Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs AlgoSec comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AlgoSec
Ranking in Firewall Security Management
1st
Average Rating
9.0
Reviews Sentiment
6.8
Number of Reviews
186
Ranking in other categories
No ranking in other categories
AWS Firewall Manager
Ranking in Firewall Security Management
9th
Average Rating
8.0
Reviews Sentiment
6.6
Number of Reviews
10
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2025, in the Firewall Security Management category, the mindshare of AlgoSec is 22.8%, up from 21.0% compared to the previous year. The mindshare of AWS Firewall Manager is 3.7%, down from 5.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
AlgoSec22.8%
AWS Firewall Manager3.7%
Other73.5%
Firewall Security Management
 

Featured Reviews

SAURABH JAMBHULKAR - PeerSpot reviewer
Empowers organizations to reduce change management time by 80% and improve audit efficiency
AlgoSec offers essential features such as risk management, policy optimization, change management, traffic simulation, and compliance auditing. Risk management is crucial for security, enabling deep analysis and threat prioritization, while traffic simulation allows interactive diagnostics for operational traffic management. Change management includes tools for monitoring policy changes and ensuring compliance with security standards, making these features significant for any organization. AlgoSec positively impacts my organization by reducing operation burden, enhancing time efficiency, and saving costs associated with security management. AlgoSec firewall analyzer helps with policy complexity by identifying unused or redundant rules and objects, recommending optimizations such as merging similar rules and removing unnecessary allows. Over time, firewalls can accumulate risky configurations, leading to increased overhead and troubleshooting time, but with AlgoSec, we simplify our rule sets, improve firewall performance, and facilitate faster change implementations.
Karthik Ekambaram - PeerSpot reviewer
Has centralized rule management and improved protection against suspicious traffic but needs better threat intelligence integration and automated policy enforcement
I have not compared AWS WAF with any other WAF solution yet, but whatever WAF you choose, there will always be challenges, and it cannot block all malicious traffic. For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads. However, the malicious payloads are not straightforward, and there are assembly scripts that come with the HTTP headers that sometimes AWS WAF misses. In the last four or five years, we have seen a case where WAF was unable to capture a threat. On the other hand, we also see alerts from WAF indicating that it has figured out many DDoS protection alerts and was able to block them, even with rate limiting. Rule-based WAF works perfectly fine, but I don't think any threat intelligence-based WAF solutions can be 100% accurate. The integration with AWS Organizations and enforcement of security policies, particularly SCP, is difficult to deploy in most of my companies due to client environments. When I say difficult, it depends on the client's organization processes, not AWS itself. The SCP feature is excellent in my view and is the best way to reduce the attack surface for organizations structured in a specific manner. While we have used it internally, limited features of SCPs can be utilized by customers. Regarding automating security policy deployment, we have utilized automated security policy features, but it is difficult in some instances. We have identified what has been identified, but enabling automated SCP policies can be restrictive, which is actually good but makes it hard to implement for all organizations. Automating security policy features could understand the customer's environment better. An AI- or ML-enabled automated SCP could be a better option since it can understand the actions of administrators or developers in the customer's organization within the AWS platform, providing more in-depth automated assessments and SCP features. I rate this solution 8 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"There are some legacy customers still using AlgoSec. The benefit is the ease in management of firewalls and rules."
"AlgoSec's ability to integrate with various security and networking solutions enhances its overall value."
"We see the value of BusinessFlow for organisations involved in digital transformation projects migrating to public/private/hybrid cloud models."
"ABF is a wonderful module where you can keep the footprint for your firewall rules up-to-date, like CMDB."
"FireFlow is great. In a company that gets a large volume of requests to open firewall rules, it's helpful to have one place that summarizes the requests, enabling you to clearly understand why they need to be implemented and also implement them. Firewall Analyzer can help you identify missing routing or check information on the firewall without the need to log into a firewall or router to check the routing. We have all that access in three clicks."
"I rate the scalability at nine out of ten, demonstrating a robust ability to expand and cater to large enterprises."
"The PCI compliance feature has been helpful in preparing for audits."
"The product gave us more agility on the process to analyze and resolve tickets by requesting permissions to access services not enabled by default."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"The product is highly reliable."
"Once this solution is set up, we hardly have to touch it."
"It is helpful for our compliance, as the compliance manager manages compliance with leading industry standards such as FedRAMP, which my company complies with, GDPR laws, and ISO 27001."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"We work with compliance monitoring in the product, which is helpful for identifying framework-based misconfigurations, as it can tell you where to deploy firewall policies based on the frameworks."
"Also, the strength of the community is invaluable."
 

Cons

"In terms of additional features in the next release, more integration with SD-WAN would be valuable."
"I would like to see enhanced dashboards or build meaningful reports for executive consumption."
"I believe Active Change needs to be improved because not all products are supported, and some functions cannot be implemented by Active Change either."
"Be able to automatically analyze application traffic with machine learning capabilities and propose simplification for rule set optimization."
"All our firewalls were renamed, and AlgoSec saw these devices as new devices. As a result, all the reports from the same device but with the old hostname were no longer connected. AlgoSec did not clean up the old reports as well. After a few days, it depleted its own storage, and then, the server became inaccessible."
"In a complex landscape, with several nodes/equipment, it can be somewhat more difficult to properly visualize the network map."
"The HA solution is not good."
"Our experience with support has been inconsistent. Sometimes, support is fast and clean; other times, not so much. Occasionally, they have taken a while to respond or provided an inadequate workaround instead of a solution."
"The system should be more customizable."
"It needs to be more employee-friendly, and the security management could be more efficient."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"The areas of improvement are definitely platform resiliency, as we have seen outages on the AWS backbone, and whenever there is an outage on the AWS backbone, it impacts all the services hosted on that region, so we expect regional resiliency."
"I would like to see AWS add some UTM features to the firewall. It would also be great if AWS Firewall had native IPS/IDS. They have the separate IPS/IDS, GuardDuty."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
 

Pricing and Cost Advice

"The solution has a high cost, but the reduction in operation pays the investment."
"Setup cost and pricing were reasonable and the licensing was straightforward."
"When I have active and standby firewalls, if I do an analysis of the active firewall and by mistake, I also do an analysis of the secondary or standby firewall, it'll consume two licenses from the total number of licenses I have. So, I need to change the license and make the active firewall secondary. They need to improve how they are counting the number of licenses."
"The price came in where we really didn't even need to have much of a discussion. That was very good. There are also options regarding what you want to pay for. It wasn't really pushed on me that I have to get all of it or else I can't be an AlgoSec customer."
"It will reduce your operations costs with improved team performance."
"We are working with our finance department right now to be able to purchase it. The AlgoSec team is doing everything that they can in their power to get the costs down to where our budget is. They have worked a lot on it. They have cut the cost in half for us so far by questioning, "This is in the quote. Is this something that is actually needed?" They have pulled some stuff out and cut our costs down by 50% for the product itself."
"For cloud environments, it can be expensive. The model adopted to use as licensing for the cloud environment should be reviewed since it sometimes can increase the value of the service/product in an unexpected way. For example, they should instead use the amount of instances, which should just take into consideration the number of Security Groups and ACLs."
"It is fair."
"It is a cost-efficient product."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"The AWS Firewall Manager is a little on the costly side."
"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
872,655 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
15%
Manufacturing Company
8%
Healthcare Company
5%
Computer Software Company
10%
Financial Services Firm
9%
Comms Service Provider
7%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise31
Large Enterprise175
By reviewers
Company SizeCount
Small Business5
Large Enterprise7
 

Questions from the Community

What do you like most about AlgoSec?
AlgoSec's ability to integrate with various security and networking solutions enhances its overall value.
What is your experience regarding pricing and costs for AlgoSec?
Pricing and licensing for AlgoSec depend entirely on custom quotes based on the organization's specific needs. My experience as a cybersecurity consultant prevents me from diving deep into pricing ...
What needs improvement with AlgoSec?
One improvement I see for AlgoSec is implementing an optimized rule cleanup and recertification process to address the challenge of companies neglecting clean-up recommendations. Establishing a qua...
What is your experience regarding pricing and costs for AWS Firewall Manager?
Microsoft Firewall costs depend on region-based pricing. I don't recall the exact costs because we usually don't get the costing for the firewall alone but rather for the entire product we use, so ...
What needs improvement with AWS Firewall Manager?
I don't see any specific problems with AWS Firewall Manager, but the area of improvement could be in threat intelligence integration. For instance, while I'm not specifically saying Mandiant, which...
What is your primary use case for AWS Firewall Manager?
The major use case for AWS Firewall Manager is to deploy firewalls in front of the products we expose to the internet in our Kubernetes clusters and AKS clusters, ensuring we block DDoS attacks and...
 

Overview

 

Sample Customers

Maersk, Delta Airlines, Chevron, General Motors, T-Mobile, Chevron, AT&T, BP, Bell Canada, HCA Healthcare, Morgan Stanley, Unilever, Nationwide Insurance Enterprise, US Bank, Microsoft 
Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Find out what your peers are saying about AWS Firewall Manager vs. AlgoSec and other solutions. Updated: September 2025.
872,655 professionals have used our research since 2012.