review provided by G2

What do you like best about the product?
Very agile, smart prevention, visibility, reporting features, complete protection to cloud apps, account management, installation and maintenance and what not...

I love this product.
What do you dislike about the product?
Only a problem that could be corrected is.. latency issue.. it takes some more time to load the reports and dashboard.
What problems is the product solving and how is that benefiting you?
It resolves cloud security challenges and bring invaluable benefits by implementing cutting edge protection measures. Ensuring fortified and resilient could environment.