Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs AlgoSec comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AlgoSec
Ranking in Firewall Security Management
1st
Average Rating
9.0
Reviews Sentiment
6.9
Number of Reviews
187
Ranking in other categories
No ranking in other categories
AWS Firewall Manager
Ranking in Firewall Security Management
9th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
11
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Firewall Security Management category, the mindshare of AlgoSec is 21.1%, down from 21.9% compared to the previous year. The mindshare of AWS Firewall Manager is 3.3%, down from 5.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
AlgoSec21.1%
AWS Firewall Manager3.3%
Other75.6%
Firewall Security Management
 

Featured Reviews

Prasad Boddu - PeerSpot reviewer
project manager at FedEx
Automation has transformed firewall changes and has reduced audit effort and breach risk
The best features AlgoSec offers include automation of firewall rule changes, centralized security policy management, and improved compliance and audit readiness. AlgoSec has positively impacted my organization by allowing us to see faster change management, reduced audit costs, and reduced breach risk. I can share specific metrics indicating that through OpEx savings, we have been able to reduce firewall rule analysis and rule change handling time by 60 to 90 percent. This has led to fewer manual tasks and a smaller workload on our network and security teams. We have seen a return on investment with reduced audit costs, less time spent preparing evidence manually, and reduced breach risk. I would like to add that on centralized security policy management, it reduces complexity in multi-vendor environments.
Venda E - PeerSpot reviewer
Cloud Option Engineer at a tech vendor with 10,001+ employees
Centralized security policies have streamlined audits and ensure consistent protection by default
One area for improvement is the reporting and customization option. The compliance reports are helpful, but having more granular insights or export options would make it even easier to use during audits. Also, support for more third-party integration could improve flexibility. Another improvement I need to see is a smoother setup experience. Some of the initial configuration steps, especially around the organization and permissions, can feel complex. A more guided setup or clear UI explanation would make it easier for teams to adopt quickly. One more improvement would be better alerting options. Right now, we mostly rely on AWS Security Hub or CloudWatch for detailed alerts. Having more built-in, real-time notification directly from AWS Firewall Manager would make it easier to monitor policy violations without extra setup.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"With the solution, we can uncover bottlenecks, streamline, and clean up our firewall rules."
"It helps in regulatory compliance metrics and overall firewall security optimization."
"The most valuable is helping us determine where our rules are too permissive. Based on previous human review of our rules, they are very cursory. We know why we do something, but we don't get into the details of whether the rule is nice and tight. What Firewall Analyzer lets us do is understand the risks presented by our rules. The tool does a calculation of all the traffic that could be allowed and we can match that to whether it should be allowed."
"AlgoSec gives organizations the visibility and intelligence needed to make application connectivity changes confidently while managing risk and compliance."
"I think finding the firewall's rules with the highest risk is valuable."
"I like that the firewall will analyze the tools within the risk profiles and the policy optimizations within the AFA. This can also be used to create reports for the customer with the risk profiles to optimize the firewall rules."
"Unused rules, hidden rules, and dangerous combinations of rules are easily found and tracked by using AlgoSec."
"Both analysis and Implementation engines/features are found to be very much valuable since they helped the client to manage the show better."
"Overall, it improved our security posture and made audits much easier."
"The most valuable feature is scaling, which allows you to deploy one configuration and scan and deploy it across the network. The automated policy application feature also streamlines security operations."
"Once this solution is set up, we hardly have to touch it."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"We work with compliance monitoring in the product, which is helpful for identifying framework-based misconfigurations, as it can tell you where to deploy firewall policies based on the frameworks."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"Also, the strength of the community is invaluable."
 

Cons

"My only concern is related to how they count the number of licenses. We have active and standby devices. If someone adds the standby device by mistake and does an analysis, it consumes two licenses. They need to improve the way they are counting the number of licenses because someone can do analysis on a standby device by mistake. We need a way to fix or solve this issue."
"The FireFlow template does not allow the user to perform external actions like sending an email or triggering a specific action."
"The initial cost was high for us, but we have always been behind the tech curve and cost has always been the limiting factor."
"I would like to seem improvements in performance and software stability."
"It gives you the capability to make changes to hundreds of your firewalls at the same time, but big enterprises have change management policies. Change managers will never allow you to make changes to more than 10 devices at the same time, which is a feature in AlgoSec. Because, what if something goes wrong, then you have to roll back and figure out what caused the impact, e.g., which firewall did not work well. Doing that post-mortem becomes a difficult thing. So, change automation on a firewall is actually defeating the purpose of the change management policies in any organization. If you run a bank, you will not allow anyone to make changes at the same time from a single click for 10 firewalls. The bank will never allow this."
"There could be improvements in the analysis between internal zones, such as internal to DMZ or guest to DMZ."
"One improvement I see for AlgoSec is implementing an optimized rule cleanup and recertification process to address the challenge of companies neglecting clean-up recommendations."
"It doesn't support all features on our firewalls. For instance, planning changes, which include net rules, doesn't work. It didn't integrate so well with the ACI network."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"I would like to see AWS add some UTM features to the firewall. It would also be great if AWS Firewall had native IPS/IDS. They have the separate IPS/IDS, GuardDuty."
"The system should be more customizable."
"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
"Enabling and configuring the logging is not that straightforward."
"The product could benefit from improvements in the user interface and integration capabilities."
"It needs to be more employee-friendly, and the security management could be more efficient."
 

Pricing and Cost Advice

"The price is within the standard of security products."
"The licensing scheme should be done in a simpler way. For example, if we delete a firewall and want to add a new one, then the license doesn't get freed up automatically. You have to request a new license to customer support and install it. If you are testing new implementations, this can be cumbersome."
"Quality has a price."
"Price is not my concern. If a tool does its job, it is not my concern to obtain a good price for it. If a tool is needed, we are going to buy it."
"AlgoSec may be little pricier with its licenses, but it is probably better than any of other competitors."
"Initially, it was more expensive, but we managed to negotiate the price. It's about average now."
"I personally feel that the cost is quite expensive. AlgoSec is charging for each function, e.g., Active change, Application ABF license, etc."
"The price is adapted to the product's utilization for each company."
"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"It is a cost-efficient product."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"The AWS Firewall Manager is a little on the costly side."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
880,435 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
12%
Manufacturing Company
9%
Insurance Company
5%
Financial Services Firm
10%
Computer Software Company
7%
Comms Service Provider
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise31
Large Enterprise178
By reviewers
Company SizeCount
Small Business5
Large Enterprise8
 

Questions from the Community

What is your experience regarding pricing and costs for AlgoSec?
My experience with pricing, setup cost, and licensing indicates that while the migration cost can be higher, the cost is acceptable. It is cost-effective, but the setup is not very easy.
What needs improvement with AlgoSec?
AlgoSec has a bit of a learning curve. It requires training, especially to fully leverage application-centric workflows. In terms of needed improvements, I would like to mention the integration cha...
What is your primary use case for AlgoSec?
My main use case for AlgoSec at FedEx is to automate, optimize, and ensure compliance of firewall and network security rules across our hybrid environments. This tool gives us a single pane of glas...
What is your experience regarding pricing and costs for AWS Firewall Manager?
AWS licenses in general are expensive, as the overall suite of services that we buy from AWS goes in the range of tens of million dollars. The services we get are value for money; AWS has a pay-as-...
What needs improvement with AWS Firewall Manager?
The areas of improvement are definitely platform resiliency, as we have seen outages on the AWS backbone, and whenever there is an outage on the AWS backbone, it impacts all the services hosted on ...
What is your primary use case for AWS Firewall Manager?
We host our applications on the AWS platform, and to secure our boundaries, we are using AWS Firewall Manager, Web Application Firewall, and AWS Shield Advanced.
 

Overview

 

Sample Customers

Maersk, Delta Airlines, Chevron, General Motors, T-Mobile, Chevron, AT&T, BP, Bell Canada, HCA Healthcare, Morgan Stanley, Unilever, Nationwide Insurance Enterprise, US Bank, Microsoft 
Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Find out what your peers are saying about AWS Firewall Manager vs. AlgoSec and other solutions. Updated: December 2025.
880,435 professionals have used our research since 2012.