No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiSIEM vs NetMon comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiSIEM
Average Rating
7.6
Reviews Sentiment
6.2
Number of Reviews
75
Ranking in other categories
Security Information and Event Management (SIEM) (9th), AI Observability (10th)
NetMon
Average Rating
7.6
Reviews Sentiment
6.1
Number of Reviews
12
Ranking in other categories
Network Monitoring Software (55th), Identity Threat Detection and Response (ITDR) (14th)
 

Mindshare comparison

While both are Security Software solutions, they serve different purposes. Fortinet FortiSIEM is designed for Security Information and Event Management (SIEM) and holds a mindshare of 2.5%, down 3.0% compared to last year.
NetMon, on the other hand, focuses on Network Monitoring Software, holds 0.6% mindshare, up 0.3% since last year.
Security Information and Event Management (SIEM) Mindshare Distribution
ProductMindshare (%)
Fortinet FortiSIEM2.5%
Splunk Enterprise Security7.0%
IBM Security QRadar5.2%
Other85.3%
Security Information and Event Management (SIEM)
Network Monitoring Software Mindshare Distribution
ProductMindshare (%)
NetMon0.6%
Zabbix4.3%
SolarWinds NPM3.6%
Other91.5%
Network Monitoring Software
 

Featured Reviews

SY
Network Engineer at Ogma Consulting
Comprehensive monitoring boosts security, yet incident management features need expansion
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management. Currently, to manage repetitive incidents or for remediation, I need to use a separate software called FortiSOAR. Additionally, the search functionality in FortiAI should be improved to provide more precise results, making it easier for me to understand what actions need to be taken.
SR
Pan India IT Infrastructure Management / End-user Services at Tata Group
Has supported real-time event detection and reporting accuracy while database integration has required extra effort
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to integrate NetMon with other databases. We can customize NetMon's monitoring views, but it is done by the team who handles it, as it is outsourced.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical support is very good. The people in support are excellent, and they know this product in and out."
"The most valuable feature is the ability to view all the network events on a single pane and find the point of contact or point of the incident."
"To add workers and even collectors is pretty easy."
"Fortinet FortiSIEM is less costly than other products and is available 24/7."
"FortiSIEM and FortiSOAR, their overall solutions that are there for threat mitigation, visibility, control, et cetera, is well integrated."
"We have found the most important features in Fortinet FortiSIEM to be the correlation, file utility check, latest file, and hash changes. These features are important for us."
"I like the various options, including the option for CMDB and the easier access to create rules, playbooks, or use cases. It's also easier to use for creating dashboards and reports."
"If you are comparing the product to Cisco's solutions, it's very cheap and moderately priced, it's affordable and at the same time a very effective solution that works well."
"The analytics feature is the most valuable feature."
"We are using NetMon's real-time traffic analysis regularly with a team of four members who effectively monitor all alerts and events, which has helped them identify whether there could be a severe incident."
"Compared to many other products in the market, I think LogRhythm has the highest cost to performance ratio in terms of its value."
"It has a very strong artificial intelligence engine."
"The initial setup is straightforward because we can deploy an open server."
"LogRhythm NetMon's most impressive feature is that it's a bundled package, so you're not just relying on monthly data; you get a six-month view for more comprehensive indicators of compromise. This dual approach is precious. We implement LogRhythm NetMon in our cybersecurity strategy mainly for compliance and correlation of network, user, and decision activities, particularly for network firewalls and access control."
"The analytics feature is the most valuable feature."
"We were sold on the product based on the fairly narrow use cases that the sales reps gave us, and what we're seeing during our usage is that we can get there, and we're very excited about the potential."
 

Cons

"When our team tried configuring logs for Microsoft SQL, it did not work."
"Issues that could have been resolved in 30-60 minutes sometimes took months, but they have improved."
"Our customers are noticing configuration available in the GUI interface and I think that they should be equal."
"Their technical support is horrible. By horrible, I mean a train wreck of a disaster that has fallen off a bridge and caught fire."
"Our team tried configuring MS SQL database logs with Fortinet FortiSIEM, but it did not work for some time."
"The built-in APIs in Fortinet FortiSIEM are somewhat lacking and could be improved for better integration with external ITSM products."
"The stability of the product is fairly good. It's likely 70-80% there in terms of stability."
"They need to integrate better with Cisco and Palo Alto."
"Their technical support isn't so great."
"I would like to see better integration with multiple products. Integration is not something that is readily available for most of the products."
"The main concern is that LogRhythm has not improved NetMon but instead introduced a separate product, which many customers, including us, would prefer to be integrated into a single platform for easier management."
"LogRhythm's support team isn't responsive enough - it's common to wait a day or two for someone to deal with a case."
"The platform's integration features often need to be improved."
"There is an issue with tunneling in relation to how the connectivity is established between the end devices and where NetMon is installed. On the console, I often observe that there's a difference of a few seconds or maybe a minute, and this lag time should not be there."
"Previously, it was typically every Monday that I was coming in - it would die over the weekend - and I would spend a day cleaning up databases."
"The training for this product is not very good and needs to be improved."
 

Pricing and Cost Advice

"We bought the perpetual license, so we own the product, but there is a three-year support renewal fee for that."
"Manageable, however would be better as pay as you go versus CapEX."
"We pay for a license for FortiSIEM. We pay for the license and renewal."
"There is a need to make yearly payments towards the licensing charges attached to the product. The free version license of the product is available for two months."
"Fortinet FortiSIEM is cheaper compared to other products."
"The price is competitive."
"Its price can be better. We are Fortinet partners, so we can get discounts, but its price can be an issue at the beginning for others. There is a licensing scheme for every case. There are three licensing schemes that we can choose from."
"The price of Fortinet FortiSIEM was reasonable compared to other solutions."
"The price of this solution is too high, so it should be made more practical and more valuable for the customer."
"I don't have visibility into the pricing of LogRhythm NetMon as it's handled through our commercial partnerships."
"Pricing is okay. There were some competitors that were extremely expensive and there were some which were really inexpensive but LogRhythm stayed in the middle of them."
"The product is expensive for smaller companies."
"NetMon's licensing costs about $85k per year, with some extra costs for support."
"LogRhythm's licensing part is something that depends on the license you want since they offer it on a perpetual and subscription basis."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
886,976 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
10%
Comms Service Provider
9%
Computer Software Company
9%
Manufacturing Company
6%
Transportation Company
14%
Financial Services Firm
12%
Comms Service Provider
11%
Construction Company
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business34
Midsize Enterprise22
Large Enterprise24
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise2
Large Enterprise7
 

Questions from the Community

What do you like most about Fortinet FortiSIEM?
Fortinet FortiSIEM needs to provide better API integrations to users.
What is your experience regarding pricing and costs for Fortinet FortiSIEM?
My experience with pricing, setup cost, and licensing for Fortinet FortiSIEM is wonderful, as it offers an excellent license compared to other vendors.
What needs improvement with Fortinet FortiSIEM?
Fortinet FortiSIEM is great overall. Performance could be enhanced, but I do not wish to elaborate on needed improvements.
What is your experience regarding pricing and costs for LogRhythm NetMon?
I don't have visibility into the pricing of LogRhythm NetMon as it's handled through our commercial partnerships.
What needs improvement with LogRhythm NetMon?
Sometimes it may be difficult to incorporate new additional databases in NetMon, and we faced some challenges at that time. However, currently, it is not giving many challenges.It is difficult to i...
What is your primary use case for LogRhythm NetMon?
We have outsourced our SIEM solutions at the moment, and we are using it.We have been using LogRhythm in our organization as a SaaS offering. We have outsourced it as part of the actual scope where...
 

Also Known As

FortiSIEM, AccelOps
LogRhythm Network Monitor
 

Overview

 

Sample Customers

FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
Sera-Brynn
Find out what your peers are saying about Fortinet FortiSIEM vs. NetMon and other solutions. Updated: May 2020.
886,976 professionals have used our research since 2012.