Eric S.
ES
Eric S.
Mid-Market (51-1000 emp.)
"Solid Protection with Machine Learning; Console Improvable"
3.5/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I greatly appreciate the machine learning engine of Check Point CloudGuard WAF for prevention, because it automates much of the complex work of rule management, drastically reducing false positives. I don't have to write custom rules from scratch and the policies adapt well to real traffic after the initial learning period. Additionally, I like the security policy updates that come from the cloud without me having to intervene manually. The preemptive bot protection is very effective, clearly distinguishing between good and malicious bots, and the automatic API discovery is convenient for mapping APIs and detecting unprotected endpoints. The unified console for policy management across different environments, cloud and on-prem, is very useful to avoid maintaining separate stacks. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

The management console could be improved; sometimes you have to click too many times to find specific information, and the logging system is not granular enough during troubleshooting. The documentation lacks concrete examples for real use cases, and more practical troubleshooting support would be helpful. Integration with Splunk requires writing custom parsing, and support for configuration as code has room for improvement. Review collected by and hosted on G2.com.

Otniel V.
OV
Otniel V.
SOC Analyst
Mid-Market (51-1000 emp.)
"Reliable WAF with Robust Protection, Needs Fewer false Positives"
5/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I really appreciate Check Point WAF's real-time protection against web attacks like SQL Injection and XSS. It's been effective in preventing web attacks, blocking malicious traffic, reducing downtime, and improving compliance. The initial setup was pretty easy, with everything being clear and not taking much time. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

One area could be reducing the false positives, as sometimes legitimate users requests can be blocked. Review collected by and hosted on G2.com.

Rabindra K.
RK
Rabindra K.
Cloud Engineer
Mid-Market (51-1000 emp.)
"Effortless Hybrid App Security and Rock-Solid API Protection"
5/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

What really stands out to me is how easy it is to manage across our hybrid environment it doesn’t care if our apps are in AWS, Azure, or on-prem, everything just works. The SSL offloading took a massive load off our backend servers, and the API protection has been rock solid. Honestly, I don’t have to think about WAF configs anymore, and that’s the dream. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

The reporting and logging could definitely be more intuitive I usually end up exporting logs just to make sense of them because the built-in tools feel clunky. Also, the dashboard sometimes takes a few extra seconds to load, which is more annoying than it should be for a product at this price point. Minor frustrations, but they add up. Review collected by and hosted on G2.com.

Maqsud A.
MA
Maqsud A.
Network Security Engineer
Small-Business (50 or fewer emp.)
"AI-Driven WAF with Minimal Manual Tuning"
4/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I like Check Point CloudGuard WAF because of its contextual AI that delivers near-zero false positives and automatic zero-day protection. I find it extremely valuable for providing strong automatic protection against zero-day threats with almost no false positives and requiring zero daily tuning effort. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

One area that could be improved is the initial learning period for very complex or highly dynamic applications, which sometimes requires a bit more manual exception tuning than I'd prefer in the first few weeks. Also, the initial setup/learning phase for complex apps can be a bit involved, and pricing feels premium, though the low-maintenance protection usually justifies it for serious environments. Review collected by and hosted on G2.com.

Dominika T.
DT
Dominika T.
Cybersecurity Engineer - Data Protection
Enterprise (> 1000 emp.)
"Low False Positives and an Easy Setup from Day One"
4/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I like the most that since beginning of set up the rate of False Positives is significantly lower then in other tools. Also 0 day protection is working well and does not require manual rules updates. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

There is not enough of technical documentation and also initial set up is complicated. Will be easier if will be more knowledge-base articles available. Review collected by and hosted on G2.com.

Rithin m.
RM
Rithin m.
Software Engineer
Small-Business (50 or fewer emp.)
"Catches Zero-Day Attacks with Low False Positives and a Unified Security Dashboard"
5/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

The AI engine catches zero-day attacks without throwing false positives at us all day. Bot protection killed our scraping problem, and managing cloud plus on-prem from one dashboard saves real time. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

The initial learning curve is steeper than I'd like. Documentation could be clearer for advanced policy tuning, and the console can feel sluggish when pulling reports across larger time ranges. Review collected by and hosted on G2.com.

Yosra M.
YM
Yosra M.
Consultante Salesforce
Mid-Market (51-1000 emp.)
"Centralized Protection with Seamless Cloud Integration"
4/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I like most about Check Point CloudGuard WAF is its seamless integration with cloud environments and the ability to enforce consistent security policies across multiple platforms through a single console. It also provides strong centralized protection and cloud-native integration. The initial setup was relatively simple thanks to the cloud-native integration and automated policy template. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

One area that could be improved is the initial setup and policy tuning, which can feel complex and time-consuming, especially for teams without deep prior experience with Check Point's ecosystem. Review collected by and hosted on G2.com.

Verified User in Computer Software
UC
Verified User in Computer Software
Small-Business (50 or fewer emp.)
"Strong Security and Easy Management for Multi-Cloud App Protection"
4/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

It’s a solid combination of strong security and easy management. I also appreciate its cloud-native approach, especially the ability to protect applications across different cloud environments. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

Compared with some competing WAF solutions, the initial setup and policy-tuning process can feel complicated, particularly for teams that are new to web application security. I’ve also seen users note that troubleshooting false positives may take a significant amount of manual effort, and that the user interface can come across as less intuitive than some cloud-native alternatives. Review collected by and hosted on G2.com.

Eric S.
ES
Eric S.
Machine Learning Engineer
"Easy to Distribute, Great for the Cloud"
4/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I really like the simplicity of deploying Check Point CloudGuard WAF. It is cloud native and integrates well with AWS and Azure, automatically scaling when there is a traffic spike. I appreciate the centralized management that saves me time and the console where I can manage multiple environments from a single interface. The AI engine for threat detection is impressive and reduces the tuning work, learning from legitimate traffic and alerting you to attacks that might go unnoticed with other solutions. Check Point's support has always been quite responsive. Additionally, the updates for signatures and protection rules are automatic, which saves me valuable time. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

The thing that annoys me the most is the price. It is not cheap at all, and when I have to propose it to smaller clients, I often struggle to justify the cost compared to cheaper alternatives. The documentation could also be much better. Sometimes you look for how to do a specific thing and end up going around in circles among guides that don't answer your question or are outdated. Another thing that bothers me is that the console is sometimes slow, especially when you have to scroll through heavy logs or generate reports over long periods. The initial tuning of the machine learning requires patience. The first few weeks it generates some false positives until it learns the traffic well, and you have to keep an eye on it to avoid blocking legitimate users. Review collected by and hosted on G2.com.

Md Akil A.
MA
Md Akil A.
Associate Consultant
Computer Networking
Mid-Market (51-1000 emp.)
"Effective Security with Easy-to-Use Interface"
4.5/5
What do you like best about Check Point WAF (formerly CloudGuard WAF)?

I like the Check Point CloudGuard WAF's GUI, which is very easy to use. It effectively helps in providing security to applications by allowing and blocking IPs, which is especially useful as we work on zero internet in our project. If we know an IP is part of our internal or external client, we can easily allow that IP. Check Point CloudGuard WAF's security is a key reason why we switched from using Azure Firewall. Review collected by and hosted on G2.com.

What do you dislike about Check Point WAF (formerly CloudGuard WAF)?

I think internal DNS needs to be removed. Also, the initial setup isn't easy, and when we try to resolve any ip it getting resolved but not from given source Review collected by and hosted on G2.com.