Try our new research platform with insights from 80,000+ expert users
reviewer953730 - PeerSpot reviewer
Director, GRC Applications and Systems Delivery at a tech company with 501-1,000 employees
Vendor
A SaaS-friendly tool that integrates well with DLP but better integration with on-premise tools is needed
Pros and Cons
  • "It gives us visibility into how the data is being used within our cloud environment."
  • "The biggest challenge we have with McAfee is their cross-cloud support."

What is our primary use case?

We use this solution as a CASB, a Cloud Access Security Broker, to gain insight into our cloud environment. We integrate this solution for our clients as a companion service to our main cloud product.

How has it helped my organization?

It gives us visibility into how the data is being used within our cloud environment. It shows the flow of information, and in our case, it has to with documentation that is restricted. For example, if a document contains credit card information or social security numbers then we are able to track it when somebody tries to delete them or do something else that is prohibited. We get flagged, which is the key. It enhances the visibility of what's in our cloud environment.

What is most valuable?

The most valuable feature for us is the integration with DLP. 

What needs improvement?

The biggest challenge we have with McAfee is their cross-cloud support. They tend to lag by a few months, in terms of providing support for new cloud platforms, or new cloud features. We're primarily focused on SaaS, so the other opportunities for them to improve their integration is with AWS and PaaS.

I would like to see better integration with on-premise tools.

Buyer's Guide
Skyhigh Security
February 2025
Learn what your peers think about Skyhigh Security. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.

For how long have I used the solution?

Two years.

What do I think about the stability of the solution?

That stability is good. It's a very good tool.

What do I think about the scalability of the solution?

We have had no problems in terms of scalability.

We have a team of about forty people who use it. There is the DLP team, the various tenant cloud security administration team, and we also have our staff that uses it.

How are customer service and support?

We found that the documentation is meager, but the response time from technical support is very good.

Which solution did I use previously and why did I switch?

We did not use another solution prior to this one.

How was the initial setup?

This solution is very easy to set up.

It took us about a month to get it up and running, but it took us four months to figure out how to use it amongst the different teams.

What's my experience with pricing, setup cost, and licensing?

The licensing fees are based on what environments you are monitoring.

Which other solutions did I evaluate?

We did evaluate a couple of other options, and we have other solutions as well. We have Evident.io, one from Cisco, and one from Palo Alto. None of them are good in every environment, so we use a combination of these solutions.

I have found, based on implementations for multiple clients, that Evident.io doesn't meet the needs of all of the people. Evident.io is not a security protocol. It gives you visibility into your cloud, but it's not a broker. It's just an analysis tool. It is very PaaS-friendly, but not a SaaS-friendly tool. This is opposed to Skyhigh, which is SaaS-friendly but not PaaS-friendly.

What other advice do I have?

My advice for anyone who is implementing this solution is to know what roles you will need to grant access to and have your roles predefined.

This solution has good coverage and good integration with other McAfee products. I am not giving it a perfect score because of the uneven coverage for other platforms. They tend to lag in terms of support for new platforms and new tools that come out on the cloud. 

I would rate this product a seven out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
IT Security at a financial services firm with 5,001-10,000 employees
Real User
Provides categorization and rating of websites separate from what the web proxy places on the logs
Pros and Cons
  • "Skyhigh has given us categorization and rating of websites separate from what the web proxy places on the logs."
  • "Improves creation of security alerts on web proxy logs by having a separate system interpret said logs."
  • "The tool could improve flexibility with the creation of reports/querying data."

What is our primary use case?

Insight into services being accessed and/or used in corporate environment. Additionally, Shadow IT as a whole and provides another set of eyes on web proxy logs.

How has it helped my organization?

It has allowed insight into gaps that may exist in current web proxy tool policies. Improves creation of security alerts on web proxy logs by having a separate system interpret said logs.

What is most valuable?

Skyhigh has given us categorization and rating of websites separate from what the web proxy places on the logs.

What needs improvement?

The tool could improve flexibility with the creation of reports/querying data. A better search capability, similar to a SIEM, would also allow deeper log analysis.

For how long have I used the solution?

One to three years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Skyhigh Security
February 2025
Learn what your peers think about Skyhigh Security. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,713 professionals have used our research since 2012.
it_user535407 - PeerSpot reviewer
Security Analyst IV - Risk Management at a energy/utilities company with 1,001-5,000 employees
Real User
We are able to identify the high-risk websites and block them. I have encountered some stability issues.

What is most valuable?

Currently, we are using cloud discovery and analytics. This has given us an insight to which services our end users are subscribing to and where our business data may be held.

How has it helped my organization?

We are able to identify the high-risk websites and block them before the end users start using them to ensure that a business case is made for unblocking a high-risk site (rather than having to run interference after the fact). It also allows us to suggest other alternatives and safer services to the end user.

What needs improvement?

One feature offered is a 48-hour turnaround to add a service to the global registry upon request. While they do turn around risk assessments very quickly, often many of the answers are unknown which drives the risk scores of the services up. When provided with contact information, they will reach out to the service provider and get answers to those questions, but it doesn’t provide a lot of value to show a service as high risk just because they haven’t had the opportunity to ask yet.

I have experienced a few cases where I provided a direct contact name (who was expecting a call from someone at Skyhigh) for the cloud service provider being evaluated, and have received feedback from the contact that no one reached out to them after several days or, in some cases, weeks.

For how long have I used the solution?

I have used this product for about 16 months.

What do I think about the stability of the solution?

I have encountered some stability issues. However, these seem to have improved over the last couple of releases.

What do I think about the scalability of the solution?

I have also encountered scalability issues.

Some logging was turned on that filled up the log file shares very quickly; it took some time to determine the cause of the issue and remediate it.

How are customer service and technical support?

The technical support level is good. They are responsive and truly desire to solve problems. The support staff can update versions of the software on our on-premises log processors in less than an hour via a WebEx session.

Which solution did I use previously and why did I switch?

I have not used any other solution.

How was the initial setup?

The setup was straightforward. We set up some on-site log processor devices to gather the firewall logs and send them encrypted to the server for analysis. The results were processed and then appeared on our dashboard.

What's my experience with pricing, setup cost, and licensing?

The pricing policy is based on the employee/contractor count (people with a user ID in your active directory domain). The pricing policy is best if you enter a multi-year agreement.

Which other solutions did I evaluate?

I have evaluated other solutions such as Imperva Skyfence, Netskope, and Elastica.

What other advice do I have?

If possible, have them run a simulation in your live environment for 30 days and you will be impressed with the kind of data that is collected. I, personally, highly recommend this product.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1415217 - PeerSpot reviewer
Security Engineer at a tech services company with 201-500 employees
Real User
Very sophisticated with great anti-virus filtering, URL categorization, and reporting capabilities
Pros and Cons
  • "Good anti-virus filtering, URL categorization, and reporting capabilities."
  • "User interface could be more intuitive."

What is our primary use case?

This is a web security product, it controls the usage of web for employees. There is an integral anti-virus and web URL filtering solution. I've used the solution in multiple companies that I worked in, and for the last six months I have a new company and I sell the solution along with other security products. I'm a security engineer. 

What is most valuable?

I like the anti-virus filtering, URL categorization, and reporting capabilities. I also like the ability to control what kinds of files or content can be downloaded. So you can restrict executables and potential harmful files. It's a very sophisticated and mature solution. 

What needs improvement?

I think it's a very good product although the user interface is not very intuitive and could be improved. Because of its sophistication, it's not so easy to manage and you have to learn to use it well. The solution can't really be simplified because then it would not be so customizable. You have to know what you're doing. If you don't know about filtering, you won't be able to use it well. I also think that the URL filter model and the web application filter model should be more tightly coupled but it's a lot of effort to get them to work together, not an easy problem. It's two different models - URL filtering and web application filtering. 

For how long have I used the solution?

I've been using this solution for nine years. 

What do I think about the scalability of the solution?

Scalability is no problem. It is cluster able so I can use many devices. We have small companies in Hungary, usually some 1000 users, but we have one simple appliance. It can deal with many users. I assume even 50,000 users would not be a problem for this product. 

How are customer service and technical support?

I've used technical support rarely but when we've had an issue they respond relatively quickly and they know what to do. I like them. 

Which solution did I use previously and why did I switch?

I have seen other products like Websense, which is Forcepoint now, and McAfee Web Gateway which is better than Websense, I think. The features are generally the same, but McAfee is easier to manage and maintain, easier to overview. It also has better debugging capabilities and better logging.

How was the initial setup?

The initial setup is very, very straightforward. I think it's one of the best. 

What other advice do I have?

I would definitely recommend this solution and would rate it a 10 out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user774840 - PeerSpot reviewer
Works at a healthcare company with 1,001-5,000 employees
Real User
Provides full control of the infrastructure process, but needs to improve its support

What is our primary use case?

  • The user analytics
  • Having a full idea about infrastructure

What is most valuable?

DLP rules.

How has it helped my organization?

Having full control of infrastructure.

What needs improvement?

Iteration process.

For how long have I used the solution?

Two years.

What was my experience with deployment of the solution?

Yes.

What do I think about the stability of the solution?

Yes.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

Five out of 10.

Which solution did I use previously and why did I switch?

No.

How was the initial setup?

The support team implemented the solution.

What was our ROI?

Not applicable.

What's my experience with pricing, setup cost, and licensing?

It is good.

Which other solutions did I evaluate?

Yes.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user540324 - PeerSpot reviewer
System Developer Analyst at a tech services company with 10,001+ employees
Real User
The UI is user-friendly. Some of the explanations it gave for risks were too vague to address.

What is most valuable?

It has a very user-friendly UI and is easier to pick up for people with less technical experience.

How has it helped my organization?

It’s a small improvement; however, it has augmented the pre-existing network monitoring services already in place to something more meaningful for higher levels of management.

What needs improvement?

Its capabilities are still rather limited compared to other solutions. It’s a reasonable monitoring service, but it would still need to be coupled with other solutions to be practical.

I found that when it comes to monitoring services on the network, Skyhigh gives a more comprehensive and practical break down of what risks the user is looking at. This is very useful when reporting metrics to upper management. However, it felt slightly lacking in the technical breakdown area as compared to other services we used at the time. Some of the explanations it gave for risks were too vague to address, so we would revert to another product we use regularly to get a more specific picture of a threat.

For how long have I used the solution?

I have used Skyhigh for three months.

What do I think about the stability of the solution?

I can’t recall any stability issues.

What do I think about the scalability of the solution?

We used this as an internal solution, so I can’t reasonably address scalability.

How are customer service and technical support?

I rate technical support 7/10. I felt they were very accommodating when we worked with them, but as we were ramping up the product, we needed a lot of support to understand Skyhigh functionality. We had a dedicated resource communicating with us for some time, but there was a sudden switch and the knowledge transfer between them wasn’t comprehensive, leading to some lag in support.

Which solution did I use previously and why did I switch?

We previously used a different solution but we did not drop it. We attempted to use the two solutions together.

How was the initial setup?

I was not a part of initial setup, so I can’t speak to this point.

What's my experience with pricing, setup cost, and licensing?

I was not part of pricing, so I can’t speak to this point

Which other solutions did I evaluate?

To my knowledge, Skyhigh was meant to help fill some of the performance gap shown by our other solutions, so we weren’t actively looking for products to do this so much as experimenting with a single new product we’d heard about.

What other advice do I have?

Use this product in conjunction with others. It has good coverage in terms of monitoring, but other commercial products were used to mitigate threats to the network.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer2117211 - PeerSpot reviewer
Delivery Engineer at a tech services company with 11-50 employees
Real User
Top 10
Reasonably priced with helpful support and good security
Pros and Cons
  • "The management is very good."
  • "The secure gateway could be improved."

What is our primary use case?

I have been implementing this solution for protection as an ERP solution. I've been using it to protect and implement private apps.

What is most valuable?

The broader solution is quite useful. They provide service management for a variety of environments, including Office 365, Google, AWS, and Azure. 

It offers very good protection overall.

The management is very good.

We're able to provide the customer with best practices for coding.

It is a stable product.

Technical support is helpful.

The pricing is reasonable. 

What needs improvement?

The secure gateway could be improved. If they worked on that they would be more competitive.

They should offer more learning opportunities. If they could provide tools to help users interested in learning more about the technology, that would be ideal.

For how long have I used the solution?

I'd rate the solution for around one year or maybe a bit less.

What do I think about the stability of the solution?

We have been facing some stability issues. However, via the support team, we're doing okay. It provides accurate warnings if there are some maintenance windows or service upgrades. It helps prevent unexpected disruption. 

What do I think about the scalability of the solution?

I haven't really attempted to scale the solution. 

How are customer service and support?

Technical support is excellent. They are very helpful and responsive. I have no complaints about their level of service. 

How was the initial setup?

The initial setup is very straightforward and simple. I'd rate the ease of implementation nine out of ten. It's not overly complex. 

What's my experience with pricing, setup cost, and licensing?

The pricing is good and the licensing is straightforward. I'd rate the affordability nine out of ten. 

What other advice do I have?

I'd rate the solution eight out of ten. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
IT Engineer at FormatPC
Reseller
Secure, stable, and well integrated
Pros and Cons
  • "It's a great product with solid features."
  • "The documentation could be improved."

What is our primary use case?

We use this solution for controlling web content that the users are accessing. It's very good in case situations where you have the use of a VPN connection.

You can control your employees when they are in the office and out of the office, without using a VPN in the same fashion.

The on-premise solution will control them when they are on the corporate network, and when they're off the corporate network, the cloud's gateway will control them. They have the same policies.

What is most valuable?

It's a great product with solid features.

It's a security appliance and it is quite secure.

They are quite well integrated.

What needs improvement?

The documentation could be improved. The documentation could be more detailed with more examples of usage.

For how long have I used the solution?

We have been selling McAfee Web Gateway for four years.

Deployment can be on-premises or on the cloud.

What do I think about the stability of the solution?

It is a very stable solution.

What do I think about the scalability of the solution?

I don't have any issues with the scalability. You have to do the sizing before they implement it afterward. 

You have other solutions that have to increase the volume of usage.

We have several large clients that are using it.

How are customer service and technical support?

We are satisfied with technical support.

How was the initial setup?

The initial setup is straightforward. It is easy to install.

If the client has a lot of demands and depending on their structure or the client's requests, it can be complex to configure.  In general, it is straightforward and easy to configure.

What's my experience with pricing, setup cost, and licensing?

Some of our clients have a perpetual license and pay additional support yearly. 

We don't have any customers that are using subscriptions yet.

I wouldn't say that it is an expensive solution but it's not cheap. We pay for what it's worth.

What other advice do I have?

I would recommend this solution to others who are interested in using it.

I would rate McAfee Web Gateway a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Buyer's Guide
Download our free Skyhigh Security Report and get advice and tips from experienced pros sharing their opinions.
Updated: February 2025
Buyer's Guide
Download our free Skyhigh Security Report and get advice and tips from experienced pros sharing their opinions.