Try our new research platform with insights from 80,000+ expert users
reviewer978084 - PeerSpot reviewer
Director of Information Security Operations at a manufacturing company with 1,001-5,000 employees
Real User
Easy to use with good FW optimization and logging capabilities
Pros and Cons
  • "It helps to perform FW cleanup, regulations requirement, FW migration projects, etc."
  • "I would like to see Bi-Directional API support in order to integrate with SOAR platforms that provide SOC automation and IRR."

What is our primary use case?

AlgoSec is used on a daily basis by both our IT and IS groups to manage BAU and FW change requests. It integrates with ServiceNow, PaloAlto, and our SIEM tool. It helps to perform FW cleanup, regulations requirement, FW migration projects, etc.

How has it helped my organization?

AlgoSec has helped me in the last three companies that I have worked for. I was working to do Firewall migration projects, FW cleanups of risky rules (FW policy optimization), process def between IT and IS, audit, SOC reports, GRC support, and Cloud support in both native and Hybrid environments that we use. 

What is most valuable?

The features that I have found most valuable are:

  • Great visibility for High-risk firewall rules
  • Mapping business risks
  • Mapping risky applications
  • Informative regulation reports for PCI-DSS, ISO 27001 and many more
  • FW cleanup recommendation
  • Easy logging capabilities with leading SIEM products in both LEEF and Syslog formats

What needs improvement?

I would like to see Bi-Directional API support in order to integrate with SOAR platforms that provide SOC automation and IRR.

Integration with CISO dashboards would be an improvement.

It would be nice to have support for IaaS, CASB, and DLP tools, which will allow full life cycle management of security incidents.

It would be nice to have an out of the box "best practices recommendation" with the relevant "what-ifs". 

Buyer's Guide
AlgoSec
July 2025
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: July 2025.
863,564 professionals have used our research since 2012.

For how long have I used the solution?

Ten years.

What do I think about the scalability of the solution?

This solution scaled to our entire enterprise in a seamless way.

Which solution did I use previously and why did I switch?

We also used Tufin, but AlgoSec provided us better visibility and ease of use.

What's my experience with pricing, setup cost, and licensing?

My advice is that you must do a POC and show value.

Which other solutions did I evaluate?

We did not evaluate options other than AlgoSec and Tufin.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.

PeerSpot user
Rich text editor
    PeerSpot user
    IT Security Engineer III at Paychex, Inc.
    Real User
    By letting developers access this solution, we cut down the questions and time we had to spend explaining what ports are open and where.
    Pros and Cons
    • "I think finding the firewall's rules with the highest risk is valuable."
    • "I would like to see more object-based reports on groups and object usage."

    What is our primary use case?

    We use it to find unused objects and rule cleanup. However, we also found a use case by letting developers read access so they can see rules and open ports so they can request firewall changes as needed. This opened up time for our firewall engineers because they did not have to answer questions anymore to developers. 

    How has it helped my organization?

    By letting developers access AlgoSec, we cut down the questions and time we had to spend explaining what ports are open and where. They can now see in one panel. Since there are multiple firewall vendors, they can see what rules apply where using one tool.

    What is most valuable?

    I think finding the firewall's rules with the highest risk is valuable. In the old days, we had to run reports and look through rule bases trying to find risky rules and that can also lead to human error. Now we see it via AlgoSec. It also helps because we see those risks across multiple vendors. 

    What needs improvement?

    I would like to see more object-based reports on groups and object usage. When cleaning up old rules, it is easy to disable the rule and then delete after a while. Trying to find unused groups or used objects in groups gets a little harder and I would like to see an easier view into those objects. 

    For how long have I used the solution?

    3 Years

    What do I think about the stability of the solution?

    We have never had an issue with its stability.

    What do I think about the scalability of the solution?

    This product does scale very well and we never had a problem with performance.

    How are customer service and technical support?

    Whenever we did have a question on setup or changes, the tech support was very willing to work with us even on basic questions. 

    Which solution did I use previously and why did I switch?

    We have used Tufin which does a good job looking at groups and objects but AlgoSec adds more of a risk approach to it. 

    How was the initial setup?

    It was very easy to setup and easy to get firewalls working with the manager. 

    What about the implementation team?

    We were able to set it up in-house without any help. That is how easy it was.

    What was our ROI?

    Our ROI was seen very quickly since we gave developers the option to look at rules. IT opened up so much time where our firewall engineers had to deal with questions and explanations. 

    What's my experience with pricing, setup cost, and licensing?

    I would start with only a few firewalls and then grow. You can get your feet wet and add more firewalls in next year's budget. 

    Which other solutions did I evaluate?

    We evaluated Tufin

    What other advice do I have?

    The solution is pretty solid and intuitive.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.

    PeerSpot user
    Rich text editor
      Buyer's Guide
      AlgoSec
      July 2025
      Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: July 2025.
      863,564 professionals have used our research since 2012.
      reviewer1115961 - PeerSpot reviewer
      Works at a maritime company with 10,001+ employees
      Real User
      Change automation has made our IPS team more efficient and effective
      Pros and Cons
      • "We have been able to increase the effectiveness of the team, allowing them to prioritize more complex and business-critical tasks in a faster manner."
      • "In terms of integrations, we would like to see a greater number with the upcoming and next-generation tools (i.e. SOAR and a selection of other SIEMs)."

      What is our primary use case?

      The automation and orchestration of security-related change requests on our selected firewall (in our case Checkpoint) to decrease the time it takes to raise, manipulate, and execute change requests. This is all done with minimal interaction from our Firewall and IPS team, allowing them to more effectively use their time.

      How has it helped my organization?

      It has eased the process of streamlining our firewall configuration management considerably. Our firewall and IPS team now has the ability to budget their time and focus on other tasks, rather than dealing with repetitive change request functions. This has enabled the team to work much more efficiently and effectively.

      What is most valuable?

      The feature we found most useful is the automation of the change process within our organization for firewalls. This feature has reduced the number of mundane tasks the firewall and IPS team undertake on a regular basis. We have been able to increase the effectiveness of the team, allowing them to prioritize more complex and business-critical tasks in a faster manner.

      What needs improvement?

      In terms of integrations, we would like to see a greater number with the upcoming and next-generation tools (i.e. SOAR and a selection of other SIEMs). This has been a problem for us, as we are going through the process of enhancing our security and some of the products we are looking at are lacking built-in support (integration). 

      Disclosure: My company does not have a business relationship with this vendor other than being a customer.

      PeerSpot user
      Rich text editor
        reviewer1113381 - PeerSpot reviewer
        Works at a manufacturing company with 10,001+ employees
        Real User
        Helped optimize our environment during transition to newer Firewall technology
        Pros and Cons
        • "It helps in regulatory compliance metrics and overall firewall security optimization."
        • "The user interface could be a little more user-friendly."

        What is our primary use case?

        It is currently used by the network security, audit, and internal control departments of organizations where I have deployed the application. It gives overall insight/visibility and enhances security across the enterprise.

        How has it helped my organization?

        Our company environment used old fashioned firewall devices for a long time and we hardly touched on old firewall rules. With this product, we were able to clean up our firewall rules and organize them neatly. It actually gave us a very straightforward report of what is being used, and not used, for firewall rules. 

        AlgSec is used for in-depth firewall analysis and intelligent policy tuning and optimization. It helps in regulatory compliance metrics and overall firewall security optimization.

        What is most valuable?

        I like the auto-mapping features and configuration overview. We use this for many things, but primarily for quick reactions to security events, audit, project management, and quick operational efficiencies.

        • Firewall rule optimization
        • Regulatory and baseline compliance analysis/mapping
        • Policy tuning
        • Application discovery
        • Automated Change management

        What needs improvement?

        The reporting portion is weaker than other competitors, although this is good enough to utilize in our environments.

        Enhanced integration via API (typically, this is only known by few AlgoSec users).

        The user interface could be a little more user-friendly. Other competitors have more of a dashboard look and feel. With AlgoSec, you have to launch new windows to see rule usage reports. It can be a little bit difficult when trying to find more information.

        For how long have I used the solution?

        Two years.

        Which solution did I use previously and why did I switch?

        Our company was using old fashioned firewall devices.

        Which other solutions did I evaluate?

        We did POC on FireMon and AlgoSec. We chose AlgoSec for our company environment.

        Disclosure: My company does not have a business relationship with this vendor other than being a customer.

        PeerSpot user
        Rich text editor
          reviewer1112223 - PeerSpot reviewer
          Works at a manufacturing company with 10,001+ employees
          Real User
          Improves security, manageability, and compliance for our large installation
          Pros and Cons
          • "The most valuable features are the FW report, traffic simulation, and the FireFlow system to help manage requests."
          • "We have a complaint about the compliance check, in that sometimes we want to keep rules rather than merge them."

          What is our primary use case?

          Our primary use case for this solution is FW analysis and compliance.

          We have hundreds of FWs to manage and check. It is normal that similar rules, and perhaps not so good ones, can be set up. AlgoSec helps to make our network security better and improves our internal customer relationships by using FireFlow.

          How has it helped my organization?

          AlgoSec helps us to manage hundreds of FWs and take care of policy compliance.

          What is most valuable?

          The most valuable features are the FW report, traffic simulation, and the FireFlow system to help manage requests.

          What needs improvement?

          We have a complaint about the compliance check, in that sometimes we want to keep rules rather than merge them.

          For how long have I used the solution?

          Six months.

          What do I think about the stability of the solution?

          This is a stable solution.

          What do I think about the scalability of the solution?

          I believe that it could be better, and make sure different scenarios are possible.

          How are customer service and technical support?

          The customer support is very good. They really show that they want to make the product better, and take care of the customer's needs.

          Which solution did I use previously and why did I switch?

          We did not use a previous solution.

          How was the initial setup?

          The initial setup is straightforward. The complexity sometimes comes from the fact that the company scenario is not so easy.

          What about the implementation team?

          We implemented the solution internally with support from AlgoSec.

          Which other solutions did I evaluate?

          We did evaluate other options, but I am not sure of the reasons for choosing this one because it was a management decision.

          Disclosure: My company does not have a business relationship with this vendor other than being a customer.

          PeerSpot user
          Rich text editor
            reviewer1112223 - PeerSpot reviewer
            reviewer1112223Works at a manufacturing company with 10,001+ employees
            Real User

            Sonia Pinho

            it_user960087 - PeerSpot reviewer
            Security Architect, InfoSec at Euronext
            Real User
            Provides us with alerts on policy changes in near real time
            Pros and Cons
            • "One of the quick wins is to view our device status easily, with out-of-the-box dashboards and charts."
            • "A more granular approach and the possibility to separate data and show relevant data to specific key roles or key users would be a great achievement in future releases."

            What is our primary use case?

            Our primary uses for this solution are for risk and compliance, policy optimization, and change management automation.

            For instance, with AlgoSec Firewall Analyzer Policy Optimization we can easily find unused rules, shadowed rules, unattached objects, and much more. This allows us to clean-up and thus improve performance.

            How has it helped my organization?

            With AlgoSec we can improve performance, simplify manageability, and tighten security. One of the quick wins is to view our device status easily, with out-of-the-box dashboards and charts. A nice capability is the reporting, with a dedicated BI tool having access to all of our key AlgoSec data.

            What is most valuable?

            One of the best features is the possibility to monitor all policy changes in near real time and to receive automatic alerts on changes. The AlgoSec Firewall Analyzer security rating visibility is also very useful, helping identify and mitigate firewall policy risks.

            What needs improvement?

            The reporting component of AlgoSec Firewall Analyzer is something that, in my view, has room for improvement.

            It will be welcome in a future version the possibility of having greater granularity, for example when defining the information that we want to see in the reports, to define customized reports by group / user and to make a scheduled sent of the reports.

            Being more specific, in our use case for operational teams the report to send would only be the summary of changes of all the rules of a day by Firewall. Focused, without adding unnecessary information.

            Other use case is for GRC teams. The report to send should only be the summary of risk changes of a week or a month, per Firewall. Again focused, without adding unnecessary information.

            For how long have I used the solution?

            Less than one year.

            What do I think about the stability of the solution?

            Very stable, with no issues to report.

            What do I think about the scalability of the solution?

            This solution has a great scalability capacity.

            How are customer service and technical support?

            The customer service for this solution is ok.

            Which solution did I use previously and why did I switch?

            Although we had not previously used any solution for Security Policy Management, AlgoSec emerged as a great solution with broad vendor support and a dynamic attitude.

            How was the initial setup?

            The initial setup is straightforward, but also complex because of the onboarding of different vendors.

            Be prepared for a long deployment and optimization time, which in the end is typical for these kinds of solutions.

            What about the implementation team?

            Our implementation was done using a vendor and in-house mixed team with good expertise.

            Which other solutions did I evaluate?

            We have looked at the main competitors, which are FireMon and Tufin.

            What other advice do I have?

            Enjoy Firewall Security Management and Automation.

            Disclosure: My company does not have a business relationship with this vendor other than being a customer.

            PeerSpot user
            Rich text editor
              PeerSpot user
              Network and Security Engineer at Euronext Technologies
              Real User
              Relieves workload and increases efficiency by automating time-consuming tasks
              Pros and Cons
              • "We are currently in a rule base performance improvement process and AlgoSec is an invaluable tool to accomplish this."
              • "The product is severely lacking in vendor support."

              What is our primary use case?

              We are currently using this solution to audit our firewall policies (both in performance and compliance), as well as automating the creation of new rules and improving application functionality delivery. We are also using AlgoSec to automate machine provisioning (creation of new rules associated with that machine) and machine decommissioning (removal of rules associated with that machine).

              How has it helped my organization?

              With AlgoSec, we are now able to automate several time-consuming tasks. We are currently in a rule base performance improvement process and AlgoSec is an invaluable tool to accomplish this. Furthermore, we are starting rule creation automation, which will also provide some relief on our workload.

              What is most valuable?

              The most valuable feature for us is AlgoSec's ability to analyze rules for risks and for performance while allowing the user to submit a change request immediately based on that assessment. Additionally, the fact that it integrates seamlessly with Ansible, as well as providing an API for the users to extend based on their own needs, is a great plus for us.

              What needs improvement?

              The product is severely lacking in vendor support. They claim to support some devices, but when you dig deeper, it is only basic support, with enterprise-grade features for those devices being unsupported. This is a big deal for us, as several sections of our network are not fully supported which, in turn, does not allow us to fully automate rule creation. Moreover, we cannot perform end to end connectivity checks. One such feature is the lack of VRRP support on devices other than Cisco or Juniper, which causes the software to interpret a non-existent router as the next hop for a particular flow (the VIP address of the VRRP).

              For how long have I used the solution?

              One year.

              What do I think about the stability of the solution?

              While this solution is somewhat stable, there is definitively room for improvement here. We've had some issues with the solution during our usage but, so far, no show stoppers. Other customers of this solution have complained that a large number of devices can severely hinder the stability of the solution.

              What do I think about the scalability of the solution?

              This is a very scalable solution, built mostly on open source technology. The customer is allowed to extend its functionalities via the API to integrate with other solutions or existing automation.

              How are customer service and technical support?

              Technical support is sometimes difficult to deal with as the response times are somewhat lacking. One good thing is that the case owner you are assigned to is generally the same,  which is great because, after several cases, the case owner is already familiar with your network.

              How was the initial setup?

              The initial setup is not cumbersome at all. The documentation and training videos are definitively a big plus.

              What about the implementation team?

              The implementation was mainly performed by us, with the help of a vendor team. The level of expertise of the third party was passable, but we were looking forward to having someone with more expertise with the product.

              What was our ROI?

              So far, the ROI is currently only due to the fact that rule automation has decreased the load on our support team, allowing them to work on other projects. We are also able to provide reports to auditors without losing a single day from the network support department. We simply provide AlgoSec reports and analysis.

              Disclosure: My company does not have a business relationship with this vendor other than being a customer.

              PeerSpot user
              Rich text editor
                Reseller
                Helps to analyze risks, optimize the rules and policies, and improves performance in network security devices
                Pros and Cons
                • "It assists in provisioning the application rapidly, which increases the organization's revenue."
                • "This product could be improved in several ways including more device support, an automated rollback process and options in active push, software-defined WAN integration and support, and application-aware policy identification and optimization."

                What is our primary use case?

                Our primary use cases for this solution are:

                1. Business Security and Automation
                2. Faster change management solution
                3. Network Security device analyzing and optimization

                How has it helped my organization?

                • AlgoSec helps to analyze the risk, optimize the rules and policies, and improve performance in network security devices such as firewalls.
                • It helps to perform the network security changes four times faster than the normal change request process.
                • It assists in provisioning the application rapidly, which increases the organization's revenue.
                • The ASMS (AlgoSec Security Management Solution) is fully focused on business security and automation. It ensures business security and agility.

                What is most valuable?

                The features that we have found to be most valuable are:

                • Risk Analyzing: Has helped to identify the risks in security network devices in a very short time, which increases and improves security overall.
                • Policy optimization and IPT: Has helped to identify the garbage rules and improve the device performance. Also, has assisted in removing any rules causing IPT failure.
                • Compliance: Helps prepare for the audit in a short time, and assists with continuous compliance.
                • Active push: It is capable of pushing the changes and configuration from AlgoSec itself, which decreases manual errors during implementation and configuration. 

                What needs improvement?

                This product could be improved in several ways, including:

                • More device support - such as barracuda devices
                • An automated rollback process and options in active push. when we do a active push Algosec takes a policy backup for recovery purpose. if we did any change using active push from Algosec and if the customer wanted to rollback the particular configuration, better if Algosec able provide automated rollback process through AFF rather creating a manual a ticket. 
                • Software-defined WAN integration and support 
                • Application-aware policy identification and optimization - now a days most of NGFW are creating applications (such as Salesforce, Skype for business etc..) aware policies using their application database. normally destination object will be these applications and not the legacy objects that we created in firewall. if Algosec able to understand these application it will be good move for future market. 

                What do I think about the stability of the solution?

                We are very impressed with the stability of this solution. The product is very user-friendly and does not cause many technical problems while in operation. Sometimes we might have issues with newly supported device integration and features.

                What do I think about the scalability of the solution?

                AlgoSec has multiple form factors such as a hardware appliance, VM appliance, and software. The customer can choose the most suitable solution for their environment. Further, AlgoSec has three main components and the customer can purchase them phase by phase, based on their requirements and budget. It can scale up to the total ASMS solution using the same resources.

                How are customer service and technical support?

                As per my experience, AlgoSec provides very good customer service and technical support. They are very friendly and their response time and SLA are very impressive.

                Which solution did I use previously and why did I switch?

                We did not use another solution before this one.

                How was the initial setup?

                The initial setup is very straightforward and easy. Further, AlgoSec provides better documentation and self-support services where we can learn, reference, and be empowered.

                What about the implementation team?

                We are a value-added distributor of AlgoSec and have implemented this solution for many customers in addition to ourselves. Our customers are happy with the implementation.

                What was our ROI?

                Our return on investment with this solution is between one and two years.

                What's my experience with pricing, setup cost, and licensing?

                The setup for this solution is not very costly. The licensing is very easy to set up, with flexible licensing methods such as subscription and perpetual. The pricing itself is also flexible, with it being related to the number of devices and applications.

                Which other solutions did I evaluate?

                Before selecting this product, we evaluated Tufin.

                What other advice do I have?

                This solution is very useful for any type of organization with multiple network security devices such as firewalls, routers, etc, and have the goal of achieving business security and automation.

                AlgoSec has main three components that can be purchased in different phases if required. They are:

                • AFA: AlgoSec Firewall Analyzer
                • AFF: AlgoSec FireFlow
                • ABF: AlgoSec BusinessFlow
                Disclosure: My company has a business relationship with this vendor other than being a customer. We are a value-added distributor for Algosec and we have implemented the Algosec solution in many customer places in Sri Lanka and Bangladesh.

                PeerSpot user
                Rich text editor
                  Buyer's Guide
                  Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
                  Updated: July 2025
                  Buyer's Guide
                  Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
                  ...
                  ...