Try our new research platform with insights from 80,000+ expert users

Cisco Secure Network Analytics vs Forcepoint Next Generation Firewall vs Splunk User Behavior Analytics comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
8.0
Cisco Secure Network Analytics boosts incident detection and recovery, offering cost savings and labor efficiency for enhanced security.
Sentiment score
7.0
Users report significant ROI with Forcepoint Next Generation Firewall due to cost reduction, improved security, enhanced performance, and easier management.
Sentiment score
6.4
Splunk User Behavior Analytics boosts productivity and savings, though ROI varies with implementation; users report improved incident resolution.
Cybersecurity ROI could be $1 or $100 million, depending on the risk of data behind it.
The solution can save costs by improving incident resolution times and reducing security incident costs.
 

Customer Service

Sentiment score
7.3
Cisco Secure Network Analytics support is praised for technical expertise and responsiveness, despite occasional local support challenges and delays.
Sentiment score
5.5
Forcepoint Next Generation Firewall support is skilled but slow, with calls for local support and improved response times.
Sentiment score
6.8
Splunk User Behavior Analytics offers reliable customer support, although geographic limitations may require some users to utilize online forums.
There is a lack of adequate local support from the Indian side.
Unlike Fortinet where you can escalate an issue and quickly get responses from the development team, Forcepoint's process seems slow and challenging.
Technical support is sometimes slow to respond, and it takes longer to resolve issues.
Mission-critical offering a dedicated team, proactive monitoring, and fast resolution.
Splunk's technical support is amazing.
I would rate the support at eight, meaning there's some room for improvement.
 

Scalability Issues

Sentiment score
6.5
Cisco Secure Network Analytics excels in scalability and adaptability, though it can be costly and challenging in data management.
Sentiment score
7.4
Forcepoint Next Generation Firewall excels in scalability, though some users face challenges with large-scale and cloud deployments.
Sentiment score
7.5
Splunk User Behavior Analytics offers scalable and versatile solutions for enterprises, adaptable to both on-premise and cloud environments.
There are restrictions in the firewall manager and limitations when deploying for cloud environments.
Splunk User Behavior Analytics is highly scalable, designed for enterprise scalability, allowing expansion of data ingestion, indexing, and search capabilities as log volumes grow.
 

Stability Issues

Sentiment score
8.4
Cisco Secure Network Analytics is stable, reliable under complex conditions, but users seek less Java and better product integration.
Sentiment score
7.9
Forcepoint Next Generation Firewall is stable and reliable, with praised detection and minor stability concerns in complex deployments.
Sentiment score
8.2
Splunk User Behavior Analytics is praised for stability, ease of use, and reliable performance, despite minor long-term data issues.
Cisco products are incredibly stable, boasting a 200% stability.
Splunk User Behavior Analytics is highly stable and reliable, even in large-scale enterprise environments with high log injection rates.
Splunk User Behavior Analytics is a one hundred percent stable solution.
Sometimes issues occur when handling long-term data.
 

Room For Improvement

Cisco Secure Network Analytics needs enhanced usability, integration, filtering, AI, reporting, training, cost-efficiency, and endpoint management for better security.
Forcepoint NGFW needs UI, policy management, and pricing enhancements, along with improved support, integration, and configuration flexibility.
Splunk User Behavior Analytics needs improved integration, automation, affordability, a better interface, and enhanced features for optimal user satisfaction.
The solution should have the ability to analyze security events not only at the network layer but also at the application and OS layers.
Fast response and efficient handling of issues, similar to how Fortinet responds, would be great.
I recommend that additional features be included in a single license to avoid the need for extra licensing costs.
High data ingestion costs can be an issue, especially for large enterprises, as Splunk charges based on the amount of data processed.
I encountered several issues while trying to create solutions for this advanced version, which seem unrelated to query or data issues.
Advanced reporting could see enhancements as there are some issues with latency.
 

Setup Cost

Cisco Secure Network Analytics pricing is high, influenced by network flow requirements, with mixed user experiences on cost and licensing.
Forcepoint NGFW pricing varies, with costs perceived as high due to licensing models and additional feature charges.
Splunk User Behavior Analytics pricing is complex, influenced by data usage, licensing, and features, causing budgeting challenges.
Cisco solutions are considered to be very expensive.
The costs can be high since additional features require separate licenses.
In terms of pricing, I would place Forcepoint in the middle when compared to other firewalls like Fortinet and Palo Alto.
The pricing is based on the amount of data processed, and it is considered a high-level investment for enterprises.
Comparing with the competitors, it's a bit expensive.
 

Valuable Features

Cisco Secure Network Analytics enhances security with visibility, real-time anomaly detection, automation, and intuitive management for improved threat response.
Forcepoint Next Generation Firewall offers comprehensive security features and integration for effective network and systems application management.
Splunk User Behavior Analytics provides efficient data analysis, threat detection, and seamless integration, enhancing security with advanced analytics and automation.
The most valuable features include encrypted traffic analytics and the ability to fulfill requirements at the network level.
The most valuable features of Forcepoint Next Generation Firewall are the advanced threat protection, including features like IPS and DDoS prevention, which help avoid internal DDoS attacks.
With Forcepoint, this process is simplified compared to others like Fortinet.
I also utilize it for anomaly detection and behavior analysis, particularly using Splunk's machine learning environment.
It correlates all the historical data, compares the upcoming behavior with what's already stored in the platform, and reduces false positives.
Splunk User Behavior Analytics is known for its advanced analytics and data correlation capabilities, which help in detecting patterns, anomalies, and security threats.
 

Mindshare comparison

Network Monitoring Software
Firewalls
User Entity Behavior Analytics (UEBA)
 

Featured Reviews

Sudhakar T - PeerSpot reviewer
Strong network security analytics with excellent encrypted traffic analysis features
Improvements are needed on the application layer for complete security analysis. The solution should have the ability to analyze security events not only at the network layer but also at the application and OS layers. There's a need for a more comprehensive licensing model where all necessary licenses are included by default.
OusaidAbaz - PeerSpot reviewer
Provides decent protection for the LAN but complicated interface
We had some licensing issues with its web filtering capabilities. That's why we migrated our web filtering to Cisco Umbrella. Moreover, the interface is complicated. It's difficult to locate all the necessary menus and functions. For example, one of the many issues is with SSH. Even now, we haven't successfully opened the port to connect using SSH mode when we want to change the configuration. It's like a black box—not very open to changes and customization. It's simply not easy to configure. There are other problems, too. For example regarding Forcepoint's Websense component. We had a lot of problems managing the web settings within Websense. That's why we migrated to Cisco Umbrella for cloud-based web filtering. It's not that Forcepoint is inherently bad. The issue is that it's not user-friendly. It is not easy to use. The developers need to redesign the interface (GUI) for better management. It is very difficult to manage. For example, simple actions require too many clicks compared to FortiGate or Palo Alto. That's the main problem.
Subhayu Chakraborty - PeerSpot reviewer
Automatic reports streamline tasks and offers easy report gathering
The dashboard part could be improved. While using it, I noticed two options: Classic, which is adequate yet only in black and white, and another one that is more advanced or smart, though I forgot the exact term. I encountered several issues while trying to create solutions for this advanced version, which seem unrelated to query or data issues.
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
851,371 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
27%
Financial Services Firm
11%
Government
9%
Manufacturing Company
7%
Computer Software Company
19%
Financial Services Firm
11%
Manufacturing Company
10%
Government
9%
Computer Software Company
17%
Financial Services Firm
12%
Government
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cisco Stealthwatch?
The most valuable feature of Cisco Secure Network Analytics is the Threat Intelligence integration.
What is your experience regarding pricing and costs for Cisco Stealthwatch?
The organization experienced challenges with licensing as Cisco has multiple licensing factors, and there are concern...
What needs improvement with Cisco Stealthwatch?
Improvements are needed on the application layer for complete security analysis. The solution should have the ability...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
The licensing model is dependent on negotiation skills, but there is room for improvement. The costs can be high sinc...
What needs improvement with Forcepoint Next Generation Firewall?
The licensing model should be more flexible. I recommend that additional features be included in a single license to ...
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
The pricing is based on the amount of data processed, and it is considered a high-level investment for enterprises. C...
What needs improvement with Splunk User Behavior Analytics?
High data ingestion costs can be an issue, especially for large enterprises, as Splunk charges based on the amount of...
 

Also Known As

Cisco Stealthwatch, Cisco Stealthwatch Enterprise, Lancope StealthWatch
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
Caspida, Splunk UBA
 

Overview

 

Sample Customers

Edge Web Hosting, Telenor Norway, Ivy Tech Community College of Indiana, Webster Financial Corporation, Westinghouse Electric, VMware, TIAA-CREF
California Department of Corrections and Rehabilitation (CDCR)
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Zabbix, Auvik, Datadog and others in Network Monitoring Software. Updated: April 2025.
851,371 professionals have used our research since 2012.