Try our new research platform with insights from 80,000+ expert users

Cisco Secure Network Analytics vs Fortra's Tripwire Enterprise comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cisco Secure Network Analytics
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
60
Ranking in other categories
Network Monitoring Software (30th), Network Traffic Analysis (NTA) (4th), Network Detection and Response (NDR) (8th), Cisco Security Portfolio (7th)
Fortra's Tripwire Enterprise
Average Rating
8.0
Reviews Sentiment
7.2
Number of Reviews
8
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (15th)
 

Mindshare comparison

While both are Network Security Systems solutions, they serve different purposes. Cisco Secure Network Analytics is designed for Network Monitoring Software and holds a mindshare of 1.2%, down 1.6% compared to last year.
Fortra's Tripwire Enterprise, on the other hand, focuses on Intrusion Detection and Prevention Software (IDPS), holds 1.5% mindshare, down 1.5% since last year.
Network Monitoring Software
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Sudhakar T - PeerSpot reviewer
Strong network security analytics with excellent encrypted traffic analysis features
Improvements are needed on the application layer for complete security analysis. The solution should have the ability to analyze security events not only at the network layer but also at the application and OS layers. There's a need for a more comprehensive licensing model where all necessary licenses are included by default.
reviewer2093205 - PeerSpot reviewer
It has excellent scalability and allows you to execute custom COCR rules, letting you fine-tune agent monitoring
I'm using Tripwire Enterprise version 9.0. In my company, thirty to forty people use Tripwire Enterprise, mainly different types of engineers, governance, risk, compliance, and cybersecurity personnel. I advise people planning to use Tripwire Enterprise to take the training because the solution has a fairly complex interface. You can do a lot of work with it, but it isn't very easy. Tripwire Enterprise is a sophisticated tool. I rate the tool an eight on a scale of one to ten because it does an excellent job of handling the unique challenges of maintaining NERC CIP compliance and monitoring industrial controls.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It provides good visibility to the customers. People are still evaluating it, but it provides visibility and helps them to take action to remediate and mitigate the issues that are highlighted on the dashboard. It has good integration with the Cisco switching platform."
"The most valuable features are encrypted threat analysis and the ability to run jobs on entire flows."
"Visibility. The ability to look East and West. To see what is passing through your circuits, where it is coming from, and how big it is."
"The most valuable features provided by this solution are visibility and information."
"It has improved our internal knowledge of what's going on with the network, and that's helpful."
"Cisco products are incredibly stable, boasting a 200% stability."
"Overall, the implementation is very good."
"The most valuable feature about this solution is that it gives me insight of my network."
"We use Tripwire Enterprise as a tool to test the vulnerability of a network. That is the most valuable feature of the product for us."
"Its reporting features are great. It gives you an in-depth report. Its customization is also great, and it is working fine."
"The most valuable feature is the integrity."
"The product supports different platforms."
"Even if you change a single word in Notepad, it will let you know whether it was added, removed, or modified."
"The most valuable feature is integrity management. I had some discussions with service providers, and they also agreed."
"What's most valuable in Tripwire Enterprise is the ability to execute custom COCR rules that lets me fine-tune how I monitor Linux and Windows agents."
"File monitoring is the most valuable feature of the solution."
 

Cons

"The initial setup is complex, as there is a lot to configure."
"I would like to see it better organized when I'm looking at it."
"One update I would like to see is an agent-based client. Currently StealthWatch is network based."
"The GUI could use some improvement. Being able to find features more easily would be a great improvement if it was simplified."
"The configuration of the solution was quite complex."
"If they can make this product more web-based, that would be amazing."
"We've run into some issues with the configuration."
"It hasn't really improved our direct detection rate but it has definitely reduced our incident response time as we wouldn't have been able to detect threats or immediate risks without this solution."
"It needs more local support from the OEM side. It would be great if this can be improved."
"A lot of network devices need a custom integration."
"The initial setup is complex."
"The main way that it can be improved is through better reporting."
"The deployment with certain systems can be difficult and it needs to be simplified."
"Cloud monitoring could be better. It would also be better if the company followed a pay-as-you-use model."
"The Windows online integration license needs to be improved."
"An area for improvement in Tripwire Enterprise is stability, as my company had stability issues with the last few versions of the solution. Tripwire Enterprise has been a bit buggy."
 

Pricing and Cost Advice

"We pay for support costs on a yearly basis."
"Today, we are part of the big Cisco ELA, and it is a la carte. We can get orders for whatever we want. At the end of the day, we have to pay for it in one big expense, but that is fine. We are okay with that."
"One of the things which bugs me about Lancope is the licensing. We understand how licensing works. Our problem is when we bought and purchased most of these Lancope devices, we did so with our sister company. Somewhere within the purchase and distribution, licensing got mixed up. That is all on Cisco, and it is their responsibility. They allotted some of our sister company's equipment to us, and some of our equipment to them. To date, they have never been able to fix it."
"The yearly licensing cost is about $50,000."
"The tool is not cheaply priced."
"On a yearly basis, licensing is somewhere around $30,000."
"NetFlow is very expensive."
"The solution is expensive. It costs several hundred thousand dollars per year (depending on how many flows you are collecting)."
"Tripwire is more expensive than Netwrix."
"The licensing depends on the equipment, how many devices and the types of devices."
"Cloud monitoring could be better. It could also be cheaper. It would be better if the company followed a pay-as-you-use model."
report
Use our free recommendation engine to learn which Network Monitoring Software solutions are best for your needs.
850,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
28%
Financial Services Firm
11%
Government
9%
Manufacturing Company
7%
Financial Services Firm
13%
University
12%
Manufacturing Company
11%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cisco Stealthwatch?
The most valuable feature of Cisco Secure Network Analytics is the Threat Intelligence integration.
What is your experience regarding pricing and costs for Cisco Stealthwatch?
The organization experienced challenges with licensing as Cisco has multiple licensing factors, and there are concerns about the price. Cisco solutions are considered to be very expensive.
What needs improvement with Cisco Stealthwatch?
Improvements are needed on the application layer for complete security analysis. The solution should have the ability to analyze security events not only at the network layer but also at the applic...
What do you like most about Tripwire Enterprise?
The product supports different platforms.
What needs improvement with Tripwire Enterprise?
The solution has some limitations in OT, IoT, and AIX. The product must provide whitelisting services.
 

Also Known As

Cisco Stealthwatch, Cisco Stealthwatch Enterprise, Lancope StealthWatch
No data available
 

Overview

 

Sample Customers

Edge Web Hosting, Telenor Norway, Ivy Tech Community College of Indiana, Webster Financial Corporation, Westinghouse Electric, VMware, TIAA-CREF
1. Aetna 2. Adobe 3. ADP 4. Airbus 5. Amazon 6. American Express 7. Aon 8. ATT 9. Bank of America 10. Barclays 11. Baxter International 12. Bechtel 13. Boeing 14. Cisco Systems 15. CocaCola 16. Comcast 17. Dell 18. ETRADE 19. ExxonMobil 20. Ford Motor Company 21. General Electric 22. General Motors 23. Google 24. JPMorgan Chase 25. Kraft Foods 26. Lockheed Martin 27. McDonald's 28. Merck 29. Microsoft 30. Morgan Stanley 31. Nike 32. Oracle
Find out what your peers are saying about Zabbix, Auvik, Datadog and others in Network Monitoring Software. Updated: April 2025.
850,834 professionals have used our research since 2012.