Sandblast Battle Card
Sandblast Battle Card
Sandblast Battle Card
Check Point
HOW TO COMPETE AGAINST...
Forcepoint
Proofpoint
Sourcefire
Symantec
TrendMicro
Key Capability
Palo Alto
Bluecoat
Lastline
Fortinet
FireEye
McAfee
by Vendor
Cisco
• Infrastructure Overhead: Requires 2-4 additional appliances - for email,
web and central management. In order to scan within SSL, an additional
dedicated appliance is required Advanced Threat Prevention Matrix
Real-Time 1 1 1 1 1 1
• FireEye didn’t participate in NSS labs Breach Prevention test. In their Prevention-
words FireEye is a Detection solution. (read here). Poor results in NSS labs Unknown Malware
BDS test and one of the highest weighted TCO solution.
Files Supported
• FireEye is mostly about detection of “unknown threats” while neglecting the
“known” threats
OS Support
• Wildfire cannot block threats from entering and infecting internal network
6
Threat Extraction
devices. If detected, It can only alert after the fact. (CDR)
• Wildfire default PDF file size for emulation is only 3,072KB, changes
3 8 3 8 3 3
might lead to stability issues when uploading files Protocols
8
• It takes up to 48 hours for identified files to be shared with AV GWs around 7 7 7 7 7 7
Malicious mails
the world prevention
• Wildfire can’t scan email attachments or links that lead to files inside the 4 4 4
mail, there is no MTA deployment. Deployment Options
[Internal Use] for Check Point employees Need more info about the matrix ratings? Check out the Heat Map (internal only)
Q1 2020
©2015 Check
[Confidential] Point Software
for designated Technologies
groups Ltd.
and individuals [Internal Use] for Check Point employees 3
Last updated: 29 Jan 2020