Over the years, with experience using Check Point applications, we have needed to protect ourselves against new attacks and attacks that could involve a significant loss of information. These requirements we took into consideration when preparing for the next need, and we were looking for a solution that we could integrate into our perimeter zone, enabling antivirus and protection functions for our teams and our users. As a result of all our complex needs, we implemented this under the solutions that we already use from Check Point.
Soporte técnico superior at Acobo
Centrally managed with good visualizations and very good security
Pros and Cons
- "It offers a centralized administration which allows us to be much more productive."
- "The solution gives us protection and a visualization of security analysis in real-time, is a strategic ally at the level of perimeter security within our organization, protects each one of our assets, and offers a centralized administration that allows us to be much more productive with a greater general visualization of everything that happens in our environment."
- "We need the ability to integrate this solution with the other existing solutions, such as Harmony."
- "One of the features that we could use in the future, or would be something additional that we as users and network administrators would want to see, is the ability to integrate this solution with the other existing solutions, such as Harmony."
What is our primary use case?
How has it helped my organization?
The solution gives us protection and a visualization of security analysis in real-time. Many of its functions and characteristics are of significant value to our institution. It's a strategic ally at the level of perimeter security within our organization and thus protects each one of our assets.
It offers a centralized administration that allows us to be much more productive and has, within reach, a greater general visualization of everything that happens in our environment.
What is most valuable?
One of the characteristics that has given us the most value when implementing the antivirus solution is being able to have a conglomerate of solutions and to be able to manage and give to the administrators something that can observe what is happening within the network. The dashboards allow us to export this information so it can be delivered to senior managers, who are often the ones in charge of making decisions at the infrastructure level in terms of security and management of our organization.
What needs improvement?
One of the features that we could use in the future, or would be something additional that we as users and network administrators would want to see, is the ability to integrate this solution with the other existing solutions, such as Harmony. We'd like to be able to manage all this from the same centralized management area that we use today for the perimeter lantern. It would thus provide a 360° integration of the features that we check regularly.
Buyer's Guide
Check Point Harmony Endpoint
September 2026
Learn what your peers think about Check Point Harmony Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
914,109 professionals have used our research since 2012.
For how long have I used the solution?
I've used the solution for three years.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Profesional Gestión Informática 2 - Especialista en Sistemas de Información at CompuGuana
Secures equipment, integrates with the cloud, and offers real-time filtering
Pros and Cons
- "It is integrated with a cloud platform that takes advantage of many emulation features in real-time filtering of malicious attacks."
- "Check Point Harmony Endpoint gives our organization and us a solution that we could manage while complying with internal and external policies and regulations."
- "For the future, I would like to see maybe a content-filtering emulation feature in Harmony Endpoint."
What is our primary use case?
We had the need for every employee to be protected inside and outside of the organization and mainly the sales areas, which often are exposed yet constantly have the greatest mobility within our organization. There were uncertainties and needs for security. We have been testing solutions that will allow us to complete this requirement. We opted for and used the Check Point Harmony Endpoint, which gave us easy administration and management of the equipment, ensuring safety in the best possible way.
How has it helped my organization?
Check Point Harmony Endpoint gives our organization and us a solution that we could manage while complying with internal and external policies and regulations. It's been a great ally in the security and internal strategies of our organization. After testing and using it, we have realized that its capacity is not only to secure the devices. It also gives added value in its way of managing and allows us to have control over inventory and management of the equipment that we have.
What is most valuable?
The best feature is that it can secure the equipment. It is integrated with a cloud platform that takes advantage of many emulation features in real-time filtering of malicious attacks. It has detection management with all types of computing power used in the equipment and outside of it in the cloud to which it is connected. This comes to give us a complete solution.
What needs improvement?
For the future, I would like to see maybe a content-filtering emulation feature in Harmony Endpoint. It would already be cataloged in the app. It would help filter other types of characteristics that we have in our equipment, and allow us to see the ones that are also very vulnerable. We'd like to have everything integrated into a single solution that communicates with the cloud.
For how long have I used the solution?
I've used the solution for a full year.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Check Point Harmony Endpoint
September 2026
Learn what your peers think about Check Point Harmony Endpoint. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
914,109 professionals have used our research since 2012.
Soporte técnico superior at Acobo
Minimally invasive, good for securing devices of remote users, and does not slow performance
Pros and Cons
- "It is minimally invasive. From a single installer, the equipment is protected and secured."
- "Its most outstanding feature is the power to manage everything from a dashboard, a window that is in the cloud, which allows us to manage it from anywhere in the world through any browser, from anywhere."
- "This is one of the most innovative solutions due to the fact that it includes many real-time content filtering features, management, and assurance of the transactions of what went in or out of our peripherals. That said, it is important to integrate other solutions to continue innovating in the market."
- "That said, it is important to integrate other solutions to continue innovating in the market."
What is our primary use case?
We were having several difficulties when we were presented with the design that we had to implement for the teams and personnel that had to work outside of the organization due to the pandemic.
As a result of all this and all these uncertainties, the need to secure the equipment was the reason we adopted the Harmony endpoint solution. It came to protect us inside and outside the institution. The equipment itself does not need to be connected and secured by the perimeter area of our organization.
How has it helped my organization?
We have adopted this solution in a quick, simple way. It integrated well based on these three characteristics:
1. It is minimally invasive. From a single installer, the equipment is protected and secured.
2. The solution is really not burdened with the need for computing power for the local management of the device, which will prevent the teams from slowing down.
3. It is integrated with a cloud administration which makes it easy, fast, and simple to manage each of your policies for the security of the equipment.
What is most valuable?
Its most outstanding feature is the power to manage everything from a dashboard, a window that is in the cloud, which allows us to manage it from anywhere in the world through any browser, from anywhere. This is a feature that came to give administrators the possibility to work from home. Today many of us are remote workers who are not at the company, on-site. We are not in a single site, and yet we manage well and have the capacity and the assurance of managing everything easily, quickly, and simply.
What needs improvement?
This is one of the most innovative solutions due to the fact that it includes many real-time content filtering features, management, and assurance of the transactions of what went in or out of our peripherals. That said, it is important to integrate other solutions to continue innovating in the market.
I would very much like to have the opportunity to see applications access at the web level and have applications from different brands and devices give simplicity to the management that we are going to need in the future.
For how long have I used the solution?
I've used the solution for about two years.
What do I think about the stability of the solution?
The solution is really stable. I have had the opportunity to try it on Mac and to try it on Windows. Its functionality, filtering, and execution have been really stable.
What do I think about the scalability of the solution?
It is a fairly scalable solution that is simple to use and quick to install on the devices of each user, that is, on their computers.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Cyber Security Engineer at AFRICAN CYBERSECURITY MARKET
Easy to set up, allows you to manage all the endpoints, works against every attack, and has helpful technical support
Pros and Cons
- "What I like best about Check Point Antivirus is that it's a good solution against phishing, malware, etc. It can do a lot in terms of security. You can also manage all the endpoints or users from the Check Point Antivirus platform, which is another feature I found valuable in the solution."
- "An area for improvement in Check Point Antivirus is its price because it's expensive. It would depend on the clients, but sometimes, you'll have clients who don't have many endpoints, so in that case, clients would find the price for Check Point Antivirus to be higher."
What is our primary use case?
We use Check Point Antivirus for cyber security purposes.
What is most valuable?
What I like best about Check Point Antivirus is that it's a good solution against phishing, malware, etc. It can do a lot in terms of security.
You can also manage all the endpoints or users from the Check Point Antivirus platform, which is another feature I found valuable in the solution.
What needs improvement?
An area for improvement in Check Point Antivirus is its price because it's expensive. It would depend on the clients, but sometimes, you'll have clients who don't have many endpoints, so in that case, clients would find the price for Check Point Antivirus to be higher.
For how long have I used the solution?
I've been using Check Point Antivirus for six months.
What do I think about the stability of the solution?
Check Point Antivirus is a stable solution. It's a very good solution.
What do I think about the scalability of the solution?
Check Point Antivirus is a scalable solution.
How are customer service and support?
The technical support for Check Point Antivirus is helpful, but sometimes, it isn't easy to reach the support team.
On a scale of one to five, my rating for Check Point Antivirus support is four.
How was the initial setup?
Setting up Check Point Antivirus wasn't difficult because it just required downloading the software, then installing it where you want to install it. There wasn't any issue with the initial setup of Check Point Antivirus.
How long the deployment of Check Point Antivirus takes would depend on the number of client endpoints, but the process could take just five or six minutes maximum. If your internet connection is slow, then deploying Check Point Antivirus would take longer.
What about the implementation team?
I implemented Check Point Antivirus myself.
What's my experience with pricing, setup cost, and licensing?
Check Point Antivirus is an expensive solution, especially for clients that don't have as many endpoints.
Check Point Antivirus has a free trial for one month, and within the trial period, there's no limit to the number of endpoints it can support, but when the trial expires, you'll have to buy the license, which covers one year.
You can't buy a license for the solution without being a Check Point partner first.
What other advice do I have?
I'm using the latest version of Check Point Antivirus.
I deploy Check Point Antivirus for the customer. I'm a network and cyber security engineer, so I provide Check Point Antivirus to clients. I'm an integrator, and currently, my clients have a total of one hundred fifty endpoints on Check Point Antivirus. I also manage the solution for clients, which includes reporting, looking into the traffic and attacks, then I explain whatever's going on to the clients.
Maintenance can be done on Check Point Antivirus, and you just have to select the user that's very vulnerable to attacks, then that would trigger maintenance, and Check Point Antivirus would update automatically. It isn't difficult as long as your internet is good.
I would recommend Check Point Antivirus to others because it's very good software, and it works against every attack. Check Point Antivirus is an important solution.
On a scale of one to ten, my rating for the solution is eight because there's still room for improvement.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Network Engineer at RSUP Dr. Sardjito
Great real-time scans, east central management, and helpful support
Pros and Cons
- "The reporting feature where we can see and monitor what happened on our client computers is useful."
- "Check Point Harmony Endpoint (endpoint antivirus) has helped our organization by preventing further damage to the computers and the network by detecting and taking appropriate action (quarantine, clean, delete) to viruses and malware."
- "They need to make the user interface on the server more intuitive and user-friendly."
What is our primary use case?
We use Check Point on our 500 computers to protect them from viruses and malware. The network is a protected local area network with limited connectivity to the internet. Not all computers are connected to the internet; only users with the necessity to connect can access it. We also increase the protection from viruses/malware by disabling USB ports for mobile storage. With all the protection steps taken, we still see that antivirus is a must to have as standard computer protection.
How has it helped my organization?
With all security steps taken to protect the network, viruses and malware still appeared in the network. Check Point Harmony Endpoint (endpoint antivirus) has helped our organization by preventing further damage to the computers and the network by detecting and taking appropriate action (quarantine, clean, delete) to viruses and malware.
By doing this, our organization's business can maintain its operational state without any significant disturbance, and that is the most important thing to achieve.
What is most valuable?
Some of the most valuable features from Check Point include:
1. Its ability to run real-time scans in the background and detect all the malware and viruses while taking action to clean the system from the threat.
2. On-premise centralized management, so the client can do signature updates locally and save the internet bandwidth.
3. The reporting feature where we can see and monitor what happened on our client computers. For example, which client has out-of-date signatures, which client is infected by what virus, et cetera.
What needs improvement?
Some areas of improvement could be :
1. Making the user interface on the server more intuitive and user-friendly.
2. Making it easier for the user to do tuning and configuration to the server or the client application. For example, to turn off notifications, the user should be able to do that with some clicks on the user interface instead of searching and reading about how to do it in the knowledge base first and then trying to do it.
3. Our application version is quite old, and Check Point already released a newer version for endpoint protection, which includes a cloud version. After doing some trials, we see that Check Point already made many improvements to the features and user interface.
For how long have I used the solution?
I've been using the solution for five years.
What do I think about the stability of the solution?
Tthis solution runs with good stability.
What do I think about the scalability of the solution?
If we deploy it on-premise, we should see the server hardware requirement first and match it with the number of clients we want to handle.
How are customer service and support?
Customer service gave good support when we needed it. For example, when we need support on renewing the license or when we need to upgrade the client version, they have a quick response time to deal with the problem.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We did use a different solution previously. We switched as we want to use the same brand for our NGFW and our endpoint protection.
How was the initial setup?
The setup was quite straightforward. We installed the server first and then made the client installer. If you have an active directory on the network, you can install it with push installation. That said, we don't have it, so we needed to install the client by accessing the client directly.
What about the implementation team?
We implemented the product together with the vendor and an in-house team. The vendor team has good knowledge when it comes to implementing the product.
What's my experience with pricing, setup cost, and licensing?
At the time we purchased it, the licensing was separated into some modules. There were antivirus modules, data protection modules, and full modules if I'm not mistaken. You should make sure that the module you choose fits your requirement.
Which other solutions did I evaluate?
We evaluated the ESET antivirus.
What other advice do I have?
Check Point has released their new product on endpoint protection, which includes a cloud version. You could try it for free to see if this product matches your needs before purchasing it.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
CEO / direktor at S3Next
Great sandboxing and phishing protection with the ability to expand
Pros and Cons
- "The product improved the overall security of our organization with the features like sandboxing and phishing prevention."
- "We need a higher maximum file size in the sandboxing feature."
What is our primary use case?
We were searching for a next-generation antivirus solution, and this was the best choice on the market.
We have 25 users who work from home and the office.
All computers have Windows Professional version 10 or 11 installed.
We implemented a policy in which every client (either PC or mobile) has to have the Endpoint protection software installed with all the available blades.
Our company's cyber security monitoring process includes centralized product monitoring.
How has it helped my organization?
The product improved the overall security of our organization with the features like sandboxing and phishing prevention.
We have centralized monitoring of the security of the clients even if they are not connected to our VPN network.
The e-mail and office solution is a great add-on to our existing Office 365 protection on our company's e-mails.
I also have to mention that we did not have our mobile devices protected before the implementation of Harmony mobile. That was really the next step in securing our company's overall IT security.
What is most valuable?
The sandboxing is good. We didn't have any file ransomware attacks since implementation.
The phishing protection works. It prevented a lot of nasty situations with fake websites.
Using this solution in e-mail and Office, we recognized how many man-in-the-middle attacks have been started to get some credential information from our employees.
In mobile, we didn't realize before how much harm can be done from the mobile devices in the network.
It replaced the ESET solutions we used before in our company.
What needs improvement?
We need a higher maximum file size in the sandboxing feature.
Maybe the exceptions could be made much more understandable and easy to use.
There should be an option added to temporarily disable the protection of all or some blades for testing reasons.
The email and Office solution could have some options for exceptions, for example: don't scan e-mails sent to the local PDF scanner e-mail address.
Maybe an option to auto-upgrade the client version to the next stable release of the client software would be nice.
For how long have I used the solution?
We have been using this solution for more then two years.
What do I think about the stability of the solution?
We didn't have any stability issues. We always use the stable releases of the client software.
What do I think about the scalability of the solution?
The solution offers very good scalability.
How are customer service and support?
So far, support is very good. I recommend them.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used ESET, which was not satisfying.
How was the initial setup?
It was straightforward.
What about the implementation team?
We implemented through a local implementor.
What was our ROI?
The protection it gives to the clients is priceless.
What's my experience with pricing, setup cost, and licensing?
Get in contact with your local Check Point solution provider to give you an offer regarding the implementation.
Which other solutions did I evaluate?
We evalute the Fortinet solution.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
CEO at JL Real Estate
Good technical support with constant updating of the EDR and good overall security
Pros and Cons
- "New viruses emerge day after day, and this EDR system helps action be taken before viruses affect the internal system."
- "Our administrative processes have been protected by this great EDR system, and all the devices used in our company are monitored by a system that is responsible for eliminating threats before they react."
- "Currently, you can only have general reports of the threats removed and the behavior of the database. You cannot get separate reports of the Check Point service-linked devices."
What is our primary use case?
Check Point Antivirus is being used with integrations in all our company software and also with connections to all the computers that we use in our work sectors. All areas of our company such as sales, marketing, or finance have Check Point Antivirus implemented.
This antivirus is capable of monitoring the state of the network and knowing if there is any threat in our business network while being able to clean it up immediately.
All departments within the company have been kept safe since day one of using Check Point. In order to connect all the computers and monitor them in real-time from the Check Point application, we use an app. From this app, you can see the status of all computers, restore them, and eliminate threats from a single panel.
How has it helped my organization?
Previously, we had trouble detecting data leaks and protecting the services we used in our business. Financial and marketing software services were the main affected areas.
After the implementation of Check Point, our computers have remained connected to a secure network where threats are prevented from entering thanks to the EDR system, and systems have been restored to a stable state where there are no threats.
We have kept our files safe and restored them to an original state before being affected by a threat thanks to the system recovery system.
We are very grateful for the results obtained in recent years. Our computers (the main source of work) have remained secure. Our employees can manage online campaigns and control the flow of clients without fear of being affected by any threat; it has a system of anti-malware and anti-phishing to detect threats in time.
What is most valuable?
The main valuable feature of Check Point is the constant updating of the EDR database in order to detect new threats.
This update system is responsible for inserting new viruses into a database so that it is easier to detect and eliminate them despite the fact that constant notifications are sent when the virus database is updated, I have no complaints about this feature as it has helped me to restrict the passage of new threats.
New viruses emerge day after day, and this EDR system helps action be taken before viruses affect the internal system.
Another of the striking functions is that Check Point monitors the online activity of each user, ensuring that they do not access websites that have a suspicious encryption code or that have an unusual certificate; this has helped us to navigate calmly and detect pages that might put our work integrity at risk.
What needs improvement?
One of the features that should be improved in Check Point is when it comes to obtaining reports on computer behavior. Currently, you can only have general reports of the threats removed and the behavior of the database. You cannot get separate reports of the Check Point service-linked devices. I would like to obtain separate reports for each computer, to see the behavior of the threats and be able to take action in time.
It does not need any other function, it is a fairly complete antivirus service that helps protect business networks on time.
For how long have I used the solution?
We have been using this solution for about two years. We did not expect such precise and potential results and our security service has been maintained in the long term thanks to this general security on all types of devices.
What do I think about the stability of the solution?
It turned out to be an antivirus that exceeded my expectations in the long run.
During the use that we have had in these last two years, our computers have remained protected 24 hours a day and seven days a week. On some occasions, threats have entered our computers, however, the system restore system has counteracted this without any problem.
It has been a stable antivirus, without any real problems.
What do I think about the scalability of the solution?
The process of scaling, implementation and use went quite well; it took approximately two software engineers and three cyber security experts to successfully implement the service. They were in charge of configuring the real-time monitoring system for computers and updating the status of viruses.
How are customer service and support?
Customer service was satisfactory.
During our implementation process, several questions arose about how the data leak detection system should be configured. All of these questions were answered immediately in a live chat with the Check Point team.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Previously, I used the Microsoft service, however, it was not able to protect all the threats trying to get into our business computers.
One of the main reasons why I stopped using the Microsoft Antivirus service, is due to the fact that it was consuming a lot of resources on the computers while it was running and while the EDR database was being updated. This directly affects the experience of our employees on the computer and limited them at work. Since we implemented the Check Point service, the consumption of resources decreased on a large scale and we managed to obtain better analysis and virus detection.
How was the initial setup?
Setting up the system was somewhat complicated, requiring several of our engineers and cyber experts to successfully implement the antivirus service.
The initial implementation took approximately one week to set up all the company's computers and synchronize them on the same protected network.
What about the implementation team?
The implementation was done with an internal team in our company; there was no involvement of a vendor team.
What was our ROI?
Our return on investment has been the protection of the entire work structure, our administrative processes have been protected by this great EDR system, and all the devices used in our company are monitored by a system that is responsible for eliminating threats before they react.
We are happy with the money spent on this great security software; our computers have been more protected.
What's my experience with pricing, setup cost, and licensing?
I would recommend that you have a good amount of capital to access a considerably good protection plan from Check Point.
Currently, the prices for installation and configuration are a bit high, and small or medium-sized companies could not afford these prices.
You need a trained team to implement the Antivirus system as quickly as possible since it is a bit difficult to configure.
What other advice do I have?
In a solution that is undoubtedly worthwhile, it has a perfect methodology for finding viruses before they react to the computer's files.
It has a very good interface, is easy to handle, and protects all kinds of services that are being used.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Manager of IT Security at a healthcare company with 5,001-10,000 employees
Comprehensive feature set and has good integration with other tools
Pros and Cons
- "A unique feature with this product is that it will detect if the user is entering their password on a website, and then block it."
- "The set of features is quite comprehensive."
- "Check Point users a pattern-based security module, which is something that can be improved."
- "Pattern-based security is not the latest architecture and it is insufficient because every day, there are approximately 380,000 new vulnerabilities and threats."
What is our primary use case?
Our SOC team uses this solution to observe any unusual behavior or processes running on the endpoint. For example, it is used for phishing detection.
The data is ingested to Splunk.
How has it helped my organization?
One of the problems with assessing this type of product is that you don't always know when it's working. You will see when something is wrong, where no threat has been detected. If nothing has happened then you don't know if there was no threat, or instead, the protection was quite good. Also, if no threat is found then it may be that the solution is not good enough to detect these types of malicious activities.
What is most valuable?
The set of features is quite comprehensive.
The Endpoint security solution integrates with the Check Point firewall services, so it's a combined approach to security.
A unique feature with this product is that it will detect if the user is entering their password on a website, and then block it.
What needs improvement?
Check Point users a pattern-based security module, which is something that can be improved. Pattern-based security is not the latest architecture and it is insufficient because every day, there are approximately 380,000 new vulnerabilities and threats. Using patterns is difficult because the threats can hide.
For how long have I used the solution?
I have been using Check Point Harmony Endpoint since I joined the company, several months ago. The company has been using it for longer.
What do I think about the stability of the solution?
From a stability perspective, I can say that we have had absolutely no problems.
What do I think about the scalability of the solution?
We have not experienced any issues with scalability. We have more than 10,000 users in the company. The users are across a variety of roles. It's used by everybody. As our company grows, the usage also increases.
At this point, there is nowhere we can extend its usage.
How are customer service and support?
I do not have personal experience with technical support so I can't assess them. However, I have heard that it is quite reasonable, so I think that it's fine.
Which solution did I use previously and why did I switch?
We also use Microsoft Defender for Endpoint.
I am building my own opinion of which is better, between the Check Point product and the Microsoft product. Depending on where you do your research, you get different opinions, although much of that is supplier-driven.
In my former organization, I was using CrowdStrike. It has much better performance when looking only at processes.
How was the initial setup?
I was not part of the implementation because it was in place when I joined the company.
Which other solutions did I evaluate?
I have done research on several similar products to try and determine the best-in-class.
What other advice do I have?
From my point of view, I can't see that any features are missing. My primary complaint is that it relies on patterns for threat detection. It does the job, we get our logs, and we get the relevant warnings. Overall, it's a good product.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Protects against malware, phishing, DDoS and MITM attacks
Pros and Cons
- "SandBlast Agent is always working in the background collecting sensitive data, forensics, and notifying users whenever there is a chance of a brute-force attack into our systems. Otherwise, it has been protecting our data at various geographies along with the endpoints that we set up on the cloud. They have been able to filter out or thwart any attacks from the very word, "Go," and make our work very safe and smooth."
- "So far, our security has been 100 percent, we have not felt that a data breach has happened, so we are pretty happy with SandBlast Agent."
- "It needs more documentation and better ease of deployment. For documentation, it needs more information about integrating the endpoints on SandBlast Agent mobile as well as on desktop platforms."
- "It needs more documentation and better ease of deployment."
What is our primary use case?
Our use case for SandBlast Agent is that our team is set up in multiple geographies, such as, India, Sri Lanka, UK, North America, and Australia (where we have a bit of business). We have courses for an educational client which need go to market, schools, instructors for hire, and students. Given that there was COVID-19 and a lockdown, there was an increase in the digital demand for learning courses. So, we wanted to secure our courses from cyber attacks. Thus, we wanted an end-to-end security system in place that would prevent/save us from cyber attacks and protect our sensitive data.
Systems can be accessed on multiple devices, whether they be laptops, Macs, Windows, or mobile devices. Those devices could be connected to a home or public network on a platform, like a Chrome browser, Mozilla Firefox, or Safari. We have been able to track this through reports by seeing how vulnerable those agents are to attacks. Then, we determine how they can become more secure, so we can stay on the cloud and mobile devices. These are the areas where we are trying to use their reports and tighten our security, putting more systems in place to prevent attacks.
How has it helped my organization?
Cognizant had a malware attack recently, as the threat of cyber attacks has increased, and a lot of customer data was compromised. However, because this Check Point SandBlast technology was there in place, we were able to thwart the cyber attacks that were attempted. Most of the time, these attacks are college kids trying to do some phishing attacks or look into sensitive data. With SandBlast, it is possible to identify those attacks at the very source, preventing those attacks and keeping us secure.
Going forward, we are planning to extend it to authors and professors who are helping us author our content. For example, if there is an author who will be taking help from various professors in university or instructors in schools, then they will need to get their inputs. What happens is they expose their course to those authors on their networks, devices, laptops, mobiles, or tablets. They access the course through an application. Now, those authors and professors don't have an app login because they might be a third-party vendor. So, we are trying to have the SandBlast Mobile version on this site as well, based on the impressive performance of SandBlast, so our data remains secure and more users are able to utilize our systems and access our data. This will make it more valuable for our end users.
On the coverage part, there are malware, phishing, operating system exploitations, denial-of-service attacks, and man-in-the-middle attacks (MITM), so we have classified the attacks that can happen on a learning, educational system, like ours into five to six categories. With SandBlast Agent deployed in the cloud, we have good coverage to cover these attacks, as it is very extensive. The best part is (through our reports) we were able to identify the type of attacks. So far, our security has been 100 percent. We have not felt that a data breach has happened, so we are pretty happy with SandBlast Agent.
What is most valuable?
SandBlast Agent is always working in the background collecting sensitive data, forensics, and notifying users whenever there is a chance of a brute-force attack into our systems. Otherwise, it has been protecting our data at various geographies along with the endpoints that we set up on the cloud. They have been able to filter out or thwart any attacks from the very word, "Go," and make our work very safe and smooth.
We set up reports, which were weekly or biweekly. Then, our admins, who are mainly working with SandBlast Agent, were able to look at daily reports or even more granular reports, hourly or daily, based on their customizations.
The automated part keeps it running in the background. It only gives us notifications when there have been major attempts to breach data. We also have reports that show logs for what external, unauthorized systems tried to access the data. Through those reports, which are automated in the background, we are able to do what we want in order to keep our systems secure. We feel the automation part is pretty good with this application.
What needs improvement?
It needs more documentation and better ease of deployment. For documentation, it needs more information about integrating the endpoints on SandBlast Agent mobile as well as on desktop platforms.
For how long have I used the solution?
I have been using this solution for six to eight months.
What do I think about the stability of the solution?
The SandBlast Agent is stable. Our users can work on a laptop, remote device, or tablet with this app running in the background. If an attack event is triggered, then the user and administrator both get alerts. The impact of this application running in the background on the battery life or on any other application is negligible; the battery performance is not impacted. It is such a digital world. Users are always now online and on social media, so they need to feel that their personal data is also not compromised.
Our key 15 users maintain the solution.
What do I think about the scalability of the solution?
We have around 15 key users, but it is being used to monitor over 1,000 users across the globe. We are planning to scale it up to 1,500 users/authors in North America alone for Q4. We have also certain authors who are coming up in Sri Lanka and Australia.
We are looking to scale this up on mobile devices and tablets. We want to see how the performance will be there. With portable devices, people are sitting in a Starbucks, cafeteria, or in a public area, and we want to see how the security is established on a public network. So far, we have seen that it has been quite good during these COVID lockdowns. People who have been working from home have it also installed on shared networks with two neighbors or a group of people, which is prone to attacks. So far, it has been good, but we want to see the performance when we roll out to more users.
Which solution did I use previously and why did I switch?
We had a legacy system in place before using SandBlast Agent. The features, efficiency, and our pre-existing relationship with Check Point drove us to going with SandBlast Agent.
How was the initial setup?
When we were working with their team, it was easy to go ahead with the setup. However, once we started doing it for our users on our own, we found it to be a little complex and needed more help. So, we came back to the SandBlast support team for help.
When we had to do a second deployment, including the next 10 members from the team of 15, we found that the documentation for the initial setup wasn't thorough. Our team had to reach out to the customer support, and they were good. However, from a deployment point of view, a little more documentation would have been helpful.
The deployment took approximately three months.
Our deployment strategy was that we wanted to be digital and do things on the cloud.
What about the implementation team?
We worked with the SandBlast team for deployment and that was completed in under three months. We had our initial trial period for two weeks. We had a team of four to five members who worked with the SandBlast teams from a deployment point of view. Everything went pretty smoothly.
Our experience with the Check Point support team was pretty good. They were able to help us with the deployment and integration for collaboration apps, like Slack, Microsoft Teams, or Jira. They also were able to help us with internal apps. So, they were able to help us with all those integration points, which was really helpful.
The staff involved was four to five members. However, we felt that if the SandBlast team was onboard, then we didn't need that many people. We could do the deployment with two members from our side and somebody helping from the SandBlast side.
What was our ROI?
If we have to look in terms of qualitative value, there has been good ROI. That is why we are planning to go ahead with the scaling of bringing more users onboard and having our security being taken care by SandBlast.
The solution has reduced the number of security analysts we have needed, enabling them to work on things they didn’t have time for before. From the automated reports point of view, we always used to feel that for whatever legacy system that we had in place we had to do more work to capture the area we wanted in our reports. With SandBlast Agent, we are able to do that through automated reports and its inbuilt functionality for reporting.
Due to a combination of factors, we now have three security analysts instead of six. So, we are almost down to 50 percent of team strength from the point when we started using SandBlast Agent. We have been able to cut down the cost after starting to use this platform.
What's my experience with pricing, setup cost, and licensing?
One of the key factors that made us go with this solution was the pricing.
On the licensing part, there was an initial complementary set of licenses offered in the initial onboarding package, either 15 or 20. Then, we had some complementary licenses in the initial purchase of the package. That was pretty useful.
Which other solutions did I evaluate?
We did explore one more option, which was an offering from Microsoft. The features, efficiency, price point, and pre-existing relationship that we had with Check Point made us go with SandBlast Agent.
Some of SandBlast's features include ease of deployment on cloud and mobile device coverage, which is our future coverage area. We found that it gave us good operational efficiency on mobile devices. It runs in the background, providing coverage for various parameters in the logs and triggering alerts to users and administration only when there is an attack. Otherwise, it is able to block the attack, URL, or user in the background before notifying them. These are some of the features that stood out and differentiated it from Microsoft Windows Defender.
What other advice do I have?
In this digital ecosystem, we need to secure our data at every moment and have something in place, like SandBlast, to keep our networks scanned at each moment. You never know where the next attack is coming from: malware, phishing, denial-of-service attacks, man-in-the-middle attacks, etc. Therefore, we need to be on the lookout for these type of attacks and any other unauthorized URLs trying to get into our systems to access data for any purpose.
Have a system in place to keep your data secure. You should definitely give SandBlast Agent a try. It is worth it. The solution is very secure and has very impressive features.
I would rate this solution as an eight out of 10. We are very impressed and happy with the features, its stability, reports, and the parameters covered in the reports.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor. The reviewer's company has a business relationship with this vendor other than being a customer: Partner
Smarter Endpoint Security – Powered by Harmony
Pros and Cons
- "We love the reports and monitoring they provide."
- "Infinity Portal sometimes requires more performance."
What is our primary use case?
Check Point Harmony Mobile was provided through an installed agent which has very light protection against malware and ransomware, among others.
In our country, many ransomware threats have been generated at the country level, for which it was worrying that we had kidnapping or encryption of our data. At the management level, the request was given to provide additional security to protect us. The tool has been very good.
We tested this Check Point tool to assess the performance of our endpoints, and shield them safely while increasing the protection of our platforms.
How has it helped my organization?
Our company was looking to strengthen endpoint security with an additional layer of protection. Since we already manage various Check Point solutions across our infrastructure — with consistently positive results — we decided to evaluate Harmony Endpoint as part of our strategy.
After thorough validation, Harmony Endpoint has proven to be highly effective in safeguarding our endpoint devices. It’s been running smoothly, and the performance has met our expectations.
We’ve observed detailed reports of attempted attacks, and thanks to the platform’s visibility and control, we’ve been able to respond quickly and mitigate vulnerabilities. The presence of malware in our environment has significantly decreased.
Overall, Harmony Endpoint offers strong features and reliable protection, making it a valuable component of our security ecosystem.
What is most valuable?
The characteristic that most attracts our attention is the administration portal. It doesn't require a management server since its licensing and management are through the Check Point Infinity Portal. It is very intuitive and easy to implement.
The way in which the agent is installed on the computers is very easy, it does not consume almost any performance of the server or final computers, in this way there is no need to worry about increasing resources to be able to protect them with Check Point Harmony Endpoint.
We love the reports and monitoring they provide. It helps us quickly see what vulnerabilities we have on our endpoints.
What needs improvement?
We have few disadvantages or improvement points. However, the Infinity Portal sometimes requires more performance. It is a small detail. However, it could be improved.
On the other hand, it is also essential that the manufacturer improves the public documentation so that users can better understand how it can be implemented with best practices.
Finally, at the support level, we believe that Check Point can improve. Sometimes the answers are provided at dawn, which makes it more challenging to solve.
For how long have I used the solution?
We’ve been using Check Point Harmony Endpoint for over three years now, and the results have consistently exceeded our expectations. From day one, it’s provided solid endpoint protection across our organization, adapting seamlessly as our infrastructure evolved.
What do I think about the stability of the solution?
yes
What do I think about the scalability of the solution?
yes
How are customer service and support?
Very Good Experience
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Previously we only had or used Microsoft's antivirus or endpoint, however, we had all non-centralized security. Through this tool, we can centralize everything in the Infinity Check Point Portal.
What's my experience with pricing, setup cost, and licensing?
Licensing is per endpoint, which is why we think is good. The cost is competitive, and its features are very good.
Which other solutions did I evaluate?
We validated several manufacturers, however, we did not want to have separate solutions. It seems to us a better option to have only Check Point.
What other advice do I have?
I recommend this security tool, it is always important to test the tool at the test level to decide if it is what you are looking for.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Check Point Harmony Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2026
Product Categories
Endpoint Protection Platform (EPP) Anti-Malware Tools Endpoint Detection and Response (EDR)Popular Comparisons
Cortex XDR by Palo Alto Networks
CrowdStrike Falcon
Microsoft Defender for Endpoint
SentinelOne Singularity Endpoint
IBM Security QRadar
Elastic Security
Huntress Managed EDR
TrendAI Vision One
Trellix Endpoint Security Platform
WatchGuard Firebox
HP Wolf Security
Check Point Harmony SASE (formerly Perimeter 81)
Microsoft Defender XDR
Symantec Endpoint Security
Buyer's Guide
Download our free Check Point Harmony Endpoint Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which antivirus is best for isolated work PCs?
- Is Check Point's software compatible with other products?
- What is the pricing for Check Point software?
- What is the biggest difference between EPP and EDR products?
- Can Cylance be used with Symantec or Kaspersky endpoint solutions without conflict?
- When evaluating Endpoint Security, what aspect do you think is the most important to look for?
- What's the best way to trial endpoint protection solutions?
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- Which Endpoint Protection Solution offers Zero Trust (ZTN) as a feature?
- What to choose: an endpoint antivirus, an EDR solution or both?




















