What would I be missing out on (bear in mind the firewall has to be disabled currently)?
Apart from "visible" features... security updates (of the product itself), virtualization improvements (helping with the emulation of suspicious samples), improved "sensors" (feeding data into the detection code, making it possible to detect more threats), improved shields (let's say WebShield) which again may possibly detect more and faster, ...