It will have the scan engine module for assessing the application codes and fix the vulnerabilities before we build the image.
We can able to integrate CI/CD pipeline and secure the push and pull of every code string in the repository. Review collected by and hosted on G2.com.
The UI functions of the code security portal is not good.
It is supported only on agent mode detection. Review collected by and hosted on G2.com.
21 out of 22 Total Reviews for Check Point CloudGuard Code Security
Overall Review Sentiment for Check Point CloudGuard Code Security
Log in to view review sentiment.

Easy to integrate and deploy.
I can use cloud gaurd check point security code in my ci/cd pipeline building and it's helping to reduce and low the risk of code risk and vulnerabilities.
As a DevOps software engineer I have to do code review and code scanning.
Also secures scaning of source code. Review collected by and hosted on G2.com.
As mentioned above easy to use easy to deploy.
No drawbacks I can point out or say. Review collected by and hosted on G2.com.
Easy to integrate and deploy.
It was smooth and had no issues while integrating it with CI/CD.
Automation features for our day to day workflow.
Helping in our SDLC process. Review collected by and hosted on G2.com.
Nothing as per the uses as of now.
N numbers of APIs. Review collected by and hosted on G2.com.

The agent based scanning will help us to find the vulnerabilities while the code is in development phase. It will indicate that the following code contains any package level vulnerabilities or it storing any secrets on code level. Review collected by and hosted on G2.com.
It will not able to detect the vulnerabilities once the code was build to image. Review collected by and hosted on G2.com.
Probably the best feature to me personally is that it supports the cicd pipeline and the plugin API which is related to front end nginx etc.
Also The agent based scanning method which helps to fond the code level vulnerabilities and package level findings prior to building a image
The scanning engine supports custom rulesets and and continues scanning will be done for any new findings all this by still enabling cross platform users to use this to the fullest
customer support is great
the UI is clean and easy to understand and implementation can be done quickly Review collected by and hosted on G2.com.
It has high latency
It scans only after prebuilding of the images Review collected by and hosted on G2.com.
it has a advanced feature of threat intelligance engine and it will detect the malicious IP address and it has a customized intelligence ruleset for our environment. Review collected by and hosted on G2.com.
In v2 engine some of the APIs are not working properly. the cost of licence and maintanice its a drawback for smaller bussiness environment, and it has a limitation network security only support
We can't set the exclusion for reported findings. Review collected by and hosted on G2.com.
This tool finding us great helpful in our SDLC process. Providing amazing features like scanning monitering and protecting our code and our cloud network infrastructure. Review collected by and hosted on G2.com.
Nothing that I can highlight here as negative experience. Review collected by and hosted on G2.com.

For my experience this is only the agent based workload vulnerability detection for kubernetes application.it will assess the images and application code before pushing into the production.it will help help us to fix application vulnerabilities to reduce the application vulnerability risk Review collected by and hosted on G2.com.
It will support only on before build the image.
It will work on agent based Review collected by and hosted on G2.com.
I appreciate the features of code analysis; it's user-friendly, and the GUI is awesome. We've received excellent support from the Check Point team. In our organization, it helps us secure our code effectively Review collected by and hosted on G2.com.
CloudGuard Code Security might be the complexity involved in setting it up initially and configuring it, which could demand substantial expertise and resources to make the most of its capabilities efficiently. Review collected by and hosted on G2.com.

The scanning module will support the package level vulnerabilities and hard-coded secrets in code level.
The scanning engine will support the custom builders rulesets to assess the codes and maintain the quality of application codes. Review collected by and hosted on G2.com.
Sometimes the engine will find the external application API urls as malicious link .
The scanning exposure module will limited. Review collected by and hosted on G2.com.

The dashboard of this module is more valuable and interactive in terms of failed controls. The engine is capable to scan the builded images and find the package level vulnerability, hardcorded secrets in the application code & any malicious URL's to be addressed. Review collected by and hosted on G2.com.
Sometimes the reported findings doesn't have the fixing. Review collected by and hosted on G2.com.