Try our new research platform with insights from 80,000+ expert users

ExtraHop Reveal(x) for IT Operations vs Fortinet FortiSIEM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ExtraHop Reveal(x) for IT O...
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
8
Ranking in other categories
Network Monitoring Software (72nd), Network Diagnostics (12th), IT Operations Analytics (15th), Network Packet Capture (7th)
Fortinet FortiSIEM
Average Rating
7.6
Reviews Sentiment
6.5
Number of Reviews
74
Ranking in other categories
Security Information and Event Management (SIEM) (7th)
 

Mindshare comparison

ExtraHop Reveal(x) for IT Operations and Fortinet FortiSIEM aren’t in the same category and serve different purposes. ExtraHop Reveal(x) for IT Operations is designed for IT Operations Analytics and holds a mindshare of 2.1%, up 1.5% compared to last year.
Fortinet FortiSIEM, on the other hand, focuses on Security Information and Event Management (SIEM), holds 3.3% mindshare, up 3.0% since last year.
IT Operations Analytics
Security Information and Event Management (SIEM)
 

Featured Reviews

Out West - PeerSpot reviewer
Great for identifying application interdependencies with helpful support but needs better visualizations
We're just trying to identify the application interdependencies, which normally reside on different servers, including web servers, database servers, enterprise service bus, et cetera, up to your presentation layer before we start moving stuff around. Normally, the reason why we use these tools is to understand what assets we have, where they're deployed, and how they enter and operate before we decide to go move something from point A to point B. The solution is going to allow me to establish a wave or migration plan where you have different waves of migration and then you actually have move groups to try and get your application moved from A to B seamlessly. A to B could be on-premise to on-premise. It could be on-premise to cloud. Et cetera. The solution can tell me what components can I deploy, for example, into a cloud space, without having to refactor my applications since that can be quite time-consuming and costly.
Oliver Jackson - PeerSpot reviewer
Systems monitoring enhanced by firewall and intrusion detection features
My primary use case for Fortinet FortiSIEM is systems monitoring and alerting. I use it for standard functions like log monitoring, incident detection, and notification.  My customers are mostly medium-sized enterprises ranging from engineering companies, mining companies, independent schools, and…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the way it handles data, from Layer 2 up to Layer 7. We can see everything that happens in the network."
"The most valuable features are security detections, perimeter detection, dashboards, and alerts."
"There are many valuable features in this product, but probably the biggest is the customization capability it has."
"This solution is more applications reference architecture focused. Its benefit is that it specializes in that space."
"Wire data analytics."
"Not only can you look at the protocol import level. It also has a live PCAP analysis."
"One of the most valuable features is that we can combine SOC and NOC operations in the same tool. We can provide NOC and SOC services in the same tool for two separate teams. There are plenty of third-party solutions that integrate with FortiSIEM. All these solutions already have a ready integration, and we have the possibility to create a custom connector for these solutions. Its reports are also very good."
"It detects new technologies, vulnerabilities, and emerging threats on the internet."
"The most valuable features of the solution is its integration with other technologies, especially its ability to collect logs from Cisco and Aruba devices along with Fortinet products."
"The tool's most valuable feature stems from the fact that I can see a complete analysis, like all the incidents that have happened, and it detects everything in real-time."
"The CMDB and the device discovery features are most valuable."
"Fortinet FortiSIEM has its own validated and authentic IP database that marks malicious IP attacks against the firewall and generates an alert for the same."
"FortiSIEM allows you to match IPs with threat intelligence feeds from sources like Kaspersky or Anomali, adding valuable context."
"It works well with medium to large-scale enterprises."
 

Cons

"I would improve the Rule-Based Access Control (RBAC) by providing granular access control to the data."
"We'd like to see a local presence within the region in order to have seamless service whether it's the support, the implementation, or professional services."
"This solution would be improved if it had the ability to retain data longer."
"They have a new solution, ExtraHop Reveal(x), and I think it needs improvement."
"They either have to go broad or decide what their bread and butter is and get really good at that."
"Network visibility is something that needs to be improved."
"We need to see incident reports about the event log, without events from the administrator or through human interaction."
"The reporting feature is not very attractive for the upper management and I am not able to perform complex/nested queries."
"It lacks a "wizard" that shows a particular user's activity or particular circumstance. I think the interface is intimidating because there's so much information there."
"When compared with some competitors, in terms of performance, the CPU and RAM requirements and the capability of coordination with development all need some improvement."
"When our team tried configuring logs for Microsoft SQL, it did not work."
"They need to integrate better with Cisco and Palo Alto."
"Not very good on non-API features, lacks that functionality."
"Sometimes, if there are changes made by a user on a database server, it can be difficult to get that information on the fly. I would like to see a situation where once I specify a user with the database server I need, and with the changes they have performed on that, I don't need to continue my search pattern to drill down just to get the information."
 

Pricing and Cost Advice

"The pricing is higher than other solutions, but with such good features, I think it's worth it."
"The pricing is fair considering the value provided."
"The price of this solution for our environment is about £650,000 ($855,000 USD) for three years."
"There is a need to make yearly payments towards the licensing charges attached to the product. The free version license of the product is available for two months."
"The price of Fortinet FortiSIEM is a lot less when compared to other solutions."
"FortiSIEM's licensing is based on EPS, and its pricing is competitive in the market."
"There are additional features that cost more than the standard licensing fees."
"Please be cheaper and more simplified."
"Fortinet's products are not expensive, it is less than the competition."
"This is probably more on the lower cost end of the spectrum compared to competing products. Fortinet's license model is based on events per second, which makes sense, but that's not typical. It makes it very hard to calculate what your costs are going to be as you scale the platform because some log sources, such as firewall logs, are very noisy, and there are lots and lots of events per second, but some of them are not. So, it becomes a bit of a science experiment trying to guess what your costs are going to be as you scale the solution. This is where other competing products perhaps have a more straightforward license model."
"We bought the perpetual license, so we own the product, but there is a three-year support renewal fee for that."
report
Use our free recommendation engine to learn which IT Operations Analytics solutions are best for your needs.
850,760 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
50%
Financial Services Firm
12%
Computer Software Company
8%
Healthcare Company
4%
Computer Software Company
16%
Financial Services Firm
9%
Comms Service Provider
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Ask a question
Earn 20 points
What do you like most about Fortinet FortiSIEM?
Fortinet FortiSIEM needs to provide better API integrations to users.
What is your experience regarding pricing and costs for Fortinet FortiSIEM?
As a service, the cost is reasonable and affordable with scalable pricing based on the number of monitored devices. However, setting it up for oneself as an enterprise-licensed product can be quite...
What needs improvement with Fortinet FortiSIEM?
The built-in APIs in Fortinet FortiSIEM are somewhat lacking and could be improved for better integration with external ITSM products. Improving software stability and reducing bugs will make it a ...
 

Also Known As

No data available
FortiSIEM, AccelOps
 

Overview

 

Sample Customers

Alaska Airlines, bet365, Concur, McKesson, Microsoft, Morgan Stanley, Practice Fusion, Seattle Children's Hospital, Steward Health Care System
FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
Find out what your peers are saying about ExtraHop Reveal(x) for IT Operations vs. Fortinet FortiSIEM and other solutions. Updated: May 2020.
850,760 professionals have used our research since 2012.