We use the AFA to accurately determine rule use and where we can make improvements across our checkpoint estate. We have around 17 clusters of firewalls that are in constant use and frequently change rules.
Network Manager at iPSL
The risk and compliance area is key to ensuring we conform to company regulations
What is our primary use case?
How has it helped my organization?
AlgoSec has given us the confidence to remove unused rules, consolidate where appropriate, and prove reachability prior to searching a rule base to check access for an application or user. Breaking down a rule to specify used objects within groups and protocols used has proved invaluable for us to narrow exposure to potential threats.
What is most valuable?
A number of features are used more than others. We use the policy optimiser to search out unused objects in rules and determine when the rule was last hit accurately.
The risk and compliance area is key to ensuring we conform to company regulation. Having a number of compliance options to baseline ensures that we get the basics right before looking at advanced risks and remediation.
Finally, the traffic simulator can be used to check if a request from a user or project is already a function enabled or we have a full access change to implement.
What needs improvement?
- The maps are a little clunky and could be made easier with some automatic layout technology which assists in spacing out the devices for easier viewing.
Buyer's Guide
AlgoSec
June 2025

Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
857,028 professionals have used our research since 2012.
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
It runs well with little intervention.
What do I think about the scalability of the solution?
Good, it has the ability to add more devices anytime.
How are customer service and support?
We use Bytes to escalate, and this has proved effective.
Which solution did I use previously and why did I switch?
No.
How was the initial setup?
Straightforward, it needs to run for a period to ensure accuracy.
What about the implementation team?
We used Bytes Security to assist in setup and initial optimization.
What was our ROI?
Not really applicable.
What's my experience with pricing, setup cost, and licensing?
Setup is easy; we use a VM to run it. Having knowledge in Linux is not a requirement but helps when required to update the software. Also, ensure the reseller has the ability to escalate any issues in case they can't fix it for you. Your licensing should cover the support of the product.
Which other solutions did I evaluate?
What other advice do I have?
Put it in, let it collect for up to 12 months and ensure you run regular reports. Only then can you be sure that you don't use rules. Remember, DR testing and failovers sometimes happen on a 6 or 12-month basis, and removing rules covering this will cause issues when you least expect it.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Deputy CISO/ Security Architect at a financial services firm with 5,001-10,000 employees
I have found the firewall optimisation feature to be very valuable
What is our primary use case?
I use AlgoSec for my firewall rule optimisation, compliance baseline auditing, firewall change reviews, etc.
How has it helped my organization?
AlgoSec has helped tighten the rules on my firewalls, reduce the risks or exposure, and also meet regulatory compliance.
What is most valuable?
I have found the firewall optimisation feature to be very valuable because most developers don't know the ports or services their applications are running. After running the rules on any services for a short while, AlgoSec helps get the right service ports and IP addresses.
What needs improvement?
The product or service could be improved by orchestration or automation that will help in changing the rule sets on the firewalls based on the detected used services/ports and IP addresses.
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
AlgoSec has been very stable compared with its pairs.
What do I think about the scalability of the solution?
The solution's scalability is impressive.
How are customer service and technical support?
Service/technical support are good at their job and responsive.
Which solution did I use previously and why did I switch?
No, I didn't.
How was the initial setup?
It is quite easy to deploy and manage.
What about the implementation team?
Implemented through a vendor and their level of expertise is high.
What was our ROI?
Worth every penny, and the value realisation is great.
What's my experience with pricing, setup cost, and licensing?
AlgoSec is worth every penny for the value or return of investment.
Which other solutions did I evaluate?
No evaluations. AlgoSec was recommended, and we got a trial version for a period.
What other advice do I have?
None.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
AlgoSec
June 2025

Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
857,028 professionals have used our research since 2012.
System Architect at HES-SO
The traffic simulation query helps to understand which rules match or don't match for a specific traffic pattern, helping troubleshoot application issues.
What is our primary use case?
- To change management of the rules
- History of changes
- Risk analysis and evolution of the risk factors over time.
How has it helped my organization?
- Transparency over the actions made in the rulebase by the different firewall operators
- Documentation of the rules.
What is most valuable?
The traffic simulation query helps to understand which rules match or don't match for a specific traffic pattern, helping troubleshoot application issues.
What needs improvement?
We use the "rules change notification" feature to inform the different firewall managers when someone made a change. The actual change comes in a PDF file attached to the e-mail, while it would be faster to have it directly embedded in the notification mail.
Depending on your network topology, the traffic simulator might have some hard time tracing the traffic path between your devices correctly. This has already been improved in the past but could still be enhanced.
For how long have I used the solution?
Three to five years.
What do I think about the stability of the solution?
The solution is very stable. Some caution is required when you do major upgrades on your firewalls to ensure that AlgoSec can still work with the new software release of the firewall.
How was the initial setup?
The setup is very easy, as it comes as a virtual appliance you deploy in your own virtual environment. The setup is straightforward, and you can very quickly add your firewalls and start tracking changes, query the traffic simulator, and so on.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network Engineer at WPPI Energy
The change management feature is great for environments with multiple firewall engineers
What is our primary use case?
We used AlgoSec during a migration between firewall vendors. We needed a tool that could help evaluate the effectiveness of our existing rule base and inventory network objects.
How has it helped my organization?
Running AlgoSec helped us clean up years worth of obsolete rules and objects. This left us with a clean and up-to-date policy on our new firewalls.
What is most valuable?
- Policy risk mitigation identifies and helps tighten risky rules rendering the policy more secure.
- The change management feature is great for environments with multiple firewall engineers.
What needs improvement?
The only thing I had slight issues with is the web UI which is a bit tricky to navigate. It can be difficult to find what you're looking for without having to click around for a bit, but once you get to know where things are, it's not bad.
For how long have I used the solution?
Trial/evaluations only.
Which solution did I use previously and why did I switch?
This is the first solution of this kind I have used.
What's my experience with pricing, setup cost, and licensing?
Setup is a breeze.
Which other solutions did I evaluate?
I did not evaluate any other solutions.
What other advice do I have?
No.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Works with 10,001+ employees
Enables us to track the complete process of the change, have it fully documented and implemented much faster than it was before
We are using AlgoSec for security policy change management.
Firewall environment in our enterprise consists of Check Point firewalls, which controls communication between a couple of our LAN areas (Office, Production, Facility, Logistic, Development...). The frequency of service requests coming to the queue can be very high and that put a lot of challenges in front of the security team. The additional challenge is that we also have an outsourcing company which implements those service request for us.
We searched for the product that would help us to deal with such challenges and after a couple of comparisons, we decided to go with AlgoSec. That was a decision we never regretted.
AlgoSec is allowing us to track the complete process of the change, have it fully documented and implemented much faster than it was before.
I can highly recommend AlgoSec, it makes everyday work easier.
What we would like to see in the future from AlgoSec, is integration with Cisco DNA Center in order to track TrustSec changes in SD-Access fabric.
Since we already see that integration with Cisco ACI is in place, I suppose that integration with another controller for Software-Defined Networking should be on the product roadmap.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Works at a tech services company with 10,001+ employees
Detects in a few seconds which flows are right or wrong which saves a lot of troubleshooting time
What is our primary use case?
I mainly use this application to check the flows. I work for a big company in the network team which needs to check the flows every day.
How has it helped my organization?
This application is very nice. We save a lot of time with troubleshooting the flows and we can detect in a few seconds what flows are right or wrong.
What is most valuable?
The AlgoSec Firewall Analyzer is for me the most valuable thing in this application. I don't know how much time we saved with this application, but I now know that without it, we would lose several hours every day solving networks incidents.
We also use the AlgoSec FireFlow to generate and manage the tickets concerning the flows.
What needs improvement?
I think that AlgoSec could improve the application by improving the treatment speed.
If AlgoSec could make few seconds less to analyze research, theses few seconds will be used by my team to be more efficient.
I mean, in the Traffic Simulation Query, it will be wonderful if Algosec could find a way to make the research faster than now. In fact, we are often waiting arround 1,30 min to see the results.
Maybe something can be done to make this reasearch faster?
For how long have I used the solution?
One to three years.
Which solution did I use previously and why did I switch?
No, it is my first application for this kind of work.
Which other solutions did I evaluate?
It was not my work to choose this solution; a project team did it.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head of IT at a manufacturing company with 5,001-10,000 employees
Tremendously improved our organization's security with much better and efficient firewall rules
What is our primary use case?
Our primary use case is to clean up firewall rules of migration from Cisco ASA to another firewall vendor. We try to get rid of old rules and get these converted into new rules which apply better to our environment.
How has it helped my organization?
It tremendously improved the security of our organization with much better and efficient firewall rules. We saved a lot of time using this tool to get the rules clean. Also, the overview of the network topology map is a very good thing to get a clear view of every single region in your network.
What is most valuable?
The best feature is, in my opinion, the firewall analyzer. Just let the tool analyze the traffic for a few days or weeks, and you will get perfect ideas on how to improve your rules and which rules are just unnecessary or too spacious. So getting a better security level by better firewall rules is just what you want to have if you're using a firewall. Otherwise, it would not make sense to have a firewall, right?
A nice feature as well is that it gives a compliance report on each of your security devices. This helps a lot to get an overview of every single security device in your network and its status.
What needs improvement?
The versioning is a bit weird. We used to use version 2017 which is quite current, but it looks like it is a 2017 version. As far as I know, they want to have this changed soon. Nevertheless, this is something which definitely needs to be improved.
For how long have I used the solution?
One to three years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Lead - Security Infrastructure Consultant at TSYS
Greatly improved the time and resources spent on creating and deploying our firewall rules
What is our primary use case?
We use AlgoSec to manage our firewalls and to manage our firewall ACL change workflow. We also use AlgoSec to get better visibility into our traffic flows, to optimize our firewalls rules, and to analyze risks.
How has it helped my organization?
AlgoSec has greatly improved the time and resources spent on creating and deploying our firewall rules. Our network and security teams can now smartly research our ACLs and implement them with confidence.
What is most valuable?
We found the traffic simulation query, active change, policy optimization, FireFlow, and map features to be especially helpful. All the other application features are valuable as well. We have yet to fully unleash its full potential.
What needs improvement?
The tech support and ticketing system could use some improvement and need more of a personal touch.
For how long have I used the solution?
Less than one year.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Firewall Security ManagementPopular Comparisons
Tufin Orchestration Suite
Fortinet FortiGate Cloud
FireMon Security Manager
Skybox Security Suite
Palo Alto Networks Panorama
AWS Firewall Manager
Azure Firewall Manager
ManageEngine Firewall Analyzer
Fortinet FortiPortal
Cisco Security Cloud Control
Opinnate
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- From your experience, what are the technical differences between AlgoSec and FireMon?
- What Is The Biggest Difference Between AlgoSec and FireMon?
- What are the differences between Palo Alto Networks Panorama and AlgoSec?
- What is the biggest difference between AlgoSec and Tufin?
- What is your opinion on Fortinet FortiManager vs AlgoSec? Are they complementary?
- Which lesser known firewall product has the best chance at unseating the market leaders?
- Comparing network security vendors and devices
- When should companies use SSL Inspection?
- When evaluating Firewall Security Management, what aspect do you think is the most important to look for?
- What are the most important features you would be looking for in a firewall?