Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs Tufin Orchestration Suite comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024
 

Categories and Ranking

AWS Firewall Manager
Ranking in Firewall Security Management
8th
Average Rating
7.8
Reviews Sentiment
7.6
Number of Reviews
8
Ranking in other categories
No ranking in other categories
Tufin Orchestration Suite
Ranking in Firewall Security Management
2nd
Average Rating
8.0
Reviews Sentiment
7.3
Number of Reviews
183
Ranking in other categories
Container Security (28th)
 

Mindshare comparison

As of December 2024, in the Firewall Security Management category, the mindshare of AWS Firewall Manager is 5.3%, down from 7.2% compared to the previous year. The mindshare of Tufin Orchestration Suite is 21.7%, up from 21.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management
 

Featured Reviews

Bassam Khoreich - PeerSpot reviewer
Automated security operations streamline network protection
I use AWS Firewall Manager primarily for cybersecurity solutions, particularly for AWS Firewall Manager AWS Firewall Manager can be the control plane for multiple deployed applications like CloudFront and any other network firewall, BPF, and VPC. Everything can be managed with one dashboard. It…
Amroy Lumban Gaol - PeerSpot reviewer
A flexible, very secure solution that works well in Layer 2 environments
Integration for Layer 2 devices could be improved because it requires manual scripting. Other layers are very simple to integrate. It would be a benefit to have a form field for firewall names, user names, and passwords which then auto integrate. Licensing options are confusing and require additional fees for high availability. Competitors include high availability with their standard licenses.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Once this solution is set up, we hardly have to touch it."
"The product is highly reliable."
"Also, the strength of the community is invaluable."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"The interface is intuitive and it is easy for the users."
"The most valuable feature is scaling, which allows you to deploy one configuration and scan and deploy it across the network. The automated policy application feature also streamlines security operations."
"We've scaled it to hundreds of firewalls."
"It provides a great visibility around the roots: Root implementing which can be done, roots that have changed, and what has been done. So, it's pretty useful when you have an audit going on."
"All the basic functions work well."
"Visibility is its largest and most valuable feature. You can see everything or all the devices on the network for each customer. It provides you a larger view of what might be wrong with the network and how you can improve it with firewall rules, etc. If you are talking about secure change, being able to automate the entire change process is pretty much the winner for us. It is going to really reduce the time that it takes for us to do changes, and we can just go out and get more customers."
"It offers automation capabilities that are very helpful, especially for network security orchestration and applying policies."
"There are a lot of benefits to using the reporting. It gives us duplicate objects, duplicate services, shadow firewall rules, and the firewall rules not needed for a given number of days or months."
"The Automatic Policy Generator saves time because we are able to identify the required policy when a client doesn't know what he needs."
"We use Tufin to clean up our firewall policies. It benefits us, because you can run a query for whatever your cleanup criteria is, e.g., "Has it been hit in 90 days?" It displays the list, then you can see the rules right there. If you want to get rid of it (or highlight it), then it creates a ticket that goes ahead and flags them all as disabled. While you can delete them, we always disable first. Then, we have a strip that comes back, and if it's been disabled for 90 days, then the system will remove them."
 

Cons

"Enabling and configuring the logging is not that straightforward."
"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"The product could benefit from improvements in the user interface and integration capabilities."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"I would like to see AWS add some UTM features to the firewall. It would also be great if AWS Firewall had native IPS/IDS. They have the separate IPS/IDS, GuardDuty."
"It needs to be more employee-friendly, and the security management could be more efficient."
"The system should be more customizable."
"Our initial setup was complex from two dimensions, because we were deploying it globally and had to have a centralized view, but a distributed approach. We had it in Asia and North America, causing a slightly complicated approach."
"USP does not support VPNs, which is a big thing for us, so we haven't been able to utilize it."
"I would like to see more configuration options on next-generation firewalls, defining possible standards for devices."
"The two main negative points with Tufin Orca are the absence of full support and that accommodation of files and tools is not provided in a good way."
"I would rate their reports as a four out of ten. I don't like the way that they are shown. It is too hard to export and send them to our clients."
"I would like something that addresses security in the cloud."
"We would like to see automation metrics, from a reporting standpoint. We would also like to see automation of site-to-site VPN tunnels. We would like to see automation of Check Point application-based firewall rules."
"I don't get the full visibility. There are a lot of improvements which can be done in terms of visibility."
 

Pricing and Cost Advice

"It is a cost-efficient product."
"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"The AWS Firewall Manager is a little on the costly side."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"We've seen a decrease of about 50 percent in the overall time it takes to complete a firewall change."
"I suggest talking with Tufin about the flexibility of the pricing structure."
"The solution has helped us to reduce the time it takes to make changes. With Tufin, it takes ten to 15 minutes. Before, it was 30 minutes or more."
"Tufin makes things a little easier. It lessens the amount of manual work which we have to do. It has a lot of benefits in terms of revenues, profits, employee costs, and operational costs. We have already seen return on investment."
"Its price is reasonable, but it could be lower. It has been cost-effective for us. We have a contract for three years."
"We did look at less expensive solutions than Tufin, but being a corporation, this solution made sense."
"There is no issue with the pricing because we used a VM. That kept the cost low, as compared to an appliance."
"Price could always be better, but there are always consequences."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
824,067 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
19%
Financial Services Firm
15%
Manufacturing Company
10%
Government
6%
Financial Services Firm
19%
Computer Software Company
17%
Manufacturing Company
9%
Retailer
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about AWS Firewall Manager?
It has centralized cloud firewall management rules. It provides compliance in tracking and reporting.
What is your experience regarding pricing and costs for AWS Firewall Manager?
On a scale of one to ten, I would rate the pricing for AWS Firewall Manager as seven, where one is cheap and ten is expensive.
What needs improvement with AWS Firewall Manager?
AWS Firewall Manager should be open to manage other third-party appliances as well.
What do you like most about Tufin?
The most valuable feature of Tufin is security auditing. We are able to check the rules and compliance of the company, for example, what is allowed or not. We are able to check the rules over diffe...
What is your experience regarding pricing and costs for Tufin?
Tuffin is expensive, and we have to explain to our customers the benefit for them to purchase. If we explain the benefits in the correct way they do not mind the price. We typically do costing for ...
What needs improvement with Tufin?
The reporting function could improve in Tufin. For our clients with companies that have strong compliance, reporting privacy data is mostly a problem. In the IT department, private data needs a fun...
 

Also Known As

No data available
Tufin SecureCloud
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
3M, AT&T, Blue Cross Blue Shield, BNP Parabas, ConocoPhillips, Deutsche Bank, GE, IBM, Pfizer, United States Postal Service 
Find out what your peers are saying about AWS Firewall Manager vs. Tufin Orchestration Suite and other solutions. Updated: December 2024.
824,067 professionals have used our research since 2012.