Try our new research platform with insights from 80,000+ expert users

AlgoSec vs FireMon Security Manager vs Tufin Orchestration Suite comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

As of August 2025, in the Firewall Security Management category, the mindshare of AlgoSec is 22.6%, up from 20.7% compared to the previous year. The mindshare of FireMon Security Manager is 17.9%, up from 16.0% compared to the previous year. The mindshare of Tufin Orchestration Suite is 22.8%, up from 20.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management
 

Featured Reviews

SAURABH JAMBHULKAR - PeerSpot reviewer
Empowers organizations to reduce change management time by 80% and improve audit efficiency
AlgoSec offers essential features such as risk management, policy optimization, change management, traffic simulation, and compliance auditing. Risk management is crucial for security, enabling deep analysis and threat prioritization, while traffic simulation allows interactive diagnostics for operational traffic management. Change management includes tools for monitoring policy changes and ensuring compliance with security standards, making these features significant for any organization. AlgoSec positively impacts my organization by reducing operation burden, enhancing time efficiency, and saving costs associated with security management. AlgoSec firewall analyzer helps with policy complexity by identifying unused or redundant rules and objects, recommending optimizations such as merging similar rules and removing unnecessary allows. Over time, firewalls can accumulate risky configurations, leading to increased overhead and troubleshooting time, but with AlgoSec, we simplify our rule sets, improve firewall performance, and facilitate faster change implementations.
Ganesh-Khutwad - PeerSpot reviewer
Rapid policy insights with robust dashboards and cross-vendor automation
FireMon Security Manager is excellent for real-time compliance management. It allows us to quickly retrieve any policy needed for testing and easily analyze it for loopholes. If a loophole exists, FireMon provides comprehensive details within the policy manager. It alerts us to firewall rule additions or changes that violate compliance policies. It supports various firewall platforms, including Checkpoint, Zscaler, Fortinet, Cisco, and AWS, and provides centralized management for all configured policies through a single console. FireMon Security Manager provides many features, like whether my firewall is compatible with required standards such as NTP and SNMP. Each compliance included in our RFPs is shown in the UI of FireMon. It gives robust and clear dashboards, making it easier to understand risks because the policies have ratings showing usage, and the number of hit attacks. It streamlines our compliance reporting processes by providing comprehensive risk and compliance assessments. It offers a range of features, including verification of firewall compatibility with protocols like NTP and SNMP, and detection of signal charges. FireMon effectively addresses all compliance requirements outlined in our RFPs. For instance, it can determine if firewalls or proxies within a stack are configured in Secure Mode or Active-Active mode. FireMon Security Manager enables us to generate reports on all these aspects, ensuring thorough compliance monitoring and documentation. FireMon Security Manager is robust and can help automate firewall policy changes across large multi-vendor enterprise environments. FireMon Security Manager helps automate firewall policy changes across various environments, including on-premises, cloud, hybrid, SASE, and SD-WAN. It also simplifies cleaning up firewall rules in our environment. The time required to accurately create, approve, and deploy firewall policy rules has been reduced. Tasks that took 30 minutes can now be completed in just five minutes using FireMon. FireMon provides immediate visibility into our policies through a robust and clear dashboard, making it easy to identify errors or misconfigurations based on the policy rating.
MithatBulut - PeerSpot reviewer
New employees can quickly grasp the various IPs, devices, and the network's logical and physical
Tufin is primarily used to orchestrate and manage network traffic and firewall devices. It is specifically useful for implementing firewall policies and handling requests from clients that require policy updates or changes Tufin simplifies understanding network topology. New employees can quickly…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the unused rule optimization, where it clears the policy when appropriate."
"I found that for policy optimization it does a great job."
"AlgoSec provides full visibility into the risk involved in firewall change requests as well. It definitely allows us to drill down to the level where we can see the actual policy rule that's affecting the risk ratings. If there are any changes in ratings, it'll show you exactly how to determine what's changed in the network that will affect it. It's been very clear and intuitive as far as that."
"AlgoSec has improved our organization in terms of improving efficiency within our firewall setup. It has added automation to working process that has helped us achieve our initial goal of reacting faster to incoming requests, which as a result of allows the relevant teams time to focus on other areas of importance."
"AlgoSec ASMS brings a holistic view of network firewall policy and automates firewall security management in very large-sized environments."
"I think finding the firewall's rules with the highest risk is valuable."
"It has streamlined our process for access and firewall management."
"The visibility provided by the single pane of glass for managing multi-vendor firewalls is excellent and then pinpointing network connectivity issues is certainly on a very good level."
"The technical support is very good. They've always been helpful."
"The SQL language is convenient to use. It allows us to process a bunch of criteria very quickly and narrows things down if there is an issue with the firewall. It's easy to do that with SQL queries."
"The unused objects is another nice feature, where it digs a little bit deeper into comparing the logs that it sees versus the configurations that it sees... The unused objects feature will go through in a pretty detailed way and show us which ones aren't being used. Or, if they are used, it will show us how often they're used."
"Its user-friendly interface allows for easy viewing and searching of network policies, including proxies, all on one console."
"FireMon saves us a lot of time and it's nice because if you're adding a rule that's similar to another rule, it'll tell you so sometimes you can just edit the one and add another source or destination in there without creating a duplicate rule. It enables you to consolidate and have fewer, more meaningful rules. We're saving around 30% of our time."
"I've been using the reports to see what is going on, and that is a helpful feature. We can track down unused rules, which helps with compliance. We can see rules that have not been used or that are duplicates or overly permissive."
"The ease of use is the most valuable feature. There are a lot of products out there, but the ability to navigate through and use Firemon is very good."
"The Security Manager part of FireMon... gives me an eye on everything that's out there, everything that I cannot see. Because I'm not a network admin, I cannot go to a firewall itself, but at least I have FireMon so that I can go in and view everything that I want to view. And I can eliminate whatever I see that is wrong,"
"The most valuable feature is that it extends security entries in the firewall policies."
"The initial setup was straightforward."
"It has allowed us to be more efficient in our processing of firewall requests."
"We use Tufin to clean up our firewall policies because it is so fast. A report about compliance and the clean-up process used to take about one month up before. With Tufin, it takes only one day."
"We can check and analyze the current status of our firewall rules."
"It provides a real-time sense of how the policies are configured and whether there are any shadow rules. Another great thing is that it provides greater reporting based on how the rules have been set up."
"There are a lot of benefits to using the reporting. It gives us duplicate objects, duplicate services, shadow firewall rules, and the firewall rules not needed for a given number of days or months."
"Comparing the rules and policy browser is valuable to me. It gives me the ability to pull running configs and be able to analyze them without having to go directly into the firewall."
 

Cons

"We would like to have a kind of "Time Capsule" to be able to restore to a certain state from a backup."
"It can be optimized. There is a lot of RPA and we have scripts in AlgoSec that need recertification. With AlgoSec Firewall Analyzer, we can see lots of objects and lots of rules that tell us we need to clean the equipment. It will give us a solution but it doesn't always work. The solution that it gives us is not always accurate from the scripts."
"They can make some improvements to the user interface because it can be slow at times."
"Introducing greater flexibility in editing alerts would be a highly appreciated improvement."
"The initial setup was extremely complex due to our large environment."
"While AlgoSec provides comprehensive visibility and management of security policies across hybrid environments, there is an opportunity to further expand its intelligence capabilities."
"The documentation could be better."
"The initial cost was high for us, but we have always been behind the tech curve and cost has always been the limiting factor."
"The cost of the solution is pretty expensive. It would be ideal if they could work on their pricing."
"FireMon could be made more user-friendly when it comes to creating filters or conducting traffic analysis."
"We've had recurring issues managing FireMon's internal backups. Sometimes, the space allocated for the backup is full, and there is no process where it deletes files that are older than I certain date. It's just waiting for the storage to get full and then it's cleaned up. It isn't something that creates serious issues for us."
"The AWS integration is still not mature for us to use. It is just not ready for our use case for AWS connectivity. Therefore, it does not provide us with a single pane of glass for our cloud environments, because we can't manage our cloud environment with the tool."
"I don't like that it comes with bugs, constant issues, and limited functionality."
"A feature that could be improved is support for more devices, not just the firewall."
"When it comes to documentation, they need to start putting together a basic command manual. With Cisco, you can look up a command and it gives you examples of three or four different ways that command can be used. It tells you how to put it into the GUI and the CLI. FireMon does need to start doing that."
"The issue for me started with Fortinet not being able to see things correctly. It lost its appeal in terms of what it could do for me from a security standpoint, so I do not pay as much attention to it."
"There was some complexity during the initial setup"
"I would like to see an improved reporting model that can be flexible for us to generate our own reports. The data's already there."
"They need to offer more support to vendors, such as Cisco, Checkpoint, Fortinet, and Forcepoint."
"We would like Tufin to have interoperability with Juniper products, along with official support."
"When it comes to web services, in my experience, Tomcat has always gone down; after a certain amount of load it breaks down and we have to get things restored again."
"We were just talking to them about usage for the F5 platform. They will not be going after specific environments, but a more OpenAPI. They will have other companies write it, etc. It's a little different than I had expected."
"The initial setup was time consuming."
"Lacks ability to create a Terraform that would enable deployment without manual steps."
 

Pricing and Cost Advice

"I would suggest that you start with a VM, get a PoC with a temp license, and try it out. You will love it."
"I personally feel that the cost is quite expensive. AlgoSec is charging for each function, e.g., Active change, Application ABF license, etc."
"It is worth spending the cost for visibility on security. Of course, security is not cheap."
"The price came in where we really didn't even need to have much of a discussion. That was very good. There are also options regarding what you want to pay for. It wasn't really pushed on me that I have to get all of it or else I can't be an AlgoSec customer."
"I'm not involved in the financial aspect, but I understand the platform to be expensive, though I need to find out how it compares to competitors like Tufin, for example."
"Setup cost and pricing were reasonable and the licensing was straightforward."
"The pricing for this solution is not cheap, but we get good value for what we pay."
"The price is high but the support is extremely poor, so keep that in mind before choosing this product."
"The pricing was very good during our initial year, but they increased it this year a little bit. The price is okay. It is not cheap, but it is still average."
"We don't license all of the devices in our network, so it does not provide us with a comprehensive visibility of all devices in a hybrid network at this time."
"Pricing is reasonable."
"This is an expensive solution. The cost of three modules for three years was approximately one million."
"We pay for it yearly."
"Its pricing is good. Compared to others, it is not so expensive."
"Relative to what it offers, the price is fair."
"Regarding additional costs, if you want things like Policy Optimizer, extra features, that's extra."
"Tufin reduced the time it takes to solve a problem, which reduces the time of the outage."
"We have seen ROI just in the time savings and knowledge. Knowledge is power. Having the solution do it automatically for you without you doing the work is huge. If you are spending $50,000 a year, it could have cost you a $100,000 in man-hours without it, especially if you are working with a team.."
"We have seen ROI from the side of operations, and we'll probably get to more of that as time goes on. However it took a while to get to that point."
"We haven't purchased the license yet for SecureChange. We do have plans to buy it next year."
"Our licensing costs are pretty low. We were grandfathered in, so we are at about $35,000 per year."
"I'm saving 20 man-hours a week, so I am seeing some ROI."
"Tufin and AlgoSec were pretty much in the competitive price range, but this one provided us better integration into the Check Point environment."
"I just wrote a purchase order for it. It is a $150,000 a year."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
865,670 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
16%
Manufacturing Company
7%
Healthcare Company
5%
Computer Software Company
15%
Financial Services Firm
15%
Manufacturing Company
11%
Comms Service Provider
6%
Financial Services Firm
17%
Computer Software Company
13%
Manufacturing Company
10%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about AlgoSec?
AlgoSec's ability to integrate with various security and networking solutions enhances its overall value.
What is your experience regarding pricing and costs for AlgoSec?
Pricing and licensing for AlgoSec depend entirely on custom quotes based on the organization's specific needs. My exp...
What needs improvement with AlgoSec?
One improvement I see for AlgoSec is implementing an optimized rule cleanup and recertification process to address th...
What do you like most about FireMon?
I like the Security Manager console where we can see any changes that have been made or pull the results of an assess...
What is your experience regarding pricing and costs for FireMon?
Comparatively, FireMon has a very good price and is below the general competition in cost. I have not seen any additi...
What needs improvement with FireMon?
For one company I work with, I use Fortinet, and FireMon is not able to understand the zones that Fortinet uses. Part...
What needs improvement with Tufin SecureCloud?
Tufin Orchestration Suite ( /products/tufin-orchestration-suite-reviews ) is not commonly used in Thailand due to a l...
What is your primary use case for Tufin SecureCloud?
I have primarily used Skybox and AlgoSec ( /products/algosec-reviews ). I have also interacted with FireMon for compi...
What advice do you have for others considering Tufin SecureCloud?
There is potential for improvement in explaining the analytics in the dashboard for Tufin Orchestration Suite. Tufin ...
 

Also Known As

No data available
No data available
Tufin SecureCloud
 

Overview

 

Sample Customers

Maersk, Delta Airlines, Chevron, General Motors, T-Mobile, Chevron, AT&T, BP, Bell Canada, HCA Healthcare, Morgan Stanley, Unilever, Nationwide Insurance Enterprise, US Bank, Microsoft 
Convey, MGM Resorts International, Southwest Airlines, Alkami, Costco, Aetna, IBM, Verizon, Wells Fargo
3M, AT&T, Blue Cross Blue Shield, BNP Parabas, ConocoPhillips, Deutsche Bank, GE, IBM, Pfizer, United States Postal Service 
Find out what your peers are saying about AlgoSec, Tufin, FireMon and others in Firewall Security Management. Updated: August 2025.
865,670 professionals have used our research since 2012.