Try our new research platform with insights from 80,000+ expert users
it_user494187 - PeerSpot reviewer
Security and Network Architect at a tech services company with 10,001+ employees
Consultant
For FireFlow, workflow customization and active change are the best features. Interaction with a lot of vendors results in a lot of options and bugs.

What is most valuable?

With a network like ours - more than 100 routing points with around 6 VRF on each - traffic simulation query is one of the most valuable feature on AFA.

For FireFlow, workflow customization and active change are the best features.

In BusinessFlow, the ability to simulate documented flow against configuration by AFA is the best feature to limit differences between documentation and production.

How has it helped my organization?

This product allowed us to identify unused rules more easily and doing this simplifies policies in our firewall. We now have documentation of our application with objects sync with real configuration. Our approval in change management has been improve through FireFlow and errors have been reduced through change advised and active change. We also save time by identifying earlier than usual routing issues associated to a change request.

What needs improvement?

A lot of areas have room for improvement!! This product is still young and in constant development. Interaction with a lot of vendors generates a lot of firewall options (specifically, a timer on services, application control, and so on...). This interaction also generates a lot of bugs in the product. Every new version contains about 10 to 20 bugs for our environment. This is partially explained by the fact it has to understand all of the architecture and specificity associated with all of the supported vendors.

A few of the bugs are:

  • Services composed with something else other than TCP or UDP are not well-handled and not working in simulation queries. (For example, AH or ESP or EthernetOverIP.)
  • Traffic with same objects in source and destination are not working.
  • When NAS is used to store reports, we have had a lot of bugs associated with wrong URL encoding.
  • Role assignment with multiple LDAP issues.
  • Some file cleanup not working as expected.
  • Active change is available for only a few vendors.
  • BusinessFlow doesn't offer auditing regarding object management and with a lot of application and managers, it quickly becomes an issue with duplicated objects and so on.
  • There are also gaps in access right management.

For how long have I used the solution?

I have been using it nearly two years.

Buyer's Guide
AlgoSec
February 2025
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,737 professionals have used our research since 2012.

What do I think about the stability of the solution?

Every version came with its bug bundle... In two years, we opened 50 cases and about 40 of them escalated to development for resolution. This situation is also explained by complexity of our architecture.

What do I think about the scalability of the solution?

I have not encountered any scalability issues. Each version usually improves performance and the amount of required disk space.

How are customer service and support?

Technical support is 7/10; quick to give a new version solving the issue but long to identify the issue, even when it seems to be identified from the beginning.

For example, more than a month ago, we identified a wrong link associated to NAS configuration. We can clearly see that the wrong link was being generated, pointing from the NAS directly to the NAS repository, instead of a symlink. It took more than a month for support to accept this and to escalate the case to dev. After dev escalation, we are expecting a fix on Monday. So, it took four weeks to acknowledge the issue and two weeks to be fixed by development.

Which solution did I use previously and why did I switch?

We did not previously use a different solution.

How was the initial setup?

Initial setup is straightforward; some custom options can be tricky to set up, but will not be used by most customers.

What's my experience with pricing, setup cost, and licensing?

Be careful with VRFs. One router with two VRFs consumes two licenses. So a new VRF configured on all routers will double the number of licenses required on routing elements.

Which other solutions did I evaluate?

We benchmarked Tufin before choosing AlgoSec. We chose AlgoSec over Tufin for its capacity to be more customized and its support for MPLS and VRF.

What other advice do I have?

Offer me a job. ;) I will help you set it up.

More seriously, test it with caution through a POC to be sure that all your architecture specifics are addressed. If not all of them are addressed, ask for a commitment regarding support of missing features and ask for those commitments to be written down before ordering.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer0175982 - PeerSpot reviewer
Network & Cloud Security Team Leader at Soitron Siber Güvenlik Servisleri
User
Points out redundancies, increases visibility, and helps manage firewall rules
Pros and Cons
  • "Thanks to this visibility, I was able to do my rule optimization."
  • "The simulation can be improved."

What is our primary use case?

We needed to review unused rules and delete them. However, I also wanted to view my unused objects and NAT rules. Algosec met my needs. 

How has it helped my organization?


What is most valuable?

The product was able to present how many rules were redundant and how many shadow rules were in a gateway. Thanks to this visibility, I was able to do my rule optimization. Thus, my firewall rules were fewer, and fewer rules were checked when traffic passed through the firewall. In this way, it was possible for traffic to pass through the firewall faster.

What needs improvement?

The simulation can be improved. Networks and interfaces to which the firewall is connected are kept in a visual simulation. The rules could also show us the traffic on these networks in red and green. When we add a rule, we should be able to see what kind of traffic obstruction we can cause and what can be improved. In the next release, it would be fun to visually present the dashboard with animations.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
AlgoSec
February 2025
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
838,737 professionals have used our research since 2012.
NetworkAdmin - PeerSpot reviewer
Network Engineer at Ti Automotive
Consultant
Reduces costs and errors for compliance and audit preparation
Pros and Cons
  • "It has reduced our audit preparation efforts and costs drastically and maintains continuous compliance."
  • "The GUI has not been upgraded for a long time and could use updating."

What is our primary use case?

AlgoSec is a global tool that has been purchased to get a centralized view of our infrastructure. This enables us to review our security posture and implement a compliance strategy.

AlgoSec is also used for in-depth firewall analysis and intelligent policy tuning and optimization. It helps in regulatory compliance metrics and overall firewall security optimization. It is currently used by the network security, audit, and internal control departments of organizations, giving overall insight/visibility and enhancing improved security across the enterprise.

It has been really helpful in automating changes. This helps us to reduce operational work drastically. The product has centralized visibility, unified management, and reporting across an entire hybrid environment. It can be deployed on-premises, in a private cloud, public cloud, and in SDN platforms. It automatically discovers applications and their connectivity flows, then associates connectivity with their underlying firewall rules.

AlgoSec's solutions are incredibly powerful, providing us with intelligent process improvement that has directly translated into the highest level of security and compliance for our internal network.

How has it helped my organization?

AlgoSec is one of the most complete security management solutions on the market. It manages security and compliance based on the applications that power our business. It is one product combining multiple tools. This makes a real difference compared to its competitors.

It helps us deploy new business applications quickly and securely. It ties cyber threats directly to critical business processes.

Using AlgoSec is a double benefit to us. By using this solution we can reduce the cost and the number of errors in our daily operation and also expand our offerings. 

It has reduced our audit preparation efforts and costs drastically and maintains continuous compliance.

AlgoSec delivers a rich set of change management workflows and enables zero-touch change processes if no risks are identified.

What is most valuable?

AlgoSec proactively analyzes all risks in the network security policy, across multi-vendor firewalls and cloud security groups.

AlgoSec is the only solution that supports the entire security policy management lifecycle from application connectivity discovery, through migration, maintenance, and decommissioning. Independent testing describes it as ‘one of the most complete security management solutions on the market’.

It seamlessly integrates with all leading brands of traditional and NGFWs, cloud security controls, routers, and load balancers.

The graphical user interface is much better than in other products.

What needs improvement?

The GUI has not been upgraded for a long time and could use updating.

For how long have I used the solution?

We have been using AlgoSec for several years.

What other advice do I have?

I'm sure we will use this solution for ten more years, at least, as long as it continues to do what is promised.

This product is ready to work within a next-generation infrastructure environment. It simplifies and automates network security policy management to make your enterprise more agile, more secure and more compliant – all the time.

Overall, this is a complete product that helps our organization on a daily basis.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Network Administrator at Türkiye İş Bankası
Real User
FireFlow enables us to search equipment between the source and destination and saves us time
Pros and Cons
  • "We are in the process of implementing FireFlow in our daily operation, which will make our lives even easier. The idea is to search the Firewall Analyzer for the equipment between the source and destination, and then automatically jump off to FireFlow and open a ticket. This will then automatically implement what is needed without the need to go into the Firewall itself. This will save us a lot of time and will help us to onboard junior engineers very quickly, getting them up to speed on our network and daily operation in record time."
  • "One important thing they should improve is their support level. We have a lot of trouble with the basic enterprise support level. They are very slow to respond and solve problems."

We have been working with the AlgoSec firewall analyzer for almost six years in the product environment. It is well suited for firewall security optimization, tuning, change management, and application discovery. The most important feature is the Intelligence Policy Tuner (IPT) skills. This helps us know which devices are between the source and destination on the flows.

Since we increased our support level to preferred support, the support level has been very good for two months. They solved all the problems and the response time is very fast. Therefore, if you are working with AlgoSec, you should choose the preferred support license. If you have the chance, you must try this with this type of support that they are well equipped of people.

We are in the process of implementing FireFlow in our daily operation, which will make our lives even easier. The idea is to search the Firewall Analyzer for the equipment between the source and destination, and then automatically jump off to FireFlow and open a ticket. This will then automatically implement what is needed without the need to go into the Firewall itself. This will save us a lot of time and will help us to onboard junior engineers very quickly, getting them up to speed on our network and daily operation in record time

In the end, we tried other vendors for POC and all of them have problems. When we compared with AlgoSec, they were much worse and AlgoSec leads this sector. That’s why we are using Algosec in our environment. Also, it is the most growing vendor in their specific area, and it has much more skills that have been very helpful to analyze firewalls.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1115961 - PeerSpot reviewer
Works at a maritime company with 10,001+ employees
Real User
Change automation has made our IPS team more efficient and effective
Pros and Cons
  • "We have been able to increase the effectiveness of the team, allowing them to prioritize more complex and business-critical tasks in a faster manner."
  • "In terms of integrations, we would like to see a greater number with the upcoming and next-generation tools (i.e. SOAR and a selection of other SIEMs)."

What is our primary use case?

The automation and orchestration of security-related change requests on our selected firewall (in our case Checkpoint) to decrease the time it takes to raise, manipulate, and execute change requests. This is all done with minimal interaction from our Firewall and IPS team, allowing them to more effectively use their time.

How has it helped my organization?

It has eased the process of streamlining our firewall configuration management considerably. Our firewall and IPS team now has the ability to budget their time and focus on other tasks, rather than dealing with repetitive change request functions. This has enabled the team to work much more efficiently and effectively.

What is most valuable?

The feature we found most useful is the automation of the change process within our organization for firewalls. This feature has reduced the number of mundane tasks the firewall and IPS team undertake on a regular basis. We have been able to increase the effectiveness of the team, allowing them to prioritize more complex and business-critical tasks in a faster manner.

What needs improvement?

In terms of integrations, we would like to see a greater number with the upcoming and next-generation tools (i.e. SOAR and a selection of other SIEMs). This has been a problem for us, as we are going through the process of enhancing our security and some of the products we are looking at are lacking built-in support (integration). 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Real User
Helps to maintain and provide regulatory compliance metrics and to optimize the overall security of the organization
Pros and Cons
  • "It saves time by allowing administrators to test network traffic and pinpoint which rules are being triggered for a particular traffic flow."
  • "I would like the reporting to be more customizable, as per user and auditing needs."

What is our primary use case?

The AlgoSec Firewall Analyzer was greatly used for firewall analysis, policy tuning, and optimization. The automated change management feature was very useful and integrates seamlessly into the change management process.

How has it helped my organization?

This solution helps in maintaining and providing regulatory compliance metrics and to optimize the overall security of the organization. It provides great visibility into your firewall rules, thereby allowing you to eliminate redundant or overlapping rules. It saves time by allowing administrators to test network traffic and pinpoint which rules are being triggered for a particular traffic flow.

What is most valuable?

The most valuable features to me were the following:

  1. Testing network flows and optimizing firewall policies.
  2. Obtaining regulatory and compliance metrics for audits.
  3. Visualize complex networks using the topology maps.
  4. Simple interface and ease of navigation.

What needs improvement?

The product has a lot of great features already. However, I would like the reporting to be more customizable, as per user and auditing needs.

For how long have I used the solution?

Less than one year.

What do I think about the scalability of the solution?

It is a highly scalable solution as per my experience.

Which solution did I use previously and why did I switch?

I haven't used any other solutions.

What's my experience with pricing, setup cost, and licensing?

I do not have much information on the pricing, as I wasn't part of the actual procurement process. I was told that the pricing and licensing was comparatively fair.

Which other solutions did I evaluate?

I did a basic evaluation of FireMon, which had identical features to the AlgoSec Firewall Analyzer.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Zufayri Zaidi - PeerSpot reviewer
Security Analyst at AceTeam Networks
Real User
Top 10
A solution with a good interface that can be used for firewall policy management
Pros and Cons
  • "The most valuable feature of AlgoSec is its firewall analyzer."
  • "AlgoSec's audit management is not good enough and can be improved."

What is our primary use case?

We use AlgoSec for firewall policy management.

What is most valuable?

The most valuable feature of AlgoSec is its firewall analyzer. AlgoSec also has a better interface.

What needs improvement?

AlgoSec's audit management is not good enough and can be improved. Also, AlgoSec should be made more scalable.

For how long have I used the solution?

I have been using AlgoSec for around one year.

What do I think about the stability of the solution?

AlgoSec is a stable solution.

What do I think about the scalability of the solution?

AlgoSec is not a scalable solution. Only I use AlgoSec in our company to do firewall management.

How was the initial setup?

It is moderately easy to set up AlgoSec.

What about the implementation team?

Two staff were involved in AlgoSec's deployment, which took around three hours.

Which other solutions did I evaluate?

Before choosing AlgoSec, we evaluated Tufin as an option. We chose AlgoSec because it has a better interface.

What other advice do I have?

AlgoSec is a good firewall management tool for organizations with multiple firewall levels. If you only have two or three firewall levels, then AlgoSec is not worth investing in.

Overall, I rate AlgoSec an eight out of ten.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1242069 - PeerSpot reviewer
Works at a sports company with 1,001-5,000 employees
Real User
Automatic firewall rule configuration helps reduce our workload
Pros and Cons
  • "The automation of the firewall rule deployment, working together with our ticketing system, is the most valuable feature of this solution. The needs as required by a user request are automatically validated and configured in the specified firewalls without any human action."
  • "The interface needs to be more user-friendly for low-profile users so that we can give some kind of access to specific people around the company for self-configuration of specific rules."

What is our primary use case?

Our primary use for AlgoSec is to automate our firewall configuration. We use the AlgoSec system to remotely configure the firewalls, making our life easier.

We are in a multisite environment with plenty of firewalls for perimeter security and LAN segregation for specific proposes. This solution helped us to make the process more dynamic.

How has it helped my organization?

It has reduced the workload for the firewall team thanks to the API integration with our ticketing system, doing the standard type of request automatically. Before having it, we had to create a lot of standard rules that now can now be just pushed from the AlgoSec system.

What is most valuable?

The automation of the firewall rule deployment, working together with our ticketing system, is the most valuable feature of this solution. The needs as required by a user request are automatically validated and configured in the specified firewalls without any human action. This improves the firewall team's workload.

What needs improvement?

I would be nice to have a good tool for network map discovery in the GUI to make it more user friendly and be able to check and modify network maps in graphical and more intuitive way . This will improve our network overview for new deployments and troubleshooting. 

For how long have I used the solution?

I have been using this solution for three years.

What do I think about the stability of the solution?

In three years, we have only had one issue with respect to stability.

How are customer service and technical support?

When we had the issue they responded well.

Which solution did I use previously and why did I switch?

We did not use another solution before AlgoSec.

What about the implementation team?

We deployed this solution using our in-house team.

What was our ROI?

The reduction in workload reduces the cost in terms of human time.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
Updated: February 2025
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.