Try our new research platform with insights from 80,000+ expert users

Check Point CloudGuard CNAPP vs Tenable Security Center comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 24, 2024
 

Categories and Ranking

Check Point CloudGuard CNAPP
Ranking in Vulnerability Management
8th
Ranking in Cloud Security Posture Management (CSPM)
5th
Average Rating
8.6
Number of Reviews
69
Ranking in other categories
Cloud and Data Center Security (9th), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (6th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (5th)
Tenable Security Center
Ranking in Vulnerability Management
4th
Ranking in Cloud Security Posture Management (CSPM)
13th
Average Rating
8.2
Reviews Sentiment
7.5
Number of Reviews
51
Ranking in other categories
Risk-Based Vulnerability Management (1st)
 

Featured Reviews

Yokesh Mani - PeerSpot reviewer
Jan 23, 2024
Easy to write custom rules and policies in the UI with limited coding knowledge
The user interface could be improved. Sometimes, the visibility is not immediately available for the environment. We have the native servers that come with the solutions, but we cannot see them in the Check Point log. Another issue is with the integrated file monitoring. It would make sense to have stuff like file integrity monitoring and malware scanning available within this module because we don't want to integrate another product. For example, let's say it's showing a process violation. It should be able to do some additional malware scanning in that particular bucket to get some additional information. I don't want to integrate with another third-party tool or go to the native server to check something. It would be helpful to have integrated monitoring and malware scanning for the file types. There are a few flaws with the security management portal where I have limited visibility into the workload protection features. There is no error visibility where I can see the communication and workflow between services. Some of the dashboards need to be fine-tuned if they are not customized. For example, I cannot customize anything on the effective risk management dashboard. Some of the information is not correct for my tenant. With respect to passwords and user management, there are no policies I can measure at the user level. If the user was created more than six months ago, you don't need to worry about that password or do anything like two-factor authentication associated with that user. They can still log in after six months or one year. It's also a challenge to use CloudGuard's agentless workload posture with AWS. An Azure storage is summed up with a CNAPP encryption by default. We tried onboarding this data, but the problem is the attachment is not done. After a few days, we identified that it was impossible to do the encryption detection. But CloudGuard's default rules say that this has to be encrypted. The AWS module says that we cannot access this volume with this encryption, so we cannot use an agentless workload posture with AWS because of this. It is a best practice to ensure that all the volumes are being encrypted. Without the encryption, how can I do this? It is a big challenge for CloudGuard.
Md. Shahriar Hussain - PeerSpot reviewer
Feb 23, 2024
A security solution for vulnerability assessment with automated scans
Additional costs are associated with using the solution, as additional scanners are required for different endpoints connected to the Tenable Security Center. If Tenable Security Center could extract information from these scanners automatically rather than manually, it would enhance user-friendliness for customers. For example, suppose I manually conducted CIS hardening or compliance scoring in a separate data centre. These scores should also be reflected in the Tenable Security Center dashboard. Since the scanner is connected to the Tenable Security Center, the dashboard should display the direct scan results from the general security centre and the connected scanners. There could be unusual activities or attacks with the rising AI-related issues or threats that the Tenable Security Center could track in the future.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The visibility in our cloud environment is the most valuable feature."
"Cloud security posture management is the feature we've been using the longest."
"The most valuable feature is the ability to work with the APIs to integrate into our own backend systems."
"We like the GSL Builder feature. When you're running a security operations center, you spend a lot of time monitoring endpoint activity to ensure there is no malicious traffic or anonymous access in the environment. The GSL Builder is helpful for deep investigations of a particular reason for an incident. You can use it to get more information."
"This platform has allowed us to collect data from multiple sources, centralizing everything under a single source."
"It saves time because I can look across the organization. Instead of checking 50 different accounts atomically and spending 15 minutes investigating each, I can spend 15 minutes exploring all 50 accounts. It allows me to quickly look across the org for similar problems when one comes up. That's a huge time saver."
"I can take proactive actions based on an alert without having to interact with the platform directly."
"CloudGuard's best feature is real-time detection. We can detect incidents and vulnerabilities in our code with one click."
"The solution is one of the most, if not the most, stable product available."
"The most valuable feature of this solution is the vulnerability assessment."
"The predictive prioritization features are pretty good. They do a lot of research and we trust the research that they do internally. They have knowledge of what's going on with many companies, where we only get a view into what's going on here. So the ability to get best practices out of them as part of this solution, is valuable to us."
"Feature-wise, Tenable Security Center is a very fast tool with many dashboards and reports, and it covers all our systems."
"This product has the best results in terms of the lowest number of false-positives and false-negatives."
"The Auto-Remediate feature is good."
"This solution has a much lower rate of false positives compared to competing products."
"Tenable Security Center scans networks and gives reports."
 

Cons

"The reporting dashboard responds slowly, which leads to late report compilation."
"The software configurations theory is complicated, and without proper planning and a well-skilled technical team, it cannot perform its tasks properly."
"The reporting has a lot of opportunities to continuously improve so that we can continue to show value."
"The technical support could be better, but I do not know of any other needed improvements."
"Almost all features are good, however, they still require improvements to the code security portion on which integration with the major source code repository is required."
"Dome9 should also support deployments that are on-premises and in a hybrid cloud."
"The costs are really high if you want the entire capabilities of the platform."
"I would like an interface more adapted to cell phones or tablets."
"It's good at creating information, it's good creating dashboards, it's good at creating reports, but if you want to take that reporting metadata and put it into another tool, that is a little bit lacking."
"Tenable SC can improve by adding more integrations with HCI-type tools and more accurate vulnerability detection."
"The tool's initial configuration is not so easy."
"Additional costs are associated with using the solution, as additional scanners are required for different endpoints connected to the Tenable Security Center. If Tenable Security Center could extract information from these scanners automatically rather than manually, it would enhance user-friendliness for customers."
"The pricing is reasonable, but this could be brought down more aggressively, such as we see with Rapid7, Tenable SC's main competitor."
"The reporting needs a lot of work on the template."
"For downloading reports, we have to go to the scan and then we have to go to the reports and download the Excel or CSV or PDF. I think these menus and clicks can be minimized."
"The solution should include compliance-based scanning."
 

Pricing and Cost Advice

"Right now, we have licenses on 500 machines, and they are not cheap."
"It is difficult to contextualize the pricing because we are used to Indian pricing and licensing."
"​They support either annual licensing or hourly. At the time of our last negotiation, it was either one or the other, you could not mix or match. I would have liked to mix/match. ​"
"In the beginning, the price of Dome9 was cheap, whereas now it is not."
"From a pricing perspective, they are pretty expensive."
"The pricing is extremely competitive."
"The licensing part still needs some work. The issue that I have is that we do not use all the services in the cloud, but sometimes, CloudGuard identifies them as an asset."
"The pricing is tremendous and super cheap. It is shockingly cheap for what you get out of it. I am happy with that. I hope that doesn't get reported back and they increase the prices. I love the pricing and the licensing makes sense. It is just assets: The more stuff that you have, the more you pay."
"I would rate the pricing a nine out of ten, where ten is expensive. It is the most expensive tool my company is using."
"My company needs to make yearly payments towards the licensing costs. The pricing of the solution falls in the mid-range level, so it is not too expensive"
"We pay around 60,000 on a yearly basis."
"The pricing depends upon the number of IPs."
"Costing is pretty reasonable compared to the competition."
"Compared to other companies or other products it could maybe be a little bit less, but the price is okay. I would say it's not very expensive."
"Tenable.sc is more expensive than its competitors."
"The tool costs around 15,000 Saudi riyals monthly."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
815,854 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
14%
Manufacturing Company
9%
Security Firm
6%
Educational Organization
21%
Computer Software Company
11%
Government
11%
Financial Services Firm
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Tenable SC?
The tool's dashboard and reporting capabilities match our company's needs since we are able to modify the basic view to create a new dashboard, and it works out very well for our needs.
What is your experience regarding pricing and costs for Tenable SC?
Tenable Security Center is considered pricey compared to other solutions, yet relatively cheaper than some like Qualys. However, when compared to Rapid7, it is more expensive. I rate the pricing si...
What needs improvement with Tenable SC?
The dashboard templates are limited. More templates that align with our daily needs would be beneficial. Current dashboards are available for Linux, separate unit systems, and other systems, but th...
 

Also Known As

Check Point CloudGuard Posture Management, Dome9, Check Point CloudGuard Workload Protection, Check Point CloudGuard Intelligence
Tenable.sc, Tenable Unified Security, Tenable SecurityCenter
 

Overview

 

Sample Customers

Symantec, Citrix, Car and Driver, Virgin, Cloud Technology Partners
IBM, Sempra Energy, Microsoft, Apple, Adidas, Union Pacific
Find out what your peers are saying about Check Point CloudGuard CNAPP vs. Tenable Security Center and other solutions. Updated: October 2024.
815,854 professionals have used our research since 2012.