Imperva's Application Security Platform and Fortinet FortiWeb are key players in the web application security category. Imperva generally has the upper hand with its robust feature set and ease of cloud deployment, while FortiWeb is advantageous for those already within the extensive Fortinet ecosystem.
Features: Imperva leads with advanced DDoS protection, user-friendly Web Application Firewall (WAF) capabilities, and comprehensive analytics that allow for immediate functionality without extensive setup. FortiWeb excels in its seamless integration with other Fortinet products, utilizing AI-enhanced threat detection and offering strong application delivery functions.
Room for Improvement: Imperva users express concern over support responsiveness, service outages, and a need for better analytics and reporting transparency. Fortinet FortiWeb faces deployment complexities and limited customization options, with users seeking improvements in machine learning features and quicker updates.
Ease of Deployment and Customer Service: Imperva is praised for its simplicity in cloud deployments and responsive customer service. In contrast, FortiWeb's deployment is more complex due to its varied options. However, it benefits from positive customer service feedback thanks to Fortinet's extensive support network.
Pricing and ROI: Imperva offers competitive pricing for cloud solutions, yielding strong ROI, particularly beneficial for enterprises facing frequent cyber threats. Fortinet FortiWeb's pricing is also competitive, especially in larger deployments, though perceived higher costs in some regions could deter smaller organizations. Both solutions promise substantial ROI based on different priorities: Imperva's flexible cloud services versus FortiWeb's close integration within Fortinet’s ecosystem.
WordPress security can be tricky, and that's where Cloudflare can be absolutely helpful for small businesses.
For the small project I was working on, using the basic tier provided a huge improvement at zero cost.
They know how much money they are losing while the system is down, so by increasing the possibility of not having a down website or web application, return on investment can be calculated easily.
This would help us address issues promptly, especially during unforeseen events like DDoS attacks.
Cloudflare does not offer hands-on technical support to fix customer problems but rather a self-service model.
The key factor is the language in which the support is offered, which, in this case, is in Thai.
The expertise of engineers varies across different time zones, affecting the effectiveness of the support provided, especially during our daytime.
I would rate the technical support of Imperva DDoS as ten.
It is a SaaS tool, but the fact that they have workloads deployed across the world proves that it is a highly scalable tool.
The tool offers very good performance, even during high-traffic periods.
I rate the solution’s scalability an eight out of ten.
99% of customers are using the cloud version of Imperva DDoS protection, so they just purchase the new license and scale as needed.
For DDoS protection, I would not recommend Cloudflare.
I rate the solution’s stability an eight out of ten.
The service is very stable with no impacts during high-traffic periods.
We have not faced any significant issues during deployments.
The stability of Imperva DDoS is very good, as it seems they have a lot of servers around the world.
There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features.
Despite these challenges, overall, Cloudflare remains the preferred solution compared to Azure, AWS CloudFront, and Google Cloud Armor.
The timing aspect can lead to it being considered overpriced. This is a particular concern we have with Cloudflare, as they may struggle with accurately detecting the client.
The cloud-based security service of Fortinet FortiWeb could be enhanced to match the level of providers like Cloudflare.
Maybe Imperva DDoS could use endpoints to get information about the attacks before they commence from the endpoint level or establish cooperation with endpoint vendors to share this information.
That's where Cloudflare shines for smaller businesses – it's ten times cheaper than Akamai.
I find it to be cheap.
I think they should consider reevaluating the pricing for support, as it can be quite high.
For VM machines, the price increases based on CPU configurations of 2, 4, or 8 CPUs.
Fortinet FortiWeb is cost-effective compared to solutions like F5.
I would rate the pricing of Imperva DDoS as five, where one is very cheap and ten is very expensive.
The most valuable features of the solution are performance and security.
Techniques like minification and image compression reduce the size of assets, leading to better performance and faster user load times.
The solution has been able to compare it to the market, and I think the product has taken great strides in automating quite a bit of things, and they use a lot of AI.
The machine learning-based threat detection is significant, as it uses a learning method that eases the configuration burden, making it very useful.
I have utilized Imperva's Intelligent Traffic Filtering feature. This feature helps me understand how the attack is progressing and what is happening inside the requests to our website.
Company Size | Count |
---|---|
Small Business | 45 |
Midsize Enterprise | 8 |
Large Enterprise | 25 |
Company Size | Count |
---|---|
Small Business | 47 |
Midsize Enterprise | 20 |
Large Enterprise | 30 |
Company Size | Count |
---|---|
Small Business | 54 |
Midsize Enterprise | 15 |
Large Enterprise | 40 |
Cloudflare is a highly-regarded Content Delivery Network (CDN) and a Distributed Denial-of-Service (DDoS) protection solution. The robust global connectivity cloud platform that is Cloudflare ensures users are able to connect to the Internet quickly, securely, and reliably. Cloudflare is one of the world's largest networks in the marketplace today. Using Cloudflare, businesses, educational entities, NGOs, vloggers, bloggers, and anyone else with an internet presence can experience more secure, faster websites and applications.
Currently, there are millions of Internet locations on Cloudflare, and the Cloudflare network
continues to grow every day by the thousands. The solution is able to fulfill the requests for
millions of websites seamlessly and serves on average 45 million HTTP requests per second.
Cloudflare has safe, secure data centers in close to 300 cities worldwide to ensure every
client request is filled as quickly as possible. It is Cloudflare’s edge network that makes this
possible by keeping content and other services as close to each client as possible, so the
information requests are always only seconds away.
Many organizations that work in democracy, civil society, human rights, or the arts are able to
access Cloudflare's highest levels of protection for free via Project Galileo. Additionally, official
election websites can be secured from hacking and fraud through Cloudflare’s Project
Athenian, also at no additional cost.
Cloudflare can also help organizations of all sizes develop a robust zero-trust strategy to
ensure the highest levels of productivity and profitability. Employees, stakeholders, and end users have a greater level of satisfaction and overall improved user experience, which can, in
turn, result in higher revenues and overall ROI. Zero-trust and BYOD (bring your own device)
access ensure end users and employees always have the best resources and technology
available to them at all times.
Cloudflare benefits
Cloudflare has many benefits. Some of its most valuable benefits include:
- Faster load times
- Robust DNS security
- Intuitive cloud Web Application Firewall (WAF)
- Free universal SSL
- Image enhancement
- Automatic browser caching
- Next-generation cloud load balancer
- Accelerated Mobile Pages (AMP)
- Rate limiting
- Minification
- Zero-trust capabilities
- Cost-effective
- Reduced carbon footprint
Reviews from real users
“Many websites require an SSL certificate because they sell stuff and want SSL. Cloudflare
comes with an SSL certificate built in. It's automatic. You sign yourself up for Cloudflare, and
an SSL certificate automatically protects your website. If you have a connection between your
website and your host, the server, Cloudflare, and the host, you don't necessarily need a
certificate.” Spencer M., Owner at Tech Exchange
“What I like best about Cloudflare is that my company can use it to trace and manage
applications and monitor traffic. The solution tells you if there's a spike in traffic. Cloudflare
also sends you a link to check your equipment and deployment and track it through peering,
so it's a valuable tool.” Daniel P., Network Engineer at Ufinet
“The most valuable feature of Cloudflare is the GUI. You are able to control the solution very
well through the interface. There is a lot of functionality that is embedded in the service.” PeerSpot user, Competence Center Manager at a tech services company
Fortinet FortiWeb is a Web Application Firewall (WAF) that protects your web applications and APIs from attacks targeting known as well as unknown vulnerabilities. As the surface of your web applications evolves with each change of existing features and deployment of new features, your APIs are left exposed. Fortinet FortiWeb provides the board protection capabilities required to protect web applications without sacrificing performance or manageability.
Fortinet FortiWeb is an automatic, advanced multi-layer solution that provides secure protection by discerning irregular behavior and distinguishing between malicious and benign anomalies. In addition, the approach delivers powerful bot mitigation capacities which authorize harmless bots to connect while blocking malicious bot activity securely. Regardless of where an application is hosted, Fortinet FortiWeb will safeguard business applications by providing deployment options, such as virtual machines, hardware appliances, and containers that can be deployed in the data center, cloud environments, or in the cloud-native SaaS solution.
Fortinet FortiWeb Features and Benefits
APIs and web applications have become integral to the rising demand for business-critical applications. Now more than ever, businesses are in need of an automatic firewall that will provide them with security, without sacrificing performance or reliability. Fortinet FortiWeb offers a variety of features and benefits, including:
Reviews from Real Users
Fortinet FortiWeb offers an industry-leading Web Application Firewall, and users are satisfied with it for a number of reasons, including the ability to control everything from the dashboard and the PCI-compliant reports it offers.
Carlos P., director of business and digital transformation at SERNIVEL3, notes, "You have the ability to control everything from one single dashboard."
A director at a tech service company, says, "Banks have to be compliant with PCI and other things, and FortiWeb is absolutely amazing in terms of providing these reports. Otherwise, they will have to spend a lot of time on them."
Imperva Application Security Platform offers robust protection with features like DDoS defense, WAF configuration, and CDN support. It's designed for real-time traffic analysis and compliance assurance, fostering enhanced security and performance for enterprises.
Imperva Application Security Platform is known for its comprehensive security measures, such as SQL injection prevention and bot management, effectively mitigating harmful traffic and providing detailed analytics. The platform supports content caching, load balancing, and bot protection, addressing performance and security needs efficiently. While the platform demonstrates strong capabilities, there's room for enhancement in areas like support response times and interface intuitiveness. Customers also express interest in improved report integration, firewall scripting, and SSL management. Additional Points of Presence could address latency issues in specific regions. Imperva can increase value with advanced AI features and more effective monitoring tools without extra cost.
What are the main features of Imperva Application Security Platform?In industries like finance, Imperva Application Security Platform is instrumental for securing transactions and maintaining operational continuity. It provides consistent protection by directing web traffic through its cloud-based infrastructure, keeping websites, applications, and APIs safe from attacks, critical for entities that handle sensitive data and require 24/7 reliability.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.