Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs Palo Alto Networks Panorama comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Firewall Manager
Ranking in Firewall Security Management
9th
Average Rating
8.0
Reviews Sentiment
6.6
Number of Reviews
10
Ranking in other categories
No ranking in other categories
Palo Alto Networks Panorama
Ranking in Firewall Security Management
3rd
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
91
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of November 2025, in the Firewall Security Management category, the mindshare of AWS Firewall Manager is 3.6%, down from 5.4% compared to the previous year. The mindshare of Palo Alto Networks Panorama is 6.8%, down from 9.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
Palo Alto Networks Panorama6.8%
AWS Firewall Manager3.6%
Other89.6%
Firewall Security Management
 

Featured Reviews

Karthik Ekambaram - PeerSpot reviewer
Has centralized rule management and improved protection against suspicious traffic but needs better threat intelligence integration and automated policy enforcement
I have not compared AWS WAF with any other WAF solution yet, but whatever WAF you choose, there will always be challenges, and it cannot block all malicious traffic. For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads. However, the malicious payloads are not straightforward, and there are assembly scripts that come with the HTTP headers that sometimes AWS WAF misses. In the last four or five years, we have seen a case where WAF was unable to capture a threat. On the other hand, we also see alerts from WAF indicating that it has figured out many DDoS protection alerts and was able to block them, even with rate limiting. Rule-based WAF works perfectly fine, but I don't think any threat intelligence-based WAF solutions can be 100% accurate. The integration with AWS Organizations and enforcement of security policies, particularly SCP, is difficult to deploy in most of my companies due to client environments. When I say difficult, it depends on the client's organization processes, not AWS itself. The SCP feature is excellent in my view and is the best way to reduce the attack surface for organizations structured in a specific manner. While we have used it internally, limited features of SCPs can be utilized by customers. Regarding automating security policy deployment, we have utilized automated security policy features, but it is difficult in some instances. We have identified what has been identified, but enabling automated SCP policies can be restrictive, which is actually good but makes it hard to implement for all organizations. Automating security policy features could understand the customer's environment better. An AI- or ML-enabled automated SCP could be a better option since it can understand the actions of administrators or developers in the customer's organization within the AWS platform, providing more in-depth automated assessments and SCP features. I rate this solution 8 out of 10.
Waleed Aboda - PeerSpot reviewer
Centralized monitoring enhances control while seeking greater flexibility and rapid response
I am still working for Lotus. We work with Palo Alto three series, Panorama, and Firewall Banu, specifically Firewall three series and five series I find this solution valuable for full monitoring, centralized control for reporting, and centralized management. These features are instrumental in…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is helpful for our compliance, as the compliance manager manages compliance with leading industry standards such as FedRAMP, which my company complies with, GDPR laws, and ISO 27001."
"The interface is intuitive and it is easy for the users."
"Once this solution is set up, we hardly have to touch it."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"The product is highly reliable."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"Also, the strength of the community is invaluable."
"Networks Panorama has improved our organizational security"
"Panorama is very easy, easy to administrate, and easy to control."
"I like its flexibility."
"It's easy to deploy any software or policies."
"It's helpful that the solution allows us to control all the firewalls from one device."
"Technical support is quite helpful."
"It has shared profiles for all gateways. If I do not have Panorama, I need to create a separate profile for each and every gateway by logging into that particular gateway, but with Panorama, I can create a shared profile and just push it down to each and every gateway connected to it."
"The solution is absolutely stable."
 

Cons

"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
"I would like to see AWS add some UTM features to the firewall. It would also be great if AWS Firewall had native IPS/IDS. They have the separate IPS/IDS, GuardDuty."
"It needs to be more employee-friendly, and the security management could be more efficient."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"The areas of improvement are definitely platform resiliency, as we have seen outages on the AWS backbone, and whenever there is an outage on the AWS backbone, it impacts all the services hosted on that region, so we expect regional resiliency."
"The system should be more customizable."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"I would like more dashboard management."
"Sometimes technical support is slow to respond."
"Palo Alto Networks Panorama could improve by making the solution less expensive."
"I would like to see remote VPN, like the Cisco client."
"There is room for improvement in the graphical user interface (GUI), which is becoming outdated, especially the NAT section."
"It could be easier to manage. In the future, it should be much easier because it's not very easy to manage. So in the next release, I think it should be much easier to manage, especially in the first configuration. It could also be more stable."
"The solution is extremely expensive. You can integrate it with other Palo Alto products, however, it ends up being too much."
"The solution requires more flexibility and quicker response times."
 

Pricing and Cost Advice

"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"It is a cost-efficient product."
"The AWS Firewall Manager is a little on the costly side."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"You can buy the hardware only and each box is not even $10,000. It's only $8,000 for the unit itself. However, then you are charged a three-year license at $81,000."
"Its cost is quite high."
"The pricing could be lower."
"The product's pricing is high but flexible. It now follows the pay-per-use pricing model. I would rate the tool's pricing a five out of ten."
"The licensing is not cheap. There are always hidden costs. You have support costs, or maybe you need to buy more optics on how the solution fits into the rest of your environment. It is possible some of the rest of your environment will need to change too."
"You only pay for the license and there are no additional costs."
"It is very affordable when compared to more expensive firewalls."
"Palo Alto Networks Panorama is a more expensive solution than competitors. They should lower the price to stay competitive."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
873,085 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Computer Software Company
10%
Comms Service Provider
7%
Retailer
7%
Financial Services Firm
13%
Computer Software Company
12%
Comms Service Provider
11%
Manufacturing Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Large Enterprise7
By reviewers
Company SizeCount
Small Business33
Midsize Enterprise14
Large Enterprise46
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Firewall Manager?
Microsoft Firewall costs depend on region-based pricing. I don't recall the exact costs because we usually don't get the costing for the firewall alone but rather for the entire product we use, so ...
What needs improvement with AWS Firewall Manager?
I don't see any specific problems with AWS Firewall Manager, but the area of improvement could be in threat intelligence integration. For instance, while I'm not specifically saying Mandiant, which...
What is your primary use case for AWS Firewall Manager?
The major use case for AWS Firewall Manager is to deploy firewalls in front of the products we expose to the internet in our Kubernetes clusters and AKS clusters, ensuring we block DDoS attacks and...
What do you like most about Palo Alto Networks Panorama?
The most valuable aspect of Palo Alto Networks Panorama for me is the centralized management of multiple firewalls.
What is your experience regarding pricing and costs for Palo Alto Networks Panorama?
If you go with the cloud-based deployment, it is pretty much affordable. If you go with the physical bare-metal hardware, then it is quite expensive.
What needs improvement with Palo Alto Networks Panorama?
I do see some disadvantages with Panorama. If your staff is not technical enough, you have to be very careful if you have production devices on Panorama because once you push any changes, those get...
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
University of Arkansas, JBG SMITH, Temple University, Telkom Indonesia
Find out what your peers are saying about AWS Firewall Manager vs. Palo Alto Networks Panorama and other solutions. Updated: September 2025.
873,085 professionals have used our research since 2012.