No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiAnalyzer vs NetWitness Platform comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jun 3, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiAnalyzer
Ranking in Log Management
8th
Average Rating
8.2
Reviews Sentiment
7.3
Number of Reviews
108
Ranking in other categories
No ranking in other categories
NetWitness Platform
Ranking in Log Management
36th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Security Information and Event Management (SIEM) (34th)
 

Mindshare comparison

As of September 2026, in the Log Management category, the mindshare of Fortinet FortiAnalyzer is 1.4%, down from 1.9% compared to the previous year. The mindshare of NetWitness Platform is 1.1%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Fortinet FortiAnalyzer1.4%
NetWitness Platform1.1%
Other97.5%
Log Management
 

Featured Reviews

Amarnath Jaiswal - PeerSpot reviewer
Senior Manager at a manufacturing company with 501-1,000 employees
Comprehensive log analysis has improved traffic monitoring and streamlined risk mitigation
Fortinet FortiAnalyzer is a very comprehensive analyzer providing detailed analyzing features and customizable reports. I can get customization and custom reports, and there are many functions available. It is very good for any organization.Log management in Fortinet FortiAnalyzer is excellent, as it stores approximately two years of logs. Using Fortinet FortiAnalyzer, I analyze vulnerability risks and threats and sort out problems accordingly. I then create policies and mitigate the risk based on my findings. I have created many customizable reports in Fortinet FortiAnalyzer. I have customized the reports to schedule them and generate reports every day that are sent to my email. I am not using any SIEMs, but Fortinet FortiAnalyzer is the best and looks like a SIEM. I did not integrate Fortinet FortiAnalyzer with any security information and event management solutions. With Fortinet FortiAnalyzer, I have streamlined the process to mitigate risks and save time to get event information on any type of threats, risks, and unwanted traffic. Risk and time are saved, and it is valuable for any organization.
reviewer2256927 - PeerSpot reviewer
Head of Information Security, Cyber Defense and IT Risk Management at HCT. at a transportation company with 201-500 employees
A solid SIEM solution that should improve technical support and online resources to be easier to use
A big problem with the product is that we don't have much professional experience in Israel installing, implementing, and integrating this product. There is not enough of a knowledge base. There is no support for this product in this country, so problems have to be resolved through global technical teams. We like to work locally because of the language, and when the product is only supported outside the country, it's a little difficult to implement and use this product. Moreover, AI is something that must be added immediately. Artificial intelligence is a part of the competitors' products, and it's not been implemented for us.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of Fortinet FortiAnalyzer are the dashboards and supporting services."
"I like its simplicity. It is straightforward. We get reports and emails about the logs, and that's it."
"It is a reliable product."
"The event handling solution in the platform is very good and useful."
"The initial setup is straightforward."
"Fortinet FortiAnalyzer is useful for seeing the problems of the network and analyzing what is happening in your network."
"Logging is the best feature."
"The capability of logging in Fortinet FortiAnalyzer is great because there is no need to go to each individual box to check the traffic details."
"NetWitness can be highly beneficial for incident detection and response."
"Possibility to investigate incidents based on logs and raw packets, such as extracting files sent over the network"
"The most valuable feature of RSA NetWitness Logs and Packets are the alerts and correlations tools."
"The software is scalable to whatever is required, and you can also put a lot of resources in the cloud."
"Incident management is its most valuable feature."
"It gives customers visibility about their most important servers and devices."
"RSA NetWitness is a SIEM and real-time network traffic solution that collects logs and packets, applies a set of alerting, reporting, and analysis rules on them, and thus provides the enterprise with full visibility of the networks and activities of the systems."
"The solution is reliable."
 

Cons

"The FortiAnalyzer is not scalable."
"One thing we struggled with FortiAnalyzer was integration with SIEM. We also had issues with the new threats and APTs. There were false positives, so we needed to have some ratings related to false positives."
"When it comes to pushing logs to a SIEM, most of the time we have some issues when it comes to filtering."
"The technical support isn't very good, I rate it a 2 out of 5."
"Fortinet FortiAnalyzer can improve by introducing integration with other Fortinet solutions with automation with one interface would be helpful."
"FortiAnalyzer only works with other Fortinet products. If you need to analyze the data from other devices, other vendors, this solution is not the best one to use."
"They should learn from CheckPoint how to design UX for admins."
"FortiAnalyzer only integrates with Fortinet solutions. That is a limitation because many organizations use multiple vendors. It's often a mixture of Cisco network hardware and equipment from other vendors, such as switches, access points, etc."
"The solution is pretty complex to set up. Comparatively, I have worked on IBM QRadar and Splunk; they are much easier to set up."
"One thing to be improved in NetWitness is the capability to correlate event logs in a general sense."
"If we have the ability to run a dynamic analysis through malware in the same suite, it would be great to have a sandbox solution to analyze malware through dynamic analysis."
"The threat detection capability and centralizing and upgrading capability need to be improved. The threat alert capability needs to be improved as well because there is some lag time at present. They need to work on their database search too."
"The initial setup is complex. It requires some knowledge in order to set it up."
"They should implement algorithms to digest that data and produce additional, more advanced reporting, alerting and support of internal security teams."
"Advance monitoring and alerting feature is not stable (Event Stream Analysis)."
"RSA NetWitness Logs and Packets can improve the threat level aspect, it is lacking compared to other solutions."
 

Pricing and Cost Advice

"We found the price of Fortinet FortiAnalyzer to be reasonable."
"The hardware has a one-time cost and maintenance is paid by annual subscription."
"The hardware cost and services contract are fair."
"In other countries, the product may seem cheap, but in Vietnam, the costs are high."
"We pay approximately $11,000 for a three-year license to use Fortinet FortiAnalyzer. When we compared the price of this solution to others it is not expensive. Palo Alto is a more expensive solution."
"Its price is okay for us. Fortinet products are cheaper than other solutions."
"All Fortinet programs come at a good price."
"I believe that Fortinet is a cost-effective brand, making it a competitive option in terms of pricing."
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"The product price was reasonable for my region and the market."
"We have yearly licensing costs. The license fee can be based on the volume of EPS. Some organizations may have, as a gentlemanly gesture, 10,000 EPS and get a 3,000 EPS license but actually use 5,000 EPS."
"RSA NetWitness Logs and Packets do not have a subscription model, it's a one-time purchase. There is only a perpetual license."
"The licenses are good but the cost is very expensive."
"It is cheap."
"Compared to the competition, the is price is not that high."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
914,262 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Outsourcing Company
13%
Construction Company
11%
Financial Services Firm
9%
Manufacturing Company
8%
Construction Company
13%
Financial Services Firm
11%
Comms Service Provider
11%
Outsourcing Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise22
Large Enterprise31
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
 

Questions from the Community

What needs improvement with Fortinet FortiAnalyzer?
I think technical support should be better. Sometimes support from Fortinet does not help with creating policies or configuration issues and directly routes to the service integrator. A little more...
What is your primary use case for Fortinet FortiAnalyzer?
I am using Fortinet FortiAnalyzer along with the analyzer for traffic monitoring and event checking. It is effective for analyzing traffic purposes.I use Fortinet FortiAnalyzer for event monitoring...
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
 

Also Known As

No data available
RSA Security Analytics
 

Overview

 

Sample Customers

General Directorate of Information Technology
Los Angeles World Airports, Reply
Find out what your peers are saying about Fortinet FortiAnalyzer vs. NetWitness Platform and other solutions. Updated: September 2026.
914,262 professionals have used our research since 2012.