No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiAnalyzer vs NetWitness Platform comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiAnalyzer
Ranking in Log Management
9th
Average Rating
8.2
Reviews Sentiment
7.3
Number of Reviews
108
Ranking in other categories
No ranking in other categories
NetWitness Platform
Ranking in Log Management
37th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Security Information and Event Management (SIEM) (36th)
 

Mindshare comparison

As of August 2026, in the Log Management category, the mindshare of Fortinet FortiAnalyzer is 1.4%, down from 1.8% compared to the previous year. The mindshare of NetWitness Platform is 1.1%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Fortinet FortiAnalyzer1.4%
NetWitness Platform1.1%
Other97.5%
Log Management
 

Featured Reviews

Amarnath Jaiswal - PeerSpot reviewer
Senior Manager at a manufacturing company with 501-1,000 employees
Comprehensive log analysis has improved traffic monitoring and streamlined risk mitigation
Fortinet FortiAnalyzer is a very comprehensive analyzer providing detailed analyzing features and customizable reports. I can get customization and custom reports, and there are many functions available. It is very good for any organization.Log management in Fortinet FortiAnalyzer is excellent, as it stores approximately two years of logs. Using Fortinet FortiAnalyzer, I analyze vulnerability risks and threats and sort out problems accordingly. I then create policies and mitigate the risk based on my findings. I have created many customizable reports in Fortinet FortiAnalyzer. I have customized the reports to schedule them and generate reports every day that are sent to my email. I am not using any SIEMs, but Fortinet FortiAnalyzer is the best and looks like a SIEM. I did not integrate Fortinet FortiAnalyzer with any security information and event management solutions. With Fortinet FortiAnalyzer, I have streamlined the process to mitigate risks and save time to get event information on any type of threats, risks, and unwanted traffic. Risk and time are saved, and it is valuable for any organization.
reviewer2256927 - PeerSpot reviewer
Head of Information Security, Cyber Defense and IT Risk Management at HCT. at a transportation company with 201-500 employees
A solid SIEM solution that should improve technical support and online resources to be easier to use
A big problem with the product is that we don't have much professional experience in Israel installing, implementing, and integrating this product. There is not enough of a knowledge base. There is no support for this product in this country, so problems have to be resolved through global technical teams. We like to work locally because of the language, and when the product is only supported outside the country, it's a little difficult to implement and use this product. Moreover, AI is something that must be added immediately. Artificial intelligence is a part of the competitors' products, and it's not been implemented for us.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I have found incident management and also identifying new threats, analyzing the network traffic, and finding out the issues with the network traffic such as any security issues to be valuable. I also like the compliance reports."
"FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network."
"It has a simplified and user-friendly interface."
"The Fortinet product line is wide – you can choose from SOHO to Enterprise, and from hardware to virtual solution."
"The most valuable features of Fortinet FortiAnalyzer are the GUI and there is automation that can be done with playbooks and mini-books."
"Fortinet FortiAnalyzer is simple and reliable."
"It is easy to integrate Fortinet FortiAnalyzer with other products. You have a better overview of what's going on."
"Fortinet FortiAnalyzer is a complete package for managing our equipment."
"Technical support is very good; they try to resolve issues with the proper SLAs which are defined by them and they understand the client's requirements as well as the client's infrastructure in a better manner."
"Thanks to this tool, we have a small SOC running in our company."
"Setting up NetWitness is straightforward. There are multiple connectors, including standard and specialized connectors. One purpose of the connectors is the enhanced capability integrate the custom applications. NetWitness comes with E6 appliances and application images that we use for the initial configurations and for the OS stack information. From there, you can consider the correlation rules, integrate the different log sources, and easily create correlation rules and backlog reports."
"NetWitness can be highly beneficial for incident detection and response."
"Incident management is its most valuable feature."
"The most valuable features are the threat prediction and network forensics."
"Overall, it is easy to implement."
"The newer 11.5 version that my team is using has found it to have good mapping."
 

Cons

"The UI could use some improvement. It can be tough for a beginner to navigate because you don't know what to do even if you read the guide. I've talked to some users who said that they couldn't figure out what to do even after looking at the documentation."
"Fortinet FortiAnalyzer could improve the user interface, and the experience of users receiving the reports and tracking could be better."
"Currently, Fortinet FortiAnalyzer provides a very basic level of correlation facilities. I would like to see improvements in the integration of better correlation capabilities."
"They can include integration with devices, such as firewalls, endpoints, from other vendors. They can include graphic monitoring of everything in the network, not just Fortinet products. It would also be good to include customizable reports and customizable views of the reports."
"Pricing should be about 10-20% lower."
"Sometimes, there is a problem with CPU consumption, where one process consumes 100%, and I need to restart FortiAnalyzer to fix this."
"The solution could improve by allowing the ability to search logs in integrated solutions."
"One of the main disadvantages is not having a direct link to the security policy when you see something in the log."
"I'd like to see improvement in its ease of use. It's basically unusable. It's overly complex."
"Technical support could be improved."
"Security needs improvement. We would still like to know how the traffic is entering the organization."
"The product continues to crash. Even with tech support help, it does not resolve itself."
"The documentation is not as structured as I would like, personally, and I think that it can be improved and made much more user-friendly."
"Log aggregation is an issue with this solution because there are a huge number of alerts in a single instance."
"I believe they could improve their support, there are often delays."
"Nowadays, their support is a little subpar compared to other solutions. I rate RSA support six out of 10."
 

Pricing and Cost Advice

"We have around 12 devices and yearly we spend approximately $14,000."
"In other countries, the product may seem cheap, but in Vietnam, the costs are high."
"Fortinet FortiAnalyzer is very expensive."
"We pay approximately $11,000 for a three-year license to use Fortinet FortiAnalyzer. When we compared the price of this solution to others it is not expensive. Palo Alto is a more expensive solution."
"Its worth spending on FortiAnalyzer if you have multiple firewalls in your network."
"We have several products including Fortinet Wireless, FortiGate Firewalls, and FortiAnalyzer, which are bundled together and cost approximately $50,000 USD annually."
"The price is not expensive when compared to other solutions like Palo Alto."
"​It depends upon the company.​"
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"RSA NetWitness Logs and Packets do not have a subscription model, it's a one-time purchase. There is only a perpetual license."
"This is a pricey solution; it's not cheap."
"Compared to the competition, the is price is not that high."
"We are on an annual license for the use of the solution."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment."
"In comparison to other SIEM solutions such as Splunk, NetWitness is less costly."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
909,099 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Construction Company
12%
Financial Services Firm
10%
Manufacturing Company
8%
Outsourcing Company
8%
Construction Company
13%
Financial Services Firm
11%
Comms Service Provider
9%
Outsourcing Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise22
Large Enterprise31
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
 

Questions from the Community

What needs improvement with Fortinet FortiAnalyzer?
I think technical support should be better. Sometimes support from Fortinet does not help with creating policies or configuration issues and directly routes to the service integrator. A little more...
What is your primary use case for Fortinet FortiAnalyzer?
I am using Fortinet FortiAnalyzer along with the analyzer for traffic monitoring and event checking. It is effective for analyzing traffic purposes.I use Fortinet FortiAnalyzer for event monitoring...
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
 

Also Known As

No data available
RSA Security Analytics
 

Overview

 

Sample Customers

General Directorate of Information Technology
Los Angeles World Airports, Reply
Find out what your peers are saying about Fortinet FortiAnalyzer vs. NetWitness Platform and other solutions. Updated: August 2026.
909,099 professionals have used our research since 2012.