Try our new research platform with insights from 80,000+ expert users

FireMon Security Manager vs ManageEngine Firewall Analyzer comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

FireMon Security Manager
Ranking in Firewall Security Management
5th
Average Rating
8.2
Reviews Sentiment
7.5
Number of Reviews
56
Ranking in other categories
No ranking in other categories
ManageEngine Firewall Analyzer
Ranking in Firewall Security Management
11th
Average Rating
8.2
Reviews Sentiment
3.8
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2025, in the Firewall Security Management category, the mindshare of FireMon Security Manager is 17.8%, up from 15.9% compared to the previous year. The mindshare of ManageEngine Firewall Analyzer is 3.3%, up from 2.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
FireMon Security Manager17.8%
ManageEngine Firewall Analyzer3.3%
Other78.9%
Firewall Security Management
 

Featured Reviews

Ganesh-Khutwad - PeerSpot reviewer
Rapid policy insights with robust dashboards and cross-vendor automation
FireMon Security Manager is excellent for real-time compliance management. It allows us to quickly retrieve any policy needed for testing and easily analyze it for loopholes. If a loophole exists, FireMon provides comprehensive details within the policy manager. It alerts us to firewall rule additions or changes that violate compliance policies. It supports various firewall platforms, including Checkpoint, Zscaler, Fortinet, Cisco, and AWS, and provides centralized management for all configured policies through a single console. FireMon Security Manager provides many features, like whether my firewall is compatible with required standards such as NTP and SNMP. Each compliance included in our RFPs is shown in the UI of FireMon. It gives robust and clear dashboards, making it easier to understand risks because the policies have ratings showing usage, and the number of hit attacks. It streamlines our compliance reporting processes by providing comprehensive risk and compliance assessments. It offers a range of features, including verification of firewall compatibility with protocols like NTP and SNMP, and detection of signal charges. FireMon effectively addresses all compliance requirements outlined in our RFPs. For instance, it can determine if firewalls or proxies within a stack are configured in Secure Mode or Active-Active mode. FireMon Security Manager enables us to generate reports on all these aspects, ensuring thorough compliance monitoring and documentation. FireMon Security Manager is robust and can help automate firewall policy changes across large multi-vendor enterprise environments. FireMon Security Manager helps automate firewall policy changes across various environments, including on-premises, cloud, hybrid, SASE, and SD-WAN. It also simplifies cleaning up firewall rules in our environment. The time required to accurately create, approve, and deploy firewall policy rules has been reduced. Tasks that took 30 minutes can now be completed in just five minutes using FireMon. FireMon provides immediate visibility into our policies through a robust and clear dashboard, making it easy to identify errors or misconfigurations based on the policy rating.
Hoa-Nguyen - PeerSpot reviewer
Implementation supports efficient network management but requires improvement in device handling capacity
The strong points of ManageEngine Firewall Analyzer are many, but I think my favorite feature focuses on the VPN traffic. If I want to manage my policy and optimize it, I find that ManageEngine Firewall Analyzer supports many vendors after Firewall. One aspect I want to improve in ManageEngine Firewall Analyzer is the maximum number of firewalls that can be managed. I learned from the internal support team that one prop server only supports three to five firewalls. I think one prop server can manage a maximum of five because if I have many devices here, the performance of the prop would be very high, considering CPU and RAM usage.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is that everything is recorded in the historical logs, including the firewall rules, headcounts, object-level usage, and the rule documentation. The rule certification details are also there, which means that someone can be held accountable for a specific firewall rule."
"It provides us with a single pane of glass for our on-prem environment, to see configuration. We have not implemented into the cloud yet. We can search for an object group and see where it lives on any firewall in the enterprise or find security rules, no matter what firewall they're on."
"FireMon Security Manager is a fast and intelligent device that delivers results in under ten seconds, even with thousands of policies."
"The most valuable features are the security assessments and the ability to identify unused rules or objects."
"The SQL language is convenient to use. It allows us to process a bunch of criteria very quickly and narrows things down if there is an issue with the firewall. It's easy to do that with SQL queries."
"I've been using the reports to see what is going on, and that is a helpful feature. We can track down unused rules, which helps with compliance. We can see rules that have not been used or that are duplicates or overly permissive."
"The most valuable feature is the Firewall reviews for our company compliance."
"It gives us the ability to go to one place to look for potential firewall rules that are inappropriate, or which don't meet compliance. Instead of manually searching hundreds of firewalls for a policy, we can go to this one location and find the rules which are now out of compliance."
"The most valuable features of the ManageEngine Firewall Analyzer are the monitoring of the full management of the network elements and the inventory of the infrastructure."
"Firewall Analyzer is easy to work with."
"Firewall Analyzer helps our organization to fulfill the compliance requirement as per ISO 27001, managing the network security effectively."
"The strong points of ManageEngine Firewall Analyzer are many, but I think my favorite feature focuses on the VPN traffic."
"The most valuable feature of the solution is that it is a very user-friendly tool compared to other solutions."
"Overall the solution does a good job."
"I found the reporting to be useful because not only can I go back months, but it lists the individual URLs and the time that a particular person visited."
 

Cons

"The cost of the solution is pretty expensive. It would be ideal if they could work on their pricing."
"Our firewalls have multiple paths through them and FireMon falls short a little bit because it's not Palo Alto-centric. I don't think FireMon has kept up with where Palo Alto is at. They started out being Check Point-centric for years and they've never really fully embraced the nuances others, like Palo Alto or Fortinet, have. They don't handle a lot of the capabilities and attributes that Palo Alto does yet. They're working on it. They're getting there."
"While I like the reporting, I think that has the biggest room for improvement. Right now, as a user of FireMon, if I create a report, I am the only one who can see it inside FireMon. If someone on my team creates a report, they are the only person who can see that report on FireMon. It doesn't matter if you're admin in FireMon or not. The way we have to do it now is that we have created a service account user and that service account user runs all the reports. This way, all the reports, which are running, are just run under a single user so we can always access them. This definitely needs to change so users can see other users' reports or we can share reports within FireMon."
"Policy Planner requirements section is good, but could use some improvement to allow flexibility to enter different types of requests (modifying an existing policy, object or service group, for example) in a structured task format that can be auto-verified."
"The advanced features are complex in setting up the rules."
"I ran a report and FireMon suggested that certain tools were not used. When I removed them, while it didn't bring our environment down completely, a lot of our environment started malfunctioning. Our backup system did not work, nor did other things that involve internal and external communication. We are not comfortable with what it did."
"Some of the core functionality in our environment doesn't seem to work. We will get buggy code releases. They need to work on their Q&A of every code release."
"We have had some stability issues that are affecting operations. We rely heavily on this solution and if it isn't working then we have to create rules manually."
"If there is a need to get some customized report or anything, ManageEngine Firewall Analyzer takes some time."
"ManageEngine Firewall Analyzer can improve by having better monitoring of all features from firewalls. We are using Kibana in order to monitor parts that this solution does not record. For example, having more correlation and proactive monitoring in some activity or scenario."
"One aspect I want to improve in ManageEngine Firewall Analyzer is the maximum number of firewalls that can be managed. I learned from the internal support team that one prop server only supports three to five firewalls."
"It would be awesome if the product could monitor services for applications."
"The stability is so-so. There are always memory issues, but the solution is working great apart from that."
"The solution lacks a lot of features that other products have in the marketplace."
 

Pricing and Cost Advice

"It's a good value. From a licensing standpoint... it's very simple to understand, and gives us a good bang for the buck."
"Its pricing is good. Compared to others, it is not so expensive."
"Regarding additional costs, if you want things like Policy Optimizer, extra features, that's extra."
"Relative to what it offers, the price is fair."
"Pricing is reasonable."
"FireMon is cheaper than AlgoSec."
"We don't license all of the devices in our network, so it does not provide us with a comprehensive visibility of all devices in a hybrid network at this time."
"We pay for it yearly."
"I know that the price of the products is flexible. There have been different types of products, like professional and enterprise-based ones, and depending on the requirements, customers can choose their products."
"Needs to work on pricing."
"ManageEngine Firewall Analyzer is less expensive than some of their competitors, such as Cisco. The price is one of the reasons why we use ManageEngine Firewall Analyzer."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
872,655 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
13%
Manufacturing Company
12%
Comms Service Provider
8%
Computer Software Company
17%
Comms Service Provider
12%
Healthcare Company
11%
Performing Arts
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise9
Large Enterprise44
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise10
 

Questions from the Community

What do you like most about FireMon?
I like the Security Manager console where we can see any changes that have been made or pull the results of an assessment and control the policies that we implement.
What is your experience regarding pricing and costs for FireMon?
Comparatively, FireMon has a very good price and is below the general competition in cost. I have not seen any additional fees beyond the general contract fees for the usage I have. So, I have not ...
What needs improvement with FireMon?
For one company I work with, I use Fortinet, and FireMon is not able to understand the zones that Fortinet uses. Part of that compliance piece does not provide me with the necessary information. An...
What do you like most about ManageEngine Firewall Analyzer?
The most valuable feature of the solution is that it is a very user-friendly tool compared to other solutions.
What is your experience regarding pricing and costs for ManageEngine Firewall Analyzer?
The pricing and overall licensing cost of ManageEngine Firewall Analyzer is very cost-effective compared to global competitors.
What needs improvement with ManageEngine Firewall Analyzer?
To improve ManageEngine Firewall Analyzer, they need to implement Zero Touch Provisioning (ZTP) support for firewalls and switches across their NMS products, as this would significantly save time; ...
 

Overview

 

Sample Customers

Convey, MGM Resorts International, Southwest Airlines, Alkami, Costco, Aetna, IBM, Verizon, Wells Fargo
WFP, NYC.gov, Sony Pictures, Franklin Security Bank, ITC INFOTECH
Find out what your peers are saying about FireMon Security Manager vs. ManageEngine Firewall Analyzer and other solutions. Updated: September 2025.
872,655 professionals have used our research since 2012.