No more typing reviews! Try our Samantha, our new voice AI agent.

NetWitness Platform vs Palo Alto Networks WildFire comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetWitness Platform
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Log Management (38th), Security Information and Event Management (SIEM) (39th)
Palo Alto Networks WildFire
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
72
Ranking in other categories
Advanced Threat Protection (ATP) (1st)
 

Mindshare comparison

NetWitness Platform and Palo Alto Networks WildFire aren’t in the same category and serve different purposes. NetWitness Platform is designed for Log Management and holds a mindshare of 1.0%, up 0.3% compared to last year.
Palo Alto Networks WildFire, on the other hand, focuses on Advanced Threat Protection (ATP), holds 7.4% mindshare, down 11.5% since last year.
Log Management Mindshare Distribution
ProductMindshare (%)
NetWitness Platform1.0%
Splunk Enterprise Security6.8%
Wazuh5.4%
Other86.8%
Log Management
Advanced Threat Protection (ATP) Mindshare Distribution
ProductMindshare (%)
Palo Alto Networks WildFire7.4%
Microsoft Defender for Office 3656.7%
Microsoft Defender for Endpoint5.7%
Other80.2%
Advanced Threat Protection (ATP)
 

Featured Reviews

reviewer2256927 - PeerSpot reviewer
Head of Information Security, Cyber Defense and IT Risk Management at HCT. at a transportation company with 201-500 employees
A solid SIEM solution that should improve technical support and online resources to be easier to use
A big problem with the product is that we don't have much professional experience in Israel installing, implementing, and integrating this product. There is not enough of a knowledge base. There is no support for this product in this country, so problems have to be resolved through global technical teams. We like to work locally because of the language, and when the product is only supported outside the country, it's a little difficult to implement and use this product. Moreover, AI is something that must be added immediately. Artificial intelligence is a part of the competitors' products, and it's not been implemented for us.
RK
Engineer at Taalumgroup
Achieve effective threat prevention and seamless integration with powerful technical support
Integration with third-party products is possible. For example, connecting a mail gateway with Palo Alto Networks WildFire allows them to handle prevention. Palo Alto Networks WildFire is a cloud-based sandboxing solution. The firewall is connected to WildFire, and XDR performs sandboxing from the cloud. WildFire conducts malware scanning and emulation, then informs the firewall to block threats based on the response. It also generates reports regarding malware and other issues. The sandboxing process involves sending sample files to the cloud for scanning, checking file authenticity, certificates, and detecting malicious code. WildFire performs multiple checks and informs the XDR agent about file status. This automatic process occurs within minutes or seconds. For unknown or suspicious files, immediate blocking occurs while samples are sent to WildFire for identification. I rate Palo Alto Networks WildFire a 9 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features are its ingestion of logs and raising of alerts based on those logs."
"In my opinion, the solution's most valuable feature is its capacity to monitor network traffic, logs from devices within the network, and network captures. This capability extends beyond logs to include full network capturing."
"The most valuable features are the packet inspection and the automated incident response."
"RSA NetWitness is a SIEM and real-time network traffic solution that collects logs and packets, applies a set of alerting, reporting, and analysis rules on them, and thus provides the enterprise with full visibility of the networks and activities of the systems."
"Once it is deployed and you are used to it, you can do whatever you want."
"Their technical support responds quickly and are knowledgable."
"The development of use cases on the SSA console is quite user friendly. This means that the security analyst or the researcher does not have to learn another language."
"Alerting Module: It provides real-time event processing language on all the logs/packets stream for advanced alerting, i.e., using SQL LIKE statements."
"The analysis is very fast."
"From a technical perspective this has given us a new high as this is how a technology solution should function."
"We get support in the free version."
"If you're running Palo Alto firewalls there is no reason not to use it at the free level."
"WildFire's application encryption is useful."
"The most valuable feature of this solution is how it keeps up-to-date with viruses."
"It has powerful threat prevention capability with very few false positives."
"The protection, prevention, detection, and prevention capabilities are very powerful."
 

Cons

"Its technical support could be better."
"We encountered stability issues in the earlier versions, and much fewer in the newer versions."
"Cross Platform Integration could be improved."
"The product's licensing models are complex to understand. This particular area needs improvement."
"More customizability is required, which is something that they need to improve on."
"The solution should have more integration capabilities with different platforms."
"The multi-tenant capabilities are lagging compared to IBM QRadar."
"Health monitoring of the event sources and devices."
"Many years back an update caused an issue with the firewall. However, Palo Alto not only informed us of said issue, they also sent an update that fixed the issue before I even had time to log in to determine if the issue affected our services."
"The system performance degrades after the solution has been deployed for some time. The data that it gives us becomes a little bit slow. When you try to get some data for troubleshooting, it seems like it's working hard to extract that data."
"The system performance degrades after the solution has been deployed for some time. The data that it gives us becomes a little bit slow."
"The product's user interface for investigations needs enhancement."
"The cost of the solution is excessively high."
"It would be nice if there was an easier way to install and deploy it, such as through the inclusion of wizards."
"We also found that several websites do not function well with the SSL Decryption feature."
"The free version does not have real-time updates. It is slow."
 

Pricing and Cost Advice

"It is cheap."
"The product price was reasonable for my region and the market."
"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment."
"There is a licensing fee and the customer can choose whether he wishes this to be subscription-based or perpetual."
"It provides tools to assist in selecting the appropriate license and usage scenarios."
"The licenses are good but the cost is very expensive."
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"The NetWitness Platform may be affordable only for enterprise-level customers, as it may not be within the budget of small and medium-sized businesses."
"Palo Alto Networks WildFire is a product with a high price."
"It is expensive, a feature more accessible to enterprise class customers, but provides an enhanced possibility that Zero- or near-Zero-day threats may be identified and mitigated. The cost of the product weighed against the potential impact of even one successful crypto malware-type exploit may justify the expense."
"It's pretty expensive but with respect to value for money, it's okay."
"I think they should lower the price of this solution"
"Palo Alto Networks solutions are typically on the higher end of pricing, but considering the value and integration with our existing infrastructure, it is worth the investment."
"The price of the Palo Alto Networks WildFire license is expensive. When it came time to renew the solution the price doubled."
"It's not particularly cheap, but it is absolutely worth it."
"This solution is very pricey and it depends on the package that you implement."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
896,034 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Comms Service Provider
10%
Construction Company
8%
Performing Arts
7%
Computer Software Company
10%
Financial Services Firm
8%
Comms Service Provider
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
By reviewers
Company SizeCount
Small Business38
Midsize Enterprise15
Large Enterprise29
 

Questions from the Community

What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
How does Cisco Firepower NGFW Firewall compare with Palo Alto Networks Wildfire?
The Cisco Firepower NGFW Firewall is a very powerful and very complex piece of anti-viral software. When one considers that fact, it is all the more impressive that the setup is a fairly straightf...
Which is better - Wildfire or FortiGate?
FortiGate has a lot going for it and I consider it to be the best, most user-friendly firewall out there. What I like the most about it is that it has an attractive web dashboard with very easy nav...
How does Cisco ASA Firewall compare with Palo Alto's WildFire?
When looking to change our ASA Firewall, we looked into Palo Alto’s WildFire. It works especially in preventing advanced malware and zero-day exploits with real-time intelligence. The sandbox featu...
 

Also Known As

RSA Security Analytics
No data available
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
Novamedia, Nexon Asia Pacific, Lenovo, Samsonite, IOOF, Sinogrid, SanDisk Corporation
Find out what your peers are saying about NetWitness Platform vs. Palo Alto Networks WildFire and other solutions. Updated: September 2022.
896,034 professionals have used our research since 2012.