Try our new research platform with insights from 80,000+ expert users

NetWitness Platform vs Palo Alto Networks WildFire vs RiskIQ Illuminate comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

Log Management Market Share Distribution
ProductMarket Share (%)
NetWitness Platform0.7%
Wazuh8.3%
Splunk Enterprise Security6.9%
Other84.1%
Log Management
Advanced Threat Protection (ATP) Market Share Distribution
ProductMarket Share (%)
Palo Alto Networks WildFire7.5%
Microsoft Defender for Office 3658.3%
Proofpoint Email Protection5.9%
Other78.3%
Advanced Threat Protection (ATP)
Attack Surface Management (ASM) Market Share Distribution
ProductMarket Share (%)
RiskIQ Illuminate1.0%
CrowdStrike Falcon7.5%
HackerOne5.0%
Other86.5%
Attack Surface Management (ASM)
 

Featured Reviews

MOTASHIM Al Razi - PeerSpot reviewer
CISO at One Bank Limited
It is a stable solution, but they should make the user interface easier to understand
The solution's initial setup takes work. We have to organize multiple paths and many features. The deployment process takes less than a week. But it takes a month to complete if we want to make the solution smarter by integrating it with various devices. I rate the process as a six out of ten.
RK
Engineer at Taalumgroup
Achieve effective threat prevention and seamless integration with powerful technical support
Integration with third-party products is possible. For example, connecting a mail gateway with Palo Alto Networks WildFire allows them to handle prevention. Palo Alto Networks WildFire is a cloud-based sandboxing solution. The firewall is connected to WildFire, and XDR performs sandboxing from the cloud. WildFire conducts malware scanning and emulation, then informs the firewall to block threats based on the response. It also generates reports regarding malware and other issues. The sandboxing process involves sending sample files to the cloud for scanning, checking file authenticity, certificates, and detecting malicious code. WildFire performs multiple checks and informs the XDR agent about file status. This automatic process occurs within minutes or seconds. For unknown or suspicious files, immediate blocking occurs while samples are sent to WildFire for identification. I rate Palo Alto Networks WildFire a 9 out of 10.
SimonClark - PeerSpot reviewer
Cyber Security Advisor - Director at Fort Net UK
Able to discover unpatched servers, offers good stability, and scales very well
A low-cost service to evaluate the risk score of a supply chain would be very helpful. This could be useful for insurance companies offering cyber insurance to enterprise customers, providing the insurer with a valuable way to unobtrusively, quickly, and frequently assess their customers and apply appropriate premiums for the level of risk. This would also be useful for enterprises. They could, for example, assess companies prior to a merger or acquisition. What would also be useful for any enterprise would be if their supply chain has some kind of direct digital access to parts of their network.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"NetWitness Platform is valuable for creating rules that the solution must detect."
"Performance and reporting are very good."
"The most valuable features are the threat prediction and network forensics."
"The most valuable features are the integration and ease of use."
"The most valuable feature is the ability to write rules and triggers for network communication, and then being able to investigate based on that."
"Incident management is its most valuable feature."
"It's quite economical compared to other solutions in the market."
"The most valuable feature of RSA NetWitness Logs and Packets are the alerts and correlations tools."
"The solution is completely integrated with all the other Palo Alto products. I think that it is the best part for endpoint protection. The firewall features include URL and DNS filtering, threat protection, and antivirus."
"The analysis is very fast."
"Wildfire has excellent features and offers some of the best security measures available, although it requires a significant budget."
"In this case, the Palo Alto Networks WildFire capability is very important and I would say very impressive."
"What I like about Palo Alto is that it is a complete product, with everything in it."
"It catches modified signatures of known viruses."
"The most valuable feature is the Automatic Verdict, to recognize whether something is a threat, or not."
"Scalable ATP solution that's quick to set up. It demonstrates good performance and stability."
"The solution is stable with 12 years of established historical data."
 

Cons

"I believe that integrating the solution with other products such as Oracle would be beneficial."
"The solution should have more integration capabilities with different platforms."
"The user interface is a little bit difficult for new users and it needs to be improved."
"The implementation needs assistance."
"Security needs improvement."
"The initial setup is complex. There are other solutions that are easier to implement."
"We have encountered issues with unresolved crashes."
"Log aggregation is an issue with this solution because there are a huge number of alerts in a single instance."
"The solution can improve its traffic management."
"In the future, I would like to see more automation in the reporting."
"Any enhancements should likely be focused on the firewall appliance to further strengthen overall security capabilities, such as refining app and user identity features."
"Palo Alto Networks WildFire should be more real-time in nature. The signature updates should happen in a minute or less than a minute to be a very good feature for the customer."
"The integration is almost not easy because it depends on the vendor."
"One area for improvement is the expansion of the sandbox environment to include a broader range of platforms, such as Linux, macOS, and mobile operating systems."
"The only complaint that we receive from our customers is in regards to the price."
"The data analytical system for deployment needs to improve."
"A low-cost service to evaluate the risk score of a supply chain would be very helpful."
 

Pricing and Cost Advice

"In comparison to other SIEM solutions such as Splunk, NetWitness is less costly."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"It’s cheaper to run virtual machines in a VMware environment."
"It provides tools to assist in selecting the appropriate license and usage scenarios."
"The licenses are good but the cost is very expensive."
"Compared to the competition, the is price is not that high."
"There is a licensing fee and the customer can choose whether he wishes this to be subscription-based or perpetual."
"The solution is a bit expensive. You pay for security."
"I use Palo Alto Networks WildFire's free version."
"I rate the pricing an eight out of ten since it can be pretty expensive."
"Pricing could be improved."
"The pricing and licensing option should be categorized for various countries such as for Bangladesh."
"The pricing is highly expensive."
"It's not particularly cheap, but it is absolutely worth it."
"We pay between $3,000 and $4,000 CAD ($2,200 - $3,000 USD) per year to maintain this solution."
Information not available
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
881,928 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Financial Services Firm
13%
Performing Arts
8%
Computer Software Company
8%
Manufacturing Company
7%
Computer Software Company
11%
Manufacturing Company
8%
Financial Services Firm
8%
Comms Service Provider
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
By reviewers
Company SizeCount
Small Business37
Midsize Enterprise16
Large Enterprise29
No data available
 

Questions from the Community

What do you like most about NetWitness Platform?
The product's initial setup phase was not at all difficult.
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to...
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem )...
How does Cisco Firepower NGFW Firewall compare with Palo Alto Networks Wildfire?
The Cisco Firepower NGFW Firewall is a very powerful and very complex piece of anti-viral software. When one conside...
Which is better - Wildfire or FortiGate?
FortiGate has a lot going for it and I consider it to be the best, most user-friendly firewall out there. What I like...
How does Cisco ASA Firewall compare with Palo Alto's WildFire?
When looking to change our ASA Firewall, we looked into Palo Alto’s WildFire. It works especially in preventing advan...
Ask a question
Earn 20 points
 

Also Known As

RSA Security Analytics
No data available
RiskIQ Digital Threat Management
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
Novamedia, Nexon Asia Pacific, Lenovo, Samsonite, IOOF, Sinogrid, SanDisk Corporation
DocuSign, Outbrain, The Economist Group, Rackspace, The Citizen Lab
Find out what your peers are saying about Wazuh, Splunk, Datadog and others in Log Management. Updated: January 2026.
881,928 professionals have used our research since 2012.