Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

CloudGuard WAF

Check Point Software Technologies

Reviews from AWS customer

7 AWS reviews

External reviews

60 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Giridhar G.

Advanced AI Security with Flexible Deployment Options

  • November 17, 2025
  • Review provided by G2

What do you like best about the product?
Since this includes AI support, advanced features, and management automations, it helps protect against unknown attacks. It also offers flexible deployment options suitable for different cloud and hybrid environments.
What do you dislike about the product?
The platform presents a steep learning curve, which can impede initial adoption and make it difficult for new users to effectively manage complex rules and logs. Additionally, the documentation is insufficient, which further complicates the onboarding process. I have also noticed that the log retention is limited, which negatively affects visibility and control.
What problems is the product solving and how is that benefiting you?
This solution safeguards web applications against threats such as SQL injection, cross-site scripting, and botnet attacks, helping to prevent data breaches while offering improved visibility into traffic. It also defends against common web application attacks, automated and bot-driven threats, vulnerabilities in applications and APIs, as well as issues related to data breaches and insufficient visibility.


    Information Technology and Services

Reliable Cloud WAF with Strong Automation

  • November 13, 2025
  • Review provided by G2

What do you like best about the product?
What I like most about Check Point CloudGuard WAF is how reliably it blocks common web attacks without needing constant manual tuning. The dashboard is clean, and the threat visibility makes it easy to understand what is happening in real time. Its automated protections and strong integration with cloud environments help maintain security with less operational effort.
What do you dislike about the product?
The initial setup can feel a bit complex, especially for teams that are not already familiar with Check Point’s ecosystem. Some of the advanced configuration options could be more intuitive, and certain logs take time to get used to. Aside from that, the product performs well but could improve in terms of onboarding and documentation clarity.
What problems is the product solving and how is that benefiting you?
Check Point CloudGuard WAF helps us protect our applications from common web attacks like SQL injection, bot traffic, and malicious API calls. It reduces manual monitoring by automatically blocking suspicious behavior. This has improved our overall security posture and saved time for our team by minimizing false positives and providing clearer visibility into threats.


    K.Q

Has blocked web-based threats and reduced attack success using real-time detection and intelligence

  • November 09, 2025
  • Review provided by PeerSpot

What is our primary use case?

My main use case for Check Point CloudGuard WAF is protecting the public-facing web applications in my company because I need to show different webs to different clients, and I need to protect these web apps.

In addition to protecting public-facing web apps and APIs, I also use Check Point CloudGuard WAF for different purposes, such as providing protection to non-production environments, ensuring that vulnerabilities are caught early during deployment and testing, which helps identify misconfiguration or insecure code before it reaches production.

How has it helped my organization?

Check Point CloudGuard WAF has positively impacted my organization by significantly improving both security and operational efficiency, with a noticeable reduction in web-based threats, especially automated attacks and vulnerability exploits, thanks to its real-time prevention and reputation filter that has streamlined my workflow through automatic policy updates and integration smoothly with my CI/CD pipelines, allowing my DevOps teams to deploy security without delays.

AI-based threat detection and contextual machine learning to block known and zero-day attacks, according to Check Point, have led to a notable decrease in successful web-based attacks.

What is most valuable?

The best features that Check Point CloudGuard WAF offers in my experience include advanced threat detection with blocking OWASP Top 10 threats such as SQL injection, XSS, and CSRF with high accuracy, along with granular access controls such as geo-blocking and IP reputation filter.

The reputation filter has helped me significantly. For example, I was once notified of a spike in traffic targeting one of my login portals, which at first glance looked like normal user activity, but the reputation filter flagged the source IPs as part of a known botnet associated with credential stuffing attacks, leading to those IPs being blocked before they could even reach the authentication layer.

What needs improvement?

Check Point CloudGuard WAF is a strong solution, but there are a few areas where it could be improved, particularly the user interface for managing custom rules and exceptions, which could be more intuitive and streamlined to reduce the learning curve for new users, especially when deploying for the first time.

I think the documentation could be better. People need more intuitive documentation and easier steps for the first deployment.

For how long have I used the solution?

I have been using Check Point CloudGuard WAF for around three years.

What do I think about the stability of the solution?

Check Point CloudGuard WAF is stable in my experience with no downtime or reliability issues.

What do I think about the scalability of the solution?

Check Point CloudGuard WAF is very scalable and has handled growth or increased traffic well.

How are customer service and support?

The customer support for Check Point CloudGuard WAF is great. I have had great response time, and it has been very helpful for me.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I did not previously use a different solution.

How was the initial setup?

The experience with pricing, setup cost, and licensing for Check Point CloudGuard WAF is straightforward, with the service being available as a fully managed service, and the pricing depending on traffic volume, number of protected applications, and cloud provider. I do not have a problem with this area.

What was our ROI?

I have seen a return on investment, having more time in the department, which is the relevant metric of time saved.

What's my experience with pricing, setup cost, and licensing?

The experience with pricing, setup cost, and licensing for Check Point CloudGuard WAF is straightforward, with the service being available as a fully managed service, and the pricing depending on traffic volume, number of protected applications, and cloud provider. I do not have a problem with this area.

Which other solutions did I evaluate?

Before choosing Check Point CloudGuard WAF, I compared it with Azure WAF, but I had to select Check Point CloudGuard WAF.

I compare Check Point CloudGuard WAF with Azure WAF, noting that I need to centralize the security products, preferring different tools in Check Point Infinity Portal since they are from the same company.

What other advice do I have?

If you are considering using Check Point CloudGuard WAF, my top advice is to take full advantage of its automatic learning and threat intelligence features right from the start. Begin with the detect learning mode to observe traffic patterns and fine-tune policies before switching to full prevention, which helps reduce false positives and ensure a smoother deployment.

I do not utilize Check Point CloudGuard WAF alongside any other Check Point products.

Check Point CloudGuard WAF helps me block specific web-based attacks such as SQL injections or cross-site scripting with threat prevention.

Check Point CloudGuard WAF has helped me reduce my false positive rate to approximately fourteen percent, thanks to its adaptive threat prevention and machine learning capabilities.

The breach reduction capabilities of Check Point CloudGuard WAF are impressive, especially in how it proactively blocks zero-day threats and bot-driven attacks before they reach critical systems. For example, it stopped a credential stuffing attempt on my login portal using the reputation filter and input validation. I would rate this review a nine.


    Computer & Network Security

AI-powered WAF that reduces manual tuning BUT comes at a premium

  • November 07, 2025
  • Review provided by G2

What do you like best about the product?
I evaluated Check Point CloudGuard WAF as part of a proposal to protect a cloud-hosted web and API stack. The deployment process was remarkably fast — it took only a few minutes to get up and running — and the integration with our existing CI/CD pipeline was smooth and straightforward. It provided comprehensive visibility into API traffic and strong protection against common web threats without requiring extensive manual tuning.
What do you dislike about the product?
The solution is slightly more expensive compared to some of its competitors, such as Cloudflare WAF and Imperva WAF. However, the additional cost is partly justified by its advanced AI-driven threat detection, API discovery capabilities, and the overall reliability of Check Point’s cloud-native infrastructure.
What problems is the product solving and how is that benefiting you?
For us, the biggest benefit has been the ease of deployment and ongoing management — it integrates seamlessly with CI/CD workflows, scales automatically with cloud workloads, and provides clear visibility into traffic patterns and attack trends. Overall, it has simplified application security operations and improved confidence in protecting our cloud environment.


    Heiner M.

Great cloud protection that’s easy to set up and really effective

  • November 05, 2025
  • Review provided by G2

What do you like best about the product?
I really like how easy it is to deploy and how effectively it protects applications without adding latency. It integrates smoothly with cloud environments and provides great visibility into threats..
What do you dislike about the product?
Sometimes the configuration can feel a bit complex at first, and the interface could be more intuitive for fine-tuning policies.
What problems is the product solving and how is that benefiting you?
It helps protect our cloud applications from common web attacks like SQL injection and XSS, ensuring compliance and reducing security risks. It also saves time by automating threat detection and response


    Tulika R.

Exceptional Threat Protection and Seamless Cloud Integration

  • November 01, 2025
  • Review provided by G2

What do you like best about the product?
Users consistently praise its ability to identify and block sophisticated threats targeting web applications and APIs using machine learning and behavioral analysis. CloudGuard WAF secures APIs with deep inspection and policy enforcement, which is crucial for modern cloud-native applications. CloudGuard WAF is built for cloud/DevOps environments: quick deployment, infrastructure as code, SaaS-style or managed mode.Easy to implement
What do you dislike about the product?
No dislike as of now. we liked the solution.
What problems is the product solving and how is that benefiting you?
Stronger Application Security Reduces the risk of data breaches and service disruptions by proactively blocking threats.Simplified Management Centralized dashboard and automated policy updates make it easy to monitor and respond to threats.Because it supports cloud native and SaaS modes, you can deploy quickly and scale as your web infrastructure grows or shifts. That supports agile/DevOps workflows.Since the WAF is more intelligent (fewer false blocks) and supports modern web architectures (APIs, microservices), legitimate users have fewer disruptions and the business can deliver services reliably.


    Tanish T.

Comprehensive Protection and Easy Setup with Excellent Support

  • October 30, 2025
  • Review provided by G2

What do you like best about the product?
What I like best about Check Point CloudGuard WAF is its comprehensive, proactive protection for web applications against modern threats.Another standout feature is its integration with Check Point Threat Cloud, which provides continuous updates on emerging threats, enabling proactive defense and reducing the window of vulnerability.Offers detailed reports and dashboards for compliance and operational insights.Easy to implement. Nice customer support.
What do you dislike about the product?
Initial Learning Curve is the only challenge. Product is so great.
What problems is the product solving and how is that benefiting you?
Traditional WAFs often require manual tuning to avoid blocking legitimate traffic. CloudGuard’s AI-driven detection minimizes false positives, reducing the need for constant rule adjustment.With advanced analytics and continuous monitoring, it enables proactive threat detection and response, giving security teams better visibility into application-layer attacks.The capability to deploy quickly means you can secure new applications faster, keep pace with DevOps, and not delay releases for security gating.


    viraj s.

Adaptive Protection and Unified Console Make CloudGuard Stand Out

  • October 29, 2025
  • Review provided by G2

What do you like best about the product?
Unlike traditional WAFs that focus mainly on OWASP Top 10, CloudGuard uses Check Point’s ThreatCloud intelligence to detect. CloudGuard WAF uses machine learning and behavioral analysis to adaptively tune protection, reducing false positives.You can manage the WAF alongside your cloud network security, API protection, and runtime posture through a single CloudGuard console. Support is as always so great.
What do you dislike about the product?
Documentation and self-help resources are seen as lacking in some areas — users say they sometimes need more detailed examples or stronger guidance
What problems is the product solving and how is that benefiting you?
CloudGuard does automated discovery of API endpoints, applies contextual AI to traffic, and doesn’t rely purely on static signatures. CloudGuard uses ML / behavioural analysis to detect anomalous traffic or patterns even if no signature exists. CloudGuard supports deployment across cloud providers, hybrid models, and integrates with cloud-native services. CloudGuard provides centralised console, logging, visibility across cloud apps, and integrates with threat-intel.


    Anshika B.

Check Point CloudGuard WAF

  • October 13, 2025
  • Review provided by G2

What do you like best about the product?
Checkpoint CloudGuard WAF is a great solution. It uses contextual AI/ML based threat prevention to stop both known threats and zero-day attacks without need for constant signature updates. From a deployment and operation viewpoint, CloudGuard WAF shines, it is cloud-native, Supports infrastructure as a code/API-based setup. Customer support is so great. We have achieved all our use cases.
What do you dislike about the product?
No dislike as of now. We liked that product.
What problems is the product solving and how is that benefiting you?
CloudGuard WAF addresses the challenges posted by traditional WAFs that rely heavily on static signatures, manual rule tuning and reactive defences. It also improves detection accuracy while dramatically reducing false positives, so your security operation teams spend much time investigating benign traffic and more time responding to real threats. Additional features like built in bot detection, DDos mitigation, and file upload scanning further close off common attack vectors.


    Sidharth M.

Checkpoint Cloudguard WAF

  • October 10, 2025
  • Review provided by G2

What do you like best about the product?
Checkpoint CloudGuard WAF is appreciated for its intelligent,prevention first approach to securing web application and API's. It offers comprehensive suite of protection, including bot mitigation, DDoS defence, file reputation check and coverage for thousands of known vulnerabilities.Beyond its technical strengths, Checkpoint CoudGuard WAF Excels in delivering a seamless user experience. customer support is so great.
What do you dislike about the product?
Some users have also noted that documentation can be more user-friendly. Other than this solution is so greta.
What problems is the product solving and how is that benefiting you?
One of the biggest problems it solves is the detection and prevention of zero-day attacks and OWASP top 10 vulnerabilities with relying on signature update. A common pain point with traditional WAFs that generate excessive false positive. CloudGuard's cloud-native design and support for infrastructure-as-code streamline deployment and integration into CI/CD pipelines.