Try our new research platform with insights from 80,000+ expert users

AlgoSec vs FireMon Security Manager vs Tufin Orchestration Suite comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

As of May 2025, in the Firewall Security Management category, the mindshare of AlgoSec is 22.8%, up from 20.0% compared to the previous year. The mindshare of FireMon Security Manager is 16.6%, up from 16.2% compared to the previous year. The mindshare of Tufin Orchestration Suite is 22.2%, up from 20.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management
 

Featured Reviews

Shameerudheen Kp - PeerSpot reviewer
Easy to setup with good auto-implementation and good rule reviews
AlgoSec is slow when it is loaded with too many firewalls and policies. A plan to take care of heavy usage is to be considered. Support of all firewalls and policy features to be enabled. AlgoSec should support in identifying most hit rules and re-ordering existing firewall rules - this is a very key to manage firewall CPU. A clustering of AlgoSec can also be considered. A group of AlgoSec servers managing large client bases geographically or datacenter-wise or function-wise. A head reporting unit and child processing units.
Ganesh-Khutwad - PeerSpot reviewer
Rapid policy insights with robust dashboards and cross-vendor automation
FireMon Security Manager is excellent for real-time compliance management. It allows us to quickly retrieve any policy needed for testing and easily analyze it for loopholes. If a loophole exists, FireMon provides comprehensive details within the policy manager. It alerts us to firewall rule additions or changes that violate compliance policies. It supports various firewall platforms, including Checkpoint, Zscaler, Fortinet, Cisco, and AWS, and provides centralized management for all configured policies through a single console. FireMon Security Manager provides many features, like whether my firewall is compatible with required standards such as NTP and SNMP. Each compliance included in our RFPs is shown in the UI of FireMon. It gives robust and clear dashboards, making it easier to understand risks because the policies have ratings showing usage, and the number of hit attacks. It streamlines our compliance reporting processes by providing comprehensive risk and compliance assessments. It offers a range of features, including verification of firewall compatibility with protocols like NTP and SNMP, and detection of signal charges. FireMon effectively addresses all compliance requirements outlined in our RFPs. For instance, it can determine if firewalls or proxies within a stack are configured in Secure Mode or Active-Active mode. FireMon Security Manager enables us to generate reports on all these aspects, ensuring thorough compliance monitoring and documentation. FireMon Security Manager is robust and can help automate firewall policy changes across large multi-vendor enterprise environments. FireMon Security Manager helps automate firewall policy changes across various environments, including on-premises, cloud, hybrid, SASE, and SD-WAN. It also simplifies cleaning up firewall rules in our environment. The time required to accurately create, approve, and deploy firewall policy rules has been reduced. Tasks that took 30 minutes can now be completed in just five minutes using FireMon. FireMon provides immediate visibility into our policies through a robust and clear dashboard, making it easy to identify errors or misconfigurations based on the policy rating.
MithatBulut - PeerSpot reviewer
New employees can quickly grasp the various IPs, devices, and the network's logical and physical
Tufin is primarily used to orchestrate and manage network traffic and firewall devices. It is specifically useful for implementing firewall policies and handling requests from clients that require policy updates or changes Tufin simplifies understanding network topology. New employees can quickly…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"One of the most valuable features we've found in AlgoSec is its ability to analyze network flows to help define new, less permissive rules. This functionality is crucial for enhancing our network's security posture by ensuring that only necessary traffic is allowed."
"One of the features that I like about AlgoSec is the topology table. It helps us understand where the traffic flows through, where it gets interconnected, and how the traffic flows from our device to the other device."
"Traffic Analyzer provided the centralized view for our IT SOC operations to focus mainly on high-risk firewall rules exposing with explicit any rules."
"This has helped to restrict rules, delete rules that are too permissive, and create a configuration that complies with our security policy."
"​R&D patches to address issues that I have encountered have been timely and effective.​"
"It offers a range of automated workflows and processes that accelerate security policy management."
"The most valuable features are the network map, risk analysis, and tickets for firewall changes."
"We met our goal by gaining visibility and automating rule creation."
"Vendor agnostic when it comes to integrating with other product."
"FireMon is nice and provides 360-degree user views."
"It is the single place where we go to review all of our firewall changes. The solution makes it easier for us to track all the changes made. It is a central place where we can look at all the firewall rules, because we have three different firewall vendors. It save us time and creates efficiencies by looking at the general picture."
"The ease of use is the most valuable feature. There are a lot of products out there, but the ability to navigate through and use Firemon is very good."
"The most valuable feature is that everything is recorded in the historical logs, including the firewall rules, headcounts, object-level usage, and the rule documentation. The rule certification details are also there, which means that someone can be held accountable for a specific firewall rule."
"The most valuable features are the security assessments and the ability to identify unused rules or objects."
"The most valuable feature is the reporting capability because everything that we do is a result of our being able to query a report, based on our environment and our PCI compliance efforts."
"Firewall auditing is very important. We also use the solution for rule traffic analysis, traffic flow discovery and hidden/shadow rules within over 100 firewalls spanning five different brands."
"The most valuable feature is that it extends security entries in the firewall policies."
"The most valuable feature of Tufin is security auditing. We are able to check the rules and compliance of the company, for example, what is allowed or not. We are able to check the rules over different gateways and set over firewalls."
"Comparing the rules and policy browser is valuable to me. It gives me the ability to pull running configs and be able to analyze them without having to go directly into the firewall."
"The most valuable features are the GUI interface and the API."
"Our engineers save quite a bit of time that was previously spent on manual processes."
"It is an important application for controlling and monitoring firewall rules. It is useful for making and monitoring the changes."
"In our current environment, the most valuable feature from Tufin is their Network Map."
"My team uses it heavily to audit the changes made by junior engineers, going back and figuring out what they messed up, and correcting their mistakes. We generate reports for customer compliance and audits, as well as for regulatory audits."
 

Cons

"The UX control panel is in need of improvement."
"AlgoSec can probably do better at introducing features for the cloud firewall scenarios. This is something that will probably help customers. It needs a hybrid scenario that includes private cloud, public cloud, and on-prem things. If a feature could cover all three different types of deployment, that could probably make it even more desirable for clients."
"There could be improvements in the analysis between internal zones, such as internal to DMZ or guest to DMZ."
"Our experience with support has been inconsistent. Sometimes, support is fast and clean; other times, not so much. Occasionally, they have taken a while to respond or provided an inadequate workaround instead of a solution."
"The Flash to HTML5 rewrite has been bumpy."
"It can be optimized. There is a lot of RPA and we have scripts in AlgoSec that need recertification. With AlgoSec Firewall Analyzer, we can see lots of objects and lots of rules that tell us we need to clean the equipment. It will give us a solution but it doesn't always work. The solution that it gives us is not always accurate from the scripts."
"Priority should be to improve the user interface for the risk and compliance part, making it more responsive and user-friendly."
"The graphical user interface in AlgoSec needs improvement. Sometimes it gets stuck, requiring multiple refreshes."
"FireMon could be made more user-friendly when it comes to creating filters or conducting traffic analysis."
"We've had recurring issues managing FireMon's internal backups. Sometimes, the space allocated for the backup is full, and there is no process where it deletes files that are older than I certain date. It's just waiting for the storage to get full and then it's cleaned up. It isn't something that creates serious issues for us."
"The training for configuring new users or operators is confusing because the UI is not user-friendly and has room for improvement."
"We are looking for more integration with SIEM and other tools."
"I don't like that it comes with bugs, constant issues, and limited functionality."
"The advanced features are complex in setting up the rules."
"FireMon could be easier to use and flexibility regarding reporting could be improved."
"While I like the reporting, I think that has the biggest room for improvement. Right now, as a user of FireMon, if I create a report, I am the only one who can see it inside FireMon. If someone on my team creates a report, they are the only person who can see that report on FireMon. It doesn't matter if you're admin in FireMon or not. The way we have to do it now is that we have created a service account user and that service account user runs all the reports. This way, all the reports, which are running, are just run under a single user so we can always access them. This definitely needs to change so users can see other users' reports or we can share reports within FireMon."
"The pricing could be a bit more competitive."
"There's a need for an improved network map."
"At least in our environment, the dynamic learning of the topology needs improvement."
"I needed more help getting the product to work in the lab."
"The metrics need improvement. They need more consistency or understanding of automation, along lines of customization of automation."
"I would like to see them get rid of the REST APIs and use something more modern."
"There are pros and cons to the workflow. You cannot customize it fully and there are some limitations. You cannot create a pure object, a firewall, IP, or service (single layer) object. You can only create a firewall object group. That is one of the challenges."
"USP does not support VPNs, which is a big thing for us, so we haven't been able to utilize it."
 

Pricing and Cost Advice

"My advice is that you must do a POC and show value."
"When I have active and standby firewalls, if I do an analysis of the active firewall and by mistake, I also do an analysis of the secondary or standby firewall, it'll consume two licenses from the total number of licenses I have. So, I need to change the license and make the active firewall secondary. They need to improve how they are counting the number of licenses."
"We are working with our finance department right now to be able to purchase it. The AlgoSec team is doing everything that they can in their power to get the costs down to where our budget is. They have worked a lot on it. They have cut the cost in half for us so far by questioning, "This is in the quote. Is this something that is actually needed?" They have pulled some stuff out and cut our costs down by 50% for the product itself."
"I would suggest that you start with a VM, get a PoC with a temp license, and try it out. You will love it."
"The solution has a high cost, but the reduction in operation pays the investment."
"The initial cost was high for us."
"For cloud environments, it can be expensive. The model adopted to use as licensing for the cloud environment should be reviewed since it sometimes can increase the value of the service/product in an unexpected way. For example, they should instead use the amount of instances, which should just take into consideration the number of Security Groups and ACLs."
"Setup cost and pricing were reasonable and the licensing was straightforward."
"The pricing was very good during our initial year, but they increased it this year a little bit. The price is okay. It is not cheap, but it is still average."
"Its pricing is good. Compared to others, it is not so expensive."
"FireMon is very expensive. I think that they charge a premium. In general, they are very pricey. Compared to their competitors, they cost a little more than the other solutions that we evaluated."
"We pay for it yearly."
"FireMon is cheaper than AlgoSec."
"Regarding additional costs, if you want things like Policy Optimizer, extra features, that's extra."
"Pricing is reasonable."
"We don't license all of the devices in our network, so it does not provide us with a comprehensive visibility of all devices in a hybrid network at this time."
"Pricing played a big part here... The customer had evaluated other products but, due to price as well as support, they chose Tufin."
"It is expensive, but as compared to other players, it's more or less okay. Their pricing is not very transparent. This is my biggest point regarding Tufin. I've never seen a price list or something like that. It's always individual, and in many cases, it's very confusing to know what is the base and what is the price."
"Our licensing costs are pretty low. We were grandfathered in, so we are at about $35,000 per year."
"Our engineers are spending less time on manual processes: 20 to 30 hour plus."
"It's quite an expensive solution."
"Tufin makes things a little easier. It lessens the amount of manual work which we have to do. It has a lot of benefits in terms of revenues, profits, employee costs, and operational costs. We have already seen return on investment."
"The licensing costs are around $250,000 to $300,000."
"Pricing is quite high. We did compare it with AlgoSec but the pricing is not much different between the two."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
851,371 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Financial Services Firm
17%
Manufacturing Company
8%
Healthcare Company
5%
Computer Software Company
17%
Financial Services Firm
16%
Manufacturing Company
9%
Healthcare Company
6%
Financial Services Firm
19%
Computer Software Company
14%
Manufacturing Company
10%
Retailer
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about AlgoSec?
AlgoSec's ability to integrate with various security and networking solutions enhances its overall value.
What is your experience regarding pricing and costs for AlgoSec?
Pricing for AlgoSec is fairly competitive. Rating the pricing on a scale from one being high to ten being low, the pr...
What needs improvement with AlgoSec?
The user interface for AlgoSec has remained unchanged for the last ten years and could benefit from being more intera...
What do you like most about FireMon?
I like the Security Manager console where we can see any changes that have been made or pull the results of an assess...
What is your experience regarding pricing and costs for FireMon?
Comparatively, FireMon has a very good price and is below the general competition in cost. I have not seen any additi...
What needs improvement with FireMon?
For one company I work with, I use Fortinet, and FireMon is not able to understand the zones that Fortinet uses. Part...
What do you like most about Tufin SecureCloud?
The most valuable feature of Tufin is security auditing. We are able to check the rules and compliance of the company...
What needs improvement with Tufin SecureCloud?
Tufin Orchestration Suite ( /products/tufin-orchestration-suite-reviews ) is not commonly used in Thailand due to a l...
What is your primary use case for Tufin SecureCloud?
I have primarily used Skybox and AlgoSec ( /products/algosec-reviews ). I have also interacted with FireMon for compi...
 

Also Known As

No data available
No data available
Tufin SecureCloud
 

Overview

 

Sample Customers

Maersk, Delta Airlines, Chevron, General Motors, T-Mobile, Chevron, AT&T, BP, Bell Canada, HCA Healthcare, Morgan Stanley, Unilever, Nationwide Insurance Enterprise, US Bank, Microsoft 
Convey, MGM Resorts International, Southwest Airlines, Alkami, Costco, Aetna, IBM, Verizon, Wells Fargo
3M, AT&T, Blue Cross Blue Shield, BNP Parabas, ConocoPhillips, Deutsche Bank, GE, IBM, Pfizer, United States Postal Service 
Find out what your peers are saying about AlgoSec, Tufin, FireMon and others in Firewall Security Management. Updated: May 2025.
851,371 professionals have used our research since 2012.