What is our primary use case?
Currently, our company implements several sites and applications developed in Microsoft Azure.
However, in the past, we had some vulnerabilities in identities that were used within the development, which allowed us to understand that we needed help to implement the best security practices for others to protect all the development against attackers that could harm us. The tool has helped us improve and implement improvements for our security.
How has it helped my organization?
Check Point Spectral helps us daily with the development and helps to improve security best practices. It can protect the code and take care of the identities with permissions in the applications.
Additionally, being a cloud environment, they more easily take the attention of attackers and safeguard corporate information and intellectual property.
Its monitoring features, and its ability to improve the best practices of development already implemented or completed for company security, have helped us to be more secure.
What is most valuable?
This new special security tool for developers was acquired not long ago. However, I can comment that it has very good characteristics, such as:
1- The implementation of this tool for security management and control is very simple. It only requires installing a scanning agent which is responsible for reviewing the code, generating a security assessment, and indicating failures in a very good way.
2- It can validate and improve a large number of code languages, which makes it very interesting for developers in different fields.
3- Real-time data loss prevention is quite good for avoiding vulnerabilities and further damage executed by an attacker.
What needs improvement?
Being such a new tool in the Check Point security portfolio, it has become a challenge to obtain information on security implementation improvements, for which it would be very good to create more documentation for this tool.
It is difficult to solve problems via support. With very new tools, the service hours are sometimes different from our country, so finding sessions is sometimes hard.
The costs are not transparent. You need a provider so that they can give you more details.
It is a non-centralized environment in Infinity Portal.
For how long have I used the solution?
In recent months we have tested this solution to protect our developments implemented in Microsoft Azure.
A tool that perfectly complies with security, good practices, and improvements to avoid vulnerabilities.
Which solution did I use previously and why did I switch?
We have never had a tool for this type of security improvement.
What's my experience with pricing, setup cost, and licensing?
It is vital to have the support of a specialized partner. It will help you to really deliver what you are looking for, help with costs, and, if necessary, offer technical support.
Which other solutions did I evaluate?
Thanks to our partner and the documentation on the benefits of this tool, we chose to implement it.
What other advice do I have?
Developers definitely created this tool for developers. I would recommend it.
Disclosure: I am a real user, and this review is based on my own experience and opinions.