Fortinet FortiSIEM vs ManageEngine Log360 comparison

You must select at least 2 products to compare!
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Fortinet FortiSIEM and ManageEngine Log360 based on real PeerSpot user reviews.

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Fortinet FortiSIEM vs. ManageEngine Log360 Report (Updated: November 2023).
746,635 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
"Native integration with Microsoft security products or other Microsoft software is also crucial. For example, we can integrate Sentinel with Office 365 with one click. Other integrations aren't as easy. Sometimes, we have to do it manually.""Sentinel enables us to ingest data from our entire ecosystem. In addition to integrating our Cisco ASA Firewall logs, we get our Palo Alto proxy logs and some on-premises data coming from our hardware devices... That is very important and is one way Sentinel is playing a wider role in our environment.""We can use Sentinel's playbook to block threats. It covers all of the environment, giving us great visibility.""Sentinel also enables you to ingest data from your entire ecosystem and not just from the Microsoft ecosystem. It can receive data from third-party vendors' products such firewalls, network devices, and antivirus solutions. It's not only a Microsoft solution, it's for everything.""The AI capability is one of the main features of the solution because I believe that in the market, there are few solutions that are providing security solutions based on AI and machine learning.""The most valuable feature is the onboarding of the workloads. You can see all that has been onboarded in your account on the dashboards.""The scalability is great. You can put unlimited logs in, as long as you can pay for it. There are commitment tiers, up to six terabytes per day, which is nowhere close to what any one of our customers is running.""We are able to deploy within half an hour and we only require one person to complete the implementation."

More Microsoft Sentinel Pros →

"It is used as an alerting platform.""Our customer did not have security monitoring in the first place. With this solution, it provided security posture management and visibility about the security landscape and threats that they had.""The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls.""Fortinet FortiSIEM has its own validated and authentic IP database that marks malicious IP attacks against the firewall and generates an alert for the same.""It works well with medium to large-scale enterprises.""Fortinet FortiSIEM's most valuable feature is the simplicity in handling multi-tenancy and the ability to switch between different clients at the same time. That was handled flawlessly.""FortiSIEM's best features are the dashboards and customization.""The event correlation is pretty robust. The GUI is pretty good."

More Fortinet FortiSIEM Pros →

"The product is very user-friendly.""It is easier to deploy than are other SIEMs, which is great. You can also get an overview of your environment, which is very handy.""The Sharecon feature is the most valuable.""The most valuable features for us are the application logs monitoring and the dashboard, which provides a single-pane view of all the ongoing activities.""We haven't had any stability issues.""The solution could be improved by including XDR, remediation and Sandbox.""ManageEngine Log360 is not difficult to deploy."

More ManageEngine Log360 Pros →

"I believe one of the challenges I encountered was the absence of live training sessions, even with the option to pay for them.""The playbook is a bit difficult and could be improved.""We'd like also a better ticketing system, which is older.""At the network level, there is a limitation in integrating some of the switches or routers with Microsoft Sentinel. Currently, SPAN traffic monitoring is not available in Microsoft Sentinel. I have heard that it is available in Defender for Identity, which is a different product. It would be good if LAN traffic monitoring or SPAN traffic monitoring is available in Microsoft Sentinel. It would add a lot of value. It is available in some of the competitor products in the market.""Sentinel can be used in two ways. With other tools like QRadar, I don't need to run queries. Using Sentinel requires users to learn KQL to run technical queries and check things. If they don't know KQL, they can't fully utilize the solution.""If I see an alert and I want to drill down and get more details about the alert, it's not just one click. In other SIEM tools, you just have to click the IP address of the entity and they give you the complete picture. In Sentinel, you have to write queries or use saved queries to get details.""It could have a better API to be able to automate many things more extensively and get more extensive data and more expensive deployment possibilities. It can gain some points on the automation part and the integration part. The API is very limited, and I would like to see it extended a bit more.""The playbook development environment is not as rich as it should be. There are multiple occasions when we face problems while creating the playbook."

More Microsoft Sentinel Cons →

"They need to integrate better with Cisco and Palo Alto.""The product does not have Security Orchestration and Automation Response, I would recommend adding this feature.""They should enhance the solution's AI capabilities, including XDR and EDR.""Sometimes, if there are changes made by a user on a database server, it can be difficult to get that information on the fly. I would like to see a situation where once I specify a user with the database server I need, and with the changes they have performed on that, I don't need to continue my search pattern to drill down just to get the information.""Fortinet FortiSIEM could improve by having a signature update.""The log collection and configuration management are not great.""The only drawback is the licensing model. It can get expensive if you want to integrate more solutions.""Areas for improvement would be the ease of use and the integration with Fortinet's own products."

More Fortinet FortiSIEM Cons →

"On the logging system, there's a local on-client side that is encrypted, and there's one that is not encrypted. It is only for diagnostical purposes. However, both being encrypted would be very valuable for some audits.""It's difficult to find which conditions have been applied to a report because they are provided by default by ManageEngine. However, with other SIEMs if you want to create a report, they provide details, like which conditions are triggering certain reports. This needs to be there in ManageEngine. It would be good to know which parameter has been applied to the report that is updating the system.""The solution lacks some features when compared to other products.""It is not expensive compared to other solutions.""The solution needs to improve hub storage. It should integrate AI and ML capabilities.""There is room for improvement, especially in the reporting aspect. The reports are not as good as those in Splunk.""The integration with SharePoint and Teams should be improved."

More ManageEngine Log360 Cons →

Pricing and Cost Advice
  • "Pricing is pay-as-you-go with Sentinel, which is good because it all depends on the number of users and the number of devices to which you connect."
  • "For us, it is not expensive at this time, but if we start to collect all logs from our on-premise SIEM solutions, it will cost more than QRadar. If we calculate its cost over the next five or ten years, it will cost more than what we paid for QRadar."
  • "I don't know yet because they gave us a 30-day test window for free."
  • "It's costly to maintain and renew."
  • "Microsoft Sentinel is expensive."
  • "Sentinel is pretty competitive. The pricing is at the level of other SIEM solutions."
  • "It is certainly the most expensive solution. The cost is very high. We need to do an assessment using the one-month trial so that we can study the cost side. Before implementing it, we must do a careful calculation."
  • "There are no additional costs other than the initial costs of Sentinel."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "Manageable, however would be better as pay as you go versus CapEX."
  • "The price of Fortinet FortiSIEM was reasonable compared to other solutions."
  • "There are additional features that cost more than the standard licensing fees."
  • "This is probably more on the lower cost end of the spectrum compared to competing products. Fortinet's license model is based on events per second, which makes sense, but that's not typical. It makes it very hard to calculate what your costs are going to be as you scale the platform because some log sources, such as firewall logs, are very noisy, and there are lots and lots of events per second, but some of them are not. So, it becomes a bit of a science experiment trying to guess what your costs are going to be as you scale the solution. This is where other competing products perhaps have a more straightforward license model."
  • "Fortinet's products are not expensive, it is less than the competition."
  • "FortiSIEM's licensing is based on EPS, and its pricing is competitive in the market."
  • "The price of the solution is expensive. The license is scalable. If there are 10 devices it is simple to license."
  • "Fortinet FortiSIEM is cheaper compared to other products."
  • More Fortinet FortiSIEM Pricing and Cost Advice →

  • "My client has a yearly license. I think the cost is not expensive compared to that of other SIEMs, given the service it is providing."
  • "ManageEngine Log360 is expensive compared to other products."
  • "Affordable pricing is provided by the solution."
  • More ManageEngine Log360 Pricing and Cost Advice →

    Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
    746,635 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:This solution offers extensive customization options, making it possible to adapt it precisely to their requirements.
    Top Answer:Pricing is determined based on the customer's budget. We discuss how to tailor the pricing to fit the specific needs and… more »
    Top Answer:Customer support service could be better.
    Top Answer: The Sharecon feature is the most valuable.
    Top Answer:The integration with SharePoint and Teams should be improved.
    Also Known As
    Azure Sentinel
    FortiSIEM, AccelOps
    Learn More

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.

    Companies around the world use FortiSIEM for the following use cases:

    • Threat management and intelligence that provide situational awareness and anomaly detection
    • Alleviating compliance mandate concerns for PCI, HIPAA and SOX
    • Managing “alert overload”
    • Handling the “too many tools” reporting issue
    • Addressing the MSPs/MSSPs pain of meeting service level agreements

    Log360 is your one-stop solution for all log management and network security challenges. It is an integrated solution that combines EventLog Analyzer and ADAudit Plus into a single console to help you manage your Active Directory auditing and network security easily.

    Learn more about Microsoft Sentinel
    Learn more about Fortinet FortiSIEM
    Learn more about ManageEngine Log360
    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
    First Mountain Bank, TRA, Citadel Group, OnPoint Financial Corp, Florida Dept. of Transportation
    Top Industries
    Financial Services Firm22%
    Computer Software Company11%
    Manufacturing Company8%
    Real Estate/Law Firm6%
    Computer Software Company17%
    Financial Services Firm10%
    Manufacturing Company7%
    Comms Service Provider23%
    Financial Services Firm10%
    Computer Software Company10%
    Media Company10%
    Computer Software Company16%
    Comms Service Provider10%
    Manufacturing Company6%
    Healthcare Company25%
    Computer Software Company13%
    Non Tech Company13%
    Manufacturing Company13%
    Computer Software Company19%
    Financial Services Firm7%
    Educational Organization6%
    Company Size
    Small Business33%
    Midsize Enterprise20%
    Large Enterprise47%
    Small Business24%
    Midsize Enterprise16%
    Large Enterprise60%
    Small Business40%
    Midsize Enterprise24%
    Large Enterprise35%
    Small Business30%
    Midsize Enterprise17%
    Large Enterprise52%
    Small Business77%
    Midsize Enterprise15%
    Large Enterprise8%
    Small Business31%
    Midsize Enterprise22%
    Large Enterprise47%
    Buyer's Guide
    Fortinet FortiSIEM vs. ManageEngine Log360
    November 2023
    Find out what your peers are saying about Fortinet FortiSIEM vs. ManageEngine Log360 and other solutions. Updated: November 2023.
    746,635 professionals have used our research since 2012.

    Fortinet FortiSIEM is ranked 8th in Security Information and Event Management (SIEM) with 25 reviews while ManageEngine Log360 is ranked 23rd in Security Information and Event Management (SIEM) with 7 reviews. Fortinet FortiSIEM is rated 7.4, while ManageEngine Log360 is rated 7.2. The top reviewer of Fortinet FortiSIEM writes "It has robust event correlation and good GUI, but their technical support should be better, and it should support more nonstandard log sources". On the other hand, the top reviewer of ManageEngine Log360 writes "Facilitates incident backtracking and identifying the cause of incidents but insufficient intelligence-driven analysis to suppress unnecessary alerts". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, LogRhythm SIEM, PRTG Network Monitor and Rapid7 InsightIDR, whereas ManageEngine Log360 is most compared with ManageEngine EventLog Analyzer, Wazuh, Splunk Enterprise Security, LogRhythm SIEM and SolarWinds Security Event Manager . See our Fortinet FortiSIEM vs. ManageEngine Log360 report.

    See our list of best Security Information and Event Management (SIEM) vendors.

    We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.