Try our new research platform with insights from 80,000+ expert users

Check Point ThreatCloud Managed Security Services vs Netsurion comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 3, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point ThreatCloud Man...
Ranking in Managed Security Services Providers (MSSP)
7th
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Netsurion
Ranking in Managed Security Services Providers (MSSP)
33rd
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
24
Ranking in other categories
Security Information and Event Management (SIEM) (54th), SOC as a Service (14th), Managed Detection and Response (MDR) (39th), Extended Detection and Response (XDR) (47th)
 

Mindshare comparison

As of February 2026, in the Managed Security Services Providers (MSSP) category, the mindshare of Check Point ThreatCloud Managed Security Services is 1.9%, up from 1.0% compared to the previous year. The mindshare of Netsurion is 1.1%, up from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Managed Security Services Providers (MSSP) Market Share Distribution
ProductMarket Share (%)
Check Point ThreatCloud Managed Security Services1.9%
Netsurion1.1%
Other97.0%
Managed Security Services Providers (MSSP)
 

Featured Reviews

AnkurSharma3 - PeerSpot reviewer
Cyber SOC Manager at Tower Research Capital
Offers data models that learn the patterns and behavior of the internal network
I really like the artificial intelligence feature that utilizes automated versioning through AI Yellow Prism. It has a lot of data models that learn the patterns and behavior of the internal network. If something abnormal happens, it raises a flag or alert. The GUI control interface was good and very attractive, and setting up the tool was easy with the help of online articles. Customization was also possible for each department.
John-Berry - PeerSpot reviewer
Information Technology Manager at ProfitSolv
The SOC center monitors, hunts, and notifies us of threats around the clock
I know they are working to resolve this issue, but Netsurion is currently unable to retrieve logs from S3 buckets. We use WP Engine for a lot of web hosting as well as AWS, and both of these platforms use S3 buckets. I would like Netsurion to be able to pull logs from Linux devices. We have some of that capability, and I believe they can do it. However, the way it works with Amazon is strange and glitchy. Therefore, working something out with Amazon would be great. Netsurion's SOC can be a bit too aggressive at times. We have asked them to adjust their playbook because I am tired of being notified about the same issue multiple times a day. I am aware of the issue, and it is not a cause for concern. Let's only take action on this issue if we see an actual problem.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We have not seen a security capacity equal to that of Check Point in other manufacturers."
"We get analysis and can take into consideration the critical alerts found at any time. This gives us security and stability."
"The reports it shares with the IT team provide the feedback necessary to see what needs to change and what needs to continue to be done."
"The most outstanding characteristic that we can see is having something in place that allows any network administrator to apply security policies throughout the company's network."
"Advanced threat intelligence reports have enabled each department to coordinate roles and put security measures in place."
"The real-time intelligence was a good feature."
"It was easily configured and offered one more layer of security in our environment as the monitoring provided by the dashboard is very complete."
"The product satisfies our compliance, and thus, all of our auditors. All of the data that we use and store for all security events is required by our auditors to be kept in a central storage location."
"I like the UI, overall. I like the main page and there are aspects of the search page that I like. When you bring it up on the left-hand side of the page, as you look at the events, the ability to simply hit and click the plus/minus to pull events in and out of the overall view is well done and is very effective from a threat-hunting and an analysis perspective. I like the detail it shows."
"If I were to look at logs manually, there's no way I could do that. As an example, they are 48 million logs processed a day. There is no way I could look at all 48 million of those. So, it gives me a good structure to be able to look at the different incidents which are created and do different searches."
"Their SOC team manages vulnerability management and IOC reviews. They stop bad processes when they happen. The best thing is their weekly reviews of what has been going on in the infrastructure as well as the things that they see and what we should look out for."
"We don't have the eyeballs available to stare and watch for things, or even have the capability of building internal alert systems. So, the managed SOC has been huge for freeing up staff to work on other responsibilities. We are saving on at least one full-time employee."
"The most valuable feature is that we get the events: the alerts about disk space and the security reports that we get once a day, including user lockouts and the like."
"When it comes to threat detection and response, it does a very good job detecting and blocking on its own. And the SOC is a nice added value because they're doing analysis on things that aren't as obvious, on things that you can't just detect with a signature or behavior. Also, any SIEM will come with a lot of noise, so having them do a lot of the initial analysis to find out what's critical and what issues are false alarms is very good."
"If we need to do a search for user lockouts, we can go, search, and find locations where they have been locked out, then keep track of those events, historically."
 

Cons

"One of the great improvements that must be improved is the support for end users."
"The only issue I encountered was with mobile device integration and compatibility with on-premise solutions."
"We want better customization."
"I would like for the service to be a little more accessible for all segments."
"The documentation for the most modern applications of the manufacturer is sometimes not well done or complete."
"Sometimes we can see the documentation and follow its instructions to apply a new rule or policy, and sometimes we don't get the expected result by following them."
"The next release should have threat indicators that categorize various types of threats and their immediate solution."
"I would like to see a faster response when we see things like 15,000 lockouts. I really wished that I had known that on Friday afternoon rather than waiting until I got the weekly report today. By the same token, they are looking at it from the point of view that this is a system or software malfunction. This is not a bad actor repeating the exact same password three times a second. Therefore, they can tell that this is not a bad thing. However, it's not a security event but it is an operational event for me. Knowing this sort of thing would help my team and me out more because then we would be able to clear out a lot of network traffic that we didn't know was going on. So, we would like quicker updates on non-high security events."
"I'd like to see improvement in the ease of generating reports. It seems fairly cumbersome whenever you decide to start tracking new categories of events. It seems a little kludgy when trying to generate those reports."
"There's always room to improve because there would be no competition if they had a perfect solution. The GUI to perform searches within the product may not be intuitive to a new user."
"Communication is always something that can be improved, but I feel that any time we've had a communication issue, it's quickly addressed when we bring those up at the monthly meetings. Usually, it's an individual that wasn't clear in the communication, it's not the process per se. You always have to be able to segregate if the process didn't work or an individual either didn't say the right thing or my people didn't understand what they were being told."
"The agents on the endpoints seem to fail quite a bit, requiring manual involvement from the local administrators. I would like to see their product be much more ad hoc and update automatically."
"The weekly reporting could use some improvement. For example, when we handed them our landscape document, it took longer than I would have liked for those details to become noticeable within the reports."
"The MITRE ATT&CK framework could be faster when identifying and understanding sophisticated threats. Whenever something happens, we usually get notified a couple hours later."
"The solution's dashboard is okay. The one thing that we ran into are issues when we upgraded to the newer version. It uses Elasticsearch for the different dashboard entries. So, we were running on spinning disks, and Elasticsearch didn't work that well. A number of the different dashboards, like my dashboard or different things like that, pull from Elasticsearch. Since Elasticsearch really wasn't working, we were having some issues with that, but we just migrated."
 

Pricing and Cost Advice

Information not available
"Our pricing for Netsurion last year was US $52,000 per year."
"EventTracker's subscription-based model is interesting as far as yearly license type stuff. It's nice because you know what it's going to be next year. We haven't really looked at any other solutions. The pricing at the time compared to the other solutions was a lot less. A couple of years ago, we actually looked at Splunk. The amount in Splunk's licensing model is based on 20 gigs a day, or something like that. Based on our number of logs and stuff that we were already generating, the costs would be substantially more for the amount of logs that we would be getting."
"In the security space, it's hard to quantify your return on investment. So, I don't. We spend about $40,000 a year and so. It's hard to say if the SIEM saved that much money."
"We have seen time and cost savings. It prevents us from having to hire specialized people for this type of work. We would need to hire six staff members to accommodate the same service."
"You are paying for different levels, especially as far as the monitoring goes and how often you review it with the team. The other factor that figures in is how many nodes are on your network, such as clients, network equipment, servers, etc. There are some additional pieces on top of that, but it's laid out pretty simply, as far as how much you're going to pay for a node."
"Licensing is very easy. Our CIO takes care of the billing, but in terms of price point, he hasn't complained, so it must be good."
"The pricing and licensing seem very reasonable. The managed service part of it feels like it gives me the equivalent of a full-time engineer for a lot less money. So, I feel it's a good value."
"Netsurion's pricing is extremely fair and flexible. The price of their SIEM product is reasonable, and you can pay for those services you want on top of that. It wasn't cheap, but it's competitive, and we intend to renew our contract."
report
Use our free recommendation engine to learn which Managed Security Services Providers (MSSP) solutions are best for your needs.
881,707 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
No data available
Performing Arts
16%
Manufacturing Company
9%
Outsourcing Company
9%
Retailer
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise3
Large Enterprise1
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise7
Large Enterprise7
 

Questions from the Community

What is your experience regarding pricing and costs for Check Point ThreatCloud Managed Security Services?
It's a one-year subscription. Our procurement team handled that. The procurement team found it a bit expensive, but they were happy to close the deal.
What needs improvement with Check Point ThreatCloud Managed Security Services?
The only issue I encountered was with mobile device integration and compatibility with on-premise solutions. This could be enhanced to integrate with more log sources.
What is your primary use case for Check Point ThreatCloud Managed Security Services?
The use cases were to block the various sources of threat intelligence and store data on the cloud environment.
Ask a question
Earn 20 points
 

Also Known As

ThreatCloud Managed Security Services
Netsurion Managed Threat Protection, Netsurion EventTracker
 

Overview

 

Sample Customers

Morton Salt, Medical Advocacy and Outreach, BH Telecom, Lightbeam Health Solutions, X by Orange, Cadence, Nihondentsu, Datastream Connexion, Good Sam, Omnyway, FIASA, Pacific Life, Banco del Pacifico, Control Southern, Xero, Centrify, Tradair, Laterlite, Phoenix International, Unisinos, Wilkin Chapman, Connexus Energy, Mutua Universal, Smart & Final, Central New Mexico Community Colleg, Grupo Financiero Multiva
The Salvation Army, The FRESH Market, Pacific Western Bank, NASA, American Academy of Orthopaedic Surgeons (AAOS), and Talbot’s Stores
Find out what your peers are saying about Check Point ThreatCloud Managed Security Services vs. Netsurion and other solutions. Updated: December 2025.
881,707 professionals have used our research since 2012.