Try our new research platform with insights from 80,000+ expert users
reviewer1924623 - PeerSpot reviewer
Assistant Director (IT) at a financial services firm with 1,001-5,000 employees
Real User
We are much more comfortable with Cisco products, it's a reputable organization, and we trust the products
Pros and Cons
  • "We like the Cisco product, the concept, and the tech intelligence."

    What is our primary use case?

    We use it at the end and the center as the core and apply a lot of policies to the firewall.

    How has it helped my organization?

    Using Cisco Firepower has helped us.

    What is most valuable?

    We like the Cisco product, the concept, and the tech intelligence. We are much more comfortable with Cisco products. It's a reputable organization, and we trust the products.

    What needs improvement?

    The next Cisco NGIPS release should include more features for production ideas and more intelligence for IDS and IPS features.

    Buyer's Guide
    Cisco Secure IPS (NGIPS)
    March 2025
    Learn what your peers think about Cisco Secure IPS (NGIPS). Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
    839,319 professionals have used our research since 2012.

    For how long have I used the solution?

    We have been using this solution for two years. 

    What do I think about the stability of the solution?

    We initially had some difficulty loading pages due to certain rules regarding performance and stability. On some websites, we had to click more than once. These issues were quite easy to fix.

    What do I think about the scalability of the solution?

    Regarding scalability, the solution is not that good.

    How are customer service and support?

    They're nice people. We don't have any issues with them. They are quick to respond, but sometimes it takes time to solve the issues.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We previously used Check Point and Cyberoam. We switched because the license expired.

    How was the initial setup?

    We initially had some difficulties, but now we have no problems.

    What about the implementation team?

    A Cisco vendor in Nepal helped us configure the product properly. We didn't have a strategy. The vendors supported us from the very beginning. After working with them, we had no problem using the product.

    It took almost a month and a half to install the system.

    What was our ROI?

    I would rate our ROI as eight out of 10, with 10 being the highest ROI.

    What's my experience with pricing, setup cost, and licensing?

    Cisco NGIPS licensing is yearly. 

    I would rate the pricing four out of 10, one being very expensive and 10 very cheap. 

    What other advice do I have?

    I would give Cisco NGIPS an overall rating of eight out of 10, 10 being the best.

    We have a department of almost 50 people in our company using Cisco NGIPS. 

    We have 10 people to maintain the product.

    We want to cover all the systems and networks of our organization. 

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Vinay-Singh - PeerSpot reviewer
    Manager IT & Security at mCarbon Tech Innovations Pvt., Ltd.
    Real User
    Beneficial reports, good protection, and straightforward setup
    Pros and Cons
    • "The most valuable features of Cisco NGIPS are protection and reporting."
    • "We have a separate management controller for Cisco NGIPS. If they have not done it already they should integrate Cisco NGIPS with the Cloud Portal."

    What is our primary use case?

    I use Cisco NGIPS as a firewall.

    What is most valuable?

    The most valuable features of Cisco NGIPS are protection and reporting.

    What needs improvement?

    We have a separate management controller for Cisco NGIPS. If they have not done it already they should integrate Cisco NGIPS with the Cloud Portal.

    The solution has some bugs that sometimes take time to resolve.

    For how long have I used the solution?

    I have been using Cisco NGIPS for approximately two years.

    What do I think about the stability of the solution?

    The stability of Cisco NGIPS has been good since we have been using it.

    What do I think about the scalability of the solution?

    The scalability of Cisco NGIPS is good.

    How are customer service and support?

    Cisco has better technical support than other competitors, such as Check Point IPS or Palo Alto. Cisco has very good support, they are always ready to help their customer if there are any production issues.

    Cisco NGIPS should add a technical person to the chat support. They correctly do not have a specialist. The knowledge base of the chat agent should be better.

    Which solution did I use previously and why did I switch?

    I have used Check Point IPS solutions.

    How was the initial setup?

    The implementation of Cisco NGIPS is straightforward.

    What about the implementation team?

    You have to do your own implementation of the Cisco NGIPS hardware, but for the configuration, Cisco support can be involved from day one. That's what I have experienced. There was some exception but I have involved the Cisco support team from day one when I started configuring my firewall.

    What was our ROI?

    We have seen a return on investment by using Cisco NGIPS.

    What's my experience with pricing, setup cost, and licensing?

    There is a license required to use Cisco NGIPS and it can be a one or three-year license.

    What other advice do I have?

    I would advise others to use the support from Cisco, they are helpful.

    I rate Cisco NGIPS an eight out of ten.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Buyer's Guide
    Cisco Secure IPS (NGIPS)
    March 2025
    Learn what your peers think about Cisco Secure IPS (NGIPS). Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
    839,319 professionals have used our research since 2012.
    Carlos Reis - PeerSpot reviewer
    Network Security Engineer at New Era Technology
    Real User
    Top 10
    Has great security intelligence features
    Pros and Cons
    • "I like the security solutions from Cisco."
    • "There are certain limitations that need to be addressed."

    What is our primary use case?

    People still aggregate these functions. We have files that only serve the purpose of NextGen NGIPS.  They have no rules that just allow pure source running and execution. We need regular firewall protection with NetGen. It's nice because we can lease both firewall and IPS system functions. We have both running on the network.

    What is most valuable?

    Apex IPaaS functions itself. You can create an intrusion rule that can be used for blocking purposes.

    I like the security solutions from Cisco. They don't only give you the IPS itself, but you also have another database and other applications. 

    They also have the security intelligence feature. This is one of the first software lines. This brings you the URLs, IPs, etc. This is even before the access control.

    What needs improvement?

    There are certain limitations that need to be addressed. 

    For how long have I used the solution?

    I have been using the Cisco NGIPS for two years. 

    How are customer service and support?

    Cisco support is very good. 

    How would you rate customer service and support?

    Positive

    What other advice do I have?

    For the time being, I never received a complaint about a policy, but this may happen in the future. This can be due to consistent integration. 

    They filter even between different companies and stuff and cloud providers and I've never received any complaints about the speed.

    Overall, I rate the solution an eight out of ten. 

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    reviewer2348394 - PeerSpot reviewer
    Director, Security and Compliance at a tech services company with 1-10 employees
    Reseller
    Top 20
    Offers protection to internal networks from malware
    Pros and Cons
    • "The product's initial setup phase was easy."
    • "The product's high price is an area of concern where improvements are required."

    What is our primary use case?

    In my company, the solution is used as a platform for cybersecurity. The product offers protection from malware. In general, the solution offers protection to our company's internal network.

    How has it helped my organization?

    The product's benefits experienced by the company stem from the fact that the solution provides keep abilities that help users see what is happening in their network. The solution also provides alerts.

    What needs improvement?

    My company does not use the URL filtering capabilities offered by Cisco NGIPS. My company prefers to use the URL filtering feature offered by a brand other than Cisco since other tools provide an easier way to use the functionality.

    I wanted to look into the other products offered in the market because Cisco NGIPS is expensive. The product's high price is an area of concern where improvements are required.

    For how long have I used the solution?

    I have been using Cisco NGIPS for eight years. My company has a partnership with Cisco. I am also a user of the product. My company operates as a reseller of Cisco products.

    What do I think about the stability of the solution?

    I don't remember seeing any crashes when using the solution. The product has been very stable in our company.

    What do I think about the scalability of the solution?

    The scalability offered by the product is fine. My company has not faced any problems with the scalability feature. The solution is deployed in three of our company's data centers.

    How are customer service and support?

    The first call that I had with the product's technical team was not good since it took time to provide an explanation to get the right engineer to help us with our problems. Once the user gets connected with the right engineer, the support offered is very good.

    I rate the technical support a seven out of ten.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    I have experience with Fortinet. I don't remember the name of one of the solutions that I had used in the past.

    How was the initial setup?

    The product's initial setup phase was easy.

    I rate the product's initial setup phase a nine on a scale of one to ten, where one means a difficult process, and ten means that it is an easy process.

    The solution is deployed on an on-premises model.

    The solution can be deployed in a couple of weeks. We take care of the testing phase in our company before installing the solution only when the signatures are updated in our environment, which takes around a time frame of less than two weeks.

    Around three or four engineers take care of the product's installation phase.

    What about the implementation team?

    My company purchases professional services from Cisco's partner to take care of the installation phase.

    What's my experience with pricing, setup cost, and licensing?

    Cisco NGIPS is an expensive product.

    Which other solutions did I evaluate?

    I have compared Fortinet FortiGate IPS against Cisco NGIPS.

    What other advice do I have?

    With Cisco NGIPS, the rate of false positives is very low.

    I would tell those who plan to use Cisco NGIPS that it is a good solution, but if they have budget constraints, they should explore the other brands in the market.

    I rate the tool an eight out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
    PeerSpot user
    Diego Munoz - PeerSpot reviewer
    Information Technology Manager at AGRI-CORP
    Real User
    Has good malware detection, threat defense, sandboxing, VPN, and mail security features
    Pros and Cons
    • "The Malware Detection, threat defense, sandboxing, VPN and mail security have all been valuable features of Cisco NGIPS."
    • "I would like to see Cisco NGIPS to include home office support in one single product."

    What is our primary use case?

    We use Cisco as a firewall. It is an intrusion detection and prevention solution.

    What is most valuable?

    The malware detection, threat defense, sandboxing, VPN, and mail security have all been valuable features of Cisco NGIPS.

    What needs improvement?

    The performance of CISCO Firepower could be improved. 

    We moved from Sophos to Cisco before the pandemic. During the pandemic, there was an increase in VPN connections. We had a layer of security within CISCO Umbrella, and now with Cloud. The firewall protects the internal system, but we needed to add another layer of security for the endpoints that are outside the local area network. We needed another product to cover this lack of security.

    We prefer to have integration with the points that are outside our local area networks using the same brand using one single console. Because the firewall only protects the people inside the network, we required another solution.

    I would like to see Cisco NGIPS include home office support in one single product.

    For how long have I used the solution?

    Our organization has been using Cisco NGIPS for two years.

    What do I think about the stability of the solution?

    Cisco NGIPS is stable most of the time.

    What do I think about the scalability of the solution?

    This solution is not easily scaled. I would like Cisco NGIPS to be easier to scale. With the increase in work from home, we needed to add another layer of security to ensure we can meet the demand of stability, high availability, and connection.

    How are customer service and support?

    Our company has two layers of support with Cisco. One is the local support, which is very good. The second support is directly from Cisco. They are quick to respond and have quick solutions to the problems.

    Which solution did I use previously and why did I switch?

    We moved from Sophos to Cisco Firewall because we were looking for better integration between all the appliances and data center. All of our core switches, our wireless system, and other tools are the Cisco brand, meaning that all our monitoring options are integrated under Cisco.

    What about the implementation team?

    We hired a professional service to install this solution.

    What other advice do I have?

    With the increase in work from home, companies may need more than just a firewall. I recommend anyone considering Cisco NGIPS evaluate all the demands from their in-home offices and determine if their solution needs to be bigger, or wider, for security and performance.

    I would rate this product a 9 out of 10, particularly if you work in a LAN environment.

    Which deployment model are you using for this solution?

    Hybrid Cloud
    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Carlos Bracamonte - PeerSpot reviewer
    Senior Network Support Engineer at Amadeus
    MSP
    Top 5
    Good protection, reliable and responsive support
    Pros and Cons
    • "The URL filtering feature and the new locations feature are both valuable additions to the solution."
    • "While the Management GUI and FMC could be improved, the devices themselves function well."

    What is our primary use case?

    Some of our customers are having DDOS attacks and ransomware attacks.

    How has it helped my organization?

    Earlier in July 2019, I noted that there was an attack. To mitigate future attacks from the ransomware in Columbia Bank and other similar situations, we at Cisco Talent, which is responsible for security intelligence, provided updated security rules. We offered intrusion policies and codes through signatures to help overcome such situations.

    What is most valuable?

    It's a good solution.

    The solution is not that bad. Next-generation firewalls work from my experience, they work. 

    The URL filtering feature and the new locations feature are both valuable additions to the solution.

    What needs improvement?

    While the Management GUI and FMC could be improved, the devices themselves function well.

    For how long have I used the solution?

    I have been using Cisco NGIPS for more than five years.

    I provided support for version 6.4, but in our company, we do have Firepower version 7.0.

    What do I think about the stability of the solution?

    Cisco NGIPS is a stable solution.

    How are customer service and support?

    Cisco has great support.

    What other advice do I have?

    I would rate Cisco NGIPS an eight out of ten.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Senior Network / ITOps Engineer at a leisure / travel company with 201-500 employees
    Real User
    Easy to set up with helpful technical support and good integration capabilities
    Pros and Cons
    • "You can do zero-day prevention and detection. It's quite useful."
    • "I'd like to see some cloud management. Cisco maybe already has it, however, my company doesn't use it as cloud management."

    What is our primary use case?

    The way we use it in my company is just for a basic firewall.

    It's a next-generation firewall. You can integrate it with external systems, like Cisco Talos, Cisco Umbrella, all these things. You can do threat detection, threat prevention. You can integrate with your active directory. It can block traffic based on the user or user group.

    What is most valuable?

    I use the product mainly for follow-up. I would say the most important is the integration with our directory services, the user directory services. We can block or allow traffic based on the specific users or specific user groups.

    There are other features such as the connection with the intelligence systems such as Talos on Cisco. You can do zero-day prevention and detection. It's quite useful.

    The solution is stable and the performance is good. 

    My understanding is that the initial setup is simple. 

    What needs improvement?

    I'd like to see some cloud management. Cisco maybe already has it, however, my company doesn't use it as cloud management. That said, it would be great to manage your device through the cloud instead of managing through a server on-premise.

    For how long have I used the solution?

    I've only used the solution for two months. It hasn't been that long just yet.

    What do I think about the stability of the solution?

    The product has been stable. Cisco is quite stable as a product. It doesn't crash or freeze. It's reliable. There are no bugs or glitches.

    What do I think about the scalability of the solution?

    I can't really speak to the scalability of the solution as I haven't used it for long enough.

    Due to the fact that all the traffic passes through the firewalls, I would say 500 people or maybe more use the solution in our organization.

    How are customer service and support?

    Cisco technical support is great. They are helpful and responsive. We are very happy with their capabilities. 

    Which solution did I use previously and why did I switch?

    I'm also aware of Palo Alto, which in many ways is a more solid product. We used it in my previous company as it was more mature and much simpler to use in comparison to Cisco. 

    How was the initial setup?

    While I didn't set it up, my understanding is the implementation is straightforward. You read the documentation. It's this continuation from the old Cisco ASAs. People have used it for many years. Cisco's quite easy to set it up and keep up and running. You just need to add things on top of it, however, it's all quite easy. I have done an installation of the previous Cisco firewall. It's really straightforward. The upgrade is quite simple as well.

    We have three technical personnel that can handle deployment and maintenance. We have to cover the whole globe, so we have three people on to handle everything 24/7.

    What's my experience with pricing, setup cost, and licensing?

    You do need to pay a licensing fee. If you want the additional features, like prevention or integration with extended intelligence systems, you need to pay additional licenses.

    What other advice do I have?

    I'm not sure which version of the solution we're using. It might be 6.4. It's likely whatever that latest version is.

    I would recommend Cisco, however, I do find Palo Alto to be a good product as well, and in some ways more solid. 

    I'd rate the solution at a nine out of ten. 

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    reviewer1083318 - PeerSpot reviewer
    Network Infrastructure Program Manager at a non-profit with 1,001-5,000 employees
    Real User
    Offers valuable SSL decryption, URL filtering, and ITSM inspection features
    Pros and Cons
    • "Cisco is number one in the technical support. It's good technical support and this is actually a problem when we do the recruitment for some other products. Other products you are on hold forever and the support might be not the best compared to Cisco."
    • "The file trajectory, the trace in contamination files, could be improved."

    What is most valuable?

    In the previous version, some features were not enabled. For example, you could not access the VPN. So that was one of the downsides of the product. In this latest version, after enabling these features in the previous version and using them, it's been good. Inspection, application, and inspection in the cloud, the detail in the cloud for an indication of compromise and the malicious activity re-hashing are all valuable features. It's more of the cloud and the malicious activities aspects that define this application.

    What needs improvement?

    The file trajectory could be improved.

    We still have a web proxy but I think at some point we should not have two products. We should have only one product. Most of the features of the web proxy already exist in the UTM appliances. We have a debate as to whether it's the Cisco Firepower and UTM Appliance of next-generation firewall. But I consider both of them the same. So I would say if we have the caching and the other features which are unique features to the Web Proxy, I think Cisco will be number one if they are able to include such features in the future.

    For how long have I used the solution?

    I have been using the solution for three years.

    What do I think about the stability of the solution?

    It's a really good product but I have had a really good experience with Palo Alto UTM Appliances. Which I would give a higher mark than the Firepower. It's just a little bit more expensive than the Cisco Firepower.

    What do I think about the scalability of the solution?

    Scalability I would say, it has some limitations in the large deployment. I think Cisco is working to improve it.

    How are customer service and technical support?

    The technical support is the most valuable part of the solution. Cisco is number one in technical support. It's good technical support and this is actually a problem when we do the recruitment for some other products. Other products you are on hold forever and the support is not as good compared to Cisco. 

    Which solution did I use previously and why did I switch?

    I started with Juniper and the Palo Alto UTM Appliances, and many other vendors. But we do have a policy to use multiple vendors.

    How was the initial setup?

    Three years ago the setup was very complex. We had two different cables or software. It's like two appliances and one appliance. We had to set up ASA first and then set up Firepower and do the redirect from the old HTTP traffic, from the ASA for a detailed inspection by Firepower. Initially, it was complex. That was a few years back, but now with the newer version, it's just a piece of cake. Deployment took about 40 minutes. I also handle the maintenance myself.

    What about the implementation team?

    I do the implementation myself but in certain situations, because we have a risk assessment, it's a sort of risk transfer, so we have a contract with a certain integrator. We do have a contract, but I personally do the setup.

    What was our ROI?

    We have definitely experienced ROI. Because we have had many incidents where Cisco Firepower has caught malicious activities and triggered an alarm, a true positive alarm. Which is really good in our case.

    What other advice do I have?

    The solution is extensively used. We have a policy, from a permission security perspective, that you need to have diversity in the vendors and diversity in the products. We have some areas which are using these products and other areas which is using different products.

    It's a really good product, but you need to give it some time to form a sort of baseline, before enabling all the features. You need to study the product well because the product will decrease to around 35-40% of the actual product when you start to enable features. Like the application and inspection, the SSL decryption, the URL filtering, and the ITSM inspection. If you enable more features, you will decrease a little bit of the property. Whoever selects the device initially needs to plan which features they are going to use and they might have to shift the sizing of the product. They might need a high-end appliance or a smaller low-end appliance based on the features they are going to use.

    I would give the solution 9 out of 10. 

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Buyer's Guide
    Download our free Cisco Secure IPS (NGIPS) Report and get advice and tips from experienced pros sharing their opinions.
    Updated: March 2025
    Buyer's Guide
    Download our free Cisco Secure IPS (NGIPS) Report and get advice and tips from experienced pros sharing their opinions.