CheckPoint is a digital access management and engagement system for venues. It automates and digitizes the registration, ticketing, and check-in process while enabling venues, vendors, and exhibitors to engage with guests directly to their phone's lock screen. CheckPoint is an event management tool for events, conferences, festivals, clubs, and more. The venue management solution boasts users among both the Oscars and Nasdaq.
N/A
FireMon
Score 7.9 out of 10
Enterprise companies (1,001+ employees)
FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to automate policy changes, meet compliance standards, to minimize policy-related risk. Since creating their policy management solution in 2004, FireMon states they've helped…
N/A
Symantec Advanced Threat Protection
Score 6.9 out of 10
N/A
Symantec Advanced Threat Protection is a single unified solution that uncovers, prioritizes, and
remediates advanced attacks. The product fuses intelligence from endpoint, network, and email
control points, as well as Symantec’s massive global sensor network, to stop threats that evade
individual security products. It leverages existing Symantec Endpoint Protection and
Symantec Email Security.cloud investments, so it does not require the deployment of any new
agents. It includes functionality…
N/A
Pricing
CheckPoint
FireMon
Symantec Advanced Threat Protection
Editions & Modules
No answers on this topic
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
CheckPoint
FireMon
Symantec Advanced Threat Protection
Free Trial
No
Yes
No
Free/Freemium Version
No
No
No
Premium Consulting/Integration Services
No
Yes
No
Entry-level Setup Fee
Required
Optional
No setup fee
Additional Details
—
—
—
More Pricing Information
Community Pulse
CheckPoint
FireMon
Symantec Advanced Threat Protection
Considered Multiple Products
CheckPoint
No answer on this topic
FireMon
Verified User
Administrator
Chose FireMon
We have only used firemon and there hasn't been a need to consider other products as we are satisfied with what Firemon can do.
CheckPoint performs well as an internal firewall between network zones, providing policy control and deep inspection of internal traffic. It works well for a multi network setup like ours across multiple sites. It is however not a fast changing interface and time needs to be taken to perform changes. It's not a quick as other vendors
FireMon is best used in a large environment (for example, I have >100 firewalls in my environment). It's best used when trying to improve security posture and showing changes in firewall security over time. It might not be the best choice for smaller environments or those that aren't concerned about security management.
It is valuable software for when it comes to a large or medium organization, since it helps to protect the endpoints, but as the number of servers increases its value increases. However, it is important to keep in mind that when it comes to low end devices, its protection can affect their performance. This is because it is not a software with a very light agent.
The incident management piece is the heart and soul of the product. A single area where all data in relation to network and email protection is available.
Works well in conjunction with the standard Symantec Endpoint product.
URL Protection is advanced and very helpful
Technical support is great and definitely the best I have ever seen for a "anti-virus" type product.
In my experience, notifications are completely broken and non-functional
In my opinion, confusing UX for the cloud portal
Don't try and import 100's of endpoints when onboarding because it will create a mess
When installing the CP client you have to remove Microsoft Defender and if that fails, CheckPoint technical support goes, "Not my problem, sucks to be you!"
I don't like that I have to maintain the client and keep it up to date. Updating the client is not a very easy process.
Deploying the client could be easier. They have a deployment tool, but it doesn't really get to all PCs, which means I still have to manually deploy it.
Because the product has so much customization, it can also be very difficult to set up and understand.
The shell is locked out and we can't run any general centos commands. The implementation and maintainence of the arch is very complex. Even with the right identifiers on log messages the log collection keeps failing. The warning messages on the device are ambiguous. The log messages on firemon are a bit confusing and don't show the exact issue.
Symantec Advanced Threat Protection has done a sufficient job at identifying true positives. However, the UI could be improved and the amount of false positives is a little too frequent for my liking
the solution offer the most improvement about the usability by management more firewall in the same context or multicontext instead. The shared database allow to use one object for more than a package target of a cluster or more of gateways firewall. The management remain isolated from traffic pass through the firewall so the disruption is limited at minimum.
FireMon has been relatively stable overall. However, there have been a handful of times where we had issues with the console. For example, we couldn't update which devices to include in a security assessment. The initial suggestion from support was to just reboot it. It seems like there weren't many other options available such as to restart services before going to the extreme of a complete reboot.
I'm not sure we have the largest implementation of FireMon out there but we do have a few 1000 devices being probed by FireMon. Overall, the system's performance has been rock solid. The console refreshes quickly and reports are generated within an expected timeframe.
FireMon technical support is awesome! They respond quickly to our requests and they are well trained and very knowledgeable about the tool. Some issues have to be referred to the development team, but technical support largely provides solutions for any issues that we may have.
The CheckPoint Firewall and Cisco ISR router serve different purposes. Our organisation uses both devices, but in different areas of the topology. The Cisco ISR is a remote device and its function is to relay information to our edge firewall, which then passes to our internal firewall (CheckPoint) to securely control traffic requests.
I has worked with AlgoSec and while they are very similar product, I find the FireMon is easier to understand and get rolling with. While both require some learning, FireMon is by far the easier one. Once you have an understanding of how things are arranged and labeled you can easily import firewalls and begin to work on them to improve them
Frankly, the other products were too expensive to make the change from Symantec so we continued with the tried and true protection. We don't have the funding to move to a more expensive product and the manpower that it would take to implement a new solution.
Firemon Is easily scalable and maintainable with any size team. Although it requires some tech debt, it is well worth the time to invest to ensure compliance is visible and reports are accurate. Although our environment is very large we do not fully utilize the scalability of the Firemon product.