


Check Point CloudGuard CNAPP and AWS GuardDuty compete in cloud security management. Check Point seems to have an edge due to its comprehensive compliance checks and IAM control, while AWS GuardDuty excels in AWS integration and threat detection.
Features: Check Point CloudGuard CNAPP provides advanced IAM role management, asset visibility, and a compliance engine that enables robust security management. It also offers CloudBots for automated remediation. AWS GuardDuty leverages services like CloudTrail and VPC Flow Logs for detailed threat detection, malware detection, and behavior analysis, catering specifically to AWS account security needs.
Room for Improvement: Check Point CloudGuard CNAPP could improve with better third-party integration and more flexible policy customization. User feedback suggests enhancing AI capabilities and policy deployment flexibility. AWS GuardDuty could benefit from broader service integration, improved UI features, and enhancements in threat intelligence and automation functionalities.
Ease of Deployment and Customer Service: Check Point CloudGuard CNAPP is noted for supportive customer service and technical support, though response times may need speeding up. It supports deployment across hybrid and public clouds. AWS GuardDuty, natively integrating with AWS, benefits from seamless integration with AWS resources and provides excellent technical support, albeit with cost-effectiveness concerns.
Pricing and ROI: Check Point CloudGuard CNAPP entails higher upfront costs, offering flexible licensing that scales with asset size, thus potentially enhancing ROI through operational efficiencies. AWS GuardDuty follows a pay-as-you-go model, cost-effective for smaller applications but potentially expensive for larger data volumes. Both solutions offer significant ROIs by enhancing security and compliance, each with distinct cost structures.
It has saved about 90% of our time.
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
CallStream helps us integrate and automate tasks.
The compliance has improved as our overall compliance score against CIS benchmark has improved from around 72 to 92% within the first three months of adoption.
This helped my team cut manual review time by roughly twenty to twenty-five percent, allowing me to reallocate effort to proactive cloud security improvements.
Monitoring cloud security automatically ensures a return on investment.
They are helpful, respond to my queries, and can answer any question.
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
I rate technical support for AWS GuardDuty as ten out of ten; AWS has very good security support overall.
I appreciate the support for AWS; it is relatively fast, and their SLAs meet my needs.
When I need help or have open questions, or if I require the capability to deploy a quick test environment, there are always people I can contact at Check Point to get my information or the environment as fast as I need it.
I have a dedicated support engineer and a presales engineer dedicated to me.
Customer support for Check Point CloudGuard CNAPP has been responsive and knowledgeable.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
Our organization currently uses it to manage over 1200 web applications.
It is absolutely scalable, and I would rate its scalability as nine out of ten.
It is designed to scale based on usage, which makes it very adaptable for varying demands.
Visibility scales without performance issues as my environment expands.
Check Point CloudGuard CNAPP scales efficiently in the multi-cloud environment.
I never had any performance-related issues.
Overall, the support provided has been excellent.
It is a stable solution, which is why we chose it.
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
The stability of GuardDuty is extremely reliable.
It is backed by machine learning, and AWS has strong machine learning models and the capacity to support this with advanced computing power.
If there are errors, it is sometimes challenging to elaborate or troubleshoot since it is not transparent enough to understand what to search for.
It is rapidly evolving, and sometimes mistakes occur, necessitating testing.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
A unified dashboard that aggregates findings across all regions without requiring manual aggregation could enhance convenience for users.
Further integration with services like API Gateway would be beneficial.
Comparing AWS GuardDuty to similar products from Microsoft, Microsoft has a product called Sentinel, which is a completely integrated solution that basically does everything from vulnerability management to managing log analytics.
I need more integration from the code-to-cloud principle.
It would be nice to have periodic updates on what people should do, maybe with some analysis or something.
I require consistency in the user interface to ensure everything is streamlined into the same look and feel.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
GuardDuty is very cheap and operates on a pay-as-you-go basis.
The pricing of this tool is cheaper compared to other tools from other vendors, which are more expensive.
AWS GuardDuty is an expensive feature
In terms of ROI, we can see time savings for audit preparation of at least 30-40%.
It is not cheap, of course, yet it is a necessity.
From a licensing and cost perspective, it is really competitive.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
It notifies you immediately when something goes wrong, allowing quick response to threats.
Enabling GuardDuty with a single click allows it to start analyzing data for threats without requiring additional software deployment or updates.
The great benefits of using AWS GuardDuty are that it is connected to all ecosystems from the AWS environment, and I can detect threats faster and locate all the information in a single tool.
One of the main reasons we use the solution is that it is great at identifying risks that are critical to our business.
The CDR helps detect anomalous behavior and respond to threats before they become an issue.
Check Point CloudGuard CNAPP offers a unified, modular platform that combines CSPM, CWPP, CIEM, code security, and cloud detection and response.
| Product | Mindshare (%) |
|---|---|
| AWS GuardDuty | 10.4% |
| Check Point CloudGuard CNAPP | 3.4% |
| Qualys TotalCloud | 1.5% |
| Other | 84.7% |
| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 3 |
| Large Enterprise | 29 |
| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 3 |
| Large Enterprise | 16 |
| Company Size | Count |
|---|---|
| Small Business | 58 |
| Midsize Enterprise | 13 |
| Large Enterprise | 58 |
Qualys TotalCloud enhances security posture across cloud environments with continuous monitoring, vulnerability management, and risk visualization, ensuring efficient threat assessment and automated remediation for improved cyber risk reduction.
Qualys TotalCloud offers a robust suite of security tools essential for organizations managing multi-cloud infrastructures. By integrating cloud accounts and automating workflows, it supports AWS, Azure, and GCP, offering comprehensive vulnerability management and zero-day detection. The platform's user-friendly design, combined with its extensive risk management and unified threat assessment capabilities, enables organizations to prioritize and remediate vulnerabilities effectively. TruRisk Insights provides clear insights on cyber risks, while the automation options streamline patch management and scanning processes. API integration across IaaS and SaaS environments further enhances resource allocation efficiency and saves time, addressing misconfigurations across cloud environments.
What are the most important features of Qualys TotalCloud?Qualys TotalCloud is deployed in sectors needing rigorous vulnerability management, such as finance and healthcare. Companies utilize it to secure multi-cloud environments like AWS, Azure, and GCP, focus on compliance, and integrate security into CI/CD pipelines to detect and remedy threats pre-deployment.
AWS GuardDuty is a security service providing threat detection and continuous monitoring, integrating seamlessly with AWS services and third-party tools. Enhanced by machine learning, it offers comprehensive protection against unauthorized access and malicious activity within AWS environments.
GuardDuty offers behavior analysis and automated responses, utilizing multiple data sources like CloudTrail and VPC Flow Logs for thorough threat analysis. Its scalability and cost-effectiveness simplify the process of identifying suspicious activities, thereby protecting AWS environments from security threats. While users appreciate these features, there's room for improvement in expanded integrations, a more intuitive dashboard, and detailed threat intelligence. Key capabilities include facilitating compliance and enhancing cloud security by monitoring accounts, services, and detecting unusual patterns in real-time.
What are the key features of AWS GuardDuty?Industries utilize AWS GuardDuty for robust security management, detecting threats and analyzing potential risks within AWS environments. This is crucial for sectors needing strict compliance and security, such as finance and healthcare, enabling these sectors to respond effectively to security events and maintain integrity.
Check Point CloudGuard CNAPP offers comprehensive cloud security with features like dynamic access control, asset protection, and compliance checks, tailored for organizations seeking enhanced governance across AWS, Azure, and GCP platforms.
Check Point CloudGuard CNAPP provides robust capabilities, including centralized firewall management, IAM scanning, and real-time visibility. Its strengths lie in predictive visualization, threat intelligence, and auto-remediation, making it a valuable tool for risk mitigation and compliance management. The platform's integration and responsiveness enhance cloud security, ensuring alignment with industry standards and effective threat protection.
What are the key features of Check Point CloudGuard CNAPP?Organizations in finance, healthcare, and retail frequently implement Check Point CloudGuard CNAPP for compliance and security across cloud environments. It assists with workload protection, threat detection, and regulatory obligation fulfillment, proving effective for securing applications and monitoring API interactions.
We monitor all Cloud Workload Protection Platforms (CWPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.