Try our new research platform with insights from 80,000+ expert users

ArcSight Logger vs Fortinet FortiAnalyzer comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Logger
Ranking in Log Management
31st
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
31
Ranking in other categories
No ranking in other categories
Fortinet FortiAnalyzer
Ranking in Log Management
8th
Average Rating
8.0
Reviews Sentiment
7.6
Number of Reviews
93
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of March 2025, in the Log Management category, the mindshare of ArcSight Logger is 0.8%, down from 1.2% compared to the previous year. The mindshare of Fortinet FortiAnalyzer is 2.1%, down from 3.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Geraldo Freitas - PeerSpot reviewer
Enhances our security incident investigation but not good for correlation
Investigation is good when you know what you want to search for in Logger. The most difficult part is parsing the logs and configuring the parsers. For investigation, it's good. For correlation, it's not good. We use Sentinel, and Sentinel has pre-built use cases that are much easier to configure. So, it enhances our security incident investigation. We have inbound integration, but configuring the parsers is sometimes very difficult. We only have two use cases where we have a correlation set up. We send the information to Check Point to block IP addresses when we see a lot of blocks from the same source. We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist. So, it offers the ease of integration.
Boaz Katabazi - PeerSpot reviewer
Enables flexible and comprehensive reporting across all syslog-enabled devices
I mainly use it for reporting. It also integrates other security solutions around. It can report onto anything that has a syslog on the network. It doesn't have to be a Fortinet product. It integrates within FortiGate and you can find the reports there. It's a very flexible and rich tool, providing custom reports along with default reports.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the search capability, which is simple to use."
"I am impressed with the product's ability to pick up logs. It also has UEBA which has reduced the time to take charge of the events."
"In terms of ArcSight Logger's most valuable feature, it is their scalability. ArcSight's real advantage is its scalability because they have two layers, including the logger layer."
"Our return on investment for implementing ArcSight Logger over the past 12 months has been positive."
"The ability to customize the solution in great detail is its most valuable features. We can customize the use cases and also have the ability to do scripting. We can personalize our dashboard as well. The scalability the solution offers is quite impressive."
"The technical support team is good...It is a scalable solution."
"We check a lot of logs in ArcSight Logger because we're running a massive database platform."
"The log digestion features from threat intelligence platforms like Recorded Future or Talos are valuable."
"Log collection is the most valuable. The UI looks great. It has a very good look and feel. We don't have the need to use solid state drives. We use mechanic drives, and we don't see any performance issues, so basically, it is doing fine."
"Many of my clients are financial institutions that transmit files from around the country across a VPN. In a setup like this, it's helpful to have a centralized dashboard to manage firewalls and other security solutions across a distributed environment. You can do all sorts of analysis and configure it to trigger alarms."
"Technical reports clearly identify system checks, locations and areas, how many times things escape, which firewall is affected, and source IDs."
"The IBS (Intent Based Segmentation) and application web filtering are the most valuable aspects of the solution."
"The traffic log information we receive from Fortinet FortiAnalyzer is valuable."
"The most valuable is its robust and comprehensive reporting functionality, providing a thorough overview of various metrics."
"I have found incident management and also identifying new threats, analyzing the network traffic, and finding out the issues with the network traffic such as any security issues to be valuable. I also like the compliance reports."
"Its robust security and performance are the two main features. We also use the log reporting feature."
 

Cons

"The solution should make it possible to integrate network analysis features."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"The platform is quite expensive. They should reduce its cost."
"It would be better if the product is cheaper."
"The solution must provide readymade connectors for different applications."
"In the next release, I want to see more intelligence."
"ArcSight has been sold two or three times, and the quality has decreased."
"In terms of what could be improved, sometimes it's lagging and it also has some graphical issues with the GUI."
"Though FortiAnalyzer has improved over the last few versions, the user interface still has room for improvement. It's a bit dated-looking."
"Pricing should be about 10-20% lower."
"The deployment is complex and has room for improvement."
"In future releases, we'd like to see more granular reporting. The reports on offer right now are pretty short."
"Software reports are good but should match the dashboard and include top-level output instead of just base or low-level devices."
"The following could be better: operation and maintenance, high-availability architecture, and management link embedded in the transmission link."
"The cloud version can be expensive. If the customers could get the resources to store the logs on-premises, it would be much better."
 

Pricing and Cost Advice

"We have a lifetime license, so we don't pay a monthly fee."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"I would rate the product a seven out of ten since it's an enterprise product."
"The pricing is quite harsh."
"ArcSight is an expensive solution."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"The price is quite expensive. Fortinet products are very expensive. That is something which they should also look at, because if you compare Fortinet product to, say, Sophos for example, Fortinet is really high and that's the only thing which is a drawback for most users."
"When you compare with other firewall vendors, FortiAnalyzer is quite competitive in pricing."
"The product's prices are a bit higher than the other solutions available in the market, but I would say that the tool's quality and support are areas that are good."
"The pricing of this solution is fair, and it is based on what you can manage."
"The cost and pricing should be in accordance with the calculation of log storage capacity for a time period required for historical analysis."
"The company's choice to utilize Fortinet FortiAnalyzer was based on the overall security strategy and compatibility with existing solutions. It was deemed the best fit as it provided a centralized point of visibility for all of their security solution, including Fortinet FortiGate firewall, FortiClient, Forti EMS, and FortiAP. The company conducted a thorough evaluation of various solutions in the market but found that none of them could fully integrate and manage all their solutions as effectively as Fortinet FortiAnalyzer."
"The program is expensive."
"Its price is okay for us. Fortinet products are cheaper than other solutions."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
839,422 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
19%
Computer Software Company
16%
Government
8%
Manufacturing Company
7%
Computer Software Company
17%
Government
8%
Financial Services Firm
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about ArcSight Logger?
We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.
What is your experience regarding pricing and costs for ArcSight Logger?
The pricing isn't the problem. We have a lifetime license, so we don't pay a monthly fee.
What needs improvement with ArcSight Logger?
The solution has room for improvement. We're currently upgrading to the newer version, where they have something like Kafka, a hub for all solutions feeding information into Logger. However, I thin...
What do you like most about Fortinet FortiAnalyzer?
The reporting features, which offer customization, real-time insights, and compliance support, are particularly noteworthy aspects.
What is your experience regarding pricing and costs for Fortinet FortiAnalyzer?
I am a technical engineer, so I am not privy to pricing details.
What needs improvement with Fortinet FortiAnalyzer?
Sometimes, there is a problem with CPU consumption, where one process consumes 100%, and I need to restart FortiAnalyzer to fix this. I am not familiar with the processes of scalability.
 

Also Known As

Micro Focus Arcsight Logger, HPE Arcsight Logger
No data available
 

Overview

 

Sample Customers

China Merchants Bank, Bank AlJazira, Banca Intesa
General Directorate of Information Technology
Find out what your peers are saying about ArcSight Logger vs. Fortinet FortiAnalyzer and other solutions. Updated: January 2025.
839,422 professionals have used our research since 2012.