Skip to content
Notifications
Clear all

Best Barracuda CloudGen alternative that is not Fortinet?

2 Posts
2 Users
0 Reactions
23 Views
(@annab)
Reputable Member
Joined: 3 months ago
Posts: 349
Topic starter   [#11032]

Hi everyone, I've been reading up on network security solutions as my company is starting to outgrow our current setup. Barracuda CloudGen gets mentioned a lot for its unified threat management and the way it handles distributed networks, which is exactly our scenario with a few small remote offices.

However, I'm seeing a lot of recommendations for Fortinet FortiGate as the direct alternative, but I'd really like to explore other options. Our team has had mixed experiences with Fortinet in the past, and I'd like to bring a few different solutions to the table for evaluation.

From a marketing and operations perspective, I'm particularly interested in how alternatives handle secure access for remote teams and integrate with cloud services we already use (like HubSpot, various analytics platforms). Reporting and ease of management are big factors for us, as our IT resources are lean.

Could anyone share experiences with other platforms like Palo Alto, Check Point, or perhaps a newer cloud-native player? I'm trying to understand the real-world pros and cons, especially around day-to-day admin and scaling for a growing business.



   
Quote
(@ellaq)
Honorable Member
Joined: 3 months ago
Posts: 411
 

I'm a sales ops lead at a mid-sized B2B SaaS company, around 300 people with several remote offices, and we've been running Palo Alto Networks Prisma Access for about 18 months after moving from a legacy firewall appliance setup.

**Core Comparison: Palo Alto Prisma Access vs. Check Point CloudGuard vs. Zscaler ZIA**

* **Target Fit & Pricing**: Palo Alto and Check Point are mid-market to enterprise, with per-user licensing starting around $12-20/month for full secure access. Zscaler can be higher, often $15-25/user/month. The big hidden cost for all is the required subscription for their respective threat prevention and URL filtering databases; that's not optional and adds roughly 30-40% to the base seat cost. For a team of 50, you're easily looking at $900-$1500+ per month all-in.

* **Deployment & Cloud Integration**: Palo Alto's integration with our cloud services was a multi-week project. It uses a service connection architecture, not just a gateway. Connecting to HubSpot's APIs securely required specific app-ID configuration in their policy rules, which was powerful but not instant. Check Point's setup felt more network-centric, like defining traditional zones for cloud apps. Zscaler's outbound-only proxy model was the fastest for getting basic secure web gateway traffic flowing, maybe a few days.

* **Where It Breaks / Limitation**: Palo Alto's internal reporting is detailed but complex; you'll likely need to export to a SIEM or use their costly Cortex data lake for the insights marketing wants. Check Point's portal can feel sluggish managing policies across remote locations. Zscaler's strength is internet-bound traffic, so if you have significant east-west traffic between your offices or to a private data center, you still need another solution alongside it.

* **Vendor Support & Management**: In our experience, Palo Alto's support tiers matter greatly. Standard support had long phone queues, but our upgraded business-critical support gets responses under 30 minutes. Their documentation is exhaustive. Check Point's support was knowledgeable but required very precise ticket descriptions to avoid back-and-forth. We found their community forums surprisingly active for troubleshooting.

My pick for your secure remote access and cloud integration scenario is Palo Alto Prisma Access, specifically if you have the internal resources for a 2-3 week initial deployment and want the deepest application-level policy control. If your team's top priority is getting a simple, outbound security proxy up in days and your inter-office traffic is minimal, I'd suggest evaluating Zscaler. To decide cleanly, tell us your approximate user count and whether you need to inspect traffic between your remote offices, not just traffic from them to the internet.


Pipeline is king.


   
ReplyQuote