Try our new research platform with insights from 80,000+ expert users

Cisco Secure Network Analytics vs Flowmon comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 10, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Secure Network Analytics
Ranking in Network Detection and Response (NDR)
8th
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
61
Ranking in other categories
Network Monitoring Software (38th), Network Traffic Analysis (NTA) (3rd), Cisco Security Portfolio (9th)
Flowmon
Ranking in Network Detection and Response (NDR)
13th
Average Rating
8.6
Reviews Sentiment
7.5
Number of Reviews
4
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of March 2026, in the Network Detection and Response (NDR) category, the mindshare of Cisco Secure Network Analytics is 6.3%, down from 7.6% compared to the previous year. The mindshare of Flowmon is 2.1%, up from 1.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Detection and Response (NDR) Mindshare Distribution
ProductMindshare (%)
Cisco Secure Network Analytics6.3%
Flowmon2.1%
Other91.6%
Network Detection and Response (NDR)
 

Featured Reviews

Muhammad Harun-Owr-Roshid - PeerSpot reviewer
CEO at BRIGHT-i SYSTEMS LIMITED
Have streamlined network visibility and troubleshooting while seeing benefits from AI integration
In terms of improvements for Cisco Secure Network Analytics, from the implementation point of view, now that AI is in use, some other features need to be upgraded considering AI solutions. Proper management of the database is also important; it should be centralized for easier data collection from a single database. When precise manual analysis is needed, it's sometimes difficult, so having a centralized database will allow network admins to find actual scenarios more effectively, especially since some information may not be visible on the GUI. Cisco should upgrade their hardware part to run the database, because sometimes it cannot handle the load while all features are running in the network. The database management should indeed be centralized because while AI runs behind the systems, central management is essential. For example, in a network with 100 Cisco switches, a few routers, firewalls, and access points, all data generated should be preserved in a central database. This approach simplifies management and analysis for troubleshooting, as GUI interfaces may not always provide visible information. Centralizing the database will allow for better understanding of which information is preserved for each specific device.
Pifu Lin - PeerSpot reviewer
Senior System Engineer at DYNASAFE TECHNOLOGIES PTE. LTD.
Quick identification of network issues enhances performance monitoring
We will try to Proof of Concept (POC) to a client in Taiwan. We just use the features for the Network Performance Monitor (NPM) Flowmon is more easy to understand and helps find network issues more quickly. We need this solution to monitor the network performance. We started using it three…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Cisco Secure Network Analytics is the Threat Intelligence integration."
"The most valuable features include encrypted traffic analytics and the ability to fulfill requirements at the network level."
"The most valuable feature is its alerts and dashboard."
"Cisco Stealthwatch provides the solutions analytics and threat detection capabilities that I am looking for. It has also improved the network visibility of our organization."
"AI provides suggested common lines and protection features that help safeguard networks from various threats or unwanted situations."
"Great network monitoring, looking at anomaly detection and evaluation."
"The deployment was a breeze. It is a very innovative and robust platform that allows us to bi-directionally stitch together data elements from Netflow-enabled devices to provide a context for network utilization."
"We find that Stealthwatch can detect the unseen."
"The solution is stable."
"It is an open platform, so in terms of integration, we are quite happy. We can integrate it with other SNMP solutions. We can also integrate it with security solutions, such as a SIEM solution."
"Flowmon is more easy to understand and helps find network issues more quickly."
"The artificial intelligence and automatic detection system in Flowmon Solution are perfect for every, type of customer, such as government and commerce."
"Flowmon is more easy to understand and helps find network issues more quickly."
 

Cons

"Cisco Stealthwatch needs more integration with device discovery. We have to do a lot of hard work to figure out what things are. Better service integration is required."
"It's a good solid solution but integration with Network Access Control products with Cisco ISE would be good."
"It is time-consuming to set it up and understand how the tool works."
"We haven't seen ROI."
"We've run into some issues with the configuration."
"Reliance on Java. Get away from that."
"The solution should have the ability to analyze security events not only at the network layer but also at the application and OS layers."
"The reporting of day-to-day metrics still has room for improvement."
"If there was better visualization in Flowmon Solution it would be good."
"I do not know the detailed pricing."
"It would be helpful to have more details about the monitoring of the infrastructure. It should have support for SNMP. This is something that is currently not there in the product."
"The licensing price could be better."
 

Pricing and Cost Advice

"Our fees are approximately $3,000 USD."
"Today, we are part of the big Cisco ELA, and it is a la carte. We can get orders for whatever we want. At the end of the day, we have to pay for it in one big expense, but that is fine. We are okay with that."
"The yearly licensing cost is about $50,000."
"On a yearly basis, licensing is somewhere around $30,000."
"We pay for support costs on a yearly basis."
"The tool is not cheaply priced."
"NetFlow is very expensive."
"​Licensing is done by flows per second, not including outside (in traffic)."
"The licensing fee accrues only once, but that of support is annual."
"It works with a permanent license, and then you can pay for the support. For the gold support, you need to pay yearly."
"The price of the solution could be better."
report
Use our free recommendation engine to learn which Network Detection and Response (NDR) solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Government
11%
Manufacturing Company
10%
Financial Services Firm
9%
Manufacturing Company
12%
Computer Software Company
10%
Financial Services Firm
10%
Performing Arts
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise7
Large Enterprise52
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Cisco Stealthwatch?
Regarding cost, for the Bangladesh context, Cisco Secure Network Analytics is a little bit high-priced because we are a developing country, making it tough to manage affordable solutions. However, ...
What needs improvement with Cisco Stealthwatch?
In terms of improvements for Cisco Secure Network Analytics, from the implementation point of view, now that AI is in use, some other features need to be upgraded considering AI solutions. Proper m...
What is your primary use case for Cisco Stealthwatch?
Our customers mainly use Cisco Secure Network Analytics to get whole network visibility and easy troubleshooting to find actual problems and also to mitigate loopholes or findings immediately to pr...
What is your experience regarding pricing and costs for Flowmon Anomaly Detection System?
I don't understand the price. I am in deployment, so I do not know the detailed pricing.
What is your primary use case for Flowmon Anomaly Detection System?
We will try to Proof of Concept (POC) to a client in Taiwan. We just use the features for the Network Performance Monitor (NPM).
 

Also Known As

Cisco Stealthwatch, Cisco Stealthwatch Enterprise, Lancope StealthWatch
Flowmon Anomaly Detection System
 

Overview

 

Sample Customers

Edge Web Hosting, Telenor Norway, Ivy Tech Community College of Indiana, Webster Financial Corporation, Westinghouse Electric, VMware, TIAA-CREF
SEGA
Find out what your peers are saying about Cisco Secure Network Analytics vs. Flowmon and other solutions. Updated: March 2026.
884,873 professionals have used our research since 2012.