No more typing reviews! Try our Samantha, our new voice AI agent.

FireMon Security Manager vs RedSeal vs Tufin Orchestration Suite comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Firewall Security Management Mindshare Distribution
ProductMindshare (%)
FireMon Security Manager17.7%
AlgoSec20.3%
Tufin Orchestration Suite19.8%
Other42.2%
Firewall Security Management
Risk-Based Vulnerability Management Mindshare Distribution
ProductMindshare (%)
RedSeal1.4%
Qualys VMDR12.1%
Rapid7 InsightVM10.5%
Other76.0%
Risk-Based Vulnerability Management
Firewall Security Management Mindshare Distribution
ProductMindshare (%)
Tufin Orchestration Suite19.8%
AlgoSec20.3%
FireMon Security Manager17.7%
Other42.2%
Firewall Security Management
 

Featured Reviews

SurajYadav - PeerSpot reviewer
Network Security Consultant at NTT DATA
Centralized policy governance has reduced audit effort and continuously improves risk visibility
I wish to see deeper and more customizable reporting and dashboards, as while the standard reports are useful for audits, operational teams sometimes need real-time, flexible views without exporting data. Tighter integrations with ticketing and change management tools would also enhance the workflow from request to implementation. FireMon Security Manager is excellent for policy governance and risk reduction, but better real-time dashboards and stronger workflow integrations would make it even more powerful for daily operations. There are one or two areas where FireMon Security Manager could be improved to make it even stronger. While FireMon Security Manager overall delivers solid governance and risk insight, it would benefit from more flexible dashboards and deeper integrations to reduce manual steps and improve visibility without relying on external tools. I rate FireMon Security Manager an 8 out of 10. It is a strong tool for firewall policy management, risk analysis, and compliance, clearly improving our audit process and policy governance. The reason I do not give it a 9 out of 10 is mainly because the dashboard could be more flexible and integration with the firewalls could be smoother. FireMon Security Manager is a reliable and high-value platform for managing and governing firewall policies, especially in a multi-vendor environment, though a few areas can still be improved.
reviewer1339494 - PeerSpot reviewer
Associate Consultant at a consultancy with 10,001+ employees
Enhancing network visibility with competitive pricing but needs better OT and 5G integration
The primary use cases for RedSeal are lifecycle management, vulnerabilities, and change management. Customers might look up or use these solutions for these areas RedSeal helps in optimizing the cost for the customer based on different use cases. If the solution caters to a particular use case,…
Vulnerability control saves audit costs and reduces expenses for organizations
Tufin Orchestration Suite is not commonly used in Thailand due to a lack of local support, and many customers are switching to AlgoSec or other vendors. The analytics features of Tufin Orchestration Suite are challenging to use and require technical expertise, which is a concern as there is not much knowledge in this field in Thailand. The issue of technical knowledge, especially regarding English language proficiency, is significant for government and some companies, making Tufin Orchestration Suite harder to use.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"FireMon Security Manager delivers ROI through significant time savings, cleaner rule bases, and improved risk visibility, especially for organizations with complex multi-vendor firewalls."
"I like the Security Manager console where we can see any changes that have been made or pull the results of an assessment and control the policies that we implement."
"I think it's a good product."
"It gives us the ability to go to one place to look for potential firewall rules that are inappropriate, or which don't meet compliance. Instead of manually searching hundreds of firewalls for a policy, we can go to this one location and find the rules which are now out of compliance."
"What I like about FireMon is the ability to track changes made by network engineers on the network."
"From what I've seen of the product, it's fairly robust."
"The security policy manager: We run reports regularly for the customer to show unused tools and unused objects, and to clean up the firewall policy."
"FireMon saves us a lot of time and it's nice because if you're adding a rule that's similar to another rule, it'll tell you so sometimes you can just edit the one and add another source or destination in there without creating a duplicate rule."
"The most valuable features are network mapping and configuration."
"The most valuable feature of the product to me is being able to ask what-if questions about traffic flows, which is a great ability to have for security and incident response."
"The Vulnerability and Risk Management feature is valuable to us for keeping the security posture up-to-date and conducting regular continuous audits."
"The most valuable feature I enjoy that is provided by this security analytics platform is the ability to measure resilience."
"This is the only solution in the world that gives you a digital resilience score."
"RedSeal integrates the network and gives us a visual or graphical overview of our network; if an organization is geographically dispersed, for instance, with one office in Canada and one office in the Philippines, the whole network, including all devices, is integrated into RedSeal, and you can see from where the traffic is going in and out."
"Overall, I am very happy with the way the product is working."
"This solution is amazing! The most important part is the way it gives access information to the entire infrastructure, the network most importantly."
"We were hit by the NotPetya attack. Therefore, our whole company and all its sites were down for several months. So, you don't have an attack like that and not need something like Tufin. Other companies can prevent these attacks, or at least slow them down, by having this type of a tool. We will never go back."
"The change workflow process is flexible and customizable."
"The solution helps us ensure that security policy is followed across our entire hybrid network."
"Tufin is our audit trail for all changes, and we have to be PCI compliant, and it is the tool that we go to for enforcing PCI on the network side."
"We use Tufin to clean up our firewall policies, which makes it a lot easier to find out the things that are wrong and remove things which shouldn't be there."
"The interface is quite user-friendly and intuitive."
"We use Tufin to clean up our firewall policies because it is so fast, as a report about compliance and the clean-up process used to take about one month before, but with Tufin it takes only one day."
"This solution helps us ensure that security policy is followed across our entire hybrid network. You can have a Unified Security Policy which reaches across all networks, so if you are having a change submitted, it doesn't matter if you're enforcing it or not. You can get an alert saying, "This is a violation." That's a value-add."
 

Cons

"I think that having a more open system and providing documentation for it would be helpful for users like us. We are pretty adept and can navigate through the Linux software that the on-premises FireMon is based on. It would help us in the long run."
"FireMon could improve its end-user practices. As an end user, I am just trying to catch up on all the alerts; there are so many, and you still have to go through them and document what was found."
"Its reporting can be improved. I am the only one who works a lot with it, and I am having problems in terms of reporting. In the case of Palo Alto, I'm okay with it, but with some of the Cisco devices, such as routers, when I provide the reports to other teams for review, they always say that the hit count is incorrect. So, I was struggling for a long time to work with them. When working with other teams, they have a lot of questions about reporting, such as how it reports, and we are still struggling with that."
"Support of checkpoint clusters: Rule usage is logged for each cluster member but not for the whole cluster. It may lead to wrong conclusions when you clean rules."
"A phone app would be nice. This is the reason why it is not perfect yet."
"When I removed them, while it didn't bring our environment down completely, a lot of our environment started malfunctioning; our backup system did not work, nor did other things that involve internal and external communication."
"When it comes to identifying risk in our environment and prioritizing fixes, it is really about the different priorities within the organization."
"The support response time has room for improvement."
"Sometimes, it required us to refresh the configuration. When we integrated any of the configurations into the device, sometimes, it could not detect the exact picture of that device. So, we had to reset the device to see that if it was giving true-positive results or false-positive results. In some cases, we were not able to get true-positive results. There was some kind of bug in that version. Its interface is not user-friendly and needs to be improved. It takes time to understand the interface and various options. Skybox has quite a user-friendly interface. They could provide a feature for compliance audit policy if it is already not there. A compliance audit policy ensures that all configurations are based on the best practices standards, such as CIS benchmarks standard or other similar standards. It provides visibility about whether your device configuration is based on best practices or not. Usually, such a feature is provided by other solutions such as Meteor or Tenable Nessus."
"The network mapping/visualization could be improved significantly."
"One of the areas of concern is the GUI. It is important to our customers that the GUI looks beautiful."
"One of the areas of concern is the GUI. It is important to our customers that the GUI looks beautiful. It's a Java Client, so you have a Java dependency."
"There is room for improvement regarding customization and automation of reports."
"The dashboard should be improved to make correlating data easier to do."
"Although we are talking about a very robust platform, I would like to see the Windows compatible VM version come back."
"There is room for improvement in integrating the OT security part and the private 5G security part in RedSeal."
"It's reaching the edge of stability since we're putting a very strong demand on it."
"It does not natively support all of the Check Point functions which is a big deal."
"I wish there was a read-only admin option. I don't like that you have to be a full admin just to see the Network Topology Map. That option is great out there if you are a user, multi-domain user, etc. However, that piece is very helpful for us, but I also don't want to be handing out admin access to every single person so they can see that network tab."
"Currently, we are able to monitor access rules and the operating system of a firewall. It would be great if we can also monitor the configuration of the firewall through Tufin."
"The change workflow process is getting better. I wish it was a little more customizable. Right now, my biggest issue is that it wants to optimize everything we put in. Sometimes, we need a rule to be more readable, and we want it to go in a specific way. Sometimes, it's difficult to get Tufin to accept that. It wants to optimize and reduce the number of ACLs. On the compliance side, sometimes you just want more ACLs, so it's more readable for an auditor."
"The cost is pretty high."
"Integration for Layer 2 devices could be improved because it requires manual scripting."
"I work on the network and security sides. The network visibility side needs improvement."
 

Pricing and Cost Advice

"It's a good value. From a licensing standpoint... it's very simple to understand, and gives us a good bang for the buck."
"Pricing is reasonable."
"FireMon is cheaper than AlgoSec."
"Its pricing is good. Compared to others, it is not so expensive."
"Pricing model seems fair."
"FireMon is very expensive. I think that they charge a premium. In general, they are very pricey. Compared to their competitors, they cost a little more than the other solutions that we evaluated."
"We pay for it yearly."
"This is an expensive solution. The cost of three modules for three years was approximately one million."
"The pricing is based on the number of endpoints and devices, and we have seen it range from mid-five figures to low six figures."
"I suggest talking with Tufin about the flexibility of the pricing structure."
"I had a bad experience with the financial department, and the price is too high. The software does work and does the job. The solution is worth the money. If I had a different partner to implement the solution, it would have been worth the price."
"Tufin reduced the time it takes to solve a problem, which reduces the time of the outage."
"This solution helps us reduce the time it takes us to make changes. We're probably saving time by 25%."
"Tufin and AlgoSec were pretty much in the competitive price range, but this one provided us better integration into the Check Point environment."
"We've seen a decrease of about 50 percent in the overall time it takes to complete a firewall change."
"The licensing costs are around $250,000 to $300,000."
"This solution helped us to reduce the time it takes to make changes. We used to spend up to an hour to do a change, and now, it's around five minutes."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
885,728 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Manufacturing Company
12%
Computer Software Company
9%
Comms Service Provider
8%
Manufacturing Company
9%
Government
9%
Performing Arts
8%
Construction Company
8%
Financial Services Firm
14%
Manufacturing Company
11%
Computer Software Company
9%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise9
Large Enterprise46
By reviewers
Company SizeCount
Small Business1
Midsize Enterprise1
Large Enterprise7
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise13
Large Enterprise152
 

Questions from the Community

What do you like most about FireMon?
I like the Security Manager console where we can see any changes that have been made or pull the results of an assess...
What is your experience regarding pricing and costs for FireMon?
Our experience with FireMon Security Manager's pricing and licensing is that it is on the higher side, but justified ...
What needs improvement with FireMon?
I wish to see deeper and more customizable reporting and dashboards, as while the standard reports are useful for aud...
What needs improvement with RedSeal?
There is room for improvement in integrating the OT security part and the private 5G security part in RedSeal.
What is your primary use case for RedSeal?
The primary use cases for RedSeal are lifecycle management, vulnerabilities, and change management. Customers might l...
What needs improvement with Tufin SecureCloud?
Tufin Orchestration Suite ( /products/tufin-orchestration-suite-reviews ) is not commonly used in Thailand due to a l...
What is your primary use case for Tufin SecureCloud?
I have primarily used Skybox and AlgoSec ( /products/algosec-reviews ). I have also interacted with FireMon for compi...
What advice do you have for others considering Tufin SecureCloud?
There is potential for improvement in explaining the analytics in the dashboard for Tufin Orchestration Suite. Tufin ...
 

Also Known As

No data available
No data available
Tufin SecureCloud
 

Overview

 

Sample Customers

Convey, MGM Resorts International, Southwest Airlines, Alkami, Costco, Aetna, IBM, Verizon, Wells Fargo
United States Postal Service, Pacific Gas and Electric Co., Interval International
3M, AT&T, Blue Cross Blue Shield, BNP Parabas, ConocoPhillips, Deutsche Bank, GE, IBM, Pfizer, United States Postal Service 
Find out what your peers are saying about AlgoSec, Tufin, FireMon and others in Firewall Security Management. Updated: March 2026.
885,728 professionals have used our research since 2012.