We performed a comparison between Check Point NGFW and Zscaler Internet Access based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The integration with Active Directory is one of the good features. Most of the customers are now looking for the Single Sign-on feature. So, being able to integrate Active Directory with the firewall is useful. It is also easy."
"The most valuable feature of Fortinet FortiGate is the simple configuration."
"One of the valuable features is a standardized OS."
"The ease of setting the solution up is a valuable aspect for us."
"The UTM feature is quite good. FortiAP is easy to deploy because both Fortigate and FortiAP are under the same brand. Otherwise, you need to do more work on the configuration."
"Web filtering and two-factor authentication are great features."
"I am "headache free" that I don't have to categorize all the websites and that security has been pre categorized by the people, and that the services are getting updated. At least one part of my problem is over."
"Fortinet FortiGate's ease of management is the most valuable feature."
"The features that are important include: IPS, sandbox, SandBlast, Anti-Bot, and URL filtering."
"The features that I have found most valuable are its flexibility and user interface. This is already a well-established product in the market for quite a long time, more than 20 years. They've got a huge customer base."
"Check Point NGFW has helped us to significantly reduce our risk of cyberattacks by providing comprehensive protection against a wide range of threats, including malware, viruses, ransomware, phishing attacks, and zero-day threats."
"The Check Point firewall features for Next Generation Firewalls are excellent."
"We have all the features we want or need in this appliance. It's been good so far."
"The firewall and IPS are the most valuable features of the solution."
"Its most significant strength lies in its superior threat detection engines."
"The best feature is the ability to increase the capacity of the solution by exactly what you add, not losing anything for High Availability."
"The URL filtering has been the most valuable feature."
"After a proper implementation, the maintenance is very low."
"We use ZIA for outbound internet connectivity. The internet traffic of on-prem users will be directed to the ZIA cloud for security checks and web filtering."
"The protection is most valuable."
"The initial setup was straightforward. The biggest thing for us was to build our own policies. The deployment itself was only a few hours."
"I like the granularity of the control of all the traffic, including SSL inspection. I also like the fact that the user interface is intuitive. The latencies with Zscaler are minimal compared to those of any other competitor. Other competitors do not really have the global scale that Zscaler has and cannot promise low latencies."
"Whether you are in a hotel somewhere, or in Africa, it does not matter. You will get the Zscaler protection presence anywhere."
"The most valuable features I found in Zscaler Internet Access are the restriction of users for a particular URL, the security feature related to stopping DDoS, and the VPN."
"The command line is complicated, and the interface could be better."
"We have an issue with hotel guest vouchers."
"The cloud features can be improved."
"The solution can have more features in a single box that can be multi-applied to integrate everything."
"The UTM filtering needs improvement."
"Fortinet needs to overhaul its documentation."
"Usually, we sell the bundle with the UTM or threat management piece with IPS, IDS. Other providers, such as Palo Alto, are ahead in terms of safe functionality. So, for me, delivering truly safe service is probably something that still needs to be improved."
"Some features of Fortinet FortiGate are actually fee enabled that are inconvenient for deploying in production. Other issues relate to isolation with Cisco products and your server."
"Check Point NGFW needs to run marketing events. They have also to set up a support center in India."
"Right now, with a larger user database and a high number of rules, it takes a bit of time for policy installation."
"The setup is a little complex compared to its competitors."
"The only downside to Check Point, is, due to the vast expanse of configurable options, it does become easily overwhelming."
"The command line is very difficult to use, which is one of the biggest drawbacks of this solution."
"One area for improvement in Check Point NGFW is the support process."
"Check Point doesn't warn us when rules are about to expire. It was also inconvenient that we had to change hardware when we upgraded. It would be nice if they made the new version compatible with current hardware or if it only required a minor upgrade."
"There needs to be more storage space for reporting."
"An improvement would be if they could provide an out-of-the-box experience, like 20 to 30 features all ready to go. In comparison, LogRhythm offers out-of-the-box features. With Zscaler Internet Access, there is firewall IPS, multiple security services, filtering, DLP, and CASB browser isolation. These are things that all users are going to be using. However, when an administrator or architect would start building this, I would definitely need to engage professional services to help clients do it."
"The solution can be improved by advancing some of the newer technologies such as the DLP feature, and adding email security."
"Zscaler Internet Access could improve by adding a VPN feature."
"In every cloud service in the world, you have multiple upstream internet providers to create diversity so that if one of your providers fails, your network just continues. In South Africa, there is only one upstream provider, and that's not right. That that's a problem."
"I would like to see more training and video documentation."
"Zscaler Internet Access's troubleshooting is very limited, and their textbook logs need to be more informative."
"In terms of usage, here in the GCC, it's still growing a growing market, so the combination of DLP, data leak prevention, to a certain extent is fine. But what it requires is user-based access or role-based access. The solution needs to grow into that, which definitely takes time. There's not an easy way to integrate it, when you have a cloud-based solution."
"In terms of user experience, it could be better."
Check Point NGFW is ranked 5th in Firewalls with 279 reviews while Zscaler Internet Access is ranked 2nd in Secure Web Gateways (SWG) with 46 reviews. Check Point NGFW is rated 8.8, while Zscaler Internet Access is rated 8.2. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Zscaler Internet Access writes "Provides integrated CASB and file sandboxing but could be less expensive ". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Azure Firewall, whereas Zscaler Internet Access is most compared with Cisco Umbrella, Microsoft Defender for Cloud Apps, Netskope , Prisma Access by Palo Alto Networks and Appgate SDP. See our Check Point NGFW vs. Zscaler Internet Access report.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.