Check Point SandBlast Network was acquired when the company needed to improve its security posture in different characteristics. The company had a deficiency in monitoring the corporate network. This tool analyzes the traffic network in a way that is really efficient, and of course, the best thing is that it identifies suspicious patterns and behaviors. With this solution, we managed to improve the entire comprehensive posture of the critical assets of the organization's network.
Cloud computing at ITQS
Helps detect and prevent attacks and offer helpful sandbox analysis
Pros and Cons
- "The solution can detect and prevent attacks that may be encrypted."
- "The management of alerts could improve them a bit - especially in event management."
What is our primary use case?
How has it helped my organization?
Within the first six months of implementing Check Point SandBlast Network, we have managed to improve the security posture little by little. We have managed to reduce some threats, and with this, we have managed to locate where to improve the defense against malware, exploits, and zero-day attacks.
One of the features that has helped us a lot is the capacity for sandboxing analysis and deep inspection of SSL/TLS traffic, which has enabled us to neutralize malware that the other technologies we have were not able to identify.
What is most valuable?
SandBlast Network has five very notable features, including a sandbox analysis. It allows you to execute files in a controlled environment to identify malicious behavior without having to affect the productive side. It has SSL traffic inspection.
The solution can detect and prevent attacks that may be encrypted.
Integration with third-party tools has been of great help, the visibility it gives over the entire network.
The reports are helpful.
What needs improvement?
The configuration could be optimized. The usability could improve. They need to make the guides more specific with images, as it is very complicated to guess where each option is located.
The management of alerts could improve them a bit - especially in event management.
In terms of performance, at some point, I have come to feel that it drops during certain hours.
Some additional features that can be added may be the use of Artificial Intelligence (AI) and Machine Learning (ML).
Buyer's Guide
Check Point SandBlast Network
May 2026
Learn what your peers think about Check Point SandBlast Network. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,311 professionals have used our research since 2012.
For how long have I used the solution?
I've used Check Point SandBlast Network for approximately three years.
What do I think about the stability of the solution?
It is a reliable and stable solution that resists large workloads.
What do I think about the scalability of the solution?
It has great scalability with third-party tools and has shown a remarkable ability to adapt.
How are customer service and support?
We have only used support once. For the moment, the response to incidents has been good. They should improve the guides since they are somewhat complicated to understand.
Which solution did I use previously and why did I switch?
Before SandBlast Network, we used a combination of solutions and some of the same Check Point products that we had several years ago. We saw the need to opt for this and leave others out.
How was the initial setup?
There is a certain degree of complexity in the setup process, and the guides are not very clear.
What about the implementation team?
The implementation was generated with the vendor. Its configuration with the other tools is a little different and complex. However, the overall experience was very good.
What was our ROI?
The ROI can vary since. You can cover future expenses with security tools that help achieve a reduction of incidents, improved regulatory compliance for fewer fines, and business continuity.
What's my experience with pricing, setup cost, and licensing?
The cost and licensing will always be expensive. That said, we opted for this tool and removed two others, so we felt we achieved a good amount of savings.
Which other solutions did I evaluate?
This brand has always been evaluated since we already have some Check Point tools.
What other advice do I have?
Always evaluate the technologies that have been implemented. Check in with the new ones that are on the market. That can help you save money.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Technical Consultant- Cyber Security at Ivalue Infosolution
An affordable and easy-to-deploy tool that is useful for protection against malicious threats
Pros and Cons
- "The main feature of the solution is that it protects against malicious threats from the outside."
- "By using SandBlast, we can effectively manage everything."
- "There should be some improvement in the solution's stability and scalability."
- "There should be some improvement in the solution's stability and scalability."
What is our primary use case?
We are using it on top of email security and web security.
What is most valuable?
The main feature of the solution is that it protects against malicious threats from the outside. We utilize SandBlast solution to mitigate threats from outside to inside. As an ATP, the solution's role is to defend against threats and provide protection to the customer using the SandBlast as an ATP solution.
What needs improvement?
There should be some improvement in the solution's stability and scalability.
For how long have I used the solution?
I have been using Check Point SandBlast Network for the past three months.
What do I think about the stability of the solution?
Since the stability of the tool is good, I rate it nine out of ten.
What do I think about the scalability of the solution?
We have more than 50 customers, including IT heads, CTOs, and all are working on the solution.
I rate the solution's scalability a nine out of ten.
How was the initial setup?
The initial setup is straightforward, and it's a cloud-based solution.
The deployment is very easy. So, the deployment team is deploying this solution to the customer environment.
For deployment, I do not have any idea since I do the PoC part. It depends on the customer environment, the customer's use cases, and the design of the solution. We provide the solution based on the deployment. So it's not complex. It is very easy.
What about the implementation team?
We have certified engineers in-house who are responsible for deploying and implementing the solution. We have expert engineers specialized in Check Point.
What's my experience with pricing, setup cost, and licensing?
The pricing is quite effective, not excessively high. On a scale of one to ten, where ten is the highest price, I rate the pricing a nine.
What other advice do I have?
We are pitching the customer the benefits of the cloud. However, I don't have detailed knowledge about Check Point. So, to be honest, I lack deep visibility or specific information regarding the need for a Check Point experience.
I would tell those individuals seeking anti-threat protection on top of web security and email security to consider SandBlast. By using SandBlast, we can effectively manage everything.
The solution is a single premium package suitable for heavy usage.
Overall, I rate the solution a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
Buyer's Guide
Check Point SandBlast Network
May 2026
Learn what your peers think about Check Point SandBlast Network. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,311 professionals have used our research since 2012.
Consultant at ITQS
Improves security, scans fast, and has lots of helpful features
Pros and Cons
- "The Check Point SandBlast Network uses caching and static analysis to actually reduce the time it takes to scan and isolate the same file for incoming data compromises."
- "When you have to scan emails that come with attachments, it takes a long time to examine them, which causes other emails not to be scanned, which can cause some danger to our organization."
What is our primary use case?
One of the great needs that our company was going through was the need to protect its infrastructure against hackers or malicious bots, as well as cyber-attacks.
We wanted a robust technology that would meet our objectives. We wanted to prevent attacks on our business environment. In addition, as a company, we already use various Check Point technologies and we wanted to continue with the same scope and security that they have offered us in recent years. That's why Check Point SandBlast Network provides us with that security by scanning everything that passes through our network.
How has it helped my organization?
Since implementing the Check Point SandBlast Network tool in the organization, in an environment of around 200 servers (both physical and virtual), we also have three high-availability clusters.
Before, we only depended on a firewall; however, this acquisition has helped us a lot to improve the entire security environment of our company. In addition, the tool has excellent features such as Threat Emulation and Threat Extraction as well as sandboxing. We can even extract the malicious content of the files or block files completely and can also work as email APT and can remove malicious content from the email body.
What is most valuable?
We have found several valuable features in the Check Point SandBlast Network. One of those features is that we can download a file and emulate it outside of our company and know that it is clean.
Like any other company that handles sensitive data, we needed a tool that would protect our network and be able to improve security day by day.
The Check Point SandBlast Network uses caching and static analysis to actually reduce the time it takes to scan and isolate the same file for incoming data compromises.
What needs improvement?
When you have to scan emails that come with attachments, it takes a long time to examine them, which causes other emails not to be scanned, which can cause some danger to our organization. Another problem is that some PC with minimum characteristics makes them slow, causing slowness in computers where we have to invest in PCs to increase their performance or change them
Another point to improve is the support since they do not give an effective and fast solution to the clients when they have problems with any tool or feature.
For how long have I used the solution?
I have been using and implementing this tool for about three years..
What do I think about the stability of the solution?
It presents medium stability. Sometimes the portal is hard to enter, and that affects the performance of equipment, however, in general, it has excellent stability.
What do I think about the scalability of the solution?
The solution has excellent scalability.
How are customer service and support?
The support they offer is not very good since they take a long time to provide a solution to your problem.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Previously we had a firewall and we chose to implement this tool since we have always worked with this brand, and it has been very feasible for us to continue to do so.
How was the initial setup?
The configuration is simple it is very user-friendly.
What about the implementation team?
The provider provided us with a support agent to ensure that the configuration was made.
What was our ROI?
Of importance in a company is the security of its computer platforms. When making an investment with these tools, you are taking care of an important heritage that will double your profits.
What's my experience with pricing, setup cost, and licensing?
Check Point offers good prices. There are costs. However, that should not stop a company from maintaining good security.
Which other solutions did I evaluate?
Other brands are not evaluated since we wanted to have the Check Point trend and not mix brands.
What other advice do I have?
It is a very good, reliable, and robust tool. You can be confident that it will protect the organization.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Principal Cybersecurity Architect at a tech vendor with 10,001+ employees
Rich features and strong customer support have enhanced malware inspection capabilities
Pros and Cons
- "I have seen both money and time saved as a return on investment."
- "Check Point SandBlast Network can be improved by adding more integration capabilities, such as integration with third-party firewalls, third-party EDR solutions, and SIEM."
What is our primary use case?
The primary use case for Check Point SandBlast Network is malware inspection, specifically the submission of files.
What is most valuable?
The product has rich features and excellent customer support. It's effective in meeting the specific needs of customers through deployment and integration. These features are important as they fulfill the purpose required by customers.
What needs improvement?
Check Point SandBlast Network can be improved by adding more integration capabilities, such as integration with third-party firewalls, third-party EDR solutions, and SIEM.
For how long have I used the solution?
I have been using Check Point SandBlast Network for more than five years.
What do I think about the stability of the solution?
Check Point SandBlast Network is almost stable.
What do I think about the scalability of the solution?
The scalability of Check Point SandBlast Network is good.
How are customer service and support?
The customer support is good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
This is the first solution I have used.
What was our ROI?
I have seen both money and time saved as a return on investment.
What's my experience with pricing, setup cost, and licensing?
The experience with pricing, setup costs, and licensing was good.
Which other solutions did I evaluate?
Before choosing Check Point SandBlast Network, I evaluated Fortinet and Trellix.
What other advice do I have?
I would advise others to evaluate thoroughly before deciding, especially in terms of integration with other third-party solutions. I would rate the overall solution nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head of IT Department at AS Attīstības finanšu institūcija Altum
Secures emails and prevents security breaches
Pros and Cons
- "It is a stable solution."
- "The cost is a little bit high-end, and you need to get precise performance metrics in order to get the correct size. Improvements are required in both areas of the tool."
What is our primary use case?
I use the solution in my company for securing incoming emails, specifically the ones with attachments. The tool scans the incoming documents for specific network traffic. We also use the tool to inspect and download files for malware or malicious content.
How has it helped my organization?
With the tool, malware does not get into our environment, and the user does not open emails with malware in them. We don't get any security breaches, which is the most important benefit of using the tool in our company.
What is most valuable?
The most valuable feature of the solution stems from the fact that since the tool is in front of the traffic, it catches a lot of stuff that some of our email cloud protection products don't see, as they are mostly antivirus-based. Check Point SandBlast Network is a behavioral-based tool.
What needs improvement?
The cost is a little bit high-end, and you need to get precise performance metrics in order to get the correct size. Improvements are required in both areas of the tool.
For how long have I used the solution?
I have been using Check Point SandBlast Network for four or five years. I work with Check Point R81.20.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
In terms of scalability, as we have an appliance in place, I would say that we can add additional appliances and use the load-balancing functionalities in the tool. If we are looking at things from just a single appliance perspective, we are stuck with it. You need to upgrade an appliance to another one if you need more performance. Check Point SandBlast Network is not optional as a virtual machine.
In our company, we use just one appliance.
All of our employee traffic goes through the tool. Around 300 people in our company use the tool.
How are customer service and support?
In our company, we haven't had so much need for support because the product is more or less a standard one. We had one issue a few years ago with false positives, but that was quickly resolved.
Which solution did I use previously and why did I switch?
I have not worked with any product similar to Check Point SandBlast Network.
How was the initial setup?
The setup was quite easy initially because you have many different options on how you want to set it up, like whether you want it to be able to monitor or intercept. Fine-tuning was needed because of the scaling needs. Sometimes, you get false positives, as with any product.
The solution was deployed by two people.
The solution can be deployed within a day.
Firstly, we had a PoC where the vendor supplied us with the device, which we plugged into a passive mode. We checked how it works, what it protects, and what our other solutions do. When we bought the tool, we implemented it as an email gateway, so all the traffic goes through it, and now it blocks everything that it finds bad.
What about the implementation team?
For the product's deployment phase, my company got help from Check Point and a third party.
What was our ROI?
Our company gained peace of mind from using the tool. With Check Point's firewall tools, it is quite hard to pinpoint the investment.
What's my experience with pricing, setup cost, and licensing?
The product's cost is high.
Which other solutions did I evaluate?
I think we tried Check Point SandBlast Network as the first tool in our company, and we stuck with it because it made sense because it was quite well integrated into the other Check Point products, and we didn't want to try to integrate it with other tools.
What other advice do I have?
Though I think it could become a complex task, the feature set is there in the tool to meet the needs of its users.
When it comes to the maintenance part, one needs to understand that when it comes to Check Point, the releases are the same, and it is almost the same as the gateway.
I recommend the tool to others. Other people need to test the tool before purchasing it. There is also a cloud version, so one should test whether that is a better option. Yeah. Actually, it is quite a valuable product.
I rate the tool an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Soporte técnico superior at Acobo
Helps detect and understand vulnerabilities with good advanced protection
Pros and Cons
- "The product gives us advanced protection, including artificial intelligence and machine learning technologies and services."
- "We have found a need for the application to be a bit more elastic, bringing it to SAS services and not IAS."
What is our primary use case?
With so many threats at the computer level, we have sought solutions that allow us to improve our internal perimeter security at the technological level to minimize exposure and one by one ability to reduce recovery time in the event of an attack.
As a necessary part of security, we needed a solution that could integrate easily with other solutions and third-party solutions to allow us an in-depth defense against any threat that we detect. Based on all this, we effectively wanted to protect ourselves with the best solution and brand on the market.
How has it helped my organization?
The product gives us advanced protection, including artificial intelligence and machine learning technologies and services. It is managing to protect us from malware fishing, cyber-attacks, and network exploits and allows us to emulate each of these attacks in a controlled environment. It is one of the few solutions that manage to emulate in real-time and minimize exposure to vulnerabilities since it detects if items have been analyzed and emulated, thus giving a 100% solvency solution before any infiltration.
What is most valuable?
One of its most outstanding characteristics is that it offers us a fairly accurate forensic analysis. It is detailed and it does allow us to equip and understand the causes and the impact of each of the vulnerabilities or attacks. This allows us to take preventive measures and react to disasters, giving us correct solvency guidelines. All these characteristics allow us to understand in depth what has happened and why this reaction to the attack is one of the characteristics that we must understand that is outstanding and of a lot of help or guidance.
What needs improvement?
We have found a need for the application to be a bit more elastic, bringing it to SAS services and not IAS. We need to understand where to find edge analytics in Edge. Right now, it's a bit sparse and not available for some of the products that we have in the services suite. I'd like to see it integrate with more third-party services so that we would have the ability to be an edge service and have high emulation in functionality.
For how long have I used the solution?
I've used the solution for two years.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Perimeter Security Administrator at a security firm with 51-200 employees
Reliable with good performance and the option for a free trial
Pros and Cons
- "It looks out for new cyber threats and generates predictions based on behaviors that are already detected on a daily basis."
- "Sandblast is one of the tools provided by Check Point, which has given us the best zero-day prevention in real time."
- "Today, we have it as part of a solution or a package. However, we'd like there to be a way where we can have the solution's features available to us in a cheaper way in the future."
- "Today, we have it as part of a solution or a package. However, we'd like there to be a way where we can have the solution's features available to us in a cheaper way in the future."
What is our primary use case?
We were looking for several solutions that would meet certain network threat prevention needs - one of which was the tendency to have user workflow control points that could be affected on a day-to-day basis. Given these situations, we needed to provide better zero-day protection in real-time that would reduce corporate expenses and the consumption of costs generated by the security department while still getting information in real-time 24 hours a day. We came across different solutions that met these characteristics; however, in the end, we managed to choose and segment Sandblast computing services.
How has it helped my organization?
Sandblast is one of the tools provided by Check Point, which has given us the best zero-day prevention in real time. It offers optimized security management, which facilitates monitoring, analysis, reporting, user segmentation, detection, and analysis within our network.
It is providing network administrators with productivity without interrupting their regular operations.
The zero-day protection and prevention features that are included in the solution enhance the intelligence of searching for threats, infections, or attacks under interpretation or prevention technology. It looks out for new cyber threats and generates predictions based on behaviors that are already detected on a daily basis.
What is most valuable?
We look forward to seeing many favorable characteristics of the Sandblast solution in the future. However, we must take into account that among the appliances that it comes installed and preconfigured on. Check Point provides the solution from Sandblast and offers it to be used for free when purchasing a Check Point product. Its best feature is that in the first year, we get unprecedented security protection and performance. After analysis, we can acquire other services available on the platform. This reduces costs as we have all security needs under one umbrella.
What needs improvement?
We do take advantage of the year we get for free from Check Point. In the future, this solution can be added under licensing for consumption per user. Today, we have it as part of a solution or a package. However, we'd like there to be a way where we can have the solution's features available to us in a cheaper way in the future.
For how long have I used the solution?
I've used the solution for one year and nine months.
What do I think about the stability of the solution?
So far, the solution has been very stable during the year and months that we have been using it. There are no crashes, loss of service, or malfunctions. It is one of the solutions that has given us the least amount of problems as security administrators.
What do I think about the scalability of the solution?
The solution has been quite scalable. It has allowed us to integrate different devices and, additionally, it has been incorporated into the solutions that we have today on the perimeter.
Which solution did I use previously and why did I switch?
Previously we were testing solutions from Microsoft, Amazon Web Services, and Fortinet to see which was the best, which we could implement in the end, and we ultimately decided on Check Point's services.
What's my experience with pricing, setup cost, and licensing?
The price-cost relationship, capabilities, and benefits that the solution gives us is something that must be evaluated. When we decide on certain applications, we must understand that organizations have a budget, and we must take care of them based on that. The free trial, however, is of great value.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Cloud Engineer at ITQS
Efficient and user-friendly, with good security
Pros and Cons
- "One of its characteristics that we liked the most was its analysis and emulation of activities in the emails since it manages to review them and inspect them if they have an infected attachment."
- "It is an efficient and friendly service, giving detailed analysis and centralized detection of events, including zero-day attacks, which are analyzed and managed faithfully."
- "We would like to see this solution reach mobile devices more efficiently, through apps or more specific products."
- "We would like to see this solution reach mobile devices more efficiently, through apps or more specific products."
What is our primary use case?
It is one of the applications that support us in security and attacks on the network with a capacity for interpretation and analysis of the data that enters our corporate network.
It is an efficient and friendly service, giving detailed analysis and centralized detection of events, including zero-day attacks, which are analyzed and managed faithfully.
These capabilities are indispensable for an organization as they help safeguard the integrity and health of each team.
These are the advantages and needs that we have achieved when using Check Point SandBlast.
How has it helped my organization?
What Check Point has come to give us as a benefit is the power to control, register, analyze, and give a general and safe view of the events and activities carried out by the teams that manage the organization's security.
These capabilities can be managed from a single panel of equipment configurations and controls. This helps and benefits each of the organization's members that can be attacked because they will always be safe.
Mail investigation is another of the benefits provided.
What is most valuable?
One of its characteristics that we liked the most was its analysis and emulation of activities in the emails since it manages to review them and inspect them if they have an infected attachment. After that, it delivers the filtered emails safely. This avoids an analysis or vulnerability of less experienced users who, in most cases, are the weakest link. It offers the ability to take the solution to cloud environments or totally on-premise, which helps us have the ability to adapt to different environments.
What needs improvement?
We would like to see this solution reach mobile devices more efficiently, through apps or more specific products. For the moment, the solution adapts efficiently to corporate environments as technological demands evolve. It is for this same reason that I hope that these innovations will be integrated into SandBlast and in other Check Point products, as it is one of the best that I have tried. It offers us a competitive advantage and efficient security.
For how long have I used the solution?
I've used the solution for one year.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Check Point SandBlast Network Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2026
Product Categories
Advanced Threat Protection (ATP)Popular Comparisons
Microsoft Defender for Endpoint
Microsoft Defender for Office 365
Palo Alto Networks WildFire
Microsoft Defender for Cloud Apps
Palo Alto Networks VM-Series
Microsoft Defender for Identity
Microsoft Defender Vulnerability Management
Digital Guardian
Barracuda CloudGen Firewall
MetaDefender
Check Point Infinity
Trellix Network Detection and Response
Fortinet FortiSandbox
Buyer's Guide
Download our free Check Point SandBlast Network Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- How much do independent test results affect your security purchases?
- Holding Security Vendors Accountable
- What can businesses do to improve their security posture?
- When evaluating Advanced Threat Protection, what aspect do you think is the most important to look for?
- What is your recommended cost-effective solution to detect and prevent APT attacks?
- Compromise Assessment vs Threat Hunting
- What are the main evaluation criteria for you when choosing the right vendor for brand protection services?
- Why is ATP (Advanced Threat Protection) important for companies?

















