We use the solution for cybersecurity purposes. The tool helps us to identify anomalies that come from internal or external networks.
Cyber Security at a financial services firm with 10,001+ employees
A cybersecurity solution that helps to identify anomalies that come from internal or external networks
Pros and Cons
- "We use the solution for cybersecurity purposes. The tool helps us to identify anomalies that come from internal or external networks."
- "The attack patterns and payloads go undetected in Cisco. We would like to see a new solution with more effective detection of attack patterns. There should be more data analyzing patterns as well which provides useful information."
What is our primary use case?
What needs improvement?
The attack patterns and payloads go undetected in Cisco. We would like to see a new solution with more effective detection of attack patterns. There should be more data analyzing patterns as well which provides useful information.
For how long have I used the solution?
I have been using the product for two years.
What do I think about the stability of the solution?
I would rate the solution's stability an eight out of ten.
Buyer's Guide
Cisco Secure IPS (NGIPS)
September 2026
Learn what your peers think about Cisco Secure IPS (NGIPS). Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
913,924 professionals have used our research since 2012.
What do I think about the scalability of the solution?
The tool's scalability is not an issue. We have a lot of people using the product even in our subsidiaries. We have a couple of thousand users for the solution.
How are customer service and support?
We have residence engineers for support. We mainly use level two support. Cisco's support in the local region is up to the level. However, we have issue with country-level support.
Which solution did I use previously and why did I switch?
I use Darktrace simultaneously.
How was the initial setup?
The product's setup was smooth and easy. The implementation was not a big deal and took two weeks to complete.
What about the implementation team?
A Cisco consultant helped us with the tool's implementation. They were competent, helpful, and confident.
What's my experience with pricing, setup cost, and licensing?
We get cut in price since we use other Cisco products. We have the whole bundle of Cisco solutions.
What other advice do I have?
I would rate the product a six out of ten. The solution is easy to maintain. We are looking for a solution that is powered by AI which gives enhanced protection and detection.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
System Administrator at a financial services firm with 11-50 employees
It gives you visibility into what your users are doing on the Internet
Pros and Cons
- "NGIPS lets you map web requests to a specific user to determine who is downloading files and what they are accessing. You can use it to identify users downloading malware or track time wasters using Facebook or something like that. It gives you visibility into what your users are doing on the Internet."
- "The price is a little high. It's hard to find solutions that are easy on the budget and strike a balance between affordability and features."
What is our primary use case?
We have NGIPS deployed at the edge and use it to filter the point of presence to the Internet or other offices.
What is most valuable?
NGIPS lets you map web requests to a specific user to determine who is downloading files and what they are accessing. You can use it to identify users downloading malware or track time wasters using Facebook or something like that. It gives you visibility into what your users are doing on the Internet.
What needs improvement?
The price is a little high. It's hard to find solutions that are easy on the budget and strike a balance between affordability and features.
For how long have I used the solution?
I have used NGIPS since 2015.
What do I think about the stability of the solution?
NGIPS is quite stable.
What do I think about the scalability of the solution?
NGIPS is scalable. It has well-defined stacks for how much traffic it can handle. You can fully inspect traffic or use SSL decryption.
How are customer service and support?
I rate Cisco support 10 out of 10. We get everything we need from them.
How would you rate customer service and support?
Positive
How was the initial setup?
I rate NGIPS nine out of 10 for ease of setup. The process was smooth and straightforward. After deployment, it requires some maintenance like updates and creating or changing the policies. We have more than a hundred policy categories now.
What about the implementation team?
We had help from professional services.
What other advice do I have?
I rate Cisco NGIPS nine out of 10. We always find stuff that could be done better or that we want more of. For example, we've had some issues creating specific rules, and it's challenging to create exceptions or tweak the rules as your business evolves. It's tricky to order the rules to follow the business policies you want. You have to balance security with getting work done. You need to watch how many rules you make because you can get overwhelmed.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Cisco Secure IPS (NGIPS)
September 2026
Learn what your peers think about Cisco Secure IPS (NGIPS). Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
913,924 professionals have used our research since 2012.
Senior Consultant at a tech services company with 5,001-10,000 employees
Stable environment, excellent technical support, and with good training you can go the distance
Pros and Cons
- "It is more or less stable. Sometimes I have some issues normally when we need to upgrade it to newer versions. I think it does the job."
- "I think the part of IPS and everything else needs to be better equated to the real needs or current needs of the business compared to the other manufacturer, because it is not straightforward, a way to configure it compared to the other competitors."
What is our primary use case?
Our primary use case is as a firewall segregating networks and defending the perimeter.
How has it helped my organization?
I would consider this to be a medium product in its field across the board.
What needs improvement?
Some features, for instance, are a way for the management console to be able to manage each specific firewall, for instance. Because if we have more than one firewall configured in the management center, we cannot delegate administration, just one of the equipment. I think the part of IPS and everything else needs to be better equated to the real needs or current needs of the business compared to the other manufacturer, because it is not straightforward, a way to configure it compared to the other competitors.
For how long have I used the solution?
I have been using Cisco NGIPS for one year.
What do I think about the stability of the solution?
It is more or less stable. Sometimes I have some issues normally when we need to upgrade it to newer versions. I think it does the job. The hardware does the job, and the current models do the job.
What do I think about the scalability of the solution?
We have around four thousand users and that would be an example of its scalability.
How are customer service and support?
Technical support is good. If you open a case about the support, it is good. Compared to the other manufacturer, it is very good.
How was the initial setup?
The initial setup was complex and the upgrade took a lot of time with a very big image to download and everything else. We had many versions and patches that had to be installed. The deployment took between two and three hours.
What about the implementation team?
In this case, we did it in-house and I was the integrator.
What other advice do I have?
I think we have to have a good knowledge of the product. It is not easy to set up from the beginning. And I am also using the comparison with the other manufacturer. You need to have very good training before managing the product. I would rate Cisco NGIPS a seven on a scale of one to ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Senior Consultant at Velocis Systems
A solution with an understandable graphical user interface with great security
Pros and Cons
- "It is salable and technically sound."
- "Aside from costs, Cisco NGIPS provides great security."
- "The integration can be more secure."
- "Regarding additional features, they should speed up their technology to the market because, compared with other security vendors, Cisco is a little behind on the Gartner and technical front."
What is our primary use case?
We predominantly use this solution to place the perimeter on the firewall, which helps us filter out inbound and outbound traffic.
Cisco is tightly engaged with threat defence called Talos, which has more threat intelligence. In addition, they are dedicated to working on updating their IPS signatures.
For how long have I used the solution?
We have been using this solution for almost five years. It is deployed both on-premises and cloud, and we are using the latest version, Cisco 12.X.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
It is a scalable solution. We have over 100 clients.
How are customer service and support?
The technical support is sound and clear.
How was the initial setup?
The initial setup is pretty straightforward, and it's like a plug-and-play. The graphical user interface is understandable, and their documentations are clear. In addition, they have an SOP document that can be used as a guide.
What's my experience with pricing, setup cost, and licensing?
There is an annual licensing cost. It is not a cheap solution, but it's cost-effective. Aside from costs, Cisco NGIPS provides great security. Cisco is providing more discounts to its end customers to survive in the security market.
What other advice do I have?
I rate this solution a ten out of ten. I would recommend this solution. When you compare Cisco NGIPS to other solutions, it is salable and technically sound. Other solutions have very limited services and threat intelligence.
Regarding additional features, they should speed up their technology to the market because, compared with other security vendors, Cisco is a little behind on the Gartner and technical front. In addition, the integration can be more secure.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Network Infrastructure Specialist at Central-Bank-Kenya
Offers defense mechanism and helps with intrusion prevention but performance needs improvement
Pros and Cons
- "I like the way the tool pushes the packets from the node level."
- "Cisco NGIPS' performance could be better."
What is our primary use case?
Cisco NGIPS offers defense mechanism and intrusion prevention for your environment.
What is most valuable?
I like the way the tool pushes the packets from the node level.
What needs improvement?
Cisco NGIPS' performance could be better.
For how long have I used the solution?
I have been working with the product for 24 years.
What do I think about the stability of the solution?
Cisco NGIPS is stable.
What do I think about the scalability of the solution?
The tool is scalable. My company has over 2000 users for the product.
How was the initial setup?
The tool's deployment is not straightforward. You need a technical and competent person to do it. A four to five-member technical team can handle its deployment and maintenance.
What was our ROI?
The tool's ROI is good.
What's my experience with pricing, setup cost, and licensing?
The tool's licensing costs are yearly.
What other advice do I have?
I rate Cisco NGIPS a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Network Support Engineer at Amadeus
Good protection, reliable and responsive support
Pros and Cons
- "The URL filtering feature and the new locations feature are both valuable additions to the solution."
- "While the Management GUI and FMC could be improved, the devices themselves function well."
What is our primary use case?
Some of our customers are having DDOS attacks and ransomware attacks.
How has it helped my organization?
Earlier in July 2019, I noted that there was an attack. To mitigate future attacks from the ransomware in Columbia Bank and other similar situations, we at Cisco Talent, which is responsible for security intelligence, provided updated security rules. We offered intrusion policies and codes through signatures to help overcome such situations.
What is most valuable?
It's a good solution.
The solution is not that bad. Next-generation firewalls work from my experience, they work.
The URL filtering feature and the new locations feature are both valuable additions to the solution.
What needs improvement?
While the Management GUI and FMC could be improved, the devices themselves function well.
For how long have I used the solution?
I have been using Cisco NGIPS for more than five years.
I provided support for version 6.4, but in our company, we do have Firepower version 7.0.
What do I think about the stability of the solution?
Cisco NGIPS is a stable solution.
How are customer service and support?
Cisco has great support.
What other advice do I have?
I would rate Cisco NGIPS an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Cybersecurity Engineer at a financial services firm with 201-500 employees
The centralized management is helpful if you have multiple locations
Pros and Cons
- "The IPS functionality is useful if you have offices all over the place. It's nice to have centralized management instead of going to a separate ASA or FirePOWER device."
- "The biggest problem with most Cisco products is that the interface is lagging behind the competition. The user interface could be updated and improved."
What is our primary use case?
I am currently working with Cisco NGIPS at home as an IPS device, so I can see what's hitting the firewall and look at the logs. I'm using it as a learning environment.
What is most valuable?
The IPS functionality is useful if you have offices all over the place. It's nice to have centralized management instead of going to a separate ASA or FirePOWER device.
What needs improvement?
The biggest problem with most Cisco products is that the interface is lagging behind the competition. The user interface could be updated and improved.
What do I think about the stability of the solution?
Cisco NGIPS is stable.
What do I think about the scalability of the solution?
Cisco NGIPS is highly scalable. We use it to cover 15 offices.
How was the initial setup?
It requires some background in IPS and IT security to fully understand it, so it is somewhat complex to deploy.
What other advice do I have?
I rate Cisco NGIPS eight out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network Security Engineer at a consultancy with 10,001+ employees
Easy to deploy, good intrusion prevention, but the documentation needs improvement.
Pros and Cons
- "The most valuable features are the intrusion detection ones."
- "There is room for improvement in the policy documentation."
What is our primary use case?
The primary use case is for intrusion prevention. We install the solution between the firewall and the call switches.
What is most valuable?
The most valuable features are the intrusion detection ones. We channel the intrusion engine to create a policy of prevention. We only use this solution for intrusion prevention, not as a firewall.
What needs improvement?
There is room for improvement in the policy documentation. It gets confusing trying to understand what all of the policies mean. We need clear documentation explaining what each policy does.
For the Cisco STD, if we lose the connection with the SMC and STD, we can only assist with the STD via the CLI, so we can only do some troubleshooting. I think this is an area that needs improvement. In terms of the architecture, it needs to be more comfortable to change our own managed STD via the UI even if SMC is not available.
The technical support has room for improvement.
For how long have I used the solution?
I have been using the solution for six years.
How are customer service and support?
Some of the engineers within Cisco's tech support are knowledgeable and others are not. Sometimes we have to go back and forth for a week to get an answer.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is not complex; we only need to define the IP address and add the SMC IP. Both STD and SMC have the capability of SDM. Also if we don't have SMC, we mainly require the anti-SDM in UI. However, after we enroll the Cisco file from the SMC, we can no longer manage the STD from there. Therefore, it is very difficult to roll back if there is a connection loss between the STD and SMC, as SMC cannot manage the STD via the UI. In comparison, if there is a connection loss between Palo Alto Panorama, we can simply lock it with Palo Alto following the file and do some configuration.
What other advice do I have?
I give the solution a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Consultant at Pi DATACENTERS
It improves network security and threat defence and has helped improve our cybersecurity
Pros and Cons
- "It has helped to improve our cybersecurity and our network security posture."
- "We have seen a return on investment in improving security and defending the threats in our network."
- "The initial setup is a bit complex because it requires a lot of configuration, firewall and zoning."
What is our primary use case?
We have a Cisco ASA firewall, which is like a standard firewall. We upgraded to Firepower Threat Defense, and it is like a next-generation capability, like NGIPS and NGAV, and has that kind of functionality. It also improves network security and threat defence.
How has it helped my organization?
It has helped to improve our cybersecurity and our network security posture.
What is most valuable?
The FTD has a GUI interface, which is very easy to work around with all the configurations. It is a client-based software based on Java. Now we have the GUI web interface, and it's very interactive and easy to navigate.
What needs improvement?
Cisco NGIPS runs the backend as a Snort engine, so it is like they customize it with Cisco. So they need to have an engine for threat defence.
For how long have I used the solution?
We have been using this solution for two years and are using version 9.6. It is deployed on-premises.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
It is scalable. NGIPS is based on our user base, so we have around 2000 users. We require two network and security administrators for deployment and maintenance. We do not plan to increase usage because we have already upgraded.
How are customer service and support?
I rate the technical support a ten out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We updated from Cisco ASA to NGIPS FTD.
How was the initial setup?
The initial setup is a bit complex because it requires a lot of configuration, firewall and zoning. The deployment was done in-house. We just purchased a box and installed it on our own.
What was our ROI?
We have seen a return on investment in improving security and defending the threats in our network.
What's my experience with pricing, setup cost, and licensing?
I do not have details about the licensing costs. It has a user-based license and a different model license because it is modular software.
What other advice do I have?
I rate this solution an eight out of ten. From a recommendation perspective, before deploying the NGIPS solution, you need to work with your internal environment. It can minimize the load on the NGIPS, so you should do your IPS signature before moving to production.
It should have a network and content processor and a security process for additional features. Other OEMs have these capabilities to enhance the throughput and performance.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Assistant Director (IT) at a financial services firm with 1,001-5,000 employees
We are much more comfortable with Cisco products, it's a reputable organization, and we trust the products
Pros and Cons
- "We like the Cisco product, the concept, and the tech intelligence."
- "Regarding scalability, the solution is not that good."
What is our primary use case?
We use it at the end and the center as the core and apply a lot of policies to the firewall.
How has it helped my organization?
Using Cisco Firepower has helped us.
What is most valuable?
We like the Cisco product, the concept, and the tech intelligence. We are much more comfortable with Cisco products. It's a reputable organization, and we trust the products.
What needs improvement?
The next Cisco NGIPS release should include more features for production ideas and more intelligence for IDS and IPS features.
For how long have I used the solution?
We have been using this solution for two years.
What do I think about the stability of the solution?
We initially had some difficulty loading pages due to certain rules regarding performance and stability. On some websites, we had to click more than once. These issues were quite easy to fix.
What do I think about the scalability of the solution?
Regarding scalability, the solution is not that good.
How are customer service and support?
They're nice people. We don't have any issues with them. They are quick to respond, but sometimes it takes time to solve the issues.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We previously used Check Point and Cyberoam. We switched because the license expired.
How was the initial setup?
We initially had some difficulties, but now we have no problems.
What about the implementation team?
A Cisco vendor in Nepal helped us configure the product properly. We didn't have a strategy. The vendors supported us from the very beginning. After working with them, we had no problem using the product.
It took almost a month and a half to install the system.
What was our ROI?
I would rate our ROI as eight out of 10, with 10 being the highest ROI.
What's my experience with pricing, setup cost, and licensing?
Cisco NGIPS licensing is yearly.
I would rate the pricing four out of 10, one being very expensive and 10 very cheap.
What other advice do I have?
I would give Cisco NGIPS an overall rating of eight out of 10, 10 being the best.
We have a department of almost 50 people in our company using Cisco NGIPS.
We have 10 people to maintain the product.
We want to cover all the systems and networks of our organization.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Cisco Secure IPS (NGIPS) Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2026
Product Categories
Intrusion Detection and Prevention Software (IDPS)Popular Comparisons
Fortinet FortiGate
WatchGuard Firebox
KerioControl
Splunk User Behavior Analytics
TrendAI Tipping Point
ExtraHop Reveal(x) 360
Palo Alto Networks Advanced Threat Prevention
Cisco IOS Security
Check Point IPS
Hillstone I-Series Server Breach Detection System
Palo Alto Networks URL Filtering with PAN-DB
Cisco Sourcefire SNORT
Buyer's Guide
Download our free Cisco Secure IPS (NGIPS) Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- When evaluating Intrusion Detection, what aspect do you think is the most important to look for?
- What is your recommended cost-effective solution to detect and prevent APT attacks?
- What product do you recommend for a Campus IPS appliance implementation?
- How do you use the MITRE ATT&CK framework for improving enterprise security?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?
- Which is the best intrusion detection and prevention solution?
- What is the best IDPS security tool and why?
- What is Cognitive Cybersecurity and what is it used for?






















