TrustRadius: an HG Insights company

Check Point CloudGuard Posture Management

Score6.2 out of 10

10 Reviews and Ratings

What is Check Point CloudGuard Posture Management?

CloudGuard Posture Management provides cloud security and compliance posture management for cloud-native environments, including AWS, Azure, Google Cloud, and Kubernetes. CloudGuard automates security, governance and compliance, with customized policies, delivering high-fidelity visibility and control. It is based on technology acquired with Dome9 by Check Point Software Technologies in late 2018. Their product CloudGuard Dome9 was a cloud security and cloud security operations visualization tool, providing governance of cloud configuration and prevent identity theft, among other capabilities.

Cyber Security Guru - One stop shop for all our Security Solutions

Pros

  • Automate Alert Management
  • Threat identification
  • Compliance and Security Posture checks
  • Detect misconfiguration
  • Centralized event management

Cons

  • Support Services - Support during implementation
  • Proof-of-concept - Needs to more detailed
  • Troubleshooting multi-cloud/ vendor issues
  • Should contain all the compliance standards - NIST, HIPPA, FedRAMP

Most Important Features

  • Threat intelligence feature and its capabilities
  • Auto detection of alerts and even misconfigurations
  • Multi-cloud integration capabilities
  • Security posture management
  • Custom Dashboards and Reporting

Return on Investment

  • Significant $$$ cost savings as compared to other competitors in the market
  • Long term contracting also helped in cost savings and good ROI - 750k USD approx
  • Multi-vendor and Multi-cloud capabilities also helped us forecast the capex well
  • No need of any other IAM solution - Some cost savings in that area as well for us,

Alternatives Considered

Palo Alto Networks Cortex XDR and Tufin Orchestration Suite

Other Software Used

Tufin Orchestration Suite, FireMon, Palo Alto Networks Prisma Cloud

Dome9, a great option to have an inventory of your public cloud assets and more

Pros

  • Integration with public cloud providers.
  • Rich UI with great dashboards.
  • Great assets inventory.
  • Clarity module.

Cons

  • Costs.
  • Add more supported assets.
  • SAML integration.

Return on Investment

  • For production environments it is worth the investment.
  • Getting to know how many assets you have helps with cost savings.

Alternatives Considered

Palo Alto Networks Prisma Public Cloud (formerly Evident.io) and Symantec Cloud Workload Protection

Other Software Used

Palo Alto Networks Prisma Public Cloud (formerly Evident.io), Jenkins, GitHub

Check Point CloudGuard delivers a robust set of features if you can handle the cost

Pros

  • Advanced Threat protection via Check Point CloudGuard proven ThreatCloud intelligence feeds for malicious IP's is a nice feature.
  • We have not set up the cloud bots auto-remediation functionality yet, but from initial testing, it looks to be something worth utilizing.
  • Having reporting tie in's with our ServiceNow asset management platform is very handy.

Cons

  • There is not a comprehensive amount of documentation on how to set up best practices.
  • Our initial set up assistance from Proofpoint approved vendor did not go smoothly.
  • The ability to add more customized widgets in the main overview screen would be helpful.

Return on Investment

  • Having one single pane of glass dashboard helps cut downtime for one tech to assess the overall health of the cloud.
  • The cost was a little high, and the setup time was longer than expected to leverage the functionality we paid for fully.
  • Overall a good product so far

Alternatives Considered

Trend Micro Cloud App Security

Built for the cloud!

Pros

  • Minimal false positives if configured properly.
  • End to end visibility in real-time.
  • Multi platform monitoring.

Cons

  • Compared to another widely used competitor, this meets all our requirement as of today.

Return on Investment

  • Helps with early detection which is key for any monitoring tool.
  • Notification integration with most enterprise ticketing systems, thus prompt remediation.

Alternatives Considered

Palo Alto Networks Prisma Public Cloud (formerly Evident.io)

Other Software Used

Cb Defense, Sophos Intercept X for Server, Vectra Cognito Platform, Qualys Cloud Platform (formerly Qualysguard), Cisco Umbrella, Nessus

Excellent monitoring tool for the public cloud

Pros

  • Easy to use.
  • Great user interface.
  • Excellent view of the public cloud.

Cons

  • Needs to add features for an on-premise cloud.
  • Cost is a little high.

Return on Investment

  • Helps us on PCI.
  • Help us on SOX.

Usability

Alternatives Considered

Skybox Security

Other Software Used

Skybox Security