Try our new research platform with insights from 80,000+ expert users

Forescout Platform vs Palo Alto Networks IoT Security comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 3, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Forescout Platform
Ranking in IoT Security
4th
Average Rating
8.4
Reviews Sentiment
6.5
Number of Reviews
78
Ranking in other categories
Network Access Control (NAC) (5th), Endpoint Compliance (4th), Extended Detection and Response (XDR) (21st)
Palo Alto Networks IoT Secu...
Ranking in IoT Security
3rd
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
11
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of February 2026, in the IoT Security category, the mindshare of Forescout Platform is 8.3%, down from 15.6% compared to the previous year. The mindshare of Palo Alto Networks IoT Security is 6.6%, down from 7.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
IoT Security Market Share Distribution
ProductMarket Share (%)
Palo Alto Networks IoT Security6.6%
Forescout Platform8.3%
Other85.1%
IoT Security
 

Featured Reviews

AshishKumar Rai - PeerSpot reviewer
Security Consultant at a tech vendor with 10,001+ employees
Comprehensive visibility has strengthened endpoint control and automated threat response across networks
When it comes to improving Forescout Platform, I have faced some issues recently, particularly with the switch integration part. When integrating a switch, it asks for the vendor type, and often it does not match. For example, one series of HP switches may not be found in that vendor list. This leads to frustration because you have to check again with different HP models, and once you integrate a switch, you cannot edit the vendor list without removing it. Other issues are being worked on, particularly related to switch integration. I believe they will be fixed in the next upgrade or patch fix. There are no major issues, but the configuration changes needed for the switch model are necessary, and I think it would help if during integration, an admin user could check the password or credential used, as they currently cannot see the password after it is entered and saved.
Engineerinfosec67 - PeerSpot reviewer
Presale Engineer at Westcon-Comstor
Recognizing and classifying devices with AI and machine learning boosts security without extra network controls
Palo Alto Networks IoT Security integrates with a cloud-based engine that uses artificial intelligence and machine learning for device recognition and classification based on traffic types. This adaptability, which does not rely strictly on a static database, allows for identifying a wider range of devices. The behavior-based identification of devices enhances the capabilities of security controls, extending the network security platform's recognition capacity without deploying a separate network access control system.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"This solution can be used to organize guest portals, integrate switches, and create policies. Some of its standard use cases also include completing key process upgrades and anti-virus of Windows OS."
"Its feature that I have found most valuable is that it is very granular. You can configure granular controls just as you want those policies to be implemented. It gives you that flexibility to go granular in how you want your controls to be implemented. That's something I like about it."
"The Forescout Platform's most valuable features include its agentless configuration, which allows for easy integration with switches, and its broad customizability of rules and conditions for policy configuration. By leveraging its Network Access Control capabilities, the tool controls network access, allowing administrators to enforce policies tailored to the organization's needs."
"The most valuable feature of the Forescout Platform is the large capacity it can handle. Additionally, the interface of the platform is good."
"The most valuable feature is the blocking of USB devices."
"The user management has been very easy for the most part."
"Emergency response, risk assessment information to get a view of the of the vulnerability."
"The stability is amazing for the Forescout Platform. We have been using Forescout for four years, and no one complained about the stability."
"This solution has been most valuable for establishing a VPN and implementing allow/deny rules. It has also enabled us to create security policies. It is an easy solution to customise when it comes to creating templates and pulling reports."
"It is simple to use. We just need to enable features and then configure IoT policies."
"I like the threat information, and we can share the logging data with Cortex Data Lake."
"Palo Alto is valued for its GlobalProtect feature, which offers a range of security options, including user ID mapping and VPNs."
"I find Palo Alto Networks IoT Security to be highly responsive, and its separate management and data planes are a major advantage."
"The stability is pretty good; it's a very solid solution, so if customers are looking for an IoT/OT solution, they should consider Palo Alto Networks IoT Security."
"From a security standpoint, it provides a comprehensive range of standard security features that align with our requirements."
"The key strength of Palo Alto firewalls lies in their application-based approach, offering a much finer level of control compared to traditional firewalls."
 

Cons

"For the user, the policy that they have implemented sometimes needs adjustments. Sometimes the features that the customer asks for aren't involved in the main installation, and I need to bolt an add-on in. However, I never know if this policy is the right one when I do this."
"When adding what is in scope to a policy, it would be nice if you could select multiple policies instead of one policy at a time to add what is in the scope for network segmentation. I have found that during the install and configuration of the policies that if you want to modify multiple policies or enable multiple policies that you need to define what is in the scope (IP range or segments) one rule at a time. This caused some slow downs when implementing policies."
"Can be expensive if it's only being used for one feature."
"The solution should include integration with other firewalls."
"The solution's customer support is bad and should be improved."
"For improvements, I think technical support could be enhanced. The time zone difference makes remote support difficult - I'm in Indonesia, and they're in the US. Maybe the Forescout Platform could provide engineers from Asia Pacific."
"We experienced some detection issues when checking compliance for the Sophos agent."
"This solution is not that easy to scale but this depends on a company's needs."
"Essentially, this solution focuses on data analysis and cannot perform any physical actions."
"It would be beneficial to have a more centralized and user-friendly platform that could consolidate all the necessary information, which proved challenging during the initial POC phase."
"I had to call the support because there were some devices that were not showing up."
"Palo Alto Networks IoT Security's reporting capabilities are less comprehensive and robust than those provided by Cisco."
"There can be more automation in terms of security and detection. It is already good."
"It would be beneficial if Palo Alto IoT Security could integrate with Let's Encrypt for free SSL certificates."
"The reporting for this solution could be improved. The logs we receive are only saved for one week. We would like to have the database timeframe increased to a month or two for historical reporting as well as increased storage capabilities to support this data and reporting."
"While not overly complex, its usability could be enhanced, making it a more intuitive experience for everyone."
 

Pricing and Cost Advice

"Forescout is more expensive than Cisco because Cisco gives high discounts."
"The solution’s pricing is fine."
"It might not be the cheapest solution, but you get what you pay for."
"You can have a flexible license depending on your environment."
"The fact that we were allowed to spin up as many servers as we had need of to support our geographic requirements while paying for licensing as an enterprise truly set Forescout apart from the crowd and improved the way we could design our access."
"For one license, we pay around 3,000 Indian rupees."
"Forescout Platform is on the expensive side."
"It is expensive because you have to pay for their CSM, the customer's access manager, and their professional services on top of that, and they charge you roughly $400 per hour, which is overhead."
"The pricing for Palo Alto Networks IoT Security is a bit high."
"The initial investment is substantial, but the renewal costs make it financially unsustainable."
"While Palo Alto Networks IoT Security might cost more than some competitors, its features and effectiveness justify the price tag."
"The successful migration trend suggests that Palo Alto provides a superior cost-benefit ratio for firewall solutions."
report
Use our free recommendation engine to learn which IoT Security solutions are best for your needs.
882,744 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Manufacturing Company
12%
Financial Services Firm
11%
Computer Software Company
9%
Government
8%
Performing Arts
14%
Manufacturing Company
11%
Government
7%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business30
Midsize Enterprise10
Large Enterprise44
By reviewers
Company SizeCount
Small Business3
Large Enterprise7
 

Questions from the Community

What advice do you have for others considering Forescout Platform?
Forescout is a very powerful NAC product that does not rely on port level configuration. It can detect and block unauthorized devices very quickly. But it has a lot of capabilities and really would...
What advice do you have for others considering Forescout Platform?
I would rate the Forescout Device and Visibility Control Platform at a six out of ten.
What advice do you have for others considering Forescout Platform?
I recommend doing a compression demo. If people use it, they will buy it. So they have to see the product in place. That's the main recommendation is to do a proof of concept. If they do, they will...
What needs improvement with Palo Alto Networks IoT Security?
One thing I communicated to them is that they need to provide a managed update for their IoT devices.
What is your primary use case for Palo Alto Networks IoT Security?
I use it for one of my customers, and my role is to help my customer with the solution. They use it for their IoT devices in the field, and they have a lot of sensors out there for their heating eq...
What advice do you have for others considering Palo Alto Networks IoT Security?
The pricing is not that bad. I would rate this solution an 8 out of 10.
 

Also Known As

Forescout Platform, CounterACT for Endpoint Compliance, ForeScout CounterACT
No data available
 

Overview

 

Sample Customers

NHS Sussex, SAP, SEGA, Vistaprint, Miami Children's Hospital, Pioneer Investments, New York Law School, OmnicomGroup, Meritrust
Information Not Available
Find out what your peers are saying about Forescout Platform vs. Palo Alto Networks IoT Security and other solutions. Updated: February 2026.
882,744 professionals have used our research since 2012.