The primary use case is for firewall rule optimization and rule tracking for changes in 80 Palo Alto firewalls. There are 30 clustered and 20 standalone in the environment. Formerly, it was Check Point with almost the same quantity.
Global Network and Security Team Leader at Ormat Technologies Inc
Unused rule optimization and rule tracking help keep our team up to date
Pros and Cons
- "The most valuable feature is the unused rule optimization, where it clears the policy when appropriate."
- "The pricing for smaller installations should be lowered because sometimes there is just no ROI to add AlgoSec to the small branch offices with only 10 rules."
What is our primary use case?
How has it helped my organization?
This solution has helped the team to be updated with changes globally.
What is most valuable?
The most valuable feature is the unused rule optimization, where it clears the policy when appropriate.
What needs improvement?
The pricing structure is not good because there is no difference between a Data Center firewall for a small branch. The pricing for smaller installations should be lowered because sometimes there is just no ROI to add AlgoSec to the small branch offices with only 10 rules.
Buyer's Guide
AlgoSec
September 2025

Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
866,755 professionals have used our research since 2012.
For how long have I used the solution?
I have been using AlgoSec for seven years.
What do I think about the stability of the solution?
This solution looks very stable.
What do I think about the scalability of the solution?
Our impression of the scalability is great.
How are customer service and support?
I have no experience with technical support.
Which solution did I use previously and why did I switch?
Other than Check Point, we did not use another solution prior to AlgoSec.
How was the initial setup?
The initial setup is straightforward.
What about the implementation team?
We had assistance from Bynet. They are very good professionals.
What was our ROI?
There is not so much ROI for us. We are using it basically for SOX purposes but find it useful on the way.
What's my experience with pricing, setup cost, and licensing?
Pricing is great if you have a small number of large firewalls, otherwise, it does not bring ROI.
Which other solutions did I evaluate?
We did not evaluate other options before choosing this solution.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

IP network expert at a comms service provider with 201-500 employees
Improves efficiency and network visibility, scalable, and has good technical support
Pros and Cons
- "It provides faster go to market with fewer resources."
- "I would like to be able to see what objects have the same IP, but different names in different firewalls."
What is our primary use case?
The primary use for AlgoSec is managing firewalls and to introduce a workflow system for requesting access through firewalls, which is fully integrated with them.
How has it helped my organization?
It provides faster go to market with fewer resources. In one system, users are able to request access through the firewall for business services, which can be approved by the appropriate team and can be implemented automatically by the system itself. Furthermore, users are able to track whether one particular access is blocked on any of firewalls or not, etc.
What is most valuable?
The most valuable modules are Firewall Analyzer and FireFlow. FireFlow is the workflow system, whereas Analyzer is the module responsible for tracking the configuration of firewalls, routers, switches, load balancers, etc.
There are many more useful features that cannot be listed here in a detailed manner.
What needs improvement?
I would like to be able to see what objects have the same IP, but different names in different firewalls. Since the system is able to show all of the objects for the integrated devices, it can be confusing if one particular object (eg. IP address/host) has different names in different firewalls.
For how long have I used the solution?
I have been using AlgoSec for two years.
What do I think about the stability of the solution?
We have not experienced any problem with the system.
What do I think about the scalability of the solution?
The system can be run on virtual machines, so we don't have any issue with scalability.
How are customer service and technical support?
I would rate the technical support with five stars. :-)
We always received the necessary help quite fast, and the answers were valuable.
Which solution did I use previously and why did I switch?
We didn't have a similar system before this solution.
How was the initial setup?
It was not so complex and didn't take more than several days until we integrated all of the important networking devices.
What about the implementation team?
It was implemented by a vendor, they had the necessary expertise.
What was our ROI?
Actually, I cannot really estimate because I am responsible for the operation of the system. I can say that we have saved some resources with the automatic implementation feature.
What's my experience with pricing, setup cost, and licensing?
I propose to purchase licenses for all of the networking devices in the network, because if not all of the devices are integrated then the query of particular access cannot be discovered entirely.
Which other solutions did I evaluate?
We have chosen this system after evaluation (RFQ). The other competitor was Tufin.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
AlgoSec
September 2025

Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
866,755 professionals have used our research since 2012.
Network Administrator at City of Calgary
Helpful Auditing and Management tool that integrates well with other products
Pros and Cons
- "This Appliance gives you the full Network MAP, which is obtainable from the Routing table."
- "It seems that AlgoSec created a VSYS (Virtual system) for each virtual router name, even though our firewall has only a single VSYS."
What is our primary use case?
We use this solution for Firewall Rule Management, to know who did what and why.
We use AlgoSec FireFlow to create Rules for the Firewalls with detailed information. It is used by end-users who supply the requirements for which this rule is needed, and then it goes to Security for approval.
We use AlgoSec Firewall Analyzer to get the audit reports on the firewall and to verify that change, which was approved by the Security and Network teams, is implemented in the right way.
It is a great tool for audit purposes.
Also it tells us if our firewall is compliance with PCI or not.
We use this for Compliance purposes also.
They are both integrated with each other.
How has it helped my organization?
This solution is helping us in the long term for managing the firewall configurations.
AlgoSec FireFlow Network Security solution is an end-to-end solution that ensures that firewall changes are approved, necessary, and implemented in the right way.
If some change is not implemented correctly then it warns you right away.
Also, while migrating from Cisco to AlgoSec, we can see the hit counts on the security rules and when the last time each rule was used. Depending on this information, we only use security rules that are more recently used when configuring new firewalls for migration.
For Palo Alto Firewalls, we have configured a lot of virtual routers as part of the network. This segmentation allows different network traffic to be isolated from a security point of view.
For us, it is a great management and audit tool.
What is most valuable?
This appliance has a lot of great features to offer.
You can buy the physical appliance or VM depending on your company requirements.
Features we like are:
- Multi-approval AlgoSec Fireflow rule creation system. The end-user can only implement the rule if it is approved by all of the IT groups.
- Very good integration with other vendor's products like Cisco or Palo Alto Firewalls.
- This Appliance gives you the full Network MAP, which is obtainable from the Routing table.
- It is easy to find whether a security policy is blocked, as well as where and by which device.
What needs improvement?
We love all the features of this device. It can be a bit expensive for small companies but they also have a VM model for that.
It seems that AlgoSec created a VSYS (Virtual system) for each virtual router name, even though our firewall has only a single VSYS. We are ok to work with this, but if this can be fixed in a future release then that will be great.
For how long have I used the solution?
We have been using this solution for three years.
What do I think about the stability of the solution?
We have had no Hardware or Software issue so far with this Product.
This Appliance never went down and whenever we did any software upgrades it went very smooth. Also in our environment we had no issues due to any software bugs.
Their Software is pretty stable and bug free.
What do I think about the scalability of the solution?
We love the scalability of this product.
How are customer service and technical support?
This solution has Five Star technical support.
It is great to work with its Customer and Technical support team.
Which solution did I use previously and why did I switch?
We used a different solution prior to this one and we had issues integrating with our new firewall vendor which was Palo Alto
How was the initial setup?
The initial setup is straightforward, and we had no issues during the installation.
What about the implementation team?
We performed the implementation in-house.
What was our ROI?
It seems we have recovered our money on this appliance, so it is money well spent.
What's my experience with pricing, setup cost, and licensing?
Initial setup was not that hard. Vendor did this for us.
Licensing depends on how many firewalls your company has.
They have license options for small to big customers depending on the network.
Price is fair for Licensing and Product.
Which other solutions did I evaluate?
We evaluated a few other options, including Tufin, before choosing this solution.
What other advice do I have?
My advice is to go with this product. It is easy to set up and use. It has great features and very good technical support to back it.
So far, we find ourselves below limitations on this appliance with the version we are currently running.
Overall, this is a Great security management product with good automation options to help your security teams function.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network Administrator at Türkiye İş Bankası
FireFlow enables us to search equipment between the source and destination and saves us time
Pros and Cons
- "We are in the process of implementing FireFlow in our daily operation, which will make our lives even easier. The idea is to search the Firewall Analyzer for the equipment between the source and destination, and then automatically jump off to FireFlow and open a ticket. This will then automatically implement what is needed without the need to go into the Firewall itself. This will save us a lot of time and will help us to onboard junior engineers very quickly, getting them up to speed on our network and daily operation in record time."
- "One important thing they should improve is their support level. We have a lot of trouble with the basic enterprise support level. They are very slow to respond and solve problems."
We have been working with the AlgoSec firewall analyzer for almost six years in the product environment. It is well suited for firewall security optimization, tuning, change management, and application discovery. The most important feature is the Intelligence Policy Tuner (IPT) skills. This helps us know which devices are between the source and destination on the flows.
Since we increased our support level to preferred support, the support level has been very good for two months. They solved all the problems and the response time is very fast. Therefore, if you are working with AlgoSec, you should choose the preferred support license. If you have the chance, you must try this with this type of support that they are well equipped of people.
We are in the process of implementing FireFlow in our daily operation, which will make our lives even easier. The idea is to search the Firewall Analyzer for the equipment between the source and destination, and then automatically jump off to FireFlow and open a ticket. This will then automatically implement what is needed without the need to go into the Firewall itself. This will save us a lot of time and will help us to onboard junior engineers very quickly, getting them up to speed on our network and daily operation in record time
In the end, we tried other vendors for POC and all of them have problems. When we compared with AlgoSec, they were much worse and AlgoSec leads this sector. That’s why we are using Algosec in our environment. Also, it is the most growing vendor in their specific area, and it has much more skills that have been very helpful to analyze firewalls.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network Security Engineer at Türkiye İş Bankası
Offers valuable instantaneous AFA reports and the support team has good response time
Pros and Cons
- "There are some important and really nice features that I want to mention about AlgoSec. The most useful feature is instantaneous AFA reports, that you do not have to wait (at least one week or even more for a more accurate one) to get optimization recommendations about policy as many other vendors."
- "To be more specific, when we tried to add some devices on AlgoSec it seemed to be done but when you checked the monitor section, some device was always red. Finally, we could handle this part by installing a new software fix but AlgoSec support was weak when we tried to handle this process."
Hi all,
As many users do , we are using algosec for policy optimization and violation detection, too.
There are some important and really nice to use features that I want to mention about Algosec.
Firstly, one of the most useful feature is instantaneous afa report, that you do not have to wait some time to analyze the firewall traffic. When working with some other vendors, someone has to wait at least one week or even more for an accurate analyze and optimization recommendations. You do not have to wait for it when using Algosec.
Secondly, web user interface is really user-friendly and easy to use. I can find all the items I look for easily. Soon, we will also use network simulator feature. That will be useful to see the end-to-end traffic, and will increase the visibility in a high rate. We can easily track the changes in policies with Algosec. AlgoSec automatically sends an email to the selected teams when a policy change occurs.
Our environment is large comparing to any company that are working onsimilar sector with us. So optimization and external monitoring is inevitable necessity for our environment, and especially for firewall rule optimization algosec or a similar product provides a very helpful assistance.
In my opinion, we are using algosec for a long time (nearly 6 years).Until two years ago, most of things were working perfectly with algosec. When next generation firewalls came as a hot topic and used oftenly, we faced some minor problems on algosec. We always wrote about the problems to algosec support.
To be more specific, when we tried to add some devices on algosec it seemed to be done but when you check monitor section, some of the devices were red lighted. Finally, we could handled this part after we installed a new software fix. After that, we started to use inline layer feature of a next generation firewall vendor as many customer did, at first algosec failed to recognize inline layers and rules in the inline layers. We failed to analyze, improve andoptimize our inline layer rules for some time. Support was a little desperate in this case. After installing some new hotfix updates , this problem was also fixed successfully.
As one other example, algosec did not support one of the firewall vendor product (firepower) completely . After new software updates on both sides (both the firewall vendor and algosec), that vendor is supported for some features partially.
As a customer, the role of the support team of a product becomes very very important and vital when a customer faces such different problems about software bugs or different vendor compatibilities. To be more clear, response time should be short enough and support interest about the subject should also be high enough. Because firewall is the most important and critical member of a network. Algosec response time is improved day by day in all these years.
Support team is much more supportive this year. We had a fresh install and we added all the devices again on algosec. Everything works perfectly. Of course we are having problems too, but problems are inevitable and oftenly when you working on a software environment. The most important factor is support team. And support team is giving fast response and support in all cases.
In addition to that, last version of algosec software seems to handle all the previous minor problems, and this plays an important role about that we are working with algosec happily. As a conclusion, we are using security optimization in a very detailed way and Algosec is the best when comparing to other vendors in all perspectives.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Works at a sports company with 1,001-5,000 employees
Automatic firewall rule configuration helps reduce our workload
Pros and Cons
- "The automation of the firewall rule deployment, working together with our ticketing system, is the most valuable feature of this solution. The needs as required by a user request are automatically validated and configured in the specified firewalls without any human action."
- "The interface needs to be more user-friendly for low-profile users so that we can give some kind of access to specific people around the company for self-configuration of specific rules."
What is our primary use case?
Our primary use for AlgoSec is to automate our firewall configuration. We use the AlgoSec system to remotely configure the firewalls, making our life easier.
We are in a multisite environment with plenty of firewalls for perimeter security and LAN segregation for specific proposes. This solution helped us to make the process more dynamic.
How has it helped my organization?
It has reduced the workload for the firewall team thanks to the API integration with our ticketing system, doing the standard type of request automatically. Before having it, we had to create a lot of standard rules that now can now be just pushed from the AlgoSec system.
What is most valuable?
The automation of the firewall rule deployment, working together with our ticketing system, is the most valuable feature of this solution. The needs as required by a user request are automatically validated and configured in the specified firewalls without any human action. This improves the firewall team's workload.
What needs improvement?
I would be nice to have a good tool for network map discovery in the GUI to make it more user friendly and be able to check and modify network maps in graphical and more intuitive way . This will improve our network overview for new deployments and troubleshooting.
For how long have I used the solution?
I have been using this solution for three years.
What do I think about the stability of the solution?
In three years, we have only had one issue with respect to stability.
How are customer service and technical support?
When we had the issue they responded well.
Which solution did I use previously and why did I switch?
We did not use another solution before AlgoSec.
What about the implementation team?
We deployed this solution using our in-house team.
What was our ROI?
The reduction in workload reduces the cost in terms of human time.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Works at a wireless company with 10,001+ employees
Traffic simulation allows for testing before release into production
Pros and Cons
- "The most valuable feature is traffic simulation because, with this function, it has become more practical to know if something is released or blocked in my environment."
- "I believe Active Change needs to be improved because not all products are supported, and some functions cannot be implemented by Active Change either."
What is our primary use case?
We use this solution for managing an environment with more than five thousand registered devices across firewalls, routers, balancers, and VMware. Highly critical banking environment.
We use FireFlow as our primary ticket management tool.
How has it helped my organization?
With AlgoSec, it was able to conduct the environment so that it was possible to get more accurate and fast information about the changes that the environment went through.
It has reduced the time for firewall rule requests to be implemented in the environment.
What is most valuable?
The most valuable feature is traffic simulation because, with this function, it has become more practical to know if something is released or blocked in my environment.
IPT is valuable because this function is of great help to have a more effective security policy.
What needs improvement?
I believe Active Change needs to be improved because not all products are supported, and some functions cannot be implemented by Active Change either.
Technical support needs to find solutions more quickly.
Active Change could implement routes in Firewalls, it should also be able to perform the creation of APP control and URL filter rules.
For how long have I used the solution?
We have been using this solution for six years.
What do I think about the stability of the solution?
In general, it is a stable product. We have rarely had a problem that resulted in the total unavailability of the solution.
What do I think about the scalability of the solution?
AlgoSec requires a large amount of processing power to perform its tasks, making it a piece of equipment that always requires monitoring to be optimally optimized.
How are customer service and technical support?
Some troubleshooting took months to resolve. So, I think we have to improve this point.
Which solution did I use previously and why did I switch?
I used Nipper and FireMon, but I started using AlgoSec due to the great recommendations I received.
How was the initial setup?
The architecture was defined with one master, four slaves, and one remote.
What about the implementation team?
Our internal team handled the deployment.
What's my experience with pricing, setup cost, and licensing?
I do not have many details of this commercial part.
Which other solutions did I evaluate?
I evaluated FireMon and Nipper in addition to this solution.
What other advice do I have?
Many users have the tool but don't use it with everything it can offer. What I recommend is that you explore all of the features of the product.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Software Developer at Vivo (Telefônica Brasil)
Network map and risk analysis helps us to manage complex environments with many devices
Pros and Cons
- "The most valuable features are the network map, risk analysis, and tickets for firewall changes."
- "I would like to seem improvements in performance and software stability."
What is our primary use case?
We use this solution for managing risks, device compliance, a ticket system, and active change.
How has it helped my organization?
It definitely helps a lot to manage the complexity of environments with many devices and many vendors.
What is most valuable?
The most valuable features are the network map, risk analysis, and tickets for firewall changes.
Very helpful automatic implementation of requested changes.
What needs improvement?
I would like to seem improvements in performance and software stability.
For how long have I used the solution?
I have been using this solution for six years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2025
Product Categories
Firewall Security ManagementPopular Comparisons
Tufin Orchestration Suite
Fortinet FortiGate Cloud
FireMon Security Manager
Skybox Security Suite
Palo Alto Networks Panorama
AWS Firewall Manager
Azure Firewall Manager
ManageEngine Firewall Analyzer
Fortinet FortiPortal
Cisco Security Cloud Control
Opinnate
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- From your experience, what are the technical differences between AlgoSec and FireMon?
- What Is The Biggest Difference Between AlgoSec and FireMon?
- What are the differences between Palo Alto Networks Panorama and AlgoSec?
- What is the biggest difference between AlgoSec and Tufin?
- What is your opinion on Fortinet FortiManager vs AlgoSec? Are they complementary?
- Which lesser known firewall product has the best chance at unseating the market leaders?
- Comparing network security vendors and devices
- When should companies use SSL Inspection?
- When evaluating Firewall Security Management, what aspect do you think is the most important to look for?
- What are the most important features you would be looking for in a firewall?