


Sophos Firewall and Cisco Secure Access compete in the network security category. Sophos Firewall appears to have the upper hand with its comprehensive suite of features that cater to a broader security and management approach, while Cisco Secure Access focuses on integrated access control solutions.
Features: Sophos Firewall provides robust web and application filters, wireless integration, and email protection with encryption. It also offers centralized cloud management through Sophos Central, URL filtering with over 90 categories, and Sophos RED for seamless site deployment. Cisco Secure Access emphasizes offering a seamless SASE experience, integrating well with existing infrastructure to focus on comprehensive access control and security integration across hybrid environments.
Room for Improvement: Sophos Firewall could be improved with enhanced RAM capacity, more intuitive email protection settings, and better scalability. User feedback suggests refining the VPN processes and documentation is also needed. Cisco Secure Access would benefit from better pricing flexibility, clearer licensing structures, and more integration options to enhance its global competitiveness, particularly in Asia. Modernized management tools could also improve user experience by reducing perceived complexity.
Ease of Deployment and Customer Service: Sophos Firewall is known for its versatile deployment options, ranging from on-premise to cloud and hybrid models, with a straightforward setup process. However, customer service is often critiqued for slow response times and lack of local presence. Cisco Secure Access emphasizes deployment flexibility, focusing on hybrid cloud solutions that integrate effectively into existing infrastructures, but faces challenges with support clarity and responsiveness, especially outside Western regions.
Pricing and ROI: Sophos Firewall is seen as competitively priced with flexible licensing, making it attractive to small and medium enterprises, despite occasional reports of rising costs. The pricing is mid-range, aligning well with feature offerings for strong ROI. Cisco Secure Access is positioned as a premium product, facing challenges with its pricing structure that may deter smaller businesses. Simplified and flexible pricing along with clearer licensing could enhance Cisco’s market appeal and potentially improve ROI perceptions.
Clients are now comfortable and not wasting productive hours on IT support.
The automation part is giving us a cost benefit and speed; we can react faster.
It's a very useful tool to mitigate and protect your enterprise.
At Amazon, we knew exactly how much it would cost if a fulfillment center was down for an hour.
The AI features further contribute by expediting threat detection and incident response, ensuring tangible returns through operational savings.
From my point of view, the biggest return on investment when using Cisco Secure Access is the security it provides, and I believe the best word to describe it is best security, ensuring our protection.
The costs have increased with Sophos XGS in the last few years, with license prices going up by 30%, doubling from $2,500 to about $5,000, which is a big challenge for us.
The graphical interface of Sophos XG simplifies configurations, saving time in support and troubleshooting compared to the Linux-based solution I previously used.
We purchased endpoint security for the first time last year, and even without endpoint security, it provides comprehensive security.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
I would rate the technical support for Fortinet FortiGate a ten out of ten.
As a solution provider, when I encounter problems, I connect directly with Fortinet support, and they provide solutions within a very short time.
This stems from their original business in networking, integrating router and switch operations, as well as security devices.
Although Cisco is reliable, the process to raise a support ticket has become more complex, requiring specific user accounts and access to specialized platforms.
Our engineers are very satisfied with the features, technical assistance, and documentation provided by Cisco.
I rate the technical support a ten out of ten.
Their team was quick to diagnose and resolve the problem by exchanging the equipment within two weeks.
Any issues are quickly addressed by their support team, which is not common among all OEM manufacturers.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
We turn the traffic to the Cisco Secure Access cloud, and we can manage and apply the policies that are necessary, making it very easy to scale the solution.
I would rate scalability at eight to nine out of ten.
Cisco Secure Access scales with the growing needs of our company.
You can scale up to multiple firewalls with centralized management.
You can't upgrade memory or storage on a specific model, which limits scalability.
I rate the scalability a nine out of ten.
We're experiencing 99.999% availability consistently.
I would rate the stability of Fortinet FortiGate a ten out of ten.
Currently, we are experiencing a general outage of one of the main internet service providers of the Dominican Republic, and we have not been impacted in our operations because with SD-WAN, we have another internet service provider and we are working with the second WAN connection without any disruption.
I rate the stability of Cisco Secure Access as ten out of ten.
The solution is stable enough, and I did not experience any latency or performance issues.
I have not experienced any downtime, crashes, or performance issues.
It is rated at nine out of ten for stability and is very reliable.
Sophos XG is very stable, even when serving as a DHCP server.
Sophos XGS is stable now, and I would rate its stability as a ten out of ten.
These sessions should be around five to ten minutes long, allowing users and partners to quickly grasp the information without disrupting their daily tasks.
The solution should be able to implement machine learning and analytics of all the logs for threat detection and protection.
It would be better for customers to get immediate replacements even with a standard subscription.
Modernization is needed, specifically in the enhancement of security features and functionality.
Previously, sending an email would automatically create a ticket, but now it requires accessing specific portals, making the process complicated.
Prices are high when compared to competitors, which makes it challenging to position the product with customers.
The solution should have the ability to be up to date with the most recent threats.
This suggests a vulnerability that needs addressing to ensure administrators can update patches without losing access.
Business cannot stop just because of issues with support.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
It offers cost savings as it is generally cheaper than the competition.
It is about 20% cheaper.
The solution is cheaper than premium options such as Palo Alto, existing Cisco licenses facilitate replacing previous solutions with Cisco Secure Access smoothly and affordably.
Renewal prices have been surprisingly high.
Cisco is known for being a premium product, and its pricing reflects this.
I rate the pricing a ten out of ten.
Currently, it costs about four million shillings in Kenya.
The cost depends on the package you are in, such as full threat management or basic.
These features help reduce our downtime, manage the ISPs, and deploy SLAs for all the website traffic.
The most valuable feature of FortiGate is FortiView which provides proactive monitoring.
We got a firewall and gave an SSL VPN to my client to connect to their servers, after which, such kind of activities involving ransomware attacks stopped.
It eliminates the hassle of switching on VPNs and provides a direct connection to resources via Cisco Secure Access.
They are sending the traffic encrypted and categorizing the traffic based on the type, whether web traffic or internet traffic, and doing the security mechanism that is needed for the traffic type.
The main feature of interest to me and the customers is DNS security and Integrated Secure Web Control (ISWC).
The firewall feature of Sophos XG has been the most effective for threat prevention.
Integration with endpoint security products ensures seamless traffic flow and rule enforcement, even when endpoints are not directly connected to the firewall.
Visibility features are included in XDR. This provides information on user impact, potential threats on specific machines, source and destination IPs, setup firewall details, and unique identifiers for each machine.
| Product | Market Share (%) |
|---|---|
| Fortinet FortiGate | 18.8% |
| Sophos Firewall | 10.2% |
| Cisco Secure Access | 0.2% |
| Other | 70.8% |



| Company Size | Count |
|---|---|
| Small Business | 357 |
| Midsize Enterprise | 133 |
| Large Enterprise | 188 |
| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 1 |
| Large Enterprise | 10 |
| Company Size | Count |
|---|---|
| Small Business | 203 |
| Midsize Enterprise | 62 |
| Large Enterprise | 52 |
Fortinet FortiGate is a versatile network security tool offering features like VPN, firewall, web filtering, intrusion prevention, and scalability. It is known for its performance and integration with other Fortinet products, making it a preferred choice for robust cybersecurity.
Fortinet FortiGate stands out as a comprehensive cybersecurity solution with strong performance and ease of configuration. It delivers unified threat management, integrating features such as dynamic routing, SD-WAN support, and centralized management. Despite its strengths, improvements in the web interface's stability, pricing structures, and reporting capabilities are needed. Users seek better integration with third-party tools and automation advancements to enhance the experience further. These enhancements, alongside improvements in bandwidth management and the reduction of licensing costs, are points of interest for users looking to capitalize on FortiGate's extensive capabilities.
What are Fortinet FortiGate's key features?Fortinet FortiGate is widely implemented across industries as a primary firewall system for securing internet gateways and safeguarding data centers. It supports businesses in achieving SD-WAN integration and enhances cybersecurity by providing essential features like antivirus, web filtering, and application control. Enterprises utilize FortiGate for securing remote connections and ensuring compliance with security standards, making it adaptable for different network sizes and industries.
Cisco Secure Access is a comprehensive Security Service Edge (SSE) solution (a key component of a SASE solution) that addresses the complexities of securing a hybrid enterprise. Cloud-delivered and grounded in zero trust, it delivers a unique blend of user simplicity and IT efficiency for frictionless, secure access to all applications—SaaS (with gen AI), private apps, and the internet—regardless of user location or device. Secure Access protects users, data, and devices against relentless, sophisticated, and constantly evolving threats including AI-driven attacks and identity breaches.
Provides all core SSE components (ZTNA, SWG, CASB, and FWaaS) plus extended capabilities.
Includes VPN-as-a-Service (VPNaaS), data loss prevention (DLP), AI Assistant, visibility/control/guardrails for generative AI use, digital experience monitoring (DEM), reserved IP, remote browser isolation (RBI), DNS-layer security, flexible security enforcement (in cloud or on-premises), policy verification, and more.
Protects users as they seamlessly access resources and apps with no extra steps needed, regardless of protocol, port, or level of customization
Simplifies IT operations through a single client, single dashboard, single license, and unified policies.
Lowers risk with least privilege, granular controls backed with unmatched threat intelligence of Cisco Talos.
Eases interoperability with other products from Cisco and third-party vendors with common administrative controls, data structures, and policy management.
Robust integrations
Integrates with Cisco Identity Intelligence to protect against the startling increase in identity-based attacks.
Integrates with many SAML Identity Providers (IDPs) such as AD, Azure AD, Okta, Ping, etc.
Integrates with Cisco offerings including SD-WAN, Splunk, XDR, Thousand Eyes, third party technologies such as Menlo RBI, Chrome Enterprise Browser, and AppOmni for SSPM.
Sophos Firewall provides comprehensive network security with web filtering, VPN capabilities, and cloud integration. Users highlight its effective threat prevention and flexibility for customizable policies, enhancing network visibility and management.
Renowned for its robust security, Sophos Firewall simplifies network protection through advanced features like intrusion prevention and endpoint protection integration. Its user-friendly interface allows seamless remote management and tailored rule creation, making it ideal for varied environments like healthcare and education. While the system excels in threat detection, areas such as interface navigation, support response times, and VPN integration face challenges. Enhanced reporting and bandwidth management are essential for improved performance.
What are the standout features of Sophos Firewall?Industries such as healthcare, education, and finance implement Sophos Firewall for secure VPNs, improved threat management, and effective traffic monitoring. Its load balancing and email security features support compliance and governance, ensuring robust protection tailored to sector-specific requirements.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.