Try our new research platform with insights from 80,000+ expert users

ArcSight Logger vs Fortinet FortiAnalyzer comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Logger
Ranking in Log Management
29th
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
31
Ranking in other categories
No ranking in other categories
Fortinet FortiAnalyzer
Ranking in Log Management
8th
Average Rating
8.0
Reviews Sentiment
7.6
Number of Reviews
93
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2025, in the Log Management category, the mindshare of ArcSight Logger is 0.9%, down from 1.4% compared to the previous year. The mindshare of Fortinet FortiAnalyzer is 2.4%, down from 3.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Geraldo Freitas - PeerSpot reviewer
Enhances our security incident investigation but not good for correlation
Investigation is good when you know what you want to search for in Logger. The most difficult part is parsing the logs and configuring the parsers. For investigation, it's good. For correlation, it's not good. We use Sentinel, and Sentinel has pre-built use cases that are much easier to configure. So, it enhances our security incident investigation. We have inbound integration, but configuring the parsers is sometimes very difficult. We only have two use cases where we have a correlation set up. We send the information to Check Point to block IP addresses when we see a lot of blocks from the same source. We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist. So, it offers the ease of integration.
Boaz Katabazi - PeerSpot reviewer
Enables flexible and comprehensive reporting across all syslog-enabled devices
I mainly use it for reporting. It also integrates other security solutions around. It can report onto anything that has a syslog on the network. It doesn't have to be a Fortinet product. It integrates within FortiGate and you can find the reports there. It's a very flexible and rich tool, providing custom reports along with default reports.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It provides in-depth information on business activities once we log into the system."
"ArcSight provides the basic information that we want."
"It's a robust, mature product and you can do some really complex operations and analytics."
"I am impressed with the product's ability to pick up logs. It also has UEBA which has reduced the time to take charge of the events."
"The technical support team is good...It is a scalable solution."
"We check a lot of logs in ArcSight Logger because we're running a massive database platform."
"The solution provides information about the risk factors."
"We haven't had any crashes or bugs. It is stable."
"FortiAnalyzer helps us discover what's happening on the network."
"We have the most data visibility."
"What I like the most is the monitoring system."
"The solution is quite easy to deploy."
"The report templates are valuable. It works very well, and integrations also work well."
"With Fortinet FortiAnalyzer, it is easy to get reports and read specific logs."
"The initial setup is easy, and the deployment is fast."
"It is one of the best firewall products."
 

Cons

"The product's connectors should work better and the user manuals need an update."
"It is really difficult to work in ArcSight Logger, as it is very slow."
"The solution should make it possible to integrate network analysis features."
"It would be better if the product is cheaper."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"ArcSight has been sold two or three times, and the quality has decreased."
"The next release should have AI capabilities."
"I think the ArcSight team should try to simplify legacy products for the customers, because that product is not easy to use or to work with. It needs more more competency or appeal to use. We hope Micro Focus is trying to resolve this."
"Fortinet FortiAnalyzer can improve by introducing integration with other Fortinet solutions with automation with one interface would be helpful."
"Fortinet has a new bug every month, which needs to be improved."
"The following could be better: operation and maintenance, high-availability architecture, and management link embedded in the transmission link."
"We should be able to do the patch upgrades in a centralized manner. This functionality is currently not there. It would be good to be able to do the firmware updates from one place and at the same time. Currently, if we want to update all appliances, we require FortiManager, which is another solution from Fortinet. Its documentation can be improved. It will be helpful for implementing the product and gaining knowledge for management purposes."
"The solution is expensive."
"I would like to see an improvement in the technical support. Stronger authentication will also be a plus."
"It is very important that FAZ can support FortiController as the architecture designed for the network. FortiController should be registered in FAZ at least for event logs."
"I'm looking for something more efficient to analyze different foreign things. That's why FortiSIEM could compete with FortiAnalyzer."
 

Pricing and Cost Advice

"The pricing is quite harsh."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"I would rate the product a seven out of ten since it's an enterprise product."
"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"ArcSight is an expensive solution."
"We have a lifetime license, so we don't pay a monthly fee."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"The price is quite expensive. Fortinet products are very expensive. That is something which they should also look at, because if you compare Fortinet product to, say, Sophos for example, Fortinet is really high and that's the only thing which is a drawback for most users."
"The price is not expensive when compared to other solutions like Palo Alto."
"The pricing is reasonable."
"We pay approximately $11,000 for a three-year license to use Fortinet FortiAnalyzer. When we compared the price of this solution to others it is not expensive. Palo Alto is a more expensive solution."
"I rate the product's price a six on a scale of one to ten, where one is cheap, and ten is expensive."
"Compared to other products, the price is a little bit high."
"Fortinet FortiAnalyzer is very expensive."
"The number of licenses required directly corresponds with the number of devices connected."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
831,997 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
19%
Computer Software Company
16%
Government
10%
Manufacturing Company
6%
Computer Software Company
17%
Government
8%
Financial Services Firm
8%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about ArcSight Logger?
We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.
What is your experience regarding pricing and costs for ArcSight Logger?
The pricing isn't the problem. We have a lifetime license, so we don't pay a monthly fee.
What needs improvement with ArcSight Logger?
The solution has room for improvement. We're currently upgrading to the newer version, where they have something like Kafka, a hub for all solutions feeding information into Logger. However, I thin...
What do you like most about Fortinet FortiAnalyzer?
The reporting features, which offer customization, real-time insights, and compliance support, are particularly noteworthy aspects.
What is your experience regarding pricing and costs for Fortinet FortiAnalyzer?
I am a technical engineer, so I am not privy to pricing details.
What needs improvement with Fortinet FortiAnalyzer?
Sometimes, there is a problem with CPU consumption, where one process consumes 100%, and I need to restart FortiAnalyzer to fix this. I am not familiar with the processes of scalability.
 

Also Known As

Micro Focus Arcsight Logger, HPE Arcsight Logger
No data available
 

Overview

 

Sample Customers

China Merchants Bank, Bank AlJazira, Banca Intesa
General Directorate of Information Technology
Find out what your peers are saying about ArcSight Logger vs. Fortinet FortiAnalyzer and other solutions. Updated: January 2025.
831,997 professionals have used our research since 2012.