If a customer is looking to establish a centralized monitoring and security solution, Fortinet FortiSIEM can be tailored to meet their specific needs effectively. This solution offers extensive customization options, making it possible to adapt it precisely to their requirements.
IT Security & CyberSecurity Consultant at digitalDefense Information Systems GmbH
A scalable solution with extensive customization options
Pros and Cons
- "This solution offers extensive customization options, making it possible to adapt it precisely to their requirements."
- "Customer support service could be better."
What is our primary use case?
What is most valuable?
It works exceptionally well when combined with a vulnerability management solution.
What needs improvement?
Customer support service could be better.
What do I think about the stability of the solution?
It provides great stability features.
Buyer's Guide
Fortinet FortiSIEM
June 2025

Learn what your peers think about Fortinet FortiSIEM. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
857,028 professionals have used our research since 2012.
What do I think about the scalability of the solution?
Scalability is excellent, especially for our enterprise-level clients.
How are customer service and support?
I have moderate satisfaction with customer support, and we've learned to manage it adequately. I would rate it three out of ten.
How would you rate customer service and support?
Negative
Which solution did I use previously and why did I switch?
I previously worked with LogPoint, which had rigid pricing structures. In contrast, we value flexibility and aim to provide more adaptable support, so we switched to Fortinet FortiSIEM.
How was the initial setup?
The initial setup is quite swift.
What about the implementation team?
The deployment process usually takes just one to two days to have the basics up and running. This involves connecting the collectors and configuring the systems.
What's my experience with pricing, setup cost, and licensing?
Pricing is determined based on the customer's budget. We discuss how to tailor the pricing to fit the specific needs and financial considerations of the customer.
What other advice do I have?
I would highly recommend it. It's a top-tier solution, receiving a solid ten out of ten rating.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner

Network Security Engineer at Technicom Mali
A simple setup but needs better visibility and more correlation tools
Pros and Cons
- "It is used as an alerting platform."
- "The log collection and configuration management are not great."
What is our primary use case?
It is used as an alerting platform and has an availability manager.
What is most valuable?
We already have experience with Fortinet products, so dealing with Fortinet FortiSIEM is not complicated.
What needs improvement?
They should offer better visibility, more correlation tools and a better understanding of the network. Fortinet FortiSIEM already uses simple and standard protocols like SNMP, DuraMI and Syslog. Other solutions like QRadar use sFlow, so I think that they can do better.
In addition, the log collection and configuration management are not great.
For how long have I used the solution?
We have been using this solution for three years. We deployed Fortinet FortiSIEM at about three customer sites, and it is deployed on-premises.
What do I think about the stability of the solution?
The product is stable.
What do I think about the scalability of the solution?
It is a scalable solution.
How are customer service and support?
We have expertise with the product, so we don't use technical support often. We only require support for the error mark, and the support is quick and fast for that.
How was the initial setup?
The initial setup was simple, and we deployed Fortinet FortiSIEM in two days. We already had all the information regarding the customers' notes, and it was simple, quick and fast.
What's my experience with pricing, setup cost, and licensing?
It is cheaper than LogPoint or QRadar.
What other advice do I have?
I rate this solution a five out of ten. It is not as good as other solutions like QRadar, but it's cheaper than other products and very simple. In the next release, the visibility should consist of simple and standard protocols.
Regarding advice, if you don't have a dedicated team to handle your logs, don't have a big budget, and want a solution to correlate and collect logs from many vendors, Fortinet FortiSIEM is an excellent choice.
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
Buyer's Guide
Fortinet FortiSIEM
June 2025

Learn what your peers think about Fortinet FortiSIEM. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
857,028 professionals have used our research since 2012.
Assistant to Vice President at IT Green Public Company Limited
Plenty of features, good support, but lacking signature updates
Pros and Cons
- "The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls."
- "Fortinet FortiSIEM could improve by having a signature update."
What is our primary use case?
We use Fortinet FortiSIEM for security, a gateway, and for authentication.
What is most valuable?
The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls.
What needs improvement?
Fortinet FortiSIEM could improve by having a signature update.
For how long have I used the solution?
I have been using Fortinet FortiSIEM for approximately 16 years.
What do I think about the stability of the solution?
Fortinet FortiSIEM is stable. However, it was not stable from the beginning.
What do I think about the scalability of the solution?
Fortinet FortiSIEM is the best soltuions here in Thailand. There are many users and partners here.
There are 10 to 3,000 users in my company. Most of the users are specialists in IT. We plan to increase usage in the future.
How are customer service and support?
I have used the technical support and they have been good.
Which solution did I use previously and why did I switch?
I have used other solutions previously.
How was the initial setup?
The initial setup of Fortinet FortiSIEM was easy. The deployment would take a few days for the middle and large models.
We need some information for the customer, such as policies, before we can implement the solution.
What about the implementation team?
We do the implementation of Fortinet FortiSIEM. We use one IT specialist for the deployment and maintenance of the solution.
What other advice do I have?
I would advise others this solution is easy to use and has a lot of features. They should try it out.
I rate Fortinet FortiSIEM a seven out of ten
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Cybersecurity Engineer at a tech services company with 11-50 employees
Stable machine learning solution that offers the advanced use of AI
Pros and Cons
- "The advanced agents used to collect logs have been most valuable. We have also made use of the advanced intelligence this solution offers."
- "The graphs on the user interface could be improved as we often experience glitches."
What is our primary use case?
We use this solution to collect logs.
What is most valuable?
The advanced agents used to collect logs have been most valuable. We have also made use of the advanced intelligence this solution offers.
What needs improvement?
The graphs on the user interface could be improved as we often experience glitches.
What do I think about the stability of the solution?
This is a stable solution.
How are customer service and support?
The customer service team needs additional experience and knowledge of the solution so the answers they provide are more accurate and helpful.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We use this solution together with McAfee ESM which is a simple and robust solution. Its interface is better than SIEM.
How was the initial setup?
The initial setup was straightforward. The time it takes to complete the setup and deployment depends on the size of the environment and the number of EPS events per second.
What other advice do I have?
This is a good solution but is fairly new so the support for it is not effective. Their support team does not have the experience to immediately solve issues.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Technical manager at a tech services company with 11-50 employees
User-friendly, reliable scales well, and has good technical support
Pros and Cons
- "Fortinet FortiSIEM is easy to use."
- "I would like to see more integration with other platforms."
What is our primary use case?
This solution is used to detect irregular user and entity behavior using machine learning.
What is most valuable?
Fortinet FortiSIEM is easy to use.
What needs improvement?
I would like to see more integration with other platforms.
For how long have I used the solution?
We have been providing Fortinet FortiSIEM for one year.
This solution can be deployed both on Cloud, and on-premises.
What do I think about the stability of the solution?
Fortinet FortiSIEM is a stable solution.
What do I think about the scalability of the solution?
It's a scalable product.
How are customer service and support?
Technical support is good enough. They were able to help us.
How was the initial setup?
It is easy to install.
In one day, we were able to install this solution ourselves.
We only need one engineer to maintain this solution.
What's my experience with pricing, setup cost, and licensing?
They have a yearly subscription.
What other advice do I have?
I would rate Fortinet FortiSIEM a ten out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Assistant Engineer at Harel Mallac Technologies Ltd
Easy to use, user-friendly, and reliable
Pros and Cons
- "The solution is easy to use and user-friendly."
- "Fortinet FortiSIEM could improve by having better integration and extensions. This would benefit by allowing us to give more rules."
What is our primary use case?
Fortinet FortiSIEM can be used to detect unusual user and entity behavior on networks.
We currently are in the process of testing the solution.
What is most valuable?
The solution is easy to use and user-friendly.
What needs improvement?
Fortinet FortiSIEM could improve by having better integration and extensions. This would benefit by allowing us to give more rules.
For how long have I used the solution?
I have been using Fortinet FortiSIEM for a few months.
What do I think about the stability of the solution?
I have found Fortinet FortiSIEM to be stable.
What do I think about the scalability of the solution?
Fortinet FortiSIEM is scalable.
How was the initial setup?
The installation is straightforward and can be done in one day.
What about the implementation team?
I am able to do the implementation of the solution.
What's my experience with pricing, setup cost, and licensing?
The solution is available for both, perpetual and subscription licenses.
What other advice do I have?
I rate Fortinet FortiSIEM an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Chief Technical Officer at a computer software company with 51-200 employees
Beneficial CMDB and device discovery, but implementation process needs improvement
Pros and Cons
- "The CMDB and the device discovery features are most valuable."
- "I would like to see easier implementation in the future."
What is most valuable?
The CMDB and the device discovery features are most valuable.
What needs improvement?
I would like to see easier implementation in the future.
For how long have I used the solution?
I have been using the solution for approximately five months.
What do I think about the scalability of the solution?
Most of our clients are medium-sized businesses.
How are customer service and technical support?
The technical support has been very good in helping us with issues we have been facing during the implementation of the solution. We are not finished yet but we are close.
How was the initial setup?
The initial setup is not simple.
We are having some issues with the agent installation, it is requiring several reboots. This could be the system environment at the client site because in our lab the agent installation is straightforward and it does not require reboots. We are still working on this issue.
What about the implementation team?
We are doing the implantation of the solution and it has a moderate level of difficulty.
What other advice do I have?
I rate Fortinet FortiSIEM a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: reseller
Partner at a security firm with 11-50 employees
Good network monitoring with excellent scalability and good stability
Pros and Cons
- "The stability is very reliable. It offers very good performance."
- "The policy editing should be easier. Right now, it's too hard."
What is our primary use case?
We primarily use the solution for network and security monitoring.
What is most valuable?
Most of those CM functions and the correlation alerts are very helpful to our clients.
The network monitoring is one of the most valuable aspects of the solution.
You can scale the solution with ease if you need to expand.
The stability is very reliable. It offers very good performance.
What needs improvement?
The initial setup is complex. They need to make it easier in terms of implementation. That said, all CM implementations are quite difficult. It may not be a fault of this particular product.
The policy editing should be easier. Right now, it's too hard.
Some of the parts of the mapping tool should be in the product itself. It would make our efforts easier.
The product is quite expensive. It's something clients always comment on.
For how long have I used the solution?
We have been using the solution for many years - including before Fortinet acquired the original organization.
What do I think about the stability of the solution?
The solution is quite stable. We find it very reliable. It doesn't crash or freeze. There aren't bugs and glitches.
What do I think about the scalability of the solution?
The scalability of the solution is excellent. It's one of the main reasons we chose to go with this option. If a company needs to expand, it can do so easily. There aren't constraints.
We have about five to ten customers on the solution currently.
How are customer service and technical support?
I'm not using the vendor's technical support. Mostly we have our own in-house resources. I cannot tell if are they good or bad. I have never dealt directly with them. Therefore, it would be difficult to review their services.
How was the initial setup?
In terms of the initial setup, the process is not straightforward. It's complex and difficult. Making it easier would help a lot.
All CM installations and implementations are complicated. You have to tailor the product. It's not really something you can just implement out-of-the-box.
That said, a basic installation is simple. It takes a few days. After you've done the implementation stage, then it takes time. Of course, it depends on the projects. I cannot say how much time it's taken exactly. I just know it takes quite a while.
For deployment, we use two people in a project. One of them is for the beginning of the project - for the implementation and the installation process. The other is the administration which we are generally pas off to our customers. I tend to handle the daily operations.
What's my experience with pricing, setup cost, and licensing?
All of our customers find the solution expensive. It's not a cheap option.
I don't know the exact cost of the solution as I don't directly handle the licensing.
What other advice do I have?
We are actually a reseller service company and we are dealing with the solutions for our customers. We are using the SIEM solutions. We are not a user, we are a reseller.
We have many customers. Not all may be using the latest version of the solution.
I would recommend the solution.
In general, I would rate the solution eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller

Buyer's Guide
Download our free Fortinet FortiSIEM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Security Information and Event Management (SIEM)Popular Comparisons
CrowdStrike Falcon
Microsoft Sentinel
Splunk Enterprise Security
IBM Security QRadar
Elastic Security
LogRhythm SIEM
Cortex XSIAM
Rapid7 InsightIDR
AlienVault OSSIM
Google Chronicle Suite
Securonix Next-Gen SIEM
ManageEngine Log360
Sentinel
Buyer's Guide
Download our free Fortinet FortiSIEM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What Solution for SIEM is Best To Be NIST 800-171 Compliant?
- When evaluating Security Information and Event Management (SIEM), what aspect do you think is the most important feature to look for?
- What are the main differences between Nessus and Arcsight?
- What's The Best Way to Trial SIEM Solutions?
- Which is the best SIEM solution for a government organization?
- What is the difference between IT event correlation and aggregation?
- What Is SIEM Used For?
- RSA-EMC vs. other SIEM products?
- What Questions Should I Ask Before Buying SIEM?
- What are the pros and cons of internal SOC vs SOC-as-a-Service?