Try our new research platform with insights from 80,000+ expert users

Fortinet FortiSIEM vs Trellix ESM comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 18, 2024
 

Categories and Ranking

Fortinet FortiSIEM
Ranking in Security Information and Event Management (SIEM)
8th
Average Rating
7.6
Reviews Sentiment
6.7
Number of Reviews
73
Ranking in other categories
No ranking in other categories
Trellix ESM
Ranking in Security Information and Event Management (SIEM)
23rd
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of December 2024, in the Security Information and Event Management (SIEM) category, the mindshare of Fortinet FortiSIEM is 3.2%, up from 3.3% compared to the previous year. The mindshare of Trellix ESM is 0.8%, down from 1.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
 

Featured Reviews

HamedWasel - PeerSpot reviewer
It's cheaper than other solutions with the same features but lacks integration with many third-party vendors
FortiSIEM needs to expand its integration with third-party vendors. I don't know if Forcepoint has been added, but there were limited resources for integrating Forcepoint solutions when we implemented FortiSIEM. It integrates well with other Fortinet products and solutions from established cybersecurity companies like Palo Alto but doesn't integrate with some of the newer vendors. I would also like to see FortiSIEM add more of the features available in FortiSOAR. You need to buy two separate solutions to get these features, but they should all be available in one product.
Daniel Durian - PeerSpot reviewer
Helps to monitor and detect cyberattacks
The tool's effectiveness depends on how you define your log sources. To build visibility of incoming and outgoing traffic, you need logs from perimeter defense, firewalls, web application firewalls, and endpoint protection. With good traffic visibility, incident response time is really quick. Trellix ESM provides situation awareness. On the dashboard, I can see outbound and inbound communications to known threat hosts, IPS/IDS activity, and threat intelligence of the perimeter defense in the firewall. This information helps preempt attacks.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"There are things like dashboards and reports (pre-configured and custom) that let me know that things are operating the way they should be, and when they are not."
"Easy alert setup which enables different alerts in different categories."
"The most valuable features for us are the built-in reports and alerts, along with the extreme flexibility in reporting and rule generation."
"The tool's most valuable feature stems from the fact that I can see a complete analysis, like all the incidents that have happened, and it detects everything in real-time."
"It works well with medium to large-scale enterprises."
"FortiSIEM allows you to match IPs with threat intelligence feeds from sources like Kaspersky or Anomali, adding valuable context."
"Fortinet FortiSIEM needs to provide better API integrations to users."
"The CMDB and the device discovery features are most valuable."
"McAfee as a whole is a good solution."
"Trellix ESM utilizes fewer human resources and improves security and visibility."
"It is a good central viewpoint for issues. These can then be investigated in more detail on the subnet server(s)/endpoints."
"The most valuable feature is for the security operation center because it provides visibility of all traffic within the company infrastructure."
"Compared to other solutions, the user interface is good."
"It can be easily deployed with the other solutions."
"It is easy to use and deploy. It comes with user-friendly manuals."
"The most valuable feature for us is that it comes with many correlations, reports, and dashboards already available. It's also very easy to use."
 

Cons

"They should enhance the solution's AI capabilities, including XDR and EDR."
"Improvements include making it easier for users to create their normalizers. Fortinet FortiSIEM uses XML for normalizing and parsing, which can be tedious and time-consuming. A simpler way of using regex could be helpful."
"It would be good if the solution offered even more configuration options, especially in relation to the VPN so that it continues to be a very flexible option."
"Customer support service could be better."
"The support of the product changed recently, and I don't think it's for the better. They should work to improve the support they offer to clients."
"The reporting feature is not very attractive for the upper management and I am not able to perform complex/nested queries."
"The solution needs to do a better job with third party integration. Right now, that's lacking on the solution. I specifically am talking about the AWS environment. Most of the AWS environment products do not have that capability to integrate."
"There is no proper guide for integration or configuration."
"I would like to see improvements to the user interface."
"The support from McAfee ESM could improve. They could improve the speed."
"Product-wise, adding accounts on a single data source by batch would be a really great help."
"I would like to see fingerprint recognition included in the next release of this solution."
"We cannot add new data sources to the most recent version."
"The solution needs to improve case management. The UI is confusing."
"The disk space needed for events is not clear. In all clients, we had at least more than 100GB free that we could not use."
"It cannot integrate with our Next-Generation Firewall and few applications such as Cisco ACI."
 

Pricing and Cost Advice

"If one is cheap and ten is expensive. I rate the tool's price as an eight out of ten. Compared with Splunk or Oracle, Fortinet is cheap."
"There is a need to make yearly payments towards the licensing charges attached to the product. The free version license of the product is available for two months."
"There are additional features that cost more than the standard licensing fees."
"The price of the solution is expensive. The license is scalable. If there are 10 devices it is simple to license."
"We pay for a license for FortiSIEM. We pay for the license and renewal."
"The price of Fortinet FortiSIEM is a lot less when compared to other solutions."
"Manageable, however would be better as pay as you go versus CapEX."
"Pricing is acceptable for more than 90% of our customers, as they normally get discounts."
"The pricing is good, and they are competitive compared to providers such as RSA and IBM QRadar."
"Regarding pricing, Trellix ESM is not that expensive. It's less than half the cost of IBM QRadar."
"It is an inexpensive product. We purchase its yearly license."
"You should buy the distributed option instead of the all-in-one for environments with more than 1000 end points."
"When compared to IBM Security QRadar and other similar platforms, the pricing of McAfee ESM is reasonable and comparatively less expensive."
"The price of McAfee ESM is higher than some of the other solutions. There are additional features that can be added at an additional fee."
"The price is good. It's moderate. We follow a pay-as-you-go model. There are different models available, and they can also be monthly. You can choose monthly or yearly. It's very flexible. If our existing customers exceed the current plan, you can just call McAfee and get it extended."
"The cost is all included. The finance department handles the financial part, and we mostly don't get involved in it."
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Comparison Review

VS
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Computer Software Company
17%
Financial Services Firm
8%
Government
7%
Manufacturing Company
7%
Educational Organization
76%
Financial Services Firm
4%
Computer Software Company
3%
Government
3%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Fortinet FortiSIEM?
Fortinet FortiSIEM needs to provide better API integrations to users.
What is your experience regarding pricing and costs for Fortinet FortiSIEM?
Fortinet FortiSIEM is high-priced. Previously, its licensing model required separate licenses for devices, agents, and EPS, which was quite rigid. The revised model is subscription-based and more f...
What needs improvement with Fortinet FortiSIEM?
FortiSIEM is a bit resource-hungry, so work should be done on hardware resource utilization to consume less hardware. Another major problem is its licensing model, which initially required separate...
What do you like most about McAfee ESM?
The solution's technical support is great.
What is your experience regarding pricing and costs for McAfee ESM?
Regarding pricing, Trellix ESM is not that expensive. It's less than half the cost of IBM QRadar.
What needs improvement with McAfee ESM?
The product is mature and needs little improvement, but we could enhance the customized dashboarding based on use cases.
 

Also Known As

FortiSIEM, AccelOps
McAfee ESM, NitroSecurity, McAfee Enterprise Security Manager
 

Learn More

Video not available
 

Overview

 

Sample Customers

FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
San Francisco Police Credit Union, Wªstenrot Gruppe, Volusion, California Department of Corrections & Rehabilitation, Government of New Brunswick, State of Colorado, Macquarie Telecom, Texas Tech University Health Sciences Center, Cologne Bonn Airport
Find out what your peers are saying about Fortinet FortiSIEM vs. Trellix ESM and other solutions. Updated: December 2024.
824,053 professionals have used our research since 2012.