I like the tool's ability to manage cloud traffic locally without routing it through our data centers.
System Engineer at a energy/utilities company with 10,001+ employees
Helps to manage cloud traffic locally without routing it through data centers
Pros and Cons
- "I like the tool's ability to manage cloud traffic locally without routing it through our data centers."
- "The product needs to improve technical support."
What is most valuable?
What needs improvement?
The product needs to improve technical support.
For how long have I used the solution?
I have been using the product for four years.
How are customer service and support?
The tool's support has been excellent. We can maintain our Check Point Firewalls effectively, both on-premises and in the cloud.
Buyer's Guide
Check Point Cloud Firewall (formerly CloudGuard Network Security)
August 2026
Learn what your peers think about Check Point Cloud Firewall (formerly CloudGuard Network Security). Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
911,493 professionals have used our research since 2012.
What's my experience with pricing, setup cost, and licensing?
The tool's monthly costs have undergone a significant reduction, dropping from approximately 12,000 euros to around 4,000. This represents a cost reduction of over 60 percent. However, it's essential to note that while costs decreased in some areas, they increased in others due to shifts in our environment. As our overall environment has grown, currently connecting 50 accounts to the cloud, it's challenging to directly compare costs with the state of our setup three years ago.
What other advice do I have?
Initially, we faced some challenges, especially with the AWS transit gateway, involving manual routing configurations and complex setup tasks. I rate the overall product a nine out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Platform Lead at a financial services firm with 5,001-10,000 employees
Dynamic and scalable but improvement is needed in integration feature
Pros and Cons
- "The Identity Awareness blade and dynamic tagging in Azure are valuable because they make access management automatic. Instead of manually setting up access for each new resource, it happens automatically based on the same access policy. This dynamic setup is scalable."
- "Regarding CloudGuard Network Security's integration with various resources like application gateways and application-based security groups, there's room for exploring dynamic access in those areas. A significant concern is the upgrade process. Unlike an in-place upgrade, upgrading the tool in Azure requires deploying a new resource, which can be hectic and less reliable. We have to spend something new to have the tool's latest version."
What is our primary use case?
For the Azure platform, especially Azure endpoint protections and other network aspects, we utilize CloudGuard Network Security to secure the egress connection. This includes configuring and maintaining express route connectivity between on-premises and Azure.
What is most valuable?
The Identity Awareness blade and dynamic tagging in Azure are valuable because they make access management automatic. Instead of manually setting up access for each new resource, it happens automatically based on the same access policy. This dynamic setup is scalable.
The tool is cloud-based and scalable. As our resources scale up or down, the system automatically adapts. This reduces the need for manual work, allowing us to manage the entire cloud infrastructure with a smaller workforce. It helps with automation.
What needs improvement?
Regarding CloudGuard Network Security's integration with various resources like application gateways and application-based security groups, there's room for exploring dynamic access in those areas. A significant concern is the upgrade process. Unlike an in-place upgrade, upgrading the tool in Azure requires deploying a new resource, which can be hectic and less reliable. We have to spend something new to have the tool's latest version.
For how long have I used the solution?
I have been using the product for four years.
What do I think about the stability of the solution?
Stability is generally good, and I don't have many complaints due to its scalability. When there are hardware issues, it automatically sets up a new, healthy instance. Overall, it contributes to a stable environment for us.
What do I think about the scalability of the solution?
The solution's scalability is excellent, but we do encounter some restrictions with the API on the cloud platform. This occasionally causes issues with the frequent pulling up of new resources.
How was the initial setup?
Our deployment model involves VM scale sets. We have set up instances across three environments: production, staging, and development. This structure allows for easy testing in the development environment before moving on to the production environment. We utilize Check Point's professional services to integrate, deploy, and build a cloud platform for CloudGuard Network Security.
What was our ROI?
We have seen a return on investment from CloudGuard Network Security. As more workloads shift from on-premises to the product, the costs associated with on-premises infrastructure decrease. Additionally, its dynamic and scalable nature in Azure allows us to maintain control.
What's my experience with pricing, setup cost, and licensing?
The solution's licensing is based on the number of users of the VMs. We follow a pay-as-you-go model. Its pricing is competitive.
What other advice do I have?
CloudGuard Network Security can manage security for both our hybrid cloud and on-premises systems. Currently, we have separate solutions for on-premises and the cloud. We also use Smart-1 Cloud from the Infinity portal. We haven't integrated the tool with both Azure and on-prem environments.
I have about an eight out of ten confidence level in our cloud network security with the product. It is because of Azurre's robust and dynamic nature. It is easy to incorporate anything new that comes up. We can integrate any new steps in Azure concerning the blades, CloudGuard Network Security, and Check Point.
Cloud-native firewalls lack functionalities such as IPS, which are exclusive to products like Check Point or other vendor-specific solutions. This is why we opted for CloudGuard Network Security as an additional layer, complementing the limitations of Azure's native or any cloud-native firewalls.
We are already using Check Point for our on-prem environment. The cloud solution was easy to integrate with our existing infrastructure.
I rate the overall product a six out of ten. Due to certain limitations in the integration between Azure and CloudGuard Network Security, I currently rate the experience as a six. However, I'm hopeful that Check Point is working on its new release.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Check Point Cloud Firewall (formerly CloudGuard Network Security)
August 2026
Learn what your peers think about Check Point Cloud Firewall (formerly CloudGuard Network Security). Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
911,493 professionals have used our research since 2012.
IT Security Specialist at Unipol Assicurazioni S.p.A.
Good visibility and management with helpful visibility into permissions
Pros and Cons
- "The various CNAPP modules have granted more visibility of our cloud applications to our system engineers and developers."
- "The costs are really high if you want the entire capabilities of the platform."
What is our primary use case?
We have used CNAPP on our OpenShift test cluster but are planning to deploy it in our production clusters. We used CNAPP to enhance the visibility of our cloud-deployed applications. It offers various modules to do so. For example, the Posture Management module shows you exposed secrets and security misconfigurations and also gives you hints and ready-to-use JSON configuration files to fix them.
Cloud Infrastructure Entitlement Management (CIEM) gives you visibility and management automation of identities, roles, entitlements, and privileges in your cloud environments. This helps you find and fix identity- and role-related security holes by constructing a complex privileges graph, which shows you granted permissions and enforced ones, suggesting you enforce the stricter and more secure enforced ones over the ones you granted.
How has it helped my organization?
The various CNAPP modules have granted more visibility of our cloud applications to our system engineers and developers. Doing so helps our transition to the cloud by making the management and administrative tasks of our cloud and system engineers easier, as well as suggesting and helping to prioritize patching and updating.
What is most valuable?
The most valuable features include the Cloud Infrastructure Entitlement Management (CIEM) module, Cloud Security Posture Management (CSPM), and Cloud Workload Protection (CWP).
What needs improvement?
The costs are really high if you want the entire capabilities of the platform. However, it is really motivated by the great value of the product. Moreover, you can buy individual licenses for the different modules if you don't need some of them.
For how long have I used the solution?
I've used the solution for one year.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Principle Network and Security Consultant at Vodafone Global Enterprise
Feature-rich with good threat prevention and protection
Pros and Cons
- "Identity awareness, URL filtering, IDS, DLP, Content Filtering, VPN, and Application Control are all excellent."
- "Check Point has a history of moving fast with software release and upgrade cycles which are difficult to keep up with at times."
What is our primary use case?
We use Check Point firewalls and SMS servers in on-prem DC and in multi-cloud environments extensively. These are used to protect the perimeter, DMZ, and internal network to protect and inspect network traffic.
The firewalls are best of breed and provide extensive rich features and a diverse range of protection against DDoS, malware, ransomware, and zero-day attacks. Also, it is used for terminating client and mobile VPN tunnels, URL filtering, IDP, DLP, etc.
The environment is Internal and a multi-tenant hosted for external clients which is a complex setup.
How has it helped my organization?
The new Check Point firewalls are best-of-breed and provide next-gen firewall features with AI and ML capabilities. This helps to reduce the operational support overhead and protects against new emerging threats.
Previously we used Juniper, Cisco, and other firewall platforms which have very limited capabilities and offer no inspection or threat-prevention features at all.
Check Point has changed this dynamic completely and offers a complete security solution to protect all digital assets which is immensely helpful.
What is most valuable?
Identity awareness, URL filtering, IDS, DLP, Content Filtering, VPN, and Application Control are all excellent. They provide features to inspect internet traffic, data protection compliance, and DDoS attack detection and protection.
The Check Point firewall product that we picked up has an excellent feature set and all the required licenses, it's a nicely engineered firewall technology and has a great support team to escalate.
Features like threat prevention and protection are good to have to protect against zero-day attacks, malware, and ransomware.
What needs improvement?
Software bugs and OS releases can be very fast to keep up with. Check Point has a history of moving fast with software release and upgrade cycles which are difficult to keep up with at times.
New features should have a single-pane-of-glass view for on-prem DC and cloud environments.
Licensing costs are very high compared to other vendors. Check Point needs to be competitive to keep the cost down for the customers and partners.
The previous Check Point OS model had to support multiple OSs which was difficult and cumbersome (i.e. SPLAT, IPSO, GAIA).
For how long have I used the solution?
I've used the solution for ten years.
Which solution did I use previously and why did I switch?
We did use a different solution and wanted to have better security capability and visibility.
What's my experience with pricing, setup cost, and licensing?
The solution is expensive but feature-rich.
Which other solutions did I evaluate?
We looked at other options and checked if the firewalls had all the security and compliance features required by the organization.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Pre-Sales Manager at DCIPHERS IT SOLUTIONS
The solution has good threat emulation, threat extraction, and reporting features
Pros and Cons
- "Check Point CloudGuard Network Security has a beautiful threat emulation different from the market."
- "The solution’s technical support, DNS security and training could be improved."
What is most valuable?
Check Point CloudGuard Network Security has a beautiful threat emulation different from the market. They have a threat extraction feature. The solution's zero phishing feature is pretty much commendable. The solution has one of the best reporting any vendor has in network security. The solution also has a CSPM or posture management tool inbuilt into CGNS or network security.
What needs improvement?
The solution’s technical support, DNS security and training could be improved. Check Point CloudGuard Network Security's training and reachability to the customer can be done a bit better. One recommendation from my side is that the handover of the tasks can be a bit better. If an engineer is on a ticket and their shift gets over, the smooth handshake between the two engineers can be a bit better.
For how long have I used the solution?
I have been using Check Point CloudGuard Network Security for more than one and a half years.
What do I think about the stability of the solution?
Check Point CloudGuard Network Security is a stable product.
What do I think about the scalability of the solution?
Check Point CloudGuard Network Security is a scalable product. I would recommend the solution to small, medium, and enterprise companies because it has a scalable model. The solution is over the cloud and can be integrated with any company.
Which solution did I use previously and why did I switch?
Previously, I worked with Palo Alto, a direct competitor of Check Point CloudGuard Network Security. CloudGuard Network Security's threat extraction features, reporting features, and threat emulation are better than Palo Alto's. Check Point CloudGuard Network Security is more user-friendly than Palo Alto. On the other hand, Palo Alto has a bit better DNS security than Check Point CloudGuard Network Security.
How was the initial setup?
Check Point CloudGuard Network Security is easy to deploy, and if you are unable to do it, you can get support from the OEM.
What about the implementation team?
The solution's implementation depends on the customer's network scenario and policies. The initial setup doesn't take more than 30 minutes, and the rest can be done later.
What's my experience with pricing, setup cost, and licensing?
Check Point CloudGuard Network Security's pricing is far better than Palo Alto's because Palo Alto is very expensive. Check Point CloudGuard Network Security comes at a price that even a small business can manage to buy, whereas Palo Alto would restrict you to enterprise customers. Check Point CloudGuard Network Security's licensing cost changes from country to country. The solution has different discount models across the globe in regions like Asia and Ireland.
What other advice do I have?
People who want to implement Check Point CloudGuard Network Security should focus during the planning phase. If planning is done correctly and the prerequisites are matched perfectly, they won't face any challenges during deployment. But it's very important to check the prerequisites' limitations.
Overall, I rate Check Point CloudGuard Network Security nine and a half out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
CIFO at Crisp System India Pvt Ltd
Cost-effective, and stable, but the solution should provide a single integrated view
Pros and Cons
- "This solution helps to keep everything visible, and it also alerts us if something is wrong, such as if someone opened extra ports or services that they are not supposed to. This is a valuable tool for monitoring and maintaining our cloud environment."
- "Check Point must provide a multi-cloud facility where AWS, Azure, and GCP can seamlessly work together and display posture in an integrated manner."
What is our primary use case?
We use the solution to protect workloads and users on the cloud, including both internal and external users. The solution must monitor user roles, the overall posture of the cloud application, and database and web servers that are exposed to the internet. It is an improvement over the default Amazon AWS security posture because it is sensitive to the context in which the application is being used, such as whether it is being used by a public user or an internal user who is managing the system on the cloud.
How has it helped my organization?
We used on-premises solutions until recently. However, we are now moving to the cloud for all of our applications. Posture management tools are now essential, and we must have them, regardless of whether they are from Tenable, Check Point, CrowdStrike, or another vendor. This solution is cost-effective, so we chose it, but we may change it in the future.
What is most valuable?
Embedded machine learning in the core of the firewall to provide in-line real-time attack prevention is most valuable. This is because analytics and machine learning capabilities come much later. In a high-volume situation, things can go bad quickly. Therefore, an in-line alert mechanism is much better than any other.
Visibility is the most important part. On the cloud, shared resources can make it difficult to see all of the resources that are deployed. This solution helps to keep everything visible, and it also alerts us if something is wrong, such as if someone opened extra ports or services that they are not supposed to. This is a valuable tool for monitoring and maintaining our cloud environment.
The solution is also capable of controlling resources, but this is a highly controversial and context-aware area. If the platform takes too much control, it could potentially stop our applications from working. Therefore, we limit its use to monitoring and visibility only.
What needs improvement?
Check Point must provide a multi-cloud facility where AWS, Azure, and GCP can seamlessly work together and display posture in an integrated manner. Instead of showing separate AWS, Azure, and GCP environments, the solution should provide a single integrated view. This will make it easier to decide which issues to fix first and will reduce the amount of technical work required.
Check Point is always adding new features. However, we are sometimes confused about how to use the features that are already available. There are so many features and we are unable to use all of them.
For how long have I used the solution?
I have only been using Check Point CloudGuard Posture Management for a very short time, not even a year yet. Earlier, we were not using the cloud very much, so there was no need for such a product. However, after we shifted a few of our applications to the cloud, we started using the solution.
What do I think about the stability of the solution?
The solution has been quite stable for the past year. However, I cannot say how it will behave in the future, as it may experience a bigger load and a wider variety of workloads. The stability of the solution is subjective and will depend on the specific environment in which it is used.
What do I think about the scalability of the solution?
We have not yet tested the solution at that scale. It is just a starting point. We may add more applications and more load to it. We will have to see how scalable the solution is.
How are customer service and support?
The technical support is good. They sometimes call people from outside India to help us, because we are longtime Check Point customers. We have been using their hardware, software, and firewalls for about two decades. This solution is a new addition to our support.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We are still using a variety of firewall solutions, including Juniper and Cisco, throughout our organization. As a government organization, we are required to purchase the cheapest option available. Therefore, we must utilize the solution that is the most affordable in each case.
How was the initial setup?
I am involved in the deployment of the solution. I am not the technical hands-on person for this project. I manage the deployment process.
What was our ROI?
It is very difficult to measure the return on investment for security measures. Security is not an investment in the traditional sense, as it does not generate direct revenue. Instead, security is a safety measure, similar to insurance. As such, it is difficult to quantify the ROI of security measures.
What's my experience with pricing, setup cost, and licensing?
It is difficult to contextualize the pricing because we are used to Indian pricing and licensing. In India, there is very little interaction with North America and the private sector regarding pricing.
Which other solutions did I evaluate?
We evaluated all the firewalls including Juniper and Cisco.
What other advice do I have?
I give Check Point CloudGuard Posture Management a seven out of ten.
The solution claims to provide a unified platform that integrates all security capabilities. However, there are on-premises issues, cloud issues, and hybrid issues that make this impossible. No tool can ever provide such capability.
We are not a small office. Therefore, I have no experience with how the solution helps small offices. However, for us, the solution only helps us with our cloud posture management. We still use different tools on-premises. And maybe in the future, we will go directly to the cloud.
I have doubts about the value of looking for the cheapest or fastest firewall. There is always someone who is coming out with a new product that is faster or cheaper than the current one. However, it is important to consider the overall security capabilities of a firewall, not just its speed or price. A firewall that is slower because it is doing more analytics may actually be more secure than a faster firewall that does not do as much analysis. The best firewall for you will depend on your specific needs and requirements.
This is my first time at an RSA conference, and I find it very confusing. There are too many vendors, too many products, and too much to see. I only had a few hours to visit today, and it was overwhelming. I think the conference would be better if it were split into two or three parts, with one part focused on the Asia Pacific and another part focused on North America. Most of the vendors here are focused on North America, so it would be helpful to have a dedicated space for vendors from Asia Pacific. I will try to visit the RSA conference in Singapore next year, and I hope it will be more manageable.
The RSA does not impact our cybersecurity solution purchases. The Indian government's procurement process is completely independent of vendors and their products. Our purchases are based on our needs and requirements, and the solutions must be supported in India.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Ict Officer at a healthcare company with 1,001-5,000 employees
Secure, highly stable, and helpful support
Pros and Cons
- "The most valuable feature of Check Point CloudGuard Network Security is the increased mail protection including spam."
- "The solution has improved our company because our Office 365 solution is secure, and most of our Microsoft solutions are now more secure than before when they had spyware and malware, and we no longer have these problems as before."
- "The price of the solution could be reduced, it is expensive."
- "The price of Check Point CloudGuard Network Security is very high compared to other solutions, such as Fortinet FortiMail."
What is our primary use case?
We are using Check Point CloudGuard Network Security for protecting our Office 365 mail.
How has it helped my organization?
The solution has improved our company because our Office 365 solution is secure. Most of our Microsoft solutions are now more secure than before when they had spyware and malware. We no longer have these problems as before.
What is most valuable?
The most valuable feature of Check Point CloudGuard Network Security is the increased mail protection including spam.
What needs improvement?
The price of the solution could be reduced, it is expensive.
For how long have I used the solution?
I have been using Check Point CloudGuard Network Security for approximately one year.
What do I think about the stability of the solution?
Check Point CloudGuard Network Security is very stable.
What do I think about the scalability of the solution?
Check Point CloudGuard Network Security can scale but it will cost you more.
We have approximately 2,000 mailboxes using this solution.
How are customer service and support?
The technical support from Check Point CloudGuard Network Security is very good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We did not use another solution prior to Check Point CloudGuard Network Security.
How was the initial setup?
The initial setup of Check Point CloudGuard Network Security is not difficult, it was simple. However, someone else might have difficulties. The whole implementation took approximately one day.
What about the implementation team?
We had the Check Point CloudGuard Network Security team help us remotely with the implementation.
We have a service level agreement with some vendors for the maintenance, but we rarely call them, because we handle it mostly in-house.
What's my experience with pricing, setup cost, and licensing?
The price of Check Point CloudGuard Network Security is very high compared to other solutions, such as Fortinet FortiMail. For the over 2,000 mailboxes we use with the solution it is very expensive.
Here in Kenya, the cost of Check Point CloudGuard Network Security is approximately $160,000.
I rate the price of Check Point CloudGuard Network Security a three out of ten.
Which other solutions did I evaluate?
We evaluated Fortinet and Barracuda, but Check Point CloudGuard Network Security was better. I found it uses very few resources.
What other advice do I have?
This is a good solution, but they have to be ready to pay the high costs.
I rate Check Point CloudGuard Network Security an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Manager at Agriculture Skill Council of India
Affordable with good threat hunting and works seamlessly with cloud servers
Pros and Cons
- "The initial setup is easy and not complex at all."
- "It is the best available solution in the market with strong tech support and wider acceptability globally."
- "I strongly advise that the multi-layered security system of Check Point often undergoes updates and new versions keep coming."
- "Every now and then, we feel that their team's training and orientation process on orienting the clients and partners is low and needs to be strengthened so that every single individual is completely aware and informed of the features and their utilities."
What is our primary use case?
Check Point CloudGuard Intelligence provides network security through machine learning analytics and visualization and detecting and spotting the threat entrant detection and providing threat intelligence security proactively for restricting the endpoints at the entry stage and securing the system in the best manner possible.
The security application works proactively and diffuses the endpoints in real-time, ensuring swift action in restraining the threat entry into our IT system.
This application supports almost all kinds of cloud and hybrid platforms and is spot on during integration with other systems.
How has it helped my organization?
Check Point CloudGuard Intelligence has significantly improved the revenue stream for my organization. Earlier, we had a third party for overall IT security and it was costly for us. We were looking for something with less cost.
The CloudGuard intelligence helps in the proactive detection of security threats across an IT device or server and immediately takes corrective and remedial action so that the data and security loss is not to minimal. It is one of the masterpieces which is quite advanced with current market requirements and is available at affordable prices.
What is most valuable?
The solution offers proactive threat detection and immediate remediation of the same.
Threat hunting is easy with this application as its false negative rate is extremely low, and its performance is fantastic.
It offers affordable costing and an easy renewal process for continuing the agreement.
It can work seamlessly with any kind of cloud servers and platform without any tech hassle or disturbance.
Multiple users can access and monitor the application working with a single login, which is quite advantageous and works really well for us.
There is no shutdown or slowdown of the application while in operation.
What needs improvement?
I strongly advise that the multi-layered security system of Check Point often undergoes updates and new versions keep coming. It is absolutely fantastic and is worth admiring. Every now and then, we feel that their team's training and orientation process on orienting the clients and partners is low and needs to be strengthened so that every single individual is completely aware and informed of the features and their utilities. They are not clueless in utilizing the services to their maximum. We just need more focused training.
For how long have I used the solution?
I've been using the solution for almost foud to six months.
What do I think about the stability of the solution?
It is a stable product.
What do I think about the scalability of the solution?
The solution is scalable.
How are customer service and support?
They offer strong and supportive customer support.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We were using a third-party solution earlier, which was quite localized and was having limited utility in terms of system security. We switched to Check Point due to peer feedback and advice, as my peers were extremely happy after trial use and pushed us to try the solution due to its numerous utilities, which are customizable. It is quite affordable in comparison to its other competitors in the market.
How was the initial setup?
The initial setup is easy and not complex at all.
What about the implementation team?
We had assistance from the vendor team only.
What was our ROI?
We've seen an ROI of almost 70%.
What's my experience with pricing, setup cost, and licensing?
We thoroughly examined the software and market offerings and found that CloudGuard solutions are reliable and dependable for their good work and globally accepted happy feedback by partners and users.
The setup cost is low and the implementation process is quite smooth.
Pricing is low in comparison to various competitors in the market.
Licensing and renewal of the agreement are effortless.
Which other solutions did I evaluate?
We evaluated other options, such as McAfee and Trend Security solutions.
What other advice do I have?
I'd advise potential users to go for the CloudGuard Intelligence solution and strengthen their IT security. It is the best available solution in the market with strong tech support and wider acceptability globally.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Technical Analyst (Cyber Security) at a consultancy with 51-200 employees
Patches cloud vulnerabilities and automates all the patching and reporting
Pros and Cons
- "The solution's main benefit is that it automates all the patching and reporting parts and generates an automated report."
- "Sometimes, the solution provides us with false alerts of vulnerabilities that are not present in our cloud environment."
What is our primary use case?
I work with the solution for patching over all the cloud vulnerabilities. We have a different monitoring team that monitors all the alerts on the solution. They send us a report, and we work on that report to patch all the vulnerabilities of our cloud environment, such as Azure and AWS.
What is most valuable?
The solution's main benefit is that it automates all the patching and reporting parts and generates an automated report. The solution automatically notifies you whenever any alert comes into your cloud environment via mail or message.
What needs improvement?
Sometimes, the solution provides us with false alerts of vulnerabilities that are not present in our cloud environment. The solution should include an auto-remediation feature, which most tools currently provide.
For how long have I used the solution?
I have been using the solution for three years.
What do I think about the stability of the solution?
Apart from the occasional false positives in the reports, we haven't had any issues with the solution's performance or stability.
What do I think about the scalability of the solution?
Check Point CloudGuard CNAPP is a scalable solution.
The solution is implemented in multiple locations, and each location has around 300 users.
How are customer service and support?
We contacted the technical support team during the deployment phase, and their support was very good and responsive.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We previously used CrowdStrike. We switched to Check Point CloudGuard CNAPP because CrowdStrike lacked many features. Check Point CloudGuard CNAPP is a more advanced version of CrowdStrike, integrated with AI capabilities. It also provides different automatic reports, such as compliance reports.
How was the initial setup?
Around three to four people were involved in the solution's deployment. Since there are multiple environments in the cloud, it takes an entire day to deploy the tool.
What other advice do I have?
The solution's cloud security posture management scans your cloud environment and cloud-configured policies and gives you a report of all the loopholes in your cloud environment. You can also get compliance reports from the solution, and I am completely satisfied with its effectiveness.
The solution's cloud security posture management identifies risks most critical to the business and segregates them into low, medium, and high categories. The solution's workload protection capabilities provide protection for VMs. The scanning provided by the solution's workload protection capabilities helps us identify problems before they go live.
We can schedule the solution to scan our cloud environment daily for vulnerabilities. The solution takes 20 to 25 minutes to scan the entire cloud environment. Earlier, it used to take an entire day because we had to perform all the manual tasks to find out all the loopholes in our cloud environment.
Before using the solution, we used to spend an entire day finding all the loopholes in our cloud environment. Check Point CloudGuard CNAPP automated most of our tasks by providing automatic reports to our security team. We also use the solution's CDR capabilities.
The visibility we get from the solution's CDR capabilities helps simplify incident investigation time or process. After providing all the loopholes in our cloud environment, the solution provides a step-by-step remediation plan to fix particular vulnerabilities. We extract the report from the tool and work on the patching part.
We perform intrusion detection and threat hunting from the same console. Check Point CloudGuard CNAPP is a SaaS-based solution. All the configurations have gone through the secret key we fetch from the cloud environment and integrate with the solution. From there, it fetches all the configurations for the entire cloud environment.
I would recommend the solution to other users.
Overall, I rate the solution ten out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Presale security at a comms service provider with 5,001-10,000 employees
Help us detect anomalous behavior and respond to threats before they become an issue
What is our primary use case?
We mainly use it as a CSPM solution.
How has it helped my organization?
It gives us clarity.
What is most valuable?
The most valuable feature is the ability to see our customers' environments if they use more than one cloud provider, such as AWS, Google, and Azure.
Also, CloudGuard CDR's intrusion detection and threat hunting capabilities are good enough. They help us detect anomalous behavior and respond to threats before they become an issue.
What needs improvement?
There are regulatory requirements. I would like to be able to pick the regulation I would like to scheck compliance with and it would tell you where you stand on that regulation and what you are missing to reach compliance. And it shouldn't matter which cloud we're dealing with; we would have these possibilities.
For how long have I used the solution?
I have been using Check Point CloudGuard CNAPP for about two years.
What do I think about the scalability of the solution?
Scalability really isn't an issue with everything in the cloud. That's the essence of a cloud product: the scalability you get compared to on-prem.
How are customer service and support?
Their technical support is perfect. When we contact them, they answer immediately. Their support knows the platform very well.
Which solution did I use previously and why did I switch?
We did not use a different solution before.
How was the initial setup?
It's very simple to set up because it's all in the cloud.
What was our ROI?
We have seen a return on investment. It can reduce the human resources we need. Also, there is ROI from everything connected to the fact that it's in the cloud: I don't need someone for management or to pay for on-prem resources, such as CPU.
What's my experience with pricing, setup cost, and licensing?
If I compare the price of CloudGuard, Palo Alto is more expensive and others are less expensive. CloudGuard CNAPP is in the middle.
Which other solutions did I evaluate?
We looked at other solutions, but with CloudGuard everything is located in the cloud. It's very convenient for us to manage our assets in the cloud.
What other advice do I have?
If they could reduce the price and provide more capabilities, it would be better.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Download our free Check Point Cloud Firewall (formerly CloudGuard Network Security) Report and get advice and tips from experienced pros
sharing their opinions.
Updated: August 2026
Product Categories
Firewalls Managed Security Services Providers (MSSP) Vulnerability Management Software Defined WAN (SD-WAN) Solutions Cloud and Data Center Security Container Security Cloud Workload Protection Platforms (CWPP) WAN Edge Unified Threat Management (UTM) Cloud Security Posture Management (CSPM) Cloud-Native Application Protection Platforms (CNAPP) Data Security Posture Management (DSPM) Compliance ManagementPopular Comparisons
SentinelOne Singularity Cloud Security
Microsoft Defender for Cloud
Prisma Cloud by Palo Alto Networks
Buyer's Guide
Download our free Check Point Cloud Firewall (formerly CloudGuard Network Security) Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- We're trying to choose between Fortinet or Checkpoint UTM firewalls. Can you help?
- Is Check Point's software compatible with other products?
- What is the pricing for Check Point software?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?




















