No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Secure IPS (NGIPS) vs Cisco Secure Network Analytics comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.4
Cisco Secure IPS delivers effective threat detection and aligns with security needs, but setup costs concern some users' ROI evaluations.
Sentiment score
6.7
Cisco Secure Network Analytics improves visibility and detection, aiding IT collaboration; value varies by environment and enhances security posture.
 

Customer Service

Sentiment score
7.1
Cisco Secure IPS support is generally well-regarded for responsiveness and skill, despite some regional inconsistencies and initial contact issues.
Sentiment score
6.1
Cisco Secure Network Analytics receives praise for its knowledgeable international support, despite occasional challenges with local expertise.
Fortinet, on the other hand, offers quicker response times and same-day RMAs, which gives them an edge in customer service.
Head Of Technical Operations at ITE
The response was fast, and they provided experts to solve our issues quickly.
IT Infrastructure Manager at TMLI
A few years ago, I had a very bad situation. We lost a lot of money, and I opened for the first time in my life, a case with priority one. The person responsible for the ticket didn't respond for two days.
System Engineer at a tech services company with 11-50 employees
There is a lack of adequate local support from the Indian side.
Group Head at Stpi
For technical support of Cisco, the support they provide depends on how the client procures it, and so far, it's understandable.
CEO at BRIGHT-i SYSTEMS LIMITED
 

Scalability Issues

Sentiment score
7.0
Cisco Secure IPS is praised for scalability and centralized management but criticized for hardware limitations and high scaling costs.
Sentiment score
6.3
Cisco Secure Network Analytics scales well for enterprises, though high costs and outdated hardware can limit effectiveness.
The scope of the load balancing work was a team effort where we used three tools for load balancing.
Senior Developer at Atlas Laboratory
 

Stability Issues

Sentiment score
7.5
Cisco Secure IPS is mostly stable but experiences software glitches, upgrade issues, and faces preferences for alternative solutions.
Sentiment score
8.3
Cisco Secure Network Analytics is praised for stability, minimal downtime, and reliability despite initial setup challenges and infrastructure complexity.
The software situation with Cisco is problematic.
System Engineer at a tech services company with 11-50 employees
I recommend it to other users, but I am concerned about stability, as the stability is not adequate.
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
Cisco products are incredibly stable, boasting a 200% stability.
Group Head at Stpi
Once resolved, the system works well, and overall I think it's good.
CEO at BRIGHT-i SYSTEMS LIMITED
 

Room For Improvement

Cisco Secure IPS requires better SIEM integration, enhanced user-friendliness, centralized management, intuitive UI, and improved support and documentation.
Cisco Secure Network Analytics needs better integration, user interface, AI features, and simplified setup with improved training and database management.
Incorporating AI capabilities would enhance its functionality.
IT Infrastructure Manager at TMLI
CLI is very important in professional working, and it was an unwise decision by Cisco to remove it.
System Engineer at a tech services company with 11-50 employees
I am aware that we are not measuring some metrics or tracking access through Cisco Secure IPS (NGIPS).
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
The solution should have the ability to analyze security events not only at the network layer but also at the application and OS layers.
Group Head at Stpi
Proper management of the database is also important; it should be centralized for easier data collection from a single database.
CEO at BRIGHT-i SYSTEMS LIMITED
Advanced reporting and scheduled compliance reports look very attractive for audit and compliance teams at implementation time and can generate structured reports for visibility, risk posture, and traffic summaries.
Cyber Security Trainee at DataSpace Academy
 

Setup Cost

Cisco Secure IPS is seen as expensive, justified by robust features, but less cost-effective for smaller businesses.
Cisco Secure Network Analytics is costly with complex licensing, though valued for features; pricing strategy adjustments are suggested.
It's cheaper to integrate with existing IT security solutions compared to other expensive brands with subscription costs.
IT Infrastructure Manager at TMLI
I would rate the price for Cisco Secure IPS (NGIPS) as high.
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
Cisco solutions are considered to be very expensive.
Group Head at Stpi
Regarding cost, for the Bangladesh context, Cisco Secure Network Analytics is a little bit high-priced because we are a developing country, making it tough to manage affordable solutions.
CEO at BRIGHT-i SYSTEMS LIMITED
 

Valuable Features

Cisco Secure IPS provides advanced threat detection, scalability, integration capabilities, and centralized management, enhanced by Talos and Cisco Firepower.
Cisco Secure Network Analytics offers comprehensive visibility and enhanced threat detection, improving security and reducing investigation times effectively.
Cisco Secure IPS (NGIPS) helps me with the visibility component, providing visibility across more than 3,000 applications using Firepower IPS.
Senior Network Security Expert & Instructor at a tech services company with 51-200 employees
Cisco Secure IPS (NGIPS) is quite powerful for threat detection and includes botnet detection.
IT Infrastructure Manager at TMLI
They can discover new versions of malware, which is very beneficial.
System Engineer at a tech services company with 11-50 employees
The most valuable features include encrypted traffic analytics and the ability to fulfill requirements at the network level.
Group Head at Stpi
Every solution is gradually integrated with AI, and Cisco has already implemented AI building features in their solution.
CEO at BRIGHT-i SYSTEMS LIMITED
The best feature of Cisco Secure Network Analytics is its reliability, which I find to be the one that gets used the most.
Senior Developer at Atlas Laboratory
 

Categories and Ranking

Cisco Secure IPS (NGIPS)
Average Rating
8.0
Reviews Sentiment
6.7
Number of Reviews
69
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (8th)
Cisco Secure Network Analytics
Average Rating
8.2
Reviews Sentiment
6.6
Number of Reviews
63
Ranking in other categories
Network Monitoring Software (32nd), Network Traffic Analysis (NTA) (3rd), Network Detection and Response (NDR) (5th), Cisco Security Portfolio (7th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Cisco Secure IPS (NGIPS) is designed for Intrusion Detection and Prevention Software (IDPS) and holds a mindshare of 3.4%, up 3.2% compared to last year.
Cisco Secure Network Analytics, on the other hand, focuses on Network Monitoring Software, holds 0.9% mindshare, down 1.2% since last year.
Intrusion Detection and Prevention Software (IDPS) Mindshare Distribution
ProductMindshare (%)
Cisco Secure IPS (NGIPS)3.4%
Darktrace10.3%
Fortinet FortiGate9.6%
Other76.7%
Intrusion Detection and Prevention Software (IDPS)
Network Monitoring Software Mindshare Distribution
ProductMindshare (%)
Cisco Secure Network Analytics0.9%
Zabbix3.9%
SolarWinds NPM3.6%
Other91.6%
Network Monitoring Software
 

Featured Reviews

reviewer373227 - PeerSpot reviewer
System Engineer at a tech services company with 11-50 employees
Marketing strengths shine but regaining user trust needs significant effort
There are numerous things that could be improved about Cisco Secure IPS (NGIPS) to get it back on track. Sollution for small branches: when we have to connect a lot very small branches (or sometimes only an ATM) we need something small, with LTE and with reasonable price. Cisco response is SDWAN but it is not always the case. Recently Cisco released some small firewalls but I have not tried them yet. Central management with FMC is a very good idea, but sometimes local management or monitoring is helpfull. With Cisco You have to decide: central or local. You cannot have both. Regarding usability, when you commit configuration on Cisco, it sometimes takes very long. Commits also take some time for the competition, but Cisco is definitely lagging behind the rest in this respect. Last but not least, for me as a professional is lack of CLI. With CLI, I can configure every firewall on the market except Cisco. CLI is very important in professional working, and IMHO it was an unwise decision by Cisco to remove it. Graphical interfaces are very nice, but when you've got thousands of objects in a big installation and have to configure many things, CLI is a much faster way to do it.
Akash Das Barman - PeerSpot reviewer
Cyber Security Trainee at DataSpace Academy
Network analytics has reduced investigation time and provides deeper visibility into lateral movement
Several features often look very promising during evaluation or implementation but end up being used only lightly in day-to-day operations. Advanced reporting and scheduled compliance reports look very attractive for audit and compliance teams at implementation time and can generate structured reports for visibility, risk posture, and traffic summaries. In practice, many teams do not rely on it heavily because SIEM tools or GRC platforms already handle reporting better. Built-in threat intelligence feeds represent another area where expectations do not always match usage. The platform includes threat intelligence-based detection and classifications. Initially, teams expect to depend on this heavily, but later SOC teams often prefer their own threat intelligence feeds or correlate intelligence inside SIEM instead. The built-in feeds are used but not as a primary detection source. Automated incident summaries and guided investigation views are designed to simplify triage by automatically grouping related activity into incidents. However, teams often move away from them due to various factors affecting adoption.
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
900,196 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Construction Company
11%
Comms Service Provider
8%
Manufacturing Company
7%
Manufacturing Company
10%
Financial Services Firm
10%
Government
8%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business28
Midsize Enterprise16
Large Enterprise27
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise7
Large Enterprise52
 

Questions from the Community

What is your experience regarding pricing and costs for Cisco NGIPS?
I would rate the price for Cisco Secure IPS (NGIPS) as high.
What needs improvement with Cisco NGIPS?
I am aware that we are not measuring some metrics or tracking access through Cisco Secure IPS (NGIPS). In my opinion, Cisco could improve the Web GUI for Cisco Secure IPS (NGIPS).
What is your primary use case for Cisco NGIPS?
Our main use case for Cisco Secure IPS (NGIPS) is in-line traffic control, and we are using IPS in an in-line mode.
What is your experience regarding pricing and costs for Cisco Stealthwatch?
Regarding cost, for the Bangladesh context, Cisco Secure Network Analytics is a little bit high-priced because we are a developing country, making it tough to manage affordable solutions. However, ...
What needs improvement with Cisco Stealthwatch?
Several features often look very promising during evaluation or implementation but end up being used only lightly in day-to-day operations. Advanced reporting and scheduled compliance reports look ...
What is your primary use case for Cisco Stealthwatch?
My main use case for Cisco Secure Network Analytics has been network visibility and anomaly-based threat detection within the enterprise environment. In security operations and VAPT-related activit...
 

Also Known As

Sourcefire NGIPS, Firepower NGIPS
Cisco Stealthwatch, Cisco Stealthwatch Enterprise, Lancope StealthWatch
 

Overview

 

Sample Customers

American Electric Power, Huntington Bank, Keycorp, Nationwide, Transunion, Marriott, Inova Health, Ford, Thomson Reuters, Dow Chemical, Equifax, Chevron, Walmart, Coca Cola
Edge Web Hosting, Telenor Norway, Ivy Tech Community College of Indiana, Webster Financial Corporation, Westinghouse Electric, VMware, TIAA-CREF
Find out what your peers are saying about Fortinet, Darktrace, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS). Updated: June 2026.
900,196 professionals have used our research since 2012.