

Cisco IOS Security and Palo Alto Networks Advanced Threat Prevention compete in the network security category. Palo Alto seems to have the upper hand due to its advanced threat detection and user-friendly management.
Features: Cisco IOS Security integrates AAA, VPN, and Zone-Based Firewall into a single platform, suitable for scalability and various enterprise needs. Its comprehensive protections make it ideal for Cisco routers and switches. Palo Alto Networks focuses on advanced threat prevention with its next-generation firewall and WildFire technology, offering detailed application control and URL filtering. Its simplicity in management is a key feature, providing robust malware protection and a user-friendly interface.
Room for Improvement: Cisco IOS Security could enhance its IPS capacity and simplify zone-based firewall management, addressing configuration complexity and reporting tools. Improving WAN connectivity and compatibility with non-Cisco products is advised. Palo Alto Networks needs to improve local technical support and licensing flexibility. The initial setup can be complex, requiring better documentation and DNS functionalities. Further development in machine learning for threat detection is also suggested.
Ease of Deployment and Customer Service: Cisco IOS Security is ideal for on-premises and hybrid environments but has a complex deployment process. Its technical support is knowledgeable but has mixed response times. Palo Alto Networks supports both on-premises and cloud deployments, with a steep learning curve. While customer service is effective, there is room for improvement in technical support speed and localization. Users value the setup guidance provided despite these challenges.
Pricing and ROI: Cisco IOS Security involves high licensing costs, with yearly or multi-year subscriptions that are seen as expensive but provide a good return on investment due to its robust features. It is suitable for medium to large enterprises. Palo Alto Networks is perceived to be expensive, often lacking significant discounts, but offers a satisfactory return on investment for large businesses due to its security effectiveness, despite the high initial investment.
The return on investment is satisfactory with Cisco products as they have long lifespans, and our customers are satisfied with them.
It offers insights into security threats, despite the inability to quantify its impact in numbers.
My impression is that the support quality has deteriorated over time.
Overall, I find the technical support from Palo Alto Networks quite good, although getting a hold of the TAC can be challenging and sometimes requires long phone calls.
I have proof of this rating - when I escalate a case, I receive a reply from TAC support after two days.
I rate technical support from Palo Alto as eight out of ten.
Palo Alto Networks Advanced Threat Prevention is scalable and works well wherever enforcement points exist.
We find Cisco products stable and thoroughly tested before new software or firmware versions are released.
I find Cisco IOS Security to be a very stable product.
Proper sizing of the firewall models ensures that the system does not experience crippling performance issues.
Cisco changes their licensing policy quite frequently, which is becoming confusing and complicated.
Palo Alto needs to focus on how to bring that technology to end users and how easy it is to use, especially in a hybrid environment where users work from various locations.
The behavioral detection capabilities could be expanded to address all threats at the perimeter, reducing the reliance on endpoint detection and response systems.
The cost of Cisco IOS Security for customers is on the higher end of pricing compared to the competition, depending on the targeted customers.
Palo Alto Networks Advanced Threat Prevention requires an add-on license and is considered expensive compared to competitors like Cisco AMP and FortiGate firewalls.
There are higher-level systems such as intrusion prevention systems which detect intrusions within the system.
This solution, called Network Access Controller, handles authentication, authorization, and accounting for devices accessing the network.
As traditional signature-based mechanisms become less effective due to the evolving nature of attacks, this solution's focus on behavioral analysis is crucial.
We are satisfied with the analytic capabilities of Palo Alto Networks Advanced Threat Prevention, especially the reporting features available in the Palo Alto portal in terms of their application visibility interface, which is very good for us to get visibility on all critical applications and the associated users, as well as the risks associated with every category of traffic.
| Product | Mindshare (%) |
|---|---|
| Palo Alto Networks Advanced Threat Prevention | 4.8% |
| Cisco IOS Security | 2.3% |
| Other | 92.9% |


| Company Size | Count |
|---|---|
| Small Business | 20 |
| Midsize Enterprise | 14 |
| Large Enterprise | 18 |
| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 4 |
| Large Enterprise | 14 |
Cisco IOS Security integrates advanced VPN capabilities, IPsec security, and firewall features, ensuring scalable and reliable protection suitable for enterprise networks.
Cisco IOS Security offers comprehensive firewall integration, robust AAA capabilities, and encryption, empowering organizations with a reliable network environment. EEM provides flexibility and programmability, while integrated threat detection, intrusion prevention, and centralized management enhance its security profile. Despite its reliability, challenges include complexity in configuration, high pricing, and confusing licensing policies. Performance issues and the need for enhanced integration, automation, and better monitoring tools are areas for improvement.
What are the key features of Cisco IOS Security?Industries leverage Cisco IOS Security to protect against zero-day attacks, deploy secure VPNs, and facilitate network access control and compliance checks. Organizations utilize its features for firewalls, routing, and switching, integrating technologies like Cisco ICE and TrustSec to enhance security across enterprise environments.
Palo Alto Networks Advanced Threat Prevention provides comprehensive security with application control, real-time threat detection, and seamless integration with cloud services. Known for its high performance and ease of use, it addresses diverse security challenges for modern organizations.
Palo Alto Networks Advanced Threat Prevention integrates machine learning, behavioral analysis, anti-malware protection, and WildFire sandboxing to deliver proactive defense against threats. Its features include advanced firewall capabilities, comprehensive bandwidth management, and robust reporting. Integration with cloud-based URL filtering enhances organizational security efforts. While the tool offers significant protection, areas like pricing, ease of use, false positive management, and documentation clarity require improvement. Expanding AI capabilities and optimizing support will enhance threat prevention and user experience.
What are the most important features?Palo Alto Networks Advanced Threat Prevention is implemented across industries for server protection and LAN/WAN traffic security, providing solutions for network testing and application control. Organizations benefit from features like GlobalProtect VPN, anti-spyware, and vulnerability protections, ensuring security through efficient deployment both on-premises and in the cloud.
We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.