Fortinet FortiSIEM vs SolarWinds NPM comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
31,886 views|17,713 comparisons
92% willing to recommend
Fortinet Logo
7,231 views|3,991 comparisons
80% willing to recommend
SolarWinds Logo
15,197 views|8,289 comparisons
92% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Fortinet FortiSIEM and SolarWinds NPM based on real PeerSpot user reviews.

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Fortinet FortiSIEM vs. SolarWinds NPM Report (Updated: May 2020).
771,157 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"I like the KQL query. It simplifies getting data from the table and seeing the logs. All you need to know are the table names. It's quite easy to build use cases by using KQL.""It has basic out-of-the-box integrations with multiple log sources.""The features that stand out are the detection engine and its integration with multiple data sources.""The most valuable feature is the onboarding of the workloads. You can see all that has been onboarded in your account on the dashboards.""It is always correlating to IOCs for normal attacks, using Azure-related resources. For example, if any illegitimate IP starts unusual activity on our Azure firewall, then it automatically generates an alarm for us.""The in-built SOAR of Sentinel is valuable. Kusto Query Language is also valuable for the ease of writing queries and ease of getting insights from the logs. Schedule-based queries within Sentinel are also valuable. I found these three features most useful for my projects.""Mainly, this is a cloud-native product. So, there are zero concerns about managing the whole infrastructure on-premises.""Microsoft Sentinel enables you to ingest data from the entire ecosystem and that connection of data helps you to monitor critical resources and to know what's happening in the environment."

More Microsoft Sentinel Pros →

"It gives us the opportunity to generate notifications based upon rules that get triggered, and the rules could be specific to PCI, HIPAA, GIBA, NIST, and so forth.""The most valuable feature of Fortinet FortiSIEM is the correlation of many events.""It is used as an alerting platform.""One of the most valuable features is that we can combine SOC and NOC operations in the same tool. We can provide NOC and SOC services in the same tool for two separate teams. There are plenty of third-party solutions that integrate with FortiSIEM. All these solutions already have a ready integration, and we have the possibility to create a custom connector for these solutions. Its reports are also very good.""The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls.""Technical support is helpful.""The most valuable feature of Fortinet FortiSIEM is the user and entity behave as analytics(UEBA). This feature mixes your data and provides useful information based on the behavior of the targeted.""It's easy to manage. There's a web interface and a command line, depending on what the user is comfortable with. There's a large knowledge base available, and the support is timely."

More Fortinet FortiSIEM Pros →

"It is scalable.""We have configured multiple alerts for our network devices, including routers and switches, so that we are notified if any interface goes down.""The most valuable features are language support and technical support.""I found a lot of valuable features in SolarWinds NPM, such as the customized application monitoring that allows you to customize any monitoring and script customization, and you also have the option to deploy and upgrade SolarWinds NPM online, which is very useful for my organization.""It is very extensible with 'SWQL' and APIs to where we are beginning to integrate it with network automation.""I love the GUI. Almost everything is accessible through the web interface. It is very user-friendly. It is easy to drag and drop resources wherever you want them.""You can monitor performance counters effortlessly.""Being able to easily, and quickly obtain disc space statistics from servers and determine how much was free or used on various volumes."

More SolarWinds NPM Pros →

Cons
"Sometimes, we are observing large ingestion delays. We expect logs within 5 minutes, but it takes about 10 to 15 minutes.""Sentinel still has some anomalies. For example, sometimes when we write a query for log analysis with KQL, it doesn't give us the data in a proper way... Also, the fields or columns could be improved. Sometimes, it is not giving the desired results and there is a blank field.""I think the number one area of improvement for Sentinel would be the cost.""The learning curve could be improved. I am still learning it. We were able to implement the basic features to get them up and running, but there are still so many things that I don't know about all its features. They have a lot of features that we have not been able to use or apply. If they could work on reducing the solution's learning curve, that would be good. While there is a training course held by Microsoft to learn more about this solution, there is a cost associated with it.""I would like Sentinel to have more out-of-the-box analytics rules. There are already more than 400 rules, but they could add more industry-specific ones. For example, you could have sets of out-of-the-box rules for banking, financial sector, insurance, automotive, etc., so it's easier for people to use it out of the box. Structuring the rules according to industry might help us.""It would be good to have some connectors for third-party SIEM solutions. Many customers are struggling with the integration of Azure Sentinel with their on-premise SIEM. Microsoft is changing the log structure many times a year, which can corrupt a custom integration. It would be good to have some connectors developed by Microsoft or supply vendors, but they are not providing such functionality or tools.""We have been working with multiple customers, and every time we onboard a customer, we are missing an essential feature that surprisingly doesn't exist in Sentinel. We searched the forums and knowledge bases but couldn't find a solution. When you onboard new customers, you need to enable the data connectors. That part is easy, but you must create rules from scratch for every associated connector. You click "next," "next," "next," and it requires five clicks for each analytical rule. Imagine we have a customer with 150 rules.""Only one thing is missing: NDR is not available out-of-the-box. The competitive cloud-native SIEM providers have the NDR component. Currently, Sentinel needs NDR to be powered from either Corelight or some other NDR provider."

More Microsoft Sentinel Cons →

"The UI could improve in Fortinet FortiSIEM. Humans view the UI frequently for data and if it was more visually pleasing it would be beneficial.""It lacks a "wizard" that shows a particular user's activity or particular circumstance. I think the interface is intimidating because there's so much information there.""The challenge I face with Fortinet FortiSIEM is the lack of support.""The product does not have Security Orchestration and Automation Response, I would recommend adding this feature.""The graphs on the user interface could be improved as we often experience glitches.""The process of installing Fortinet FortiSIEM and the customization of the alerts take too long.""There is no proper guide for integration or configuration.""The only drawback is the licensing model. It can get expensive if you want to integrate more solutions."

More Fortinet FortiSIEM Cons →

"The solution's network discovery and node addition processes need more work.""The improvement would be that SolarWinds NPM thoroughly checks its patches before releasing them to the market. Better testing, alpha testing, and then releasing it to the market.""The only thing that can be improved is to continually add to the existing capabilities of the product.""SolarWinds needs to be improved such that it is on par with the leading products in the market.""Having more technical and support resources available in Saudi Arabia would be helpful.""The solution does not offer much customization so is somewhat inflexible.""Technical support can be slow to respond.""There should be a little bit more integration in some of the other tooling and utilizing the APIs of devices or tools could be a little bit better."

More SolarWinds NPM Cons →

Pricing and Cost Advice
  • "It comes with a Microsoft subscription which the customer has, so they don't have to invest somewhere else."
  • "It is a consumption-based license model. bands at 100, 200, 400 GB per day etc. Azure Sentinel Pricing | Microsoft Azure"
  • "Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
  • "I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
  • "It is kind of like a sliding scale. There are different tiers of pricing that go from $100 per day up to $3,500 per day. So, it just kind of depends on how much data is being stored. There can be additional costs to the standard license other than the additional data. It just kind of depends on what other services you're spinning up in Azure, or if you're using something like Azure log analytics."
  • "I am just paying for the log space with Azure Sentinel. It costs us about $2,000 a month. Most of the logs are free. We are only paying money for Azure Firewall logs because email logs or Azure AD logs are free to use for us."
  • "Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
  • "Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "Please be cheaper and more simplified."
  • "We bought the perpetual license, so we own the product, but there is a three-year support renewal fee for that."
  • "Pricing is acceptable for more than 90% of our customers, as they normally get discounts."
  • "Its price can be better. We are Fortinet partners, so we can get discounts, but its price can be an issue at the beginning for others. There is a licensing scheme for every case. There are three licensing schemes that we can choose from."
  • "The price of Fortinet FortiSIEM is a lot less when compared to other solutions."
  • "They have a yearly subscription."
  • "The solution is available for both, perpetual and subscription licenses."
  • "Manageable, however would be better as pay as you go versus CapEX."
  • More Fortinet FortiSIEM Pricing and Cost Advice →

  • "I’d suggest that people be aware that licensing has tiers."
  • "Excluding the costs of running VMs and physical blade servers, our licensing costs run around US$200,000/year for over 60 polling engines."
  • "I think that the cost has risen, but the functionality and versatility is way above other products."
  • "The licensing model is such that you can purchase only what you need; and then grow into the next level by paying only the difference in price and the associated maintenance costs."
  • "The price points are more than competitive when compared to other vendors."
  • "I believe the original setup cost was around $3500 with an annual cost of around $1200-$1500 to renew the support license. This would bring the average day-to-day cost of around $5-$6 over three years."
  • "You have to license it per year, for the support. You don't really need to have support once you've already set it up. Once you install SolarWinds, you can skip on the licensing. It will still work."
  • "The pricing needs to be improved. It is too high. One full engine costs around $10 000, which is why we don't have high availability right now."
  • More SolarWinds NPM Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
    771,157 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have researched a quite a few network monitoring tools which can be used for various monitoring purposes of not only the servers, but the intermediate routers as well. There are majorly three types of these softwares. Ones which are completely open-source, you can do almost anything you want using these, but they require quite some expertise before you can use them. Then there are the ones that are not open source, the enterprise softwares and cost you some money, but on the other hand, they are extremely easy to set-up and learn. You can have them up and running in a matter of minutes. And then there are those which are completely cloud based. They can be free of cost or charge some money depending on the software. The good thing about these is that you don’t have to install any extra software, and it can be managed completely online but then again these have limited features and you cannot exploit them to the full extent as you can do with the open-source and to some extent the enterprise software, so I won’t suggest you to use these, because these are generally not the complete solutions and require other support software to achieve the same. Below I have listed the outstanding pros and cons of the various Network analyzers that you can look into Nagios Pros: Nagios offers an extensive set of collector plug-ins that allows users to gather performance and availability data from a broad range of operating systems, including  Windows and Netware Nagios… Read more →
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:Real-time monitoring makes life quite easy for me.
    Top Answer:The price is competitive. We can scale based on the licensing. It is an annual CapEx.
    Top Answer:Network detection and response is a separate product. That's how I ended up with Wazuh. I'm looking for something to… more »
    Top Answer:It actually depends on the exact purpose or kind of devices (network devices, servers, something else). Some tools are… more »
    Top Answer:From my point of view, SolarWind is the best tool.
    Top Answer:We are partners with SolarWinds and we sell a lot of Network management to large enterprises also because of… more »
    Comparisons
    Also Known As
    Azure Sentinel
    FortiSIEM, AccelOps
    Solarwinds Network Performance Monitor, SolarWinds Network Bandwidth Analyzer
    Learn More
    Overview

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.

    Companies around the world use FortiSIEM for the following use cases:

    • Threat management and intelligence that provide situational awareness and anomaly detection
    • Alleviating compliance mandate concerns for PCI, HIPAA and SOX
    • Managing “alert overload”
    • Handling the “too many tools” reporting issue
    • Addressing the MSPs/MSSPs pain of meeting service level agreements

    SolarWinds NPM is a network monitoring solution that enables you to detect, diagnose, and resolve network performance issues and outages quickly and efficiently. The solution is a powerful tool that can help you increase service levels, reduce downtime with multi vendor network monitoring, simplify the management of complex network devices, improve operational efficiency, and much more.

    SolarWinds NPM Features

    SolarWinds NPM has many valuable key features. Some of the most useful ones include:

    • Increased scalability
    • Fault, performance, and availability monitoring
    • Dynamic network discovery and mapping
    • Cross-stack network data correlation
    • Customizable topology
    • Dependency-aware intelligent alerts
    • Intelligent maps
    • Automated capacity forecasting, alerting, and reporting
    • Logical and physical network monitoring
    • Monitor Azure vNet gateway visibility

    SolarWinds NPM Benefits

    There are several benefits to implementing SolarWinds NPM. Some of the biggest advantages the solution offers include:

    • Comprehensive monitoring for advanced network devices: With SolarWinds NPM, you can gain insight into the health and performance of your load balancers, Cisco ASA and Palo Alto Networks, firewalls, and Cisco Nexus switches.
    • Hardware health monitoring: SolarWinds NPM makes it easy for you to monitor, alert, and report on key device metrics, including power supply, fan speed, and temperature.
    • Customizable performance and availability reports: With this feature, you can choose from more than 100 templates to schedule and also generate custom network performance reports.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by PeerSpot users currently using the SolarWinds NPM solution.

    PeerSpot user Andrew N., Senior Network Engineer at Element Critical, says, “The "Performance Analyzer" feature is the solution's most valuable aspect. It's able to do the bounded graphs of all the interface stats, from errors to broadcasts and to current traffic. With a click of a button you're able to, in one interface, look at historical data for those items.” He also adds, “From the troubleshooting point of view, just having that peace of mind is great. And, The solution is extremely stable. We haven't had any issues in that regard. We haven't had issues with bugs, glitches, or crashes."

    Daniel S., Systems and Data Warehouse Supervisor at MMSD, mentions, “The alerting and usage tracking is a valuable feature because it alerts us when we're getting near capacity on disk space, network utilization or processor utilization. It helps us manage our capacity and enables us to be proactive.”

    A Senior Vice President and CIO at a financial services firm explains, “As we look to add more servers to our virtual environment and to understand the impact, the solution allows us to dig into the historical charts related to capacity planning. It also gives us visibility of spikes and allows us to track down the reasons for their occurrences. So too, it makes room for potential processes that have gotten hung or runaway and to know when it's time to reboot a server or service.”

    Dinesh N., Digital Innovation at Bobcat Company, states, “The best part of the solution is the sharing display. It gives a general public ID wherein everyone can link to a public display. That's a good feature.”


    Fazal A., Implementation & Support Specialist at 360Factors, comments, “We have configured multiple alerts for our network devices, including routers and switches, so that we are notified if any interface goes down. In the event an interface goes down, we have multiple reports that include availability monitoring, network uptime monitoring, and network downtime monitoring. These reports are on multiple schedules such as the end of the day, end of the last business day of the week, monthly, and quarterly. This gives us the ability to provide reports to our management and let them know the performance of our network.”

    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
    Microsoft, Federal Express, Hewlett-Packard, and MasterCard
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company11%
    Manufacturing Company8%
    Comms Service Provider8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm10%
    Government9%
    Manufacturing Company7%
    REVIEWERS
    Comms Service Provider21%
    Financial Services Firm12%
    Computer Software Company10%
    Media Company10%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Government9%
    Comms Service Provider9%
    Financial Services Firm7%
    REVIEWERS
    Computer Software Company12%
    Comms Service Provider12%
    Financial Services Firm11%
    Healthcare Company9%
    VISITORS READING REVIEWS
    Educational Organization51%
    Computer Software Company7%
    Government5%
    Manufacturing Company5%
    Company Size
    REVIEWERS
    Small Business33%
    Midsize Enterprise21%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    REVIEWERS
    Small Business41%
    Midsize Enterprise25%
    Large Enterprise34%
    VISITORS READING REVIEWS
    Small Business30%
    Midsize Enterprise17%
    Large Enterprise52%
    REVIEWERS
    Small Business33%
    Midsize Enterprise18%
    Large Enterprise49%
    VISITORS READING REVIEWS
    Small Business12%
    Midsize Enterprise56%
    Large Enterprise32%
    Buyer's Guide
    Fortinet FortiSIEM vs. SolarWinds NPM
    May 2020
    Find out what your peers are saying about Fortinet FortiSIEM vs. SolarWinds NPM and other solutions. Updated: May 2020.
    771,157 professionals have used our research since 2012.

    Fortinet FortiSIEM is ranked 9th in Security Information and Event Management (SIEM) with 65 reviews while SolarWinds NPM is ranked 4th in Network Monitoring Software with 147 reviews. Fortinet FortiSIEM is rated 7.6, while SolarWinds NPM is rated 8.2. The top reviewer of Fortinet FortiSIEM writes "It's cheaper than other solutions with the same features but lacks integration with many third-party vendors". On the other hand, the top reviewer of SolarWinds NPM writes "High-level, comprehensive, and proactive monitoring in a user-friendly interface". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, Wazuh, LogRhythm SIEM and ThousandEyes, whereas SolarWinds NPM is most compared with Zabbix, PRTG Network Monitor, ManageEngine OpManager, ThousandEyes and Entuity. See our Fortinet FortiSIEM vs. SolarWinds NPM report.

    We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.