Try our new research platform with insights from 80,000+ expert users
Assistant Director at a university with 1,001-5,000 employees
Real User
Top 20
The rule creation, monitoring, and inspection profiles are great
Pros and Cons
  • "Fortinet FortiEDR's firewalling, rule creation, monitoring, and inspection profiles are great."
  • "Integration with Azure and SaaS provisioning tools could improve Fortinet FortiEDR."

What is our primary use case?

We use Fortinet firewalls for perimeter security at six to seven of our locations.

How has it helped my organization?

It provides extreme perimeter security, especially for VPN and application profiles, and seamless security monitoring through FortiAnalyzer.

As a firewall the solution is great, we never had any issues.

We saw time to value within three to four months of the firewall deployment.

What is most valuable?

Fortinet FortiEDR's firewalling, rule creation, monitoring, and inspection profiles are great.

What needs improvement?

Integration with Azure and SaaS provisioning tools could improve Fortinet FortiEDR.

Buyer's Guide
Fortinet FortiEDR
January 2025
Learn what your peers think about Fortinet FortiEDR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,997 professionals have used our research since 2012.

For how long have I used the solution?

I have been using Fortinet FortiEDR for almost five years.

What do I think about the stability of the solution?

The stability is generally good. We had one problem once, but otherwise, it has been good.

What do I think about the scalability of the solution?

I don't think Fortinet FortiEDR is scalable with other vendors and new cloud provisionings, such as Azure or other cloud providers. I need to evaluate it further.

How are customer service and support?

Technical support is good, but there are sometimes problems with reachability.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I used Check Point and Cisco firewalls in my previous companies. At my current company, we use Fortinet, which I find to be a good firewall.

How was the initial setup?

The initial deployment was complex, but that is expected in any firewall environment.

What about the implementation team?

We use a migrator for the implementation and they were good.

What was our ROI?

We have seen a return on investment over the past four years. We can be assured of the perimeter security system's stability and ability to sustain itself in good conditions.

What's my experience with pricing, setup cost, and licensing?

I'm not familiar with pricing, but it looks a bit costly compared to other vendors.

Which other solutions did I evaluate?

Fortinet FortiEDR was installed before I joined my organization but it was a good choice.

What other advice do I have?

I give Fortinet FortiEDR an eight out of ten.

We are looking for max solutions from vendors. We may look at VPN solutions as well.

Attending RSA is an opportunity to network and compare products from vendors around the world which are interesting.

Attending RSA gives us the opportunity to compare products and understand the latest technology. This is something that is really valuable.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Information Technology Support Specialist at Chemtrade Logistics
Real User
Straightforward, easy to maintain, and works as per our expectations
Pros and Cons
  • "It notifies us if there's any suspicious file on any PC. If any execution or similar kind of thing is happening, it just alerts us. It doesn't only alert. It also blocks the execution until we allow it. We check whether the execution is legitimate or not, and then approve it or keep it blocked. This gives us a little bit of control over this mechanism. Fortinet FortiEDR is also very straightforward and easy to maintain."
  • "They can include the automation for the realtime updates. We have a network infrastructure with remote sites. Whenever they send updates, they are not automated. We have to go into the console and push those updates. I wish it was more automated. The update file is currently around 31 MB. It could be smaller."

What is our primary use case?

We had a ransomware attack in 2017, and that's when we went with enSilo, which is now called FortiEDR. It helps us to detect the hash files and all that. So far, it's really good. It detects any kind of anomaly. If any installation is happening, it checks the process and everything else and lets us know how it works.

What is most valuable?

It notifies us if there's any suspicious file on any PC. If any execution or similar kind of thing is happening, it just alerts us. It doesn't only alert. It also blocks the execution until we allow it. We check whether the execution is legitimate or not, and then approve it or keep it blocked. This gives us a little bit of control over this mechanism.

Fortinet FortiEDR is also very straightforward and easy to maintain.

What needs improvement?

They can include the automation for the realtime updates. We have a network infrastructure with remote sites. Whenever they send updates, they are not automated. We have to go into the console and push those updates. I wish it was more automated. The update file is currently around 31 MB. It could be smaller.

For how long have I used the solution?

I have been using this solution for three years.

What do I think about the stability of the solution?

It is really good.

What do I think about the scalability of the solution?

It is scalable. Currently, around 1500 users are using it.

How are customer service and technical support?

The support has gone down a little bit since Fortinet acquired enSilo. Earlier, because they were a small company, they used to pay more attention to the customers and proactively contact us for certain things, like product updates. The support structure has now changed. Now, it's a big umbrella. Fortinet is a big fish, so they can't contact you as much because they have more clients. As enSilo, it was a smaller footprint, and it was kind of personalized support.

How was the initial setup?

The initial setup was simple. The deployment time depends on how big the implementation is. Ours is a big organization. It took us a week to deploy to our systems, and that's obviously because we were pushing those agents. Some of our sites are so remote that they can only have 1MB lines. So, when you push the agent, it obviously takes time.

What about the implementation team?

We have a small team of only seven people for implementation. One dev person deals with it.

What other advice do I have?

Overall, we are quite happy with this product. It basically works the way we want it since we have installed it. It's as per expectations. 

I would rate Fortinet FortiEDR a nine out of ten. 

Which deployment model are you using for this solution?

Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Fortinet FortiEDR
January 2025
Learn what your peers think about Fortinet FortiEDR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,997 professionals have used our research since 2012.
ChristianBenjamin - PeerSpot reviewer
Pre-Sales Engineer at Cable & Wireless Communications
Reseller
Top 5
A stable EDR solution for endpoint devices, but its installation from a central installation server could be improved
Pros and Cons
  • "Fortinet FortiEDR made our clients feel secure and more at ease, knowing that they had an EDR solution that would close the gap in their security posture."
  • "The solution's installation from a central installation server could be improved because the engineers had a little bit of trouble getting it installed from a central location."

What is our primary use case?

We had some customers looking for an EDR solution for their endpoint devices based on their company's security posture and standing. So Fortinet FortiEDR was recommended to them.

What is most valuable?

Fortinet FortiEDR made our clients feel secure and more at ease, knowing that they had an EDR solution that would close the gap in their security posture. Our clients are happy with the solution.

What needs improvement?

The solution's installation from a central installation server could be improved because the engineers had a little bit of trouble getting it installed from a central location.

What do I think about the stability of the solution?

Once it was up and running, customers didn't have any complaints about the product's stability.

What do I think about the scalability of the solution?

Fortinet FortiEDR's scalability is okay, and we like the product.

How was the initial setup?

I rate Fortinet FortiEDR a six out of ten for the ease of its initial setup. The engineers had some trouble setting up the solution, and they had to contact Fortinet to get some help.

What other advice do I have?

Overall, I rate Fortinet FortiEDR a seven out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Project Coordinator at ELECTUS
Real User
An effective endpoint that is easy to set up and simple to expand
Pros and Cons
  • "The stability is very good."
  • "We'd like to see more one-to-one product presentations for the distribution channels."

What is our primary use case?

The implementation that we have is on one municipality in Serbia with, for example, 300 plus users. It was the FortiGate F200 EDR solution with an appliance and the necessary one-year support.

What is most valuable?

The best features depends on the customer. Our primary goal is to our customers. Mostly our customers use this as an endpoint solution for the workstations and really find it quite effective.

The stability is very good. 

It is scalable. 

The solution is pretty straightforward to set up.

What needs improvement?

We'd like to see more one-to-one product presentations for the distribution channels. You must know the technical issues and technical possibilities of this solution very well. It would be nice to have some sort of help to explain the potential of the product.

For how long have I used the solution?

I've been using the solution for approximately three years. 

What do I think about the stability of the solution?

The solution is stable and reliable. There are no bugs or glitches. It doesn't crash or freeze.

What do I think about the scalability of the solution?

The scalability is okay. If you want to expand on some other products in the Fortinet Portfolio, it is very, very easy. For example, we're also using Fortinet's FortiNAC solution for IoT platforms or IoT devices. 

We have 500 users that use this solution daily.

How are customer service and support?

We haven't really dealt with technical support.

Which solution did I use previously and why did I switch?

We do have EDR solutions from other companies as well. 

How was the initial setup?

We are a technical crew. Therefore, we had nice training, and everything worked quite well. We are satisfied with the process. It's not too difficult. That said, you must have knowledge of the product if you want to do an implementation for this kind of device. On a scale of one to ten, it's a seven. It's okay.

What's my experience with pricing, setup cost, and licensing?

The pricing is pretty reasonable. I would rate it four out of five in terms of affordability.

What other advice do I have?

We are a Fortinet partner. We are a system integrator company. We have some projects that use FortiGate products. We are a company that does business only in the public sector, in the government sector. We don't do corporate.

I'd advise those new to the solution to go one step at a time and not immediately try to tackle all of the features at once. As you grow, you can keep adding on and begin to implement other services. 

I'd rate the solution nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Chaitanya Potdar - PeerSpot reviewer
Information Security Analyst at a energy/utilities company with 1,001-5,000 employees
Real User
The consoles are easy to read, and I like the ability to move assets from one to the other
Pros and Cons
  • "The console is easy to read. I also like the scanning part and the ability to move assets from one to the other."
  • "FortiEDR could add a separate scanning dashboard. In incident management, we prefer to remove the endpoint system from the environment and scan the system. We typically use Symantec for that, but if we want to use FortiEDR for that, then we need a scanning tab to clarify things."

What is our primary use case?

We use FortiEDR to detect malicious activities that primarily occur on the endpoints. For example, it can catch a server downloading malicious software or a user accidentally accessing a harmful URL. Three or four engineers manage the solution.

What is most valuable?

The console is easy to read. I also like the scanning part and the ability to move assets from one to the other.

What needs improvement?

FortiEDR could add a separate scanning dashboard. In incident management, we prefer to remove the endpoint system from the environment and scan the system. We typically use Symantec for that, but if we want to use FortiEDR for that, then we need a scanning tab to clarify things. 

If I'm scanning assets from the backend, I should be able to tell from my end if any malicious files were installed onto the server. It may be any server like Windows Server or the operating system for an endpoint laptop or desktop. 

For how long have I used the solution?

We deployed FortiEDR around eight or nine months ago.

What do I think about the stability of the solution?

I rate FortiEDR 10 out of 10 for stability. 

How are customer service and support?

Fortinet support is excellent. I don't deal with the Fortinet firewall, but a few of my colleagues are on the firewall team, and they say their T1 or P2 calls are handled smoothly.

How was the initial setup?

Setting up FortiEDR isn't difficult. 

What other advice do I have?

I rate FortiEDR 10 out of 10. I say go for it. 

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Sales manager at Scantech Solution Limited
Reseller
A good ransomware protection solution, but the setup is a bit difficult
Pros and Cons
  • "The price is low and quite competitive with others."
  • "The dashboard isn't easy to access and manage."

What is most valuable?

We like the ransomware protections. I'm not sure if Fortinet has a phishing feature on the EDR solution, but customers also need it to protect their email accounts.

What needs improvement?

The dashboard isn't easy to access and manage. The SSA management should be improved. In addition, they should enhance the deployment in the next release.

For how long have I used the solution?

We recently started using Fortinet FortiEDR, and we are using the latest version. The customer deploys on cloud or SaaS model for the EDR and tries to work with the existing Fortinet firewall. We do the import. Our customer is the grocery industry, so they also use their computers and need to record an EDS for the import. They are using Kaspersky for antivirus.

What do I think about the stability of the solution?

It is a stable product.

What do I think about the scalability of the solution?

It is a scalable product. We have 50 users using Fortinet FortiEDR at our organization, namely IT managers, administrators and engineers. In addition, there are two people required for maintenance.

How are customer service and support?

We usually get local support from distributors instead of Fortinet. But I rate the technical support an eight out of ten.

How would you rate customer service and support?

Positive

How was the initial setup?

It is not easy to set up Fortinet FortiEDR. It takes more than a day to complete the installations and configurations.

What's my experience with pricing, setup cost, and licensing?

We have an annual license. The price is low and quite competitive with others.

What other advice do I have?

I rate this solution a seven out of ten, and I recommend this solution to others.

Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
PeerSpot user
CISO at a financial services firm with 201-500 employees
Real User
It does not block/delete entire executables, instead it blocks malicious functions
Pros and Cons
  • "NGAV and EDR features are outstanding."
  • "Making the portal mobile friendly would be helpful when I am out of office."

What is most valuable?

NGAV and EDR features are outstanding.

How has it helped my organization?

We saw Lockey very early on and caught it via behavioral signatures on the traditional AV. We already had parts of the payload downloaded because the traditional AV behavioral signatures were not blocking everything. We had removed the endpoint from the network to investigate and realized the standard AV would have failed. Adding enSilo blocked Lockey immediately and allow no parts of it through. We have found errors in other applications and used enSilo findings to improve the operation of our systems. enSilo also provides a forensic service, which we have leveraged to validate files are malicious or not.

One of the key features to enSilo is it does not block/delete entire executables. Instead, it blocks malicious functions. This allows users to be unaffected if the file is useful but has bad components. FoxIt is a good example of this. Not a malicious tool but has vulnerable behaviors that enSilo can block.

What needs improvement?

The engineering team continues to add useful features, like the ability to search for files and hashes across the environment. At the moment, I am very happy with the product. Not a deal killer, but making the portal mobile friendly would be helpful when I am out of office.

For how long have I used the solution?

Almost two years.

What was my experience with deployment of the solution?

Endpoint agent is incredibly small (<2MB), so it is very easy to deploy.

What do I think about the stability of the solution?

Product has been rock solid from its earliest versions until now. Seems the engineers do a good amount of QA and testing, so they do not release half-baked software.

What do I think about the scalability of the solution?

Recently tripled our deployment size over a weekend without issue.

How are customer service and technical support?

Customer Service:

enSilo team is super responsive. From the tier 1 support to the advanced malware researchers, they all understand customer service. I have been called and emailed at 1AM with high-risk events, and also when I reach out at 2PM, they respond just as fast.

Technical Support:

The team is not hesitant to escalate an issue to development/engineering. Unlike a lot of companies, they are quick to modify the application to fix an issue.

Which solution did I use previously and why did I switch?

Used Tanium and other EDR/Forensics tools at previous employers. Those tools are great at managing overwhelming information but do not necessarily help with visualizing real threats occurring in the environment. enSilo quickly provides a visualization of what has happened and where the malicious behavior occurred. You can then dive down to a full memory dump without having to dig through other useless screens.

How was the initial setup?

The management is cloud-based so it was easy to just install agents and go after opening a firewall to our dedicated IP.

What about the implementation team?

In-house. No real need to go external.

What was our ROI?

I avoid this question with security tools as there is no real return on this, just a lowered burden to manage risk. I will say the tool requires maybe 2 hours of actual focus a week, so much less noise than other tools. enSilo also reduces our risk more than any other tool we have (firewall, web filter, email filter, etc.). From that perspective, we get the most risk reduction with the least burden from enSilo.

What's my experience with pricing, setup cost, and licensing?

I know it is tough to get big budget additions up front, but I highly recommend deploying environment wide and adding the forensic service. Prioritize your most at risk assets, e.g., users with unrestricted browsing or access to sensitive data.

Which other solutions did I evaluate?

Yes:

Carbon Black - Too much noise and time to configure policy. Also, it had too many disparate components to manage/up-sell.

Tanium - Would not talk to us, because we are under 5000 endpoints.

Cylance - Not mature enough at the time of our initial purchase in early 2016.

Confer - Lots of promise, but got purchased by Carbon Black.

What other advice do I have?

Check it out, it is definitely worth your time. They have a unique approach and will let you sleep at night.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
TiagoSilva - PeerSpot reviewer
Security coordinator at a tech consulting company with 11-50 employees
Real User
Top 5
protects specific applications, prevents unauthorized software installations and controls lateral movement
Pros and Cons
  • "We have a specific policy to protect most of the software our employees use on EvoraMet, whether cloud-based or installed on Microsoft machines. We enforce a security rule where any software with a security score lower than three is blocked within the network."
  • "The control of scripts could be improved because you use Microsoft Active Directory and unnecessary scripts to keep the roles updated with company policies."

What is our primary use case?

After experiencing issues with ransomware, the company decided to implement technology that could enhance endpoint protection. As a result, we partnered with Fortinet and chose to use FortiEDR in our environment. FortiEDR helps block USB devices, protects specific applications, prevents unauthorized software installations, and controls lateral movement within the network. This allows us to maintain greater control over third-party devices and software within our IT infrastructure.

How has it helped my organization?

We have a specific policy to protect most of the software our employees use on EvoraMet, whether cloud-based or installed on Microsoft machines. We enforce a security rule where any software with a security score lower than three is blocked within the network. Employees who request access to such software can open a ticket. We'll then conduct a review to determine if allowing the software or if it should remain blocked is necessary. This policy helps us maintain a secure environment by controlling the use of low-rated software.

What is most valuable?

The best feature is FortiEDR's integration with the operating system kernel. In our case, we're using it on endpoints running Microsoft Windows 11, and this integration provides enhanced protection. FortiEDR safeguards all applications, scripts, and behaviors on the machine by embedding with the OS. The key modules we rely on include Execution Prevention, Exfiltration Prevention, and Ransomware Prevention. These are the most critical protections for our devices.

What needs improvement?

The control of scripts could be improved because you use Microsoft Active Directory and unnecessary scripts to keep the roles updated with company policies. We have some filters to block potential malicious scripts on the Roast. It blocks USB devices, like storage or other devices that the company does not allow, from trying to present some malware, etc.

For how long have I used the solution?

I have been using Fortinet FortiEDR for six to eight months. We are a partner of Fortinet.

How was the initial setup?

The installation process on the host is straightforward, though Fortinet could improve it, such as allowing email distribution lists. We work around this by providing the software and installation password to the IT team, who then deploy it on the machines.

Our company has around forty employees, and they travel, the deployment generally takes about five days to complete.

What was our ROI?

Security is implemented in layers. Protecting our endpoints is essential because we relied on a Microsoft solution that didn't provide centralized management or visibility into our network's behavior. It's important to have full control over the network, like FortiGate and wireless controllers, at the endpoint level.

What other advice do I have?

Overall, I rate the solution an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Flag as inappropriate
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiEDR Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2025
Buyer's Guide
Download our free Fortinet FortiEDR Report and get advice and tips from experienced pros sharing their opinions.