No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiSIEM vs NetCrunch comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiSIEM
Average Rating
7.6
Reviews Sentiment
6.2
Number of Reviews
75
Ranking in other categories
Security Information and Event Management (SIEM) (9th), AI Observability (10th)
NetCrunch
Average Rating
8.0
Number of Reviews
3
Ranking in other categories
Network Monitoring Software (78th), Server Monitoring (26th), IT Infrastructure Monitoring (66th), Log Management (53rd)
 

Mindshare comparison

Fortinet FortiSIEM and NetCrunch aren’t in the same category and serve different purposes. Fortinet FortiSIEM is designed for Security Information and Event Management (SIEM) and holds a mindshare of 2.5%, down 3.0% compared to last year.
NetCrunch, on the other hand, focuses on Network Monitoring Software, holds 0.6% mindshare, up 0.2% since last year.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Fortinet FortiSIEM2.5%
Splunk Enterprise Security7.0%
IBM Security QRadar5.2%
Other85.3%
Security Information and Event Management (SIEM)
Network Monitoring Software Mindshare Distribution
ProductMindshare (%)
NetCrunch0.6%
Zabbix4.3%
SolarWinds NPM3.6%
Other91.5%
Network Monitoring Software
 

Featured Reviews

SY
Network Engineer at Ogma Consulting
Comprehensive monitoring boosts security, yet incident management features need expansion
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management. Currently, to manage repetitive incidents or for remediation, I need to use a separate software called FortiSOAR. Additionally, the search functionality in FortiAI should be improved to provide more precise results, making it easier for me to understand what actions need to be taken.
it_user1038504 - PeerSpot reviewer
Senior Systems Administrator, Technical Lead at Connectivity Wireless
A network monitoring platform with a useful reporting feature, but permission-based options could be better
The initial setup is fairly easy. Most of it's wizard-based. You don't have to be a rocket scientist to set it up. But if you don't know certain things related to protocols and everything else, it might be difficult. If you know how SNMP works, it'll be fairly simple to set up.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"AccelOps gives us a greater visibility into potential data/network breach attempts with the monitoring and alerting capabilities."
"We find the solution to be stable."
"The CMDB and the device discovery features are most valuable."
"The solution has an all-in-one approach, where we buy one product and everything our customer needs is included, without additional licenses for more functionality, and any adjustments are done very quickly and easily."
"The advanced agents used to collect logs have been most valuable. We have also made use of the advanced intelligence this solution offers."
"The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls."
"Our customer did not have security monitoring in the first place. With this solution, it provided security posture management and visibility about the security landscape and threats that they had."
"If you don't have a dedicated team to handle your logs, don't have a big budget, and want a solution to correlate and collect logs from many vendors, Fortinet FortiSIEM is an excellent choice."
"Reporting on NetCrunch is pretty good; it's very similar to SolarWinds, just with a different interface, and the majority of everything there was beneficial."
"The setup is very intuitive and quick - it all just took a few minutes we were done."
"Reporting on NetCrunch is pretty good. It's very similar to SolarWinds. It's just a different interface. The majority of everything there was beneficial."
 

Cons

"The policy editing should be easier. Right now, it's too hard."
"Creating parsers to try make unknown events or currently unsupported devices produce meaningful information is extremely cumbersome."
"It's difficult to integrate unsupported devices with FortiSIEM compared to QRadar. It's easier to integrate and develop processes in QRadar. It's harder to develop a custom process in FortiSIEM."
"With FortiSIEM, the issue has to do with the ways we can generate a report. It's not as flexible compared to that with other SIEM tools, like Splunk."
"The stability of the product is an area of concern where improvements are required."
"FortiSIEM needs to expand its integration with third-party vendors. I don't know if Forcepoint has been added, but there were limited resources for integrating Forcepoint solutions when we implemented FortiSIEM. It integrates well with other Fortinet products and solutions from established cybersecurity companies like Palo Alto but doesn't integrate with some of the newer vendors."
"The biggest thing that could be better is a quicker response to support cases."
"They should enhance the solution's AI capabilities, including XDR and EDR."
"Our network is made up of a lot of Cisco devices, and it needs improvements."
"I didn't care for the role-based, permission-based options, which were not the best."
"I didn't care for the role-based, permission-based options, which were not the best."
 

Pricing and Cost Advice

"Please be cheaper and more simplified."
"If one is cheap and ten is expensive. I rate the tool's price as an eight out of ten. Compared with Splunk or Oracle, Fortinet is cheap."
"Fortinet FortiSIEM is not an expensive solution."
"Fortinet FortiSIEM is very cost-efficient compared to other SIEM solutions."
"FortiSIEM's licensing is based on EPS, and its pricing is competitive in the market."
"Fortinet FortiSIEM is cheaper compared to other products."
"Pricing is determined based on the customer's budget."
"This is probably more on the lower cost end of the spectrum compared to competing products. Fortinet's license model is based on events per second, which makes sense, but that's not typical. It makes it very hard to calculate what your costs are going to be as you scale the platform because some log sources, such as firewall logs, are very noisy, and there are lots and lots of events per second, but some of them are not. So, it becomes a bit of a science experiment trying to guess what your costs are going to be as you scale the solution. This is where other competing products perhaps have a more straightforward license model."
Information not available
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
886,426 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
9%
Computer Software Company
9%
Comms Service Provider
9%
Manufacturing Company
6%
Construction Company
23%
Comms Service Provider
11%
Manufacturing Company
7%
Agriculture
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business34
Midsize Enterprise22
Large Enterprise24
No data available
 

Questions from the Community

What do you like most about Fortinet FortiSIEM?
Fortinet FortiSIEM needs to provide better API integrations to users.
What is your experience regarding pricing and costs for Fortinet FortiSIEM?
My experience with pricing, setup cost, and licensing for Fortinet FortiSIEM is wonderful, as it offers an excellent license compared to other vendors.
What needs improvement with Fortinet FortiSIEM?
Fortinet FortiSIEM is great overall. Performance could be enhanced, but I do not wish to elaborate on needed improvements.
Ask a question
Earn 20 points
 

Also Known As

FortiSIEM, AccelOps
No data available
 

Overview

 

Sample Customers

FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
manufacturing, banking, utilities, energy, universities, healthcare institutions, school districts, military and police entities, non-profit organizations, 
Find out what your peers are saying about Splunk, Wazuh, IBM and others in Security Information and Event Management (SIEM). Updated: March 2026.
886,426 professionals have used our research since 2012.