What I appreciate is that centralized management is obtained from SmartConsole with MDS, which seems very positive to me, as that is the strongest point. With that, you can have threat prevention with the blades, IPS, Anti-Bot, and Anti-Virus. I think it is very well integrated, and also for ClusterXL for high availability, it works very well; it is very reliable. The primary impact we have had is the ability to manage security policies in a centralized manner for multiple customers from a single platform, because this significantly reduces operational time when performing, for example, rule changes or policy updates. What is more important is the availability from ClusterXL, which allows you to have production environments without service interruptions—that is, business continuity. Additionally, the threat prevention capabilities, and what I like most is that they have added a robust protection layer without the need for third-party solutions; everything is very well contained there. I estimate a reduction of between 30% and 40% in management time compared to solutions without multi-domain centralized management.
Check Point Cloud Firewall (formerly CloudGuard Network Security) has been acting as a perimeter device for our architecture, and it has been helping us to secure and have centralized management and visibility of the cloud network security. As a security analyst, we have been forwarding those logs with the SIEM solutions where we are monitoring network traffic flows for any abnormalities, applications and services, and for potential security breaches. We have been forwarding those logs over to the SIEM, and we have deployed this firewall in our environment to secure the perimeter by introducing policies. We have utilized the features to have the policies in place for communication with the destinations, to identify the source and destination ports and protocols, and the allowed and blocked connections to the firewalls. These were our basic use cases. We also use it for network traffic inspections, firewall policy enforcement, application and service controls, and the centralized policy management tool.
Network Engineer at a outsourcing company with 10,001+ employees
Real User
Top 5
Jul 20, 2026
Check Point Cloud Firewall (formerly CloudGuard Network Security) is the main manager that provides network security in different forms in my organization. The primary task that Check Point solves is serving as the main means of network security. Check Point Cloud Firewall (formerly CloudGuard Network Security) has several classes of modules. The main modules include Firewall, Antivirus, Anti-Bot, URL Filtering, the IPS module, and Identity Awareness, which is tightly integrated into our organization and ensures connectivity of corporate users with the corporate network, allowing us to create dynamic sessions and policies. In our practice, we use a single common profile for all gateways in Check Point Cloud Firewall (formerly CloudGuard Network Security), which allows us to unify all policies and, with the help of sections, display what accesses exist for particular services. The Identity Awareness module helps our company by allowing us to have approximately fifty Active Directory controllers. We have deployed three Identity Awareness controllers, which are connected to all our security gateways. It works on the principle that when a user logs into their device, data about their current IP address and login is written to the Active Directory logs. The Identity Awareness controller integration reads them and sends them to the security gateway. Check Point Cloud Firewall (formerly CloudGuard Network Security) then queries the Active Directory controller, pulls in all the user's groups, and allows access for each user based on their Active Directory groups, which makes it possible to create dynamic policies and dynamic accesses. Check Point Cloud Firewall (formerly CloudGuard Network Security) is also used to provide VPN access for engineers. At the moment, we are no longer using Check Point Cloud Firewall (formerly CloudGuard Network Security) together with other Check Point solutions. Previously, we had approximately five projects integrated with Check Point. We used their IA (Identity and Access) solutions, their analyzers, and also their endpoint client at the workstation level.
Manager, Systems, Information Technology at a educational organization with 1,001-5,000 employees
Real User
Top 10
May 22, 2026
I am no longer working with Barracuda products and have shifted to Check Point Cloud Firewall (formerly CloudGuard Network Security). Check Point Cloud Firewall (formerly CloudGuard Network Security) is used within my company. The features I find most valuable include the reporting, detection rate of the firewall, and automatic blocking of content in inbound traffic. I utilize only the Check Point Cloud Firewall (formerly CloudGuard Network Security) firewall and am not using any other Check Point products alongside it.
My main use case for Check Point Cloud Firewall (formerly CloudGuard Network Security) is to secure my Amazon Web Services, also known as AWS environment. I use Check Point Cloud Firewall (formerly CloudGuard Network Security) to secure my AWS environment by configuring it to be the main entry point for any web request that comes into our EC2 servers. It is in the public subnet and has been configured to communicate with the private subnet.
Sales Manager For Network at One Network Infosol Pvt. Ltd.
Real User
Top 20
May 18, 2026
We are the system integrator for Check Point Cloud Firewall (formerly CloudGuard Network Security). We work with the BFSI, Bank and Finance domain, government segment, as well as corporate industry. In the BFSI and bank and finance sectors, we have deployed this solution to multiple customers including many corporate banks, financial institutes, and trading companies. Most trading companies are using Check Point Cloud Firewall (formerly CloudGuard Network Security) from our side, and we have deployed it for multiple customers. For application control, intrusion prevention, IPS, anti-bot, sandboxing, zero-day attacks, Zero Trust Network, ZTNA, and multiple features including remote access, encryption communication, and secure integration with Active Directory and LDAP, our customers typically use this solution.
Learn what your peers think about Check Point Cloud Firewall (formerly CloudGuard Network Security). Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
Check Point Cloud Firewall (formerly CloudGuard Network Security) is a cloud-native application protection platform and a suite of multiple products. We primarily use it for our hybrid multi-cloud environment, primarily around cloud environments. The deployments for different clients were a bit different. For one of the clients, it was just a single cloud vendor, which I believe was AWS, and then multi-organizations with hierarchical architecture. The intent was to manage hundreds or perhaps thousands of EC2 instances and Kubernetes workloads, EKS (Elastic Kubernetes Service), and a lot of PaaS applications, Infrastructure as a Service, container registries, and ECR. The end result was to understand the overall security posture of the cloud, figure out if there are any deviations, and make sure that there is no zero-day and all the detections are in place. Check Point Cloud Firewall (formerly CloudGuard Network Security) is a typical CNAPP suite that comprises cloud workload protection, runtime security, and code quality checks, not just your typical SonarQube or SAST, but definitely something that can integrate with your VCS.
I use Check Point Cloud Firewall (formerly CloudGuard Network Security) to protect my network assets on the firewall front, managing the inbound and outbound traffic for my cloud workload. The biggest advantage of Check Point Cloud Firewall (formerly CloudGuard Network Security) for me is routing my traffic and whitelisting my outbound traffic to my vendors, partners, and clients. I am using it for both outbound and inbound traffic purposes. Whenever there was an inspection on the network front, I used network IPS. When whitelisting our applications on the inbound part, I whitelist the application control to my cloud users to connect those particular applications.
My usual use cases for Check Point Cloud Firewall (formerly CloudGuard Network Security) involve onboarding as an energy company, where it acts as the cloud-native security platform that extends the traditional firewall and threat prevention capabilities into public cloud environments like AWS, Azure, or GCP. We set up a virtual security gateway inside our cloud network to provide unified policy management, advanced threat prevention, segmentation for the network, and visibility across the cloud and system. From an administrator standpoint, it protects the workload, inspects traffic, and enforces the necessary rules. Day-to-day, my responsibilities include logging, monitoring, and policy control for Check Point Cloud Firewall (formerly CloudGuard Network Security), making it a strong fit for our organization, especially in the energy sector where we need critical systems to stay up to date throughout twenty-four seven. For secure cloud migration, Check Point Cloud Firewall (formerly CloudGuard Network Security) integrates seamlessly across AWS, Azure, and GCP, supporting auto-scaling, native logging, and automation, making it a strong fit for our organization while modernizing our infrastructure and maintaining strict compliance requirements. Using this tool helps us avoid complications like needing to prove compliance for SOC 1 or SOC 2, as these platforms are already compliant.
Ict Officer at a healthcare company with 1,001-5,000 employees
Real User
Top 5
Apr 24, 2026
We use Check Point Cloud Firewall (formerly CloudGuard Network Security) for most of the things in the cloud. We protect our things, especially Microsoft emails. We also have things that are actually put in the clouds like our institution's backups which are in the cloud.
My main use case for Check Point CloudGuard CNAPP is strengthening cloud security posture, monitoring configurations, identifying risks earlier, and keeping workloads aligned with compliance requirements.
Our primary use case for Check Point CloudGuard CNAPP is for securing our multi-cloud environment, AWS, Azure, by providing continuous posture management, threat detection, and compliance monitoring. We use it to identify misconfigurations, enforce security best practices, and monitor cloud workloads in real-time. It also helps us with vulnerability scanning and keeping our environment compliant to frameworks such as CIS, GDPR, etc.
I came from a compliance world where I focused on static configuration checks. I have now evolved more towards a CDR approach, where I actively monitor cloud detection and response as well. I am monitoring activities in the clouds, including Azure, AWS, and Oracle, OCI.
I am using most of the CSPM functionality, primarily providing assessments for my customer bases with the CNAPP CSPM functionality. I conduct benchmarks and compare the cloud infrastructure with, for example, the CIS benchmarks or other types of benchmarks depending on my customer needs. That's my main use case, to be honest. It is not yet the workload protection point. I see that evolving. For now, it is more about CSPM.
Technical Analyst (Cyber Security) at a consultancy with 51-200 employees
Real User
Jul 12, 2024
I work with the solution for patching over all the cloud vulnerabilities. We have a different monitoring team that monitors all the alerts on the solution. They send us a report, and we work on that report to patch all the vulnerabilities of our cloud environment, such as Azure and AWS.
Check Point CloudGuard CNAPP is primarily designed to protect cloud-native applications and their underlying infrastructure from cyber threats. The primary use cases of this solution are comprehensive cloud security, workload protection, cloud security posture management, DevSecOps integration, threat detection and response, compliance and risk management.
CloudGuard CNAPP has many use cases depending on your business requirements. If your organization's infrastructure is spread across various cloud vendors, such as AWS, GCP, and Azure, you can implement CNAPP. Our use case entails gaining visibility into cloud components. We have an infrastructure platform where our resources are deployed. We are now focusing on having a clear visibility of all the cloud platforms, whether it is AWS, Azure, or GCP.
As a manufacturing company, we always ensure our production and workloads are not being interrupted by anything. Therefore, we are making sure our automated processes are not hindered by any means. As we have many cloud-based applications, CloudGuard gives us prime support in terms of the security of the system. This includes securing cloud workloads, applications, and data by integrating threat prevention, detection, and response capabilities. It also ensures compliance and governance across multi-cloud environments.
Software Development Manager- Cybersecurity at a retailer with 10,001+ employees
Real User
Mar 15, 2024
I use CloudGuard CNAPP to protect and gain visibility into vulnerabilities across our cloud workloads in a multi-cloud environment spanning AWS, GCP, and Azure. By implementing CNAPP, we have successfully reduced vulnerabilities in our cloud infrastructure by 70-80% over the past two years.
Senior Cybersecurity Architect at a manufacturing company with 10,001+ employees
Real User
Mar 14, 2024
We use it to protect our applications in the cloud. We are doing a lot more cloud migration. We are moving all our applications into the cloud and our servers into the cloud. We need to protect our servers in the cloud. By implementing CloudGuard CNAPP, we wanted to make sure we get alerts so that we can react much faster.
IT Security Specialist at Unipol Assicurazioni S.p.A.
User
Feb 28, 2024
We have used CNAPP on our OpenShift test cluster but are planning to deploy it in our production clusters. We used CNAPP to enhance the visibility of our cloud-deployed applications. It offers various modules to do so. For example, the Posture Management module shows you exposed secrets and security misconfigurations and also gives you hints and ready-to-use JSON configuration files to fix them. Cloud Infrastructure Entitlement Management (CIEM) gives you visibility and management automation of identities, roles, entitlements, and privileges in your cloud environments. This helps you find and fix identity- and role-related security holes by constructing a complex privileges graph, which shows you granted permissions and enforced ones, suggesting you enforce the stricter and more secure enforced ones over the ones you granted.
We are a multi-cloud service provider that leverages all major cloud providers, such as AWS, Azure, GCP, and OfficeLab, for our internal consumption and for our customers. Managing and monitoring the compliance of the platform across hundreds of accounts can be challenging, especially without a solution like Check Point CloudGuard Posture Management, which continuously scans and alerts us against policy violations. If the policy is violated, we are alerted, the issue is identified, and we are assisted in resolving it.
Senior Security Specialist at Tech Mahindra Limited
Real User
Oct 11, 2023
We have a hybrid environment so we use Check Point Cloud Guard to protect the cloud workload. On-prem, we are already using the Check Point Firewalls so we can manage both environment firewalls using the same management server, AKA the smart console, which saves time and effort to look for logs during any type of troubleshooting. It helps us avoid creating the same objects for each firewall but also provides a single pane of glass through which we can see all gateways, logs, policies, objects, user management, and traffic tracing.
We use the solution to control all the emails that go out from the company. We also use it to protect our network by stopping unauthorized people from accessing it.
Perimeter Security Administrator at a security firm with 51-200 employees
Real User
Top 20
Feb 24, 2023
This is one of the solutions that we have sought in order to establish an intelligent analysis. It has helped us collect data on our accounts in the cloud and applications. It offers integrations and provides real-time analysis of security issues. The platform learns automatically and manages to identify abnormal behaviors to help us detect anomalies. Additionally, we can configure automatic notifications that help us act during detected incidents.
Check Point CloudGuard Intelligence provides security for the organization's cloud assets. It provides awareness to all the teams based on the security situations and precautions that can block future threats. It detects cloud anomalies to enhance workload safety and quarantine threats with a powerful threat intelligence feed. It secures data that is stored in the cloud servers. The security model provides alerts on policy violations and reports on cloud security. The intelligence information has helped us to plan and allocate resources efficiently.
This product detects cloud anomalies and immediately quarantines threats to minimize further data damage. It enables our team to have full visibility of the security situation surrounding our hosted applications and workloads. Check Point CloudGuard Intelligence has a comprehensive risk assessment system that provides an advanced report on any business engagements. The product provides detection and security analysis recommendations that can safeguard cloud infrastructure in case of ransomware attacks. It monitors data flow closely to ascertain and block insecure content.
Check Point CloudGuard Intelligence Security is one of the most robust tools on the market. That's why we decided to implement it in our company when all our operations were migrated to the Azure cloud area. We needed a tool that would provide security in the network and help analyze any vulnerabilities that we might face in these new environments. We wanted to be able to attack all the weak points that we have in the cloud in order to guarantee effective and stable security. We also have some applications in our systems that deserve excellent security.
We wanted to protect, analyze, and detect issues within the infrastructure that we have taken to the cloud. We were looking for ways that we can analyze and introduce a more complete internal forensic analysis so that if an intrusion did not happen, we could have a visualization in which we could be constantly learning how to detect and ee anomalies and provide analysis for detection in real-time.
Check Point CloudGuard Intelligence surveys the company's multi-cloud servers to ensure they are free from threats. The software provides real-time data analytics on the performance and security situation around the applications. Data visualization enables the company IT team to easily monitor the networking system and notice any abnormality. The intelligence provision on workflow infrastructure enables my team to prepare for risks and put measures for curbing malware attacks. The system has provided CloudBots that detect any threats and misconfigurations automatically from our cloud servers.
We are at a point where we must have security at the level of the cloud that we were managing, and we reached a point where this need led us to use the alliance we had with Check Point. It was one of their solutions that came to give us analysis value. It offers threat security forensics through machine learning visualization and analyzes real-time and cloud anomalies. With it, we provide that security line for our two public clouds in which we have resources and applications.
Currently, the company I work for has implemented several cloud solutions such as Azure and AWS, in which they are migrating from AWS to Azure to have everything unified in a single environment. At the moment, we have different applications in both clouds, which have their own system of security in the environments. Recently, in the country there were several ransomware attacks on government companies they were the target due to this we decided to expand security a little more and it was where we made use of Check Point tools that will help us comply with a more centralized security that is more robust on all our end devices.
We currently use Microsoft Azure, which has several security features, all with costs, to perform governance, control, vulnerability improvements and regulatory compliance. However, we manage Check Point. We wanted to have a centralized and modern security environment, and it was possible to obtain it through Check Point Infinity. It was possible to implement Check Point CloudGuard to take advantage of cloud intelligence to analyze modern threats. The global learning that Check Point obtains from all its devices for the improvement and confidence of security. Forensics as your monitoring portal is exceptional.
We use Microsoft Cloud, and, to provide a layer of security, and revision of vulnerabilities in a centralized site, we initiated the use of Check Point CloudGuard for Cloud Intelligence, which provides very correct security revisions, provides monitoring and reports that help the company, and works hand in hand with Check Point, to make the best decisions to avoid vulnerabilities. It is a solution without the need to implement a server. It's totally serverless. That is something that is very important to mention.
Check Point Cloud Firewall, previously known as CloudGuard Network Security, provides advanced threat prevention, centralized management, and VPN capabilities, enabling robust cloud security across various platforms including Azure and AWS.Check Point Cloud Firewall delivers seamless cloud integration with advanced automated threat prevention and centralized management to enhance security posture. It offers auto-scaling for dynamic environments and a comprehensive policy enforcement framework...
What I appreciate is that centralized management is obtained from SmartConsole with MDS, which seems very positive to me, as that is the strongest point. With that, you can have threat prevention with the blades, IPS, Anti-Bot, and Anti-Virus. I think it is very well integrated, and also for ClusterXL for high availability, it works very well; it is very reliable. The primary impact we have had is the ability to manage security policies in a centralized manner for multiple customers from a single platform, because this significantly reduces operational time when performing, for example, rule changes or policy updates. What is more important is the availability from ClusterXL, which allows you to have production environments without service interruptions—that is, business continuity. Additionally, the threat prevention capabilities, and what I like most is that they have added a robust protection layer without the need for third-party solutions; everything is very well contained there. I estimate a reduction of between 30% and 40% in management time compared to solutions without multi-domain centralized management.
Check Point Cloud Firewall (formerly CloudGuard Network Security) has been acting as a perimeter device for our architecture, and it has been helping us to secure and have centralized management and visibility of the cloud network security. As a security analyst, we have been forwarding those logs with the SIEM solutions where we are monitoring network traffic flows for any abnormalities, applications and services, and for potential security breaches. We have been forwarding those logs over to the SIEM, and we have deployed this firewall in our environment to secure the perimeter by introducing policies. We have utilized the features to have the policies in place for communication with the destinations, to identify the source and destination ports and protocols, and the allowed and blocked connections to the firewalls. These were our basic use cases. We also use it for network traffic inspections, firewall policy enforcement, application and service controls, and the centralized policy management tool.
Check Point Cloud Firewall (formerly CloudGuard Network Security) is the main manager that provides network security in different forms in my organization. The primary task that Check Point solves is serving as the main means of network security. Check Point Cloud Firewall (formerly CloudGuard Network Security) has several classes of modules. The main modules include Firewall, Antivirus, Anti-Bot, URL Filtering, the IPS module, and Identity Awareness, which is tightly integrated into our organization and ensures connectivity of corporate users with the corporate network, allowing us to create dynamic sessions and policies. In our practice, we use a single common profile for all gateways in Check Point Cloud Firewall (formerly CloudGuard Network Security), which allows us to unify all policies and, with the help of sections, display what accesses exist for particular services. The Identity Awareness module helps our company by allowing us to have approximately fifty Active Directory controllers. We have deployed three Identity Awareness controllers, which are connected to all our security gateways. It works on the principle that when a user logs into their device, data about their current IP address and login is written to the Active Directory logs. The Identity Awareness controller integration reads them and sends them to the security gateway. Check Point Cloud Firewall (formerly CloudGuard Network Security) then queries the Active Directory controller, pulls in all the user's groups, and allows access for each user based on their Active Directory groups, which makes it possible to create dynamic policies and dynamic accesses. Check Point Cloud Firewall (formerly CloudGuard Network Security) is also used to provide VPN access for engineers. At the moment, we are no longer using Check Point Cloud Firewall (formerly CloudGuard Network Security) together with other Check Point solutions. Previously, we had approximately five projects integrated with Check Point. We used their IA (Identity and Access) solutions, their analyzers, and also their endpoint client at the workstation level.
I am no longer working with Barracuda products and have shifted to Check Point Cloud Firewall (formerly CloudGuard Network Security). Check Point Cloud Firewall (formerly CloudGuard Network Security) is used within my company. The features I find most valuable include the reporting, detection rate of the firewall, and automatic blocking of content in inbound traffic. I utilize only the Check Point Cloud Firewall (formerly CloudGuard Network Security) firewall and am not using any other Check Point products alongside it.
My main use case for Check Point Cloud Firewall (formerly CloudGuard Network Security) is to secure my Amazon Web Services, also known as AWS environment. I use Check Point Cloud Firewall (formerly CloudGuard Network Security) to secure my AWS environment by configuring it to be the main entry point for any web request that comes into our EC2 servers. It is in the public subnet and has been configured to communicate with the private subnet.
We are the system integrator for Check Point Cloud Firewall (formerly CloudGuard Network Security). We work with the BFSI, Bank and Finance domain, government segment, as well as corporate industry. In the BFSI and bank and finance sectors, we have deployed this solution to multiple customers including many corporate banks, financial institutes, and trading companies. Most trading companies are using Check Point Cloud Firewall (formerly CloudGuard Network Security) from our side, and we have deployed it for multiple customers. For application control, intrusion prevention, IPS, anti-bot, sandboxing, zero-day attacks, Zero Trust Network, ZTNA, and multiple features including remote access, encryption communication, and secure integration with Active Directory and LDAP, our customers typically use this solution.
Check Point Cloud Firewall (formerly CloudGuard Network Security) is a cloud-native application protection platform and a suite of multiple products. We primarily use it for our hybrid multi-cloud environment, primarily around cloud environments. The deployments for different clients were a bit different. For one of the clients, it was just a single cloud vendor, which I believe was AWS, and then multi-organizations with hierarchical architecture. The intent was to manage hundreds or perhaps thousands of EC2 instances and Kubernetes workloads, EKS (Elastic Kubernetes Service), and a lot of PaaS applications, Infrastructure as a Service, container registries, and ECR. The end result was to understand the overall security posture of the cloud, figure out if there are any deviations, and make sure that there is no zero-day and all the detections are in place. Check Point Cloud Firewall (formerly CloudGuard Network Security) is a typical CNAPP suite that comprises cloud workload protection, runtime security, and code quality checks, not just your typical SonarQube or SAST, but definitely something that can integrate with your VCS.
I use Check Point Cloud Firewall (formerly CloudGuard Network Security) to protect my network assets on the firewall front, managing the inbound and outbound traffic for my cloud workload. The biggest advantage of Check Point Cloud Firewall (formerly CloudGuard Network Security) for me is routing my traffic and whitelisting my outbound traffic to my vendors, partners, and clients. I am using it for both outbound and inbound traffic purposes. Whenever there was an inspection on the network front, I used network IPS. When whitelisting our applications on the inbound part, I whitelist the application control to my cloud users to connect those particular applications.
My usual use cases for Check Point Cloud Firewall (formerly CloudGuard Network Security) involve onboarding as an energy company, where it acts as the cloud-native security platform that extends the traditional firewall and threat prevention capabilities into public cloud environments like AWS, Azure, or GCP. We set up a virtual security gateway inside our cloud network to provide unified policy management, advanced threat prevention, segmentation for the network, and visibility across the cloud and system. From an administrator standpoint, it protects the workload, inspects traffic, and enforces the necessary rules. Day-to-day, my responsibilities include logging, monitoring, and policy control for Check Point Cloud Firewall (formerly CloudGuard Network Security), making it a strong fit for our organization, especially in the energy sector where we need critical systems to stay up to date throughout twenty-four seven. For secure cloud migration, Check Point Cloud Firewall (formerly CloudGuard Network Security) integrates seamlessly across AWS, Azure, and GCP, supporting auto-scaling, native logging, and automation, making it a strong fit for our organization while modernizing our infrastructure and maintaining strict compliance requirements. Using this tool helps us avoid complications like needing to prove compliance for SOC 1 or SOC 2, as these platforms are already compliant.
We use Check Point Cloud Firewall (formerly CloudGuard Network Security) for most of the things in the cloud. We protect our things, especially Microsoft emails. We also have things that are actually put in the clouds like our institution's backups which are in the cloud.
My main use case for Check Point CloudGuard CNAPP is strengthening cloud security posture, monitoring configurations, identifying risks earlier, and keeping workloads aligned with compliance requirements.
Our primary use case for Check Point CloudGuard CNAPP is for securing our multi-cloud environment, AWS, Azure, by providing continuous posture management, threat detection, and compliance monitoring. We use it to identify misconfigurations, enforce security best practices, and monitor cloud workloads in real-time. It also helps us with vulnerability scanning and keeping our environment compliant to frameworks such as CIS, GDPR, etc.
I came from a compliance world where I focused on static configuration checks. I have now evolved more towards a CDR approach, where I actively monitor cloud detection and response as well. I am monitoring activities in the clouds, including Azure, AWS, and Oracle, OCI.
I use the solution for some cloud applications, which are cloud-native.
The solution is for used for protection of workloads.
I am using most of the CSPM functionality, primarily providing assessments for my customer bases with the CNAPP CSPM functionality. I conduct benchmarks and compare the cloud infrastructure with, for example, the CIS benchmarks or other types of benchmarks depending on my customer needs. That's my main use case, to be honest. It is not yet the workload protection point. I see that evolving. For now, it is more about CSPM.
I work with the solution for patching over all the cloud vulnerabilities. We have a different monitoring team that monitors all the alerts on the solution. They send us a report, and we work on that report to patch all the vulnerabilities of our cloud environment, such as Azure and AWS.
Check Point CloudGuard CNAPP is primarily designed to protect cloud-native applications and their underlying infrastructure from cyber threats. The primary use cases of this solution are comprehensive cloud security, workload protection, cloud security posture management, DevSecOps integration, threat detection and response, compliance and risk management.
CloudGuard CNAPP has many use cases depending on your business requirements. If your organization's infrastructure is spread across various cloud vendors, such as AWS, GCP, and Azure, you can implement CNAPP. Our use case entails gaining visibility into cloud components. We have an infrastructure platform where our resources are deployed. We are now focusing on having a clear visibility of all the cloud platforms, whether it is AWS, Azure, or GCP.
As a manufacturing company, we always ensure our production and workloads are not being interrupted by anything. Therefore, we are making sure our automated processes are not hindered by any means. As we have many cloud-based applications, CloudGuard gives us prime support in terms of the security of the system. This includes securing cloud workloads, applications, and data by integrating threat prevention, detection, and response capabilities. It also ensures compliance and governance across multi-cloud environments.
We use CloudGuard to secure apps we develop in the cloud.
I use CloudGuard CNAPP to protect and gain visibility into vulnerabilities across our cloud workloads in a multi-cloud environment spanning AWS, GCP, and Azure. By implementing CNAPP, we have successfully reduced vulnerabilities in our cloud infrastructure by 70-80% over the past two years.
I use it for cloud visibility detection and remediation. I also use it for reporting and dashboarding.
We use CloudGuard CNAPP for accessing the security status of our assets, managing inventory, and overseeing configuration settings.
We use it to protect our applications in the cloud. We are doing a lot more cloud migration. We are moving all our applications into the cloud and our servers into the cloud. We need to protect our servers in the cloud. By implementing CloudGuard CNAPP, we wanted to make sure we get alerts so that we can react much faster.
One use case was for compliance. The second one was for workload protection, and the third one was for threat hunting in the cloud.
We use CloudGuard CNAPP to verify the posture management of our cloud gateway.
We have used CNAPP on our OpenShift test cluster but are planning to deploy it in our production clusters. We used CNAPP to enhance the visibility of our cloud-deployed applications. It offers various modules to do so. For example, the Posture Management module shows you exposed secrets and security misconfigurations and also gives you hints and ready-to-use JSON configuration files to fix them. Cloud Infrastructure Entitlement Management (CIEM) gives you visibility and management automation of identities, roles, entitlements, and privileges in your cloud environments. This helps you find and fix identity- and role-related security holes by constructing a complex privileges graph, which shows you granted permissions and enforced ones, suggesting you enforce the stricter and more secure enforced ones over the ones you granted.
We mainly use it as a CSPM solution.
CloudGuard is a posture management and workload protection platform. We're also using it for data and risk management.
We use Check Point CloudGuard for full visibility across our workloads in the cloud and on-premises.
We use Check Point CloudGuard Posture Management to maintain our organization's security posture.
We are a multi-cloud service provider that leverages all major cloud providers, such as AWS, Azure, GCP, and OfficeLab, for our internal consumption and for our customers. Managing and monitoring the compliance of the platform across hundreds of accounts can be challenging, especially without a solution like Check Point CloudGuard Posture Management, which continuously scans and alerts us against policy violations. If the policy is violated, we are alerted, the issue is identified, and we are assisted in resolving it.
We have a hybrid environment so we use Check Point Cloud Guard to protect the cloud workload. On-prem, we are already using the Check Point Firewalls so we can manage both environment firewalls using the same management server, AKA the smart console, which saves time and effort to look for logs during any type of troubleshooting. It helps us avoid creating the same objects for each firewall but also provides a single pane of glass through which we can see all gateways, logs, policies, objects, user management, and traffic tracing.
We use the solution to control all the emails that go out from the company. We also use it to protect our network by stopping unauthorized people from accessing it.
We can correlate the information and get analytics that helps us be more proactive in terms of minimizing risk on the cloud.
This is one of the solutions that we have sought in order to establish an intelligent analysis. It has helped us collect data on our accounts in the cloud and applications. It offers integrations and provides real-time analysis of security issues. The platform learns automatically and manages to identify abnormal behaviors to help us detect anomalies. Additionally, we can configure automatic notifications that help us act during detected incidents.
Check Point CloudGuard Intelligence provides security for the organization's cloud assets. It provides awareness to all the teams based on the security situations and precautions that can block future threats. It detects cloud anomalies to enhance workload safety and quarantine threats with a powerful threat intelligence feed. It secures data that is stored in the cloud servers. The security model provides alerts on policy violations and reports on cloud security. The intelligence information has helped us to plan and allocate resources efficiently.
This product detects cloud anomalies and immediately quarantines threats to minimize further data damage. It enables our team to have full visibility of the security situation surrounding our hosted applications and workloads. Check Point CloudGuard Intelligence has a comprehensive risk assessment system that provides an advanced report on any business engagements. The product provides detection and security analysis recommendations that can safeguard cloud infrastructure in case of ransomware attacks. It monitors data flow closely to ascertain and block insecure content.
Check Point CloudGuard Intelligence Security is one of the most robust tools on the market. That's why we decided to implement it in our company when all our operations were migrated to the Azure cloud area. We needed a tool that would provide security in the network and help analyze any vulnerabilities that we might face in these new environments. We wanted to be able to attack all the weak points that we have in the cloud in order to guarantee effective and stable security. We also have some applications in our systems that deserve excellent security.
We wanted to protect, analyze, and detect issues within the infrastructure that we have taken to the cloud. We were looking for ways that we can analyze and introduce a more complete internal forensic analysis so that if an intrusion did not happen, we could have a visualization in which we could be constantly learning how to detect and ee anomalies and provide analysis for detection in real-time.
Check Point CloudGuard Intelligence surveys the company's multi-cloud servers to ensure they are free from threats. The software provides real-time data analytics on the performance and security situation around the applications. Data visualization enables the company IT team to easily monitor the networking system and notice any abnormality. The intelligence provision on workflow infrastructure enables my team to prepare for risks and put measures for curbing malware attacks. The system has provided CloudBots that detect any threats and misconfigurations automatically from our cloud servers.
We are at a point where we must have security at the level of the cloud that we were managing, and we reached a point where this need led us to use the alliance we had with Check Point. It was one of their solutions that came to give us analysis value. It offers threat security forensics through machine learning visualization and analyzes real-time and cloud anomalies. With it, we provide that security line for our two public clouds in which we have resources and applications.
Currently, the company I work for has implemented several cloud solutions such as Azure and AWS, in which they are migrating from AWS to Azure to have everything unified in a single environment. At the moment, we have different applications in both clouds, which have their own system of security in the environments. Recently, in the country there were several ransomware attacks on government companies they were the target due to this we decided to expand security a little more and it was where we made use of Check Point tools that will help us comply with a more centralized security that is more robust on all our end devices.
We currently use Microsoft Azure, which has several security features, all with costs, to perform governance, control, vulnerability improvements and regulatory compliance. However, we manage Check Point. We wanted to have a centralized and modern security environment, and it was possible to obtain it through Check Point Infinity. It was possible to implement Check Point CloudGuard to take advantage of cloud intelligence to analyze modern threats. The global learning that Check Point obtains from all its devices for the improvement and confidence of security. Forensics as your monitoring portal is exceptional.
We use Microsoft Cloud, and, to provide a layer of security, and revision of vulnerabilities in a centralized site, we initiated the use of Check Point CloudGuard for Cloud Intelligence, which provides very correct security revisions, provides monitoring and reports that help the company, and works hand in hand with Check Point, to make the best decisions to avoid vulnerabilities. It is a solution without the need to implement a server. It's totally serverless. That is something that is very important to mention.