Try our new research platform with insights from 80,000+ expert users

Forcepoint Next Generation Firewall vs Zscaler Internet Access comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.4
Fortinet FortiGate enhances productivity and security, offering cost-effective management and quick ROI by reducing losses and expenses.
Sentiment score
7.0
Users report significant ROI with Forcepoint Next Generation Firewall due to cost reduction, improved security, enhanced performance, and easier management.
Sentiment score
7.5
Zscaler Internet Access offers cost and complexity reduction, improved security, and quick ROI, especially for SMBs, despite regional challenges.
Clients are now comfortable and not wasting productive hours on IT support.
There's definitely an ROI. Having a centralized way of managing and applying policies across the entire organization always helps.
there is a prominent ROI
Cybersecurity ROI could be $1 or $100 million, depending on the risk of data behind it.
The managed service aspect of Zscaler Internet Access has allowed for reduced staffing costs, resulting in a saving of approximately 20-25% compared to prior expenses.
 

Customer Service

Sentiment score
7.0
Fortinet FortiGate's support has mixed reviews; it's generally responsive and knowledgeable but varies by region and issue complexity.
Sentiment score
5.5
Forcepoint Next Generation Firewall support is skilled but slow, with calls for local support and improved response times.
Sentiment score
7.1
Zscaler Internet Access support is strong and responsive, though some users seek quicker resolutions and better online resources.
I would rate their support for FortiGate a nine out of ten.
They offer very accurate solutions.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
Unlike Fortinet where you can escalate an issue and quickly get responses from the development team, Forcepoint's process seems slow and challenging.
Technical support is sometimes slow to respond, and it takes longer to resolve issues.
The technical support for Zscaler Internet Access is rated around seven out of ten due to some response time issues and the engagement model.
I find customer support to be quite adequate
 

Scalability Issues

Sentiment score
7.3
Fortinet FortiGate offers strong scalability with ease of deployment, despite occasional hardware and integration limitations.
Sentiment score
7.4
Forcepoint Next Generation Firewall excels in scalability, though some users face challenges with large-scale and cloud deployments.
Sentiment score
7.9
Zscaler Internet Access is highly scalable, cloud-based, and supports large user volumes with positive feedback on integration and performance.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
There are restrictions in the firewall manager and limitations when deploying for cloud environments.
I find Zscaler Internet Access to be highly scalable, which was one of the reasons for choosing it.
Zscaler Internet Access is scalable and has points of presence across the globe to ensure low latency and reliable connections.
 

Stability Issues

Sentiment score
7.9
Fortinet FortiGate is generally stable and reliable, though occasional high CPU usage and updates can cause issues.
Sentiment score
7.9
Forcepoint Next Generation Firewall is stable and reliable, with praised detection and minor stability concerns in complex deployments.
Sentiment score
7.7
Zscaler Internet Access offers stable performance globally, though regions like China and South Africa occasionally face latency challenges.
We have not had any problems with the operating systems or maintenance of subscriptions.
The solution is very stable.
We have observed that the device is significantly more stable than before.
Zscaler Internet Access is stable and capable of building resilient architectures.
Zscaler Internet Access is very stable, and I would rate its stability as nine out of ten.
 

Room For Improvement

Fortinet FortiGate needs improvements in stability, support, integration, pricing, performance, cloud features, automation, and documentation clarity.
Forcepoint NGFW needs UI, policy management, and pricing enhancements, along with improved support, integration, and configuration flexibility.
Zscaler Internet Access needs better integration, user-friendly features, improved support, and competitive pricing to enhance user experience.
If I have put 10 GBPS of throughput on a firewall and I enable all of these features available, such as IPS or UTM functionalities, the throughput comes down to 1 GBPS.
By providing an integrated solution, users would have access to all features and functionalities within a single window, eliminating the need to navigate through multiple windows.
Investing in a solution that can accommodate such growth would be more cost-effective than repeatedly purchasing new hardware.
Fast response and efficient handling of issues, similar to how Fortinet responds, would be great.
I recommend that additional features be included in a single license to avoid the need for extra licensing costs.
The response time and engagement model for technical support could be improved to handle complex outages more efficiently.
One feature I am missing is the ability to connect automatically to internal monitoring systems.
 

Setup Cost

Fortinet FortiGate offers competitive pricing, straightforward licensing, and a strong price-to-performance ratio, appealing to small and medium businesses.
Forcepoint NGFW pricing varies, with costs perceived as high due to licensing models and additional feature charges.
Zscaler Internet Access is seen as costly but premium compared to traditional solutions, offering unmatched services and global coverage.
The most expensive part is the renewal of the license subscription.
FortiGate is priced lower than Palo Alto.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
The costs can be high since additional features require separate licenses.
In terms of pricing, I would place Forcepoint in the middle when compared to other firewalls like Fortinet and Palo Alto.
Zscaler Internet Access is recognized as an expensive solution.
Zscaler Internet Access is less expensive than competitors like Palo Alto, offering a premium service justified by security enhancements and cost-effective scalability.
 

Valuable Features

FortiGate excels with VPN, firewall, ease of use, strong security, centralized management, and high reliability, offering advanced threat detection.
Forcepoint Next Generation Firewall offers comprehensive security features and integration for effective network and systems application management.
Zscaler Internet Access delivers comprehensive cloud-native security with threat protection, ease of use, and centralized management for remote users.
The firewall, IPS, and VPN functions are the most valuable features.
FortiGate provides solid protection against viruses, malware, and other threats.
Within the same dashboard, you get to see the security profiles, the type of traffic that's passing through, the top applications that are being consumed, etc.
With Forcepoint, this process is simplified compared to others like Fortinet.
The most valuable features of Forcepoint Next Generation Firewall are the advanced threat protection, including features like IPS and DDoS prevention, which help avoid internal DDoS attacks.
The most valuable feature for me is the ability to see how my network and traffic looks with modules like analytics and insights.
Some of the most valuable features of Zscaler Internet Access include secure web gateways, URL filtering, data loss prevention, anti-malware defense, file extension blocking, and a comprehensive categorization system.
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
346
Ranking in other categories
Firewalls (2nd), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Forcepoint Next Generation ...
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
44
Ranking in other categories
Firewalls (25th), Software Defined WAN (SD-WAN) Solutions (9th), WAN Edge (9th)
Zscaler Internet Access
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
53
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Internet Security (2nd)
 

Mindshare comparison

Firewalls
Secure Web Gateways (SWG)
 

Featured Reviews

Yaw Agyare - PeerSpot reviewer
Ensures business continuity with reliable internet connectivity and robust security features
The content filtering and URL filtering capabilities, along with packet content filtering, are very good. It helps us restrict internet traffic during working hours to legitimate work-related traffic. Workers are only able to access social media, YouTube, and similar sites after work hours. It helps in protecting the edge significantly because we are able to determine what must be accepted and what must not be accepted. We also have FortiAnalyzer, which is the log analyzer for Fortinet FortiGate. Being AI-driven, it helps us see what is happening and new emerging threats quickly. We are able to make the necessary interventions to protect the network. We are using QRadar as a SIEM, and Fortinet FortiGate integrates with it seamlessly. FortiAnalyzer picks all logs from Fortinet FortiGate, integrates with QRadar, and allows us to see everything. It also integrates beautifully with our EDR from WithSecure. It also helps reduce power consumption. Fortinet FortiGate is a greener listing in terms of power consumption.
OusaidAbaz - PeerSpot reviewer
Provides decent protection for the LAN but complicated interface
We had some licensing issues with its web filtering capabilities. That's why we migrated our web filtering to Cisco Umbrella. Moreover, the interface is complicated. It's difficult to locate all the necessary menus and functions. For example, one of the many issues is with SSH. Even now, we haven't successfully opened the port to connect using SSH mode when we want to change the configuration. It's like a black box—not very open to changes and customization. It's simply not easy to configure. There are other problems, too. For example regarding Forcepoint's Websense component. We had a lot of problems managing the web settings within Websense. That's why we migrated to Cisco Umbrella for cloud-based web filtering. It's not that Forcepoint is inherently bad. The issue is that it's not user-friendly. It is not easy to use. The developers need to redesign the interface (GUI) for better management. It is very difficult to manage. For example, simple actions require too many clicks compared to FortiGate or Palo Alto. That's the main problem.
ShanavasVK - PeerSpot reviewer
Helps maintain a consistent posture of internet security while getting rid of VPN and hovering into zero trust
There could be a better way for the tool to categorize the traffic. For example, the tool does exceptions and everything overall. If I want to give guest access or provide access to guest users or any other internet access and if it does not go through the SSL inspection because, in our company, we can't have the root certificate on a device that we don't manage, which can be called out as an exception or an exclusion, but that doesn't provide a proper reflection of the picture of what is happening in the environment. There are granularities bringing it down. The tool I used or still have is Zscaler Cloud Connector to protect the cloud environment, which can have a bit more user-friendly installation and setup, and it would help a lot. The deployment process of Zscaler Cloud Connector needs to be more user-friendly. Improvements are required in the exception category. For example, suppose I report on a monthly basis what the breaches and traffic violating the SSL inspection area are coming from. In that case, I may find that half of them may be coming through some guest network, meaning the tool doesn't differentiate between the guest or normal networks or the corporate networks. Having options to differentiate different networks would be ideal so that it can show a true picture of things to users, as half of the things in the tool are not in our control and are not of our concern.
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
853,868 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
18%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Computer Software Company
19%
Financial Services Firm
10%
Manufacturing Company
10%
Government
9%
Educational Organization
17%
Computer Software Company
15%
Manufacturing Company
9%
Financial Services Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
The licensing model is dependent on negotiation skills, but there is room for improvement. The costs can be high sinc...
What needs improvement with Forcepoint Next Generation Firewall?
The licensing model should be more flexible. I recommend that additional features be included in a single license to ...
Which is the better security solution - Cisco Umbrella or Zscaler?
Cisco Umbrella and Zscaler Internet Access are two broad-spectrum Internet security solutions that I have tried. Zs...
Which is better, Zscaler internet access or Netsckope CASB?
We researched Netskope but ultimately chose Zscaler. Netskope is a cloud access security broker that helps identify ...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
ZIA
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
California Department of Corrections and Rehabilitation (CDCR)
Ulster-Greene ARC, BanRegio, HDFC, Ralcorp Holdings Inc., British American Tobacco, Med America Billing Services Inc., Lanco Group, Aquafil, Telefonica, Swisscom, Brigade Group
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls. Updated: May 2025.
853,868 professionals have used our research since 2012.