Fortinet FortiSIEM and Netsurion are both notable players in the security information and event management (SIEM) space. Fortinet FortiSIEM seems to have the upper hand due to its comprehensive security features, despite some complexity and support issues.
Features: Fortinet FortiSIEM is praised for its robust security capabilities, advanced analytics, and integration with other Fortinet products. Netsurion receives positive feedback for its straightforward capabilities, clear security management, and intuitive interface.
Room for Improvement: Fortinet FortiSIEM users mention the need for better documentation, more streamlined configurations, and improved customer support responsiveness. Netsurion users recommend enhancing advanced features, more integrations, and improving analytics components.
Ease of Deployment and Customer Service: Fortinet FortiSIEM is perceived as complex to deploy with mixed reviews on customer service. Netsurion is commended for its quick deployment and highly responsive customer service.
Pricing and ROI: Fortinet FortiSIEM users report higher initial setup costs but recognize long-term ROI due to comprehensive security management. Netsurion is noted for its competitive pricing and quicker ROI due to lower setup costs and efficient management.
Local tech support is available, however, for more critical or technical issues, we depend on the OEM directly, especially when it comes to on-prem solutions.
There is a knowledgeable, though small, team of support engineers around the world.
They take some time to respond because they need logs and investigations, which delays the response time.
At any point in time, when network devices increase or there is a change in the infrastructure, we can add more workers and collectors to expand our infrastructure setup.
Fortinet FortiSIEM is highly scalable.
Fortinet FortiSIEM is easy to scale.
It stabilizes itself in an appropriate time, so its uptime is good.
Some stability issues occur, but Fortinet's technical support team provides assistance.
These issues may cause unusual errors and user interface issues.
Enhancing the completeness of its APIs could aid in better external integrations.
Recently, they revised it to a subscription-based, all-inclusive license.
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management.
Setting it up for oneself as an enterprise-licensed product can be quite expensive.
Windows agent licenses cost around 3,000 Rupees per device per year.
The revised model is subscription-based and more flexible.
I find the real-time monitoring and correlation capabilities effective for security alerts.
It provides extensive logging and record-keeping for internal networks, cloud applications, and services as well as perimeter physical network security.
FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.
Companies around the world use FortiSIEM for the following use cases:
Netsurion offers a comprehensive solution for centralized log management, SIEM, and managed services, ensuring continuous monitoring and security event analysis for diverse organizations, enhancing IT security and compliance.
Netsurion centralizes event management through SIEM and managed services. Organizations leverage it for vulnerability assessment and intrusion detection, integrating logs from Windows, Linux, and network devices. Its SOC provides 24/7 monitoring, ensuring compliance with PCI and audit standards. Real-time alerts and efficient log data aggregation enhance threat identification and response. Weekly reports and insights into user lockouts contribute to robust security management, beneficial for firms with constrained resources.
What are some key features of Netsurion?Netsurion is implemented across industries like finance, healthcare, and retail, where security is crucial. These sectors require robust monitoring and compliance solutions, utilizing Netsurion's seamless integration with their existing infrastructure to manage security operations effectively, addressing both regulatory needs and threat management.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.