No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Cloud Firewall (formerly CloudGuard Network Security) vs Stormshield Network Security comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 13, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point Cloud Firewall ...
Ranking in Unified Threat Management (UTM)
4th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
244
Ranking in other categories
Firewalls (8th), Managed Security Services Providers (MSSP) (1st), Vulnerability Management (5th), Software Defined WAN (SD-WAN) Solutions (3rd), Cloud and Data Center Security (3rd), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (5th), WAN Edge (3rd), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (5th)
Stormshield Network Security
Ranking in Unified Threat Management (UTM)
14th
Average Rating
7.8
Reviews Sentiment
5.4
Number of Reviews
18
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Unified Threat Management (UTM) category, the mindshare of Check Point Cloud Firewall (formerly CloudGuard Network Security) is 5.7%, up from 1.8% compared to the previous year. The mindshare of Stormshield Network Security is 3.7%, up from 3.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Unified Threat Management (UTM) Mindshare Distribution
ProductMindshare (%)
Check Point Cloud Firewall (formerly CloudGuard Network Security)5.7%
Stormshield Network Security3.7%
Other90.6%
Unified Threat Management (UTM)
 

Featured Reviews

Oscar Nunez - PeerSpot reviewer
Ingeniero en redes y Telecomunicaciones at K-IT
Centralized management has reduced policy time and provides reliable multitenant protection
What I would like, what I think they should improve a little is the management of objects at large scale. When you work with multiple domains, there are thousands of network objects. Detecting duplicates and consistency across domains is a very manual process that should be more automated. Another thing: the SmartConsole interface is very powerful and very good, but the learning curve, compared to other solutions in the market from other manufacturers, could be modernized. I think it does not necessarily have to be done from a client application; it could be done via web, because via web I know that not all the options you have in SmartConsole are available. So it would be good if it could also be done from the web and all the options were available. Another thing that I would really like is more automation with Ansible or Terraform. I know it has improved in recent versions, but I think it is still not mature enough. Compared to other manufacturers that do have a bit more in terms of automation capabilities in integration flows with Ansible or Terraform, Check Point Cloud Firewall (formerly CloudGuard Network Security) could improve. Another thing that could be improved a little would be the TAC response time, because when there are very complex cases, I think there should be more speed initially, more ownership of those urgent cases, and not leave the customer waiting. This has happened to me: when I have cases open with Check Point Cloud Firewall (formerly CloudGuard Network Security) TAC, sometimes they do not respond and I have to keep insisting, and I think that part should improve. I do not know if it depends on who takes the ticket or on the severity of the ticket, but sometimes I have had to insist a lot, and that would be the only problem. Once they attend to me and become involved in the case, the responses they give are very professional and really help directly resolve the problems when there is a bug or troubleshooting to do. As I said, I would like to see a specific improvement in SmartConsole. I think if they improved it—how to say it—gave it a facelift so you could access all the options directly from a browser, that would be great, because sometimes, for one reason or another, you cannot download SmartConsole or, for some reason, the SmartConsole client does not start correctly, and you could do it directly from the browser. I think that would be a good option to improve. Another thing would be that in multidomain environments, I would like a global search function for objects and rules. That is, you could enter and search across all domains at once, because right now you have to go domain by domain, and in environments with many customers, you spend quite a bit of time; you have to exit one domain and enter another. So those would be the improvements I would like to see.
Zsolt Jónás - PeerSpot reviewer
System Administrator at NaxoNet
Advanced GUI and layered security have supported compliance and simplified intrusion prevention
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability solution would be beneficial because currently, if you build a high availability solution with Stormshield Network Security, you have a main device and another one is a backup device. The HA can switch between them, but it would be good to have a master-master solution, not just a master-slave one. I could set a URL that I can call to update the DNS record. Currently, Stormshield Network Security devices support DynDNS, which is not a usual feature request from a server environment. I have my own solution instead of DynDNS because I don't prefer it, so I have my own service for that. However, the GUI does not support using a custom service instead of DynDNS. I had to solve it in the console on Stormshield Network Security device, but it would be much better if it was reachable on the GUI. I had to figure out a trick for the IPsec configuration. In the IPsec config, we have to provide the remote side's IP address, but it's always changing. This means that an office, for example a company that has an office but without a fixed IP address, cannot be used with IPsec VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The ease of deployment has been nice. It is like managing any of our on-prem firewalls."
"Check Point CloudGuard CNAPP's initial configuration is very easy. It is plug-and-play. It also gives regular updates."
"The ability to drill down to individual hosts on an account and see which ones are affected is valuable."
"This software is great in overall performance since it can locate any trouble across the networking system and provide solutions before it affects workflows."
"We primarily secure our network using CloudGuard Network Security's next-generation firewall features, including anti-spam, IPS, and URL filtering. Our chosen package for the go-to-market strategy is NGTP. For customers seeking more features, we provide options to upgrade to the tool's advanced packages."
"It's a high-performance device. The network performance is also really good. We check how much time it takes for the servers. Our network performance has increased since using this solution."
"When browsing, it scans sites to ensure that they are safe and that no harm can be caused."
"The tool's most valuable features are inspecting internet traffic and IPS. We can manage the firewall using shared policies from a single management server."
"I like how you can configure the rules. There is the task for the rules and a task for the network configuration. It also provides SMD filtering, and it can be integrated with the active directory for the users, their mission, and the VPN configuration. We are here in Sudan, and Stormshield didn't work in Sudan for more than a decade. Stormshield is a very strong firewall and very easy to configure and maintain. I am just working with the firewall solution, and we don't have any other solutions like endpoint solutions or something like that."
"Ease of use is the best feature of the product."
"Easily manageable in a variety of environments."
"I feel we have more options with the Stormshield firewall and new features that we haven't previously had."
"I like that it works fine. Stormshield is a very good solution."
"The solution has improved my organization because I can see what traffic is happening and I can use it to block and prevent attacks."
"The most valuable features are the IPS, the firewall function, and the price."
"The most valuable features of this solution are the URL filtering database, which is great and contains all internet categories, the highly scalable interface that I can turn into what I want including hybrid, bridge, or router mode, the security with no back doors that is more secure than other solutions, and the hardware performance that is also better than others."
 

Cons

"The pricing could always be reduced."
"Some more built-in marketplace templates would be nice. It would be nice to see more vendor assistance in deployments and backup of recoveries versus having customers rely upon that themselves. That would make it a lot more seamless and aligned with the standard on-premise model that is there. Check Point can extend the same posture that they have to CloudGuard and make that transition very seamless."
"Its architecture and user interface need improvement. The user experience for this solution also needs to be improved, particularly in implementation, management, and operations."
"The user interface needs work."
"The HA failover time is not as fast as expected and due to this, the convergence time between cluster members is still not perfect."
"The support for Dome9 is not thrilling. It was degraded when Check Point took over."
"I hope that Check Point continues to improve its technical documentation regarding the Check Point CloudGuard IaaS gateway and management system."
"CloudGuard's reporting could be better. It's good now, but there is room for improvement. If you're looking for a centralized platform, there are a lot of features that can be appreciated. However, you want complete security integration with SaaS, DAST, secret scanning, etc., and a single platform for all these features."
"An application firewall like other next generation firewalls have."
"This solution has a big problem with web filtering and it needs to be improved."
"The main area of this product that has room for improvement is pricing. Stormshield Network Security is quite expensive."
"The pricing is increasing, and I would say it is a bit expensive."
"One thing, though, is that not all the fields are activated yet and we were informed that it will take at least one month."
"It could be better if it were more user-friendly for us as we dont use it very often even if we never had problems to modify setup when needed."
"Improvement is also needed in terms of the technical support of the manufacturer, they're not very responsive when it comes to technical support."
"This is not a next-generation firewall."
 

Pricing and Cost Advice

"The licesning has some good features. For example, the scaling feature is free of charge, allowing multiple scale-ups and scale-downs over a two-week period, which is pretty good."
"The price could be better."
"The licensing and costs are straightforward, as they have a baseline of 100 workloads (number of instances) within one license with no additional nor hidden charges. If you want to have 200 workloads under Dome9, then you need to take out two licenses for that. Also, it does not have any impact on cloud billing, as data is shared using the API call. This is well within the limit of free API calls provided by the cloud provider."
"From a pricing perspective, they are pretty expensive."
"It is fairly priced, but it can be a little expensive from time to time."
"Licensing is simply by the number of hosts that you are looking to protect within your environment. It makes it much easier to ensure that you are covering your environment."
"Everything in this field is very expensive."
"Although I don't have specifics for pricing, based on my overall experience, I can conclude that Check Point provides the best pricing when comparing to other vendors."
"We bought a three-year license, and we renew it whenever it expires. The price could be better. It's always very expensive."
"The price of this solution and the price of support are ok."
"For mid-sized companies, they sell their appliances for good prices."
"I think the price is good."
"The SN200 series costs between $500 USD and $600 USD per year, whereas the SN700 series costs approximately $1,000 annually."
"We chose Stormshield for its price, as the Azure firewall was too expensive."
"The pricing could be better."
report
Use our free recommendation engine to learn which Unified Threat Management (UTM) solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
16%
Construction Company
13%
Financial Services Firm
9%
Manufacturing Company
7%
Comms Service Provider
17%
Manufacturing Company
12%
Construction Company
10%
Computer Software Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business132
Midsize Enterprise53
Large Enterprise144
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

What is your experience regarding pricing and costs for Check Point CloudGuard Network Security?
Since we use a unified standard for using policies and modules in Check Point Cloud Firewall (formerly CloudGuard Network Security), we can clearly plan which modules we need to activate on a parti...
What needs improvement with Check Point CloudGuard Network Security?
The main limitations of Check Point Cloud Firewall (formerly CloudGuard Network Security) are not in Check Point itself but in the cloud platforms on which it is deployed. Because not all clouds ha...
What is your primary use case for Check Point CloudGuard Network Security?
Check Point Cloud Firewall (formerly CloudGuard Network Security) is the main manager that provides network security in different forms in my organization. The primary task that Check Point solves ...
What needs improvement with Stormshield Network Security?
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability solution would be beneficial because currently, if you build a high availability so...
What is your primary use case for Stormshield Network Security?
I already use Stormshield Network Security, and I am now looking for a new solution. I am already working with Stormshield Network Security, and the official reseller of Stormshield.
What advice do you have for others considering Stormshield Network Security?
The pricing is increasing, and I would say it is a bit expensive. Palo Alto and others are much more expensive, but Stormshield Network Security is also not inexpensive. My overall review rating fo...
 

Also Known As

CloudGuard IaaS, Check Point vSEC, CloudGuard IaaS, Check Point Virtual Systems, Check Point CloudGuard Network Security, Check Point CloudGuard CNAPP
NETASQ Firewalls
 

Overview

 

Sample Customers

Physicians Choice Laboratory Services, Helvetica Insurance
ACESUR group, Ministry of Education Oman, Anios Laboratories, Zain, DLM Location
Find out what your peers are saying about Check Point Cloud Firewall (formerly CloudGuard Network Security) vs. Stormshield Network Security and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.