Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard CNAPP vs Netskope comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 1, 2024
 

Categories and Ranking

Check Point CloudGuard CNAPP
Average Rating
8.6
Number of Reviews
69
Ranking in other categories
Vulnerability Management (8th), Cloud and Data Center Security (9th), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (6th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (5th)
Netskope
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
41
Ranking in other categories
Cloud Access Security Brokers (CASB) (5th), Secure Access Service Edge (SASE) (4th)
 

Featured Reviews

Yokesh Mani - PeerSpot reviewer
Jan 23, 2024
Easy to write custom rules and policies in the UI with limited coding knowledge
The user interface could be improved. Sometimes, the visibility is not immediately available for the environment. We have the native servers that come with the solutions, but we cannot see them in the Check Point log. Another issue is with the integrated file monitoring. It would make sense to have stuff like file integrity monitoring and malware scanning available within this module because we don't want to integrate another product. For example, let's say it's showing a process violation. It should be able to do some additional malware scanning in that particular bucket to get some additional information. I don't want to integrate with another third-party tool or go to the native server to check something. It would be helpful to have integrated monitoring and malware scanning for the file types. There are a few flaws with the security management portal where I have limited visibility into the workload protection features. There is no error visibility where I can see the communication and workflow between services. Some of the dashboards need to be fine-tuned if they are not customized. For example, I cannot customize anything on the effective risk management dashboard. Some of the information is not correct for my tenant. With respect to passwords and user management, there are no policies I can measure at the user level. If the user was created more than six months ago, you don't need to worry about that password or do anything like two-factor authentication associated with that user. They can still log in after six months or one year. It's also a challenge to use CloudGuard's agentless workload posture with AWS. An Azure storage is summed up with a CNAPP encryption by default. We tried onboarding this data, but the problem is the attachment is not done. After a few days, we identified that it was impossible to do the encryption detection. But CloudGuard's default rules say that this has to be encrypted. The AWS module says that we cannot access this volume with this encryption, so we cannot use an agentless workload posture with AWS because of this. It is a best practice to ensure that all the volumes are being encrypted. Without the encryption, how can I do this? It is a big challenge for CloudGuard.
HemantKumar4 - PeerSpot reviewer
Aug 18, 2023
Effective for managing shadow IT and provides continuous data protection for users connected to the internet
Our one use case involved shadow IT. We had numerous cloud applications being used by the business without the IT team's awareness. A lot of data was being exchanged with these cloud applications.  Another use case centered around our corporate applications, specifically Google Workspace. We…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The audit feature is the most valuable for compliance reasons. It gives you a full view of the whole environment, no matter how many accounts you have in AWS or Azure. You have it all under one umbrella."
"The system has deployed security tools to enhance effective investigations in the entire company networking system."
"CloudGuard's best feature is real-time detection. We can detect incidents and vulnerabilities in our code with one click."
"Visibility is a key feature. It helps me to validate my overall network posture."
"It has an analytics service that does research for us."
"The ability to drill down to individual hosts on an account and see which ones are affected is valuable."
"The valuable features of Checkpoint CloudGuard CNAPP include its automation capabilities."
"Helps identify and correct misconfigurations in cloud environments, ensuring that infrastructure and applications are secure and optimized."
"The most valuable features were related to discovery, data protection, and ensuring compliance with regulations."
"The most valuable feature of Netskope is that it is a SaaS-delivered solution."
"Its deployment is very easy and quick. Their technical support is also very good."
"It has hundreds of features and many of them are useful."
"Netskope is a one-platform security product that provides security functions. It is the most advantageous product in the Japanese market."
"The client size and architectural components in Netskope are far better than other solutions."
"We use Cisco VPN for remote access. Additionally, we have started implementing Netskope with a strong focus on security. Our primary goal is to protect users from accessing malicious sites. We also plan to implement DLP based on our data, as data security is our main concern."
"Technical support is pretty good."
 

Cons

"Check Point tools need to improve the latency in the portal since they take a long time to load."
"There are opportunities for improvement that can be addressed through a roadmap."
"Automatic remediation requires read/write access. When providing read/write access to third-party applications, this can add risk. It should have some options of triggering API calls to the cloud platform, which in turn, can make the required changes."
"I would like to see tighter integration with other compliance tools, like Chef Compliance, in addition to Inspector."
"Making basic rules is easy, but it's complex if you want to do something a little more nuanced. I've been unable to make some rules that I wanted. I couldn't evaluate some values or parameters of the components I look for. I haven't always been able to assess them."
"The false positives can be annoying at times."
"It should capture more information in metadata including communication detail. Also, Internal IP addresses should not be tracked as this might be having some compliance issues."
"Sometimes, the solution provides us with false alerts of vulnerabilities that are not present in our cloud environment."
"They can focus more on ease of admin, ease of use, and ease of migration. Migration should be simple for companies that are using a different platform and would like to move to Netskope. Everyone looks for a simple migration. They can also focus more on cloud services and cloud trends. They have to see the cloud market, and they should try to compete with Zscaler and other players. They should also work on licensing costs."
"There is currently no DLP on-premises."
"The solution's documentation still needs to be improved."
"Accuracy could be improved."
"I would like to see the product improved, especially in monitoring and security monitoring. It should be more effective so we can better identify cloud access and understand how users are accessing it. We need better visibility on security and cloud storage access."
"The solution is still pretty new to the CASB environment."
"The configuration in the cloud model could be improved upon."
"In terms of improvements, enhancing support, particularly for OEM support with quicker response times would be beneficial."
 

Pricing and Cost Advice

"The licensing and costs are straightforward, as they have a baseline of 100 workloads (number of instances) within one license with no additional nor hidden charges. If you want to have 200 workloads under Dome9, then you need to take out two licenses for that. Also, it does not have any impact on cloud billing, as data is shared using the API call. This is well within the limit of free API calls provided by the cloud provider."
"The solution’s pricing is a little bit high."
"CloudGuard is fairly priced."
"We have the enterprise-level license and we renew it annually because it is worth the cost."
"I would advise taking into account the existing number of devices and add a forecast of the number of devices to be added in the coming year or two, to obtain better pricing."
"Check Point CloudGuard Posture Management is always known as a good solution but an expensive one. When you're using Cisco, Check Point, or Palo Alto, you know that you will pay more, but you know that it will work."
"The license for CloudGuard Posture Management is about $80 a year, and it's based on your cloud footprint, not the number of users. So you could have a million users, and it doesn't matter."
"Its price is very fair."
"Netskope's pricing is reasonable compared to Microsoft."
"Pricing is a little expensive but it is affordable."
"On a scale from one to ten, where one is expensive, and ten is cheap, I rate the solution's pricing a six out of ten."
"There is a license required for this solution and there are many licensing models available. For example, what applications are covered as part of the license."
"The tool's pricing is not too cheap or expensive. However, it can be costly for a small business."
"The price is in the middle range compared to other solutions."
"I wasn't involved in the initial discussions about its cost. However, within the next year, by around June, I'll need to review the vendors' quotes. Typically, our procurement team handles the process by issuing an RFP to vendors to get quotes. From there, we evaluate based on pricing and may conduct a proof of concept to assess value."
"Netskope is a premium service, and its pricing ranges from medium to expensive."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
815,854 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
14%
Manufacturing Company
9%
Security Firm
6%
Computer Software Company
18%
Financial Services Firm
15%
Manufacturing Company
8%
Insurance Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is better, Zscaler internet access or Netsckope CASB?
We researched Netskope but ultimately chose Zscaler. Netskope is a cloud access security broker that helps identify and manage cloud applications, protecting your sensitive data from exfiltration....
What do you like most about Netskope CASB?
The product's analytics part is pretty fine.
What is your experience regarding pricing and costs for Netskope CASB?
Before, it was a lot cheaper. Now they're at a higher price.
 

Also Known As

Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
Netskope CASB
 

Overview

 

Sample Customers

Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
NetApp, Genomic Health, Caterpillar, Apollo, Pandora, Continental Resources, Fractal, infinera, Tesla
Find out what your peers are saying about Tenable, Qualys, Wiz and others in Vulnerability Management. Updated: October 2024.
815,854 professionals have used our research since 2012.