No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiAnalyzer vs NetWitness Platform comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiAnalyzer
Ranking in Log Management
9th
Average Rating
8.2
Reviews Sentiment
7.3
Number of Reviews
108
Ranking in other categories
No ranking in other categories
NetWitness Platform
Ranking in Log Management
38th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Security Information and Event Management (SIEM) (39th)
 

Mindshare comparison

As of May 2026, in the Log Management category, the mindshare of Fortinet FortiAnalyzer is 1.5%, down from 2.0% compared to the previous year. The mindshare of NetWitness Platform is 1.0%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Fortinet FortiAnalyzer1.5%
NetWitness Platform1.0%
Other97.5%
Log Management
 

Featured Reviews

AP
Engineer at Kahramaa
Management becomes centralized with effective logging
The features that are most effective for me in Fortinet FortiAnalyzer are easy to manage. Fortinet FortiManager is also a great product to manage multi-site management options and other tools. The capability of logging in Fortinet FortiAnalyzer is great because there is no need to go to each individual box to check the traffic details. We can collect everything in Analyzer and check from a single console.
reviewer2256927 - PeerSpot reviewer
Head of Information Security, Cyber Defense and IT Risk Management at HCT. at a transportation company with 201-500 employees
A solid SIEM solution that should improve technical support and online resources to be easier to use
A big problem with the product is that we don't have much professional experience in Israel installing, implementing, and integrating this product. There is not enough of a knowledge base. There is no support for this product in this country, so problems have to be resolved through global technical teams. We like to work locally because of the language, and when the product is only supported outside the country, it's a little difficult to implement and use this product. Moreover, AI is something that must be added immediately. Artificial intelligence is a part of the competitors' products, and it's not been implemented for us.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Logging is the best feature."
"Initial setup is ok."
"The most valuable feature is the capability to gather logs and generate reports."
"This solution offers one view of incident management which has been the most valuable feature."
"The most valuable feature of FortiAnalyzer is its visibility, especially in network investigations."
"I would say that Fortinet's tech support is really good."
"We use the solution for enterprise firewalls, URL filtering, and SD-WAN."
"The most valuable features are customizing reports, and the ability to drill down to display critical information in real-time."
"The most valuable features are the integration and ease of use."
"Overall, it is easy to implement."
"Their customer service is excellent, one of the best."
"Prior to implementing the solution, the customers had no visibility of their assets, however, after adopting the solution, they have gained complete visibility over all their assets, including a comprehensive understanding of the network and attack symptoms."
"Possibility to investigate incidents based on logs and raw packets, such as extracting files sent over the network"
"The most valuable features are the packet decoder, log decoder, and concentrator."
"The development of use cases on the SSA console is quite user friendly. This means that the security analyst or the researcher does not have to learn another language."
"Thanks to this tool, we have a small SOC running in our company."
 

Cons

"It is a little complex in terms of scalability and mostly because we're using a kind of high-end systems."
"There is no issue with the hardware appliance. However, when discussing the cloud options, they offer very limited features, especially in terms of reporting and analyzing data."
"There are a lot of solutions on the market and Fortinet FortiAnalyzer is limited. It cannot be used across multiple vendors."
"In terms of what could be improved, sometimes it's lagging and it also has some graphical issues with the GUI."
"The solution lacks business intelligence features. It's much too basic."
"There are a lot of solutions on the market and Fortinet FortiAnalyzer is limited. It cannot be used across multiple vendors. They can improve by advancing their technology."
"We would like to see some improvement on the upgrade process around this solution. There are sometimes communication issues when a new version of the firewall is implemented, and it fails to report back to this product."
"The price is quite expensive. Fortinet products are very expensive."
"I'd like to see improvement in its ease of use. It's basically unusable. It's overly complex."
"Log aggregation is an issue with this solution because there are a huge number of alerts in a single instance."
"The initial setup is complex. There are other solutions that are easier to implement."
"The initial setup was complex because it takes a lot of time to complete the implementation."
"There is no support for this product in this country, so problems have to be resolved through global technical teams."
"It is overly complicated. It has taken years to implement and the return on investment just isn't there."
"RSA NetWitness Logs and Packets can improve the threat level aspect, it is lacking compared to other solutions. Whenever any hacking activity or any other threat factor occurred they used to provide the coverages very fast when comparing RSA NetWitness Logs and Packets. I heard the other three solutions, from a discussion with my team members who had experience in other solutions, they used to say that. Whenever any issues happened across the globe RSA NetWitness Logs and Packets are a little bit slow improving those detection mechanisms."
"I believe that integrating the solution with other products such as Oracle would be beneficial."
 

Pricing and Cost Advice

"I believe that these devices were procured with a five-year maintenance and support license up front. I work at a university, so the vendor provides a considerable higher ed discount."
"All Fortinet programs come at a good price."
"I rate the product's price a six on a scale of one to ten, where one is cheap, and ten is expensive."
"The price is quite expensive. Fortinet products are very expensive. That is something which they should also look at, because if you compare Fortinet product to, say, Sophos for example, Fortinet is really high and that's the only thing which is a drawback for most users."
"The solution is quite expensive"
"The cost of the license is high."
"The pricing of this solution is fair, and it is based on what you can manage."
"Fortinet FortiAnalyzer is quite an expensive tool."
"We have yearly licensing costs. The license fee can be based on the volume of EPS. Some organizations may have, as a gentlemanly gesture, 10,000 EPS and get a 3,000 EPS license but actually use 5,000 EPS."
"It provides tools to assist in selecting the appropriate license and usage scenarios."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"There is a licensing fee and the customer can choose whether he wishes this to be subscription-based or perpetual."
"The product price was reasonable for my region and the market."
"We are on an annual license for the use of the solution."
"The NetWitness Platform may be affordable only for enterprise-level customers, as it may not be within the budget of small and medium-sized businesses."
"It’s cheaper to run virtual machines in a VMware environment."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
893,915 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Construction Company
8%
Manufacturing Company
8%
Comms Service Provider
7%
Financial Services Firm
11%
Comms Service Provider
9%
Construction Company
8%
Performing Arts
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise22
Large Enterprise31
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
 

Questions from the Community

What needs improvement with Fortinet FortiAnalyzer?
I think technical support should be better. Sometimes support from Fortinet does not help with creating policies or configuration issues and directly routes to the service integrator. A little more...
What is your primary use case for Fortinet FortiAnalyzer?
I am using Fortinet FortiAnalyzer along with the analyzer for traffic monitoring and event checking. It is effective for analyzing traffic purposes.I use Fortinet FortiAnalyzer for event monitoring...
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
 

Also Known As

No data available
RSA Security Analytics
 

Overview

 

Sample Customers

General Directorate of Information Technology
Los Angeles World Airports, Reply
Find out what your peers are saying about Fortinet FortiAnalyzer vs. NetWitness Platform and other solutions. Updated: April 2026.
893,915 professionals have used our research since 2012.