No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiAppSec Cloud vs Salt Security comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiAppSec Cloud
Ranking in API Security
17th
Average Rating
9.0
Reviews Sentiment
6.6
Number of Reviews
2
Ranking in other categories
CDN (11th), Web Application Firewall (WAF) (24th), Distributed Denial-of-Service (DDoS) Protection (18th), Dynamic Application Security Testing (DAST) (8th)
Salt Security
Ranking in API Security
6th
Average Rating
9.0
Reviews Sentiment
9.0
Number of Reviews
2
Ranking in other categories
AI Security (20th)
 

Featured Reviews

reviewer2812593 - PeerSpot reviewer
CIO at a financial services firm with 51-200 employees
Advanced threat protection has reduced financial risk and improves application security visibility
The issue I have with Fortinet FortiAppSec Cloud is that the real-time analysis is not robust; I am unable to see all the logs of everything that happened, including what is passive. It only logs when there are suspicious activities, which means if something is not considered suspicious by Fortinet, I will not see the full picture. That is a disadvantage because it will not log unless it identifies an IOC or attacks, meaning I cannot see traffic information in a way that helps build more intelligence. The biggest issue I have with Fortinet FortiAppSec Cloud is that the logging is not as extensive as I would prefer. For instance, if there was an issue two days ago and Fortinet FortiAppSec Cloud did not mark it as a concern, I will not see any information about that, making it challenging to explain to customers if their request did not reach us. It hampers visibility from an API perspective. They need to enhance monitoring and logging to be more extensive and capture even passive activities. The AI integration in Fortinet FortiAppSec Cloud is still new. The generative models are good, but there is much work left to improve. It is not as intelligent as it could be; thus, enhancements around the AI co-assistant would be beneficial. Additionally, logging and monitoring need improvement as I can capture traffic and investigate offline on my Fortinet firewall, including full traffic view, but Fortinet FortiAppSec Cloud currently focuses only on security concerns, which does not give the complete picture.
TV
Sr Investigation Specialist at Ifood
Improved API visibility has revealed sensitive data exposures and supports faster remediation
Alert tuning can require some time depending on API volume. Some findings need internal validation before actioning. The collaboration flows between security and engineering teams could be expanded further. While the solution was straightforward to set up and gave me the visibility that I needed, it has to improve some details and features to achieve a perfect rating.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We have seen a reduction in incidents and a good return on investment from Fortinet FortiAppSec Cloud, with our return on investment around 60%."
"My favorite Fortinet device is the FortiGate next-gen firewall itself; it is a complete suite with intrusion prevention, intrusion detection, anti-malware, anti-DDoS, and SD-WAN functionalities."
"Salt Security gave me much better visibility into API risk, helping me identify exposed endpoints, misconfigured APIs, and sensitive data flowing through APIs that required additional controls, and it has become an important part of my API security program."
"It's really great. I would rate the stability a nine out of ten. I haven't encountered any instability issues."
"Salt Security gives you visibility of all your APIs, identifies API security issues, and immediately alerts you of attacks."
 

Cons

"The issue I have with Fortinet FortiAppSec Cloud is that the real-time analysis is not robust; I am unable to see all the logs of everything that happened, including what is passive."
"Real-time traffic analysis has posed an issue for us because we did not see logs for legitimate traffic."
"The setup cost was acceptable, but adding additional APIs was actually quite expensive."
"The integration part could be a bit extended."
report
Use our free recommendation engine to learn which API Security solutions are best for your needs.
900,125 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
26%
Healthcare Company
10%
Financial Services Firm
9%
Manufacturing Company
8%
Computer Software Company
18%
Manufacturing Company
15%
Financial Services Firm
8%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
No data available
 

Questions from the Community

What needs improvement with Fortinet FortiAppSec Cloud?
Real-time traffic analysis has posed an issue for us because we did not see logs for legitimate traffic. A separate license is needed for Fortinet FortiAppSec Cloud to send logs to other cloud serv...
What is your primary use case for Fortinet FortiAppSec Cloud?
Fortinet FortiAppSec Cloud is used as a WAF solution.
What advice do you have for others considering Fortinet FortiAppSec Cloud?
We are a customer running Fortinet FortiAppSec Cloud for both our organization and one for our customer. Three users use Fortinet FortiAppSec Cloud. As administrators, it is easy to maintain. Using...
What is your experience regarding pricing and costs for Salt Security?
The setup cost was acceptable, but adding additional APIs was actually quite expensive.
What needs improvement with Salt Security?
Alert tuning can require some time depending on API volume. Some findings need internal validation before actioning. The collaboration flows between security and engineering teams could be expanded...
What is your primary use case for Salt Security?
I use Salt Security primarily for API discovery, mainly regarding data-sensitive information across the company. Before using Salt Security for API discovery and sensitive information, I didn't hav...
 

Also Known As

No data available
Salt Security API Protection Platform
 

Overview

 

Sample Customers

Information Not Available
Appsflyer, Armis, City National Bank, Coralogix, Finastra, Gett, Honeybook, Payoneer
Find out what your peers are saying about Imperva, Akamai, Orca Security and others in API Security. Updated: May 2026.
900,125 professionals have used our research since 2012.