We use FortiAI, FortiSIEM, and FortiEDR.
Security Analyst at a tech vendor with 10,001+ employees
We saw time to value within two weeks of implementing the solution, which strengthened our use cases
Pros and Cons
- "Fortinet has helped free up around 20 percent of our staff's time to help us out."
- "ZTNA can improve latency."
What is our primary use case?
How has it helped my organization?
Fortinet helped us scale large-scale deals with clients because of its strong offerings.
Fortinet is very straightforward to use. I have access to a lot of technical resources, and I have been able to use them effectively.
Fortinet has helped free up around 20 percent of our staff's time to help us out.
We saw time to value within two weeks of implementing the solution, which strengthened our use cases.
What is most valuable?
I would say FortiSIEM, is a good alternative to Splunk.
The focus area for analytics is to tie it into the firewall components within SD-WAN.
What needs improvement?
ZTNA can improve latency. I believe that a lot of the focus is on SD-WAN.
Buyer's Guide
Fortinet FortiEDR
November 2024
Learn what your peers think about Fortinet FortiEDR. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
814,649 professionals have used our research since 2012.
For how long have I used the solution?
I have been using Fortinet FortiEDR for four years.
What do I think about the stability of the solution?
I rate Fortinet's stability a ten out of ten.
What do I think about the scalability of the solution?
I rate Fortinet's scalability a nine out of ten.
How are customer service and support?
Fortinet's technical support is top-notch. They have a partner manager, technical account reps, and a lot of ongoing community activities to ensure that people stay up-to-date on the latest information.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup requires a lot of communication with the business to gather and clarify requirements.
What about the implementation team?
We worked with Fortinet to implement the solution, and then our team of technical staff deployed it.
What was our ROI?
We have seen a return on investment. Teams are being hired and staffed to meet the demand of having Fortinet implemented on our client projects.
What's my experience with pricing, setup cost, and licensing?
The pricing is typical for enterprises and fairly priced. Deals are negotiated with an account manager.
Which other solutions did I evaluate?
We evaluated Palo Alto Networks. However, we felt that they did not have the entire suite of analytics that I was looking for. Fortinet, on the other hand, seems to have a more diversified offering in this area.
What other advice do I have?
I give Fortinet FortiEDR a nine out of ten.
The RSA conference helps me stay up-to-date on technology. It also helps me think differently about my use cases. Sometimes, a feature is supported, but other times, vendors may not have it. There may be a reason why they're not doing things the way they say they will.
Attending RSA has an impact on our organization's cybersecurity purchases. In fact, some of the vendors I spoke to told me that a group had already scheduled a meeting with us, which I was unaware of.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Sales manager at Scantech Solution Limited
A good ransomware protection solution, but the setup is a bit difficult
Pros and Cons
- "The price is low and quite competitive with others."
- "The dashboard isn't easy to access and manage."
What is most valuable?
We like the ransomware protections. I'm not sure if Fortinet has a phishing feature on the EDR solution, but customers also need it to protect their email accounts.
What needs improvement?
The dashboard isn't easy to access and manage. The SSA management should be improved. In addition, they should enhance the deployment in the next release.
For how long have I used the solution?
We recently started using Fortinet FortiEDR, and we are using the latest version. The customer deploys on cloud or SaaS model for the EDR and tries to work with the existing Fortinet firewall. We do the import. Our customer is the grocery industry, so they also use their computers and need to record an EDS for the import. They are using Kaspersky for antivirus.
What do I think about the stability of the solution?
It is a stable product.
What do I think about the scalability of the solution?
It is a scalable product. We have 50 users using Fortinet FortiEDR at our organization, namely IT managers, administrators and engineers. In addition, there are two people required for maintenance.
How are customer service and support?
We usually get local support from distributors instead of Fortinet. But I rate the technical support an eight out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
It is not easy to set up Fortinet FortiEDR. It takes more than a day to complete the installations and configurations.
What's my experience with pricing, setup cost, and licensing?
We have an annual license. The price is low and quite competitive with others.
What other advice do I have?
I rate this solution a seven out of ten, and I recommend this solution to others.
Disclosure: My company has a business relationship with this vendor other than being a customer:
Buyer's Guide
Fortinet FortiEDR
November 2024
Learn what your peers think about Fortinet FortiEDR. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
814,649 professionals have used our research since 2012.
Senior Manager Business Development at Adapt Information Technologies (Pvt) Ltd
Offers competitive prices compared to the other vendors in the market
Pros and Cons
- "The product's initial setup phase is very easy."
- "I think cloud security and SASE are areas of concern in the product where improvements are required. The tool's cloud version has to be improved in terms of the security it offers."
What is our primary use case?
The competition of Fortinet FortiEDR is with CrowdStrike in Sri Lanka, especially if I consider the banking and BFSI sectors, where most of the network areas are handled by Fortinet. With Fortinet FortiEDR, the customers get security and endpoint security for their networks. My company deals with Fortinet FortiEDR for our customers.
What is most valuable?
With Fortinet FortiEDR, the console is available with the product through the vendor network, which takes care of the security part while offering firewall functionalities. The product offers everything in the same console. With Fortinet, The customers do not face any issues when using other resources in the tool since they don't have to handle the consoles separately. With Fortinet, one person or one resource can handle two consoles together.
What needs improvement?
Right now, my company focuses on the on-premises version of the product since the cloud competencies offered by the tool are comparatively a bit less. I think cloud security and SASE are areas of concern in the product where improvements are required. The tool's cloud version has to be improved in terms of the security it offers.
For how long have I used the solution?
I have been using Fortinet FortiEDR for a year. My company functions as a reseller of the product.
What do I think about the stability of the solution?
Fortinet FortiEDR experiences a good journey in Sri Lanka if you consider the prices it offers and the competitive nature with Check Point and other vendors. Fortinet FortiEDR enjoys a good journey in Sri Lanka when compared to the other vendors. There is no need to convince the customer that Fortinet FortiEDR is good, as they already know about the advantages of the tool. Customers know about the other products in the market and know how the other tools are when compared to Fortinet FortiEDR. In general, customers have knowledge about Fortinet FortiEDR and the other products in the market. I have no complaints about the product since I don't find any disadvantages when it comes to Fortinet FortiEDR.
What do I think about the scalability of the solution?
My company deals with around ten customers of the product that deals in the software industry. There are some customers of my company from the banking and finance sectors who prefer the product's on-premises version.
How are customer service and support?
My company's engineers contact Fortinet FortiEDR's support team. When my company undertakes the process of customer onboarding, our technical team ensures that they directly handle the customer for a year with the help of support from Fortinet's team. As per my knowledge, Fortinet offers good support compared to the other vendors in the market.
How was the initial setup?
The product's initial setup phase is very easy.
The solution is deployed on an on-premises model.
The time required to deploy the solution depends on the needs of our company's customers. My company's engineers handle the product's deployment area. It takes around a month to deploy the solution.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiEDR is available at a very competitive price compared to the other products in the market. Customers also know about the prices of the Other products in the market, and they are aware that Fortinet FortiEDR's prices are cost-effective.
What other advice do I have?
I recommend the product to those who plan to use it, but I will definitely ask them about the network security platforms they use in their environment. I would definitely recommend Fortinet FortiEDR to those who already have Fortinet products in their environment.
The integration with other Fortinet solutions has not impacted our company's security strategy.
Considering the list of complaints that my company has received regarding the product from our customers, I rate the overall product an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: customer/reseller
Last updated: Feb 28, 2024
Flag as inappropriatevCISO / GRC / Cybersecurity consultant at a tech services company with 1-10 employees
Offers impressive detection features but the intelligence aspects need improvement
Pros and Cons
- "Impressive detection capabilities"
- "Intelligence aspects need improvement"
What is our primary use case?
At our company, we first evaluate whether a client is already using Fortinet Firewall. If so, the Fortinet team of our organization explains the benefits of integrating the existing firewall with Fortinet FortiEDR, including the advantage of gaining visibility on a network and endpoints. Then, our company strategizes how Fortinet FortiEDR can be implemented for the client.
What is most valuable?
Intelligence and detection capability are among the top features of Fortinet FortiEDR. The detection capabilities are far better than other basic areas of the solution, and it's able to satisfy customers by being integrated with native platforms. The solution won't be the best in comparison to products from Palo Alto and SentinelOne.
What needs improvement?
The solution provider should focus more on the intelligence aspects of the product. The Fortinet FortiEDR provider should also analyze what other vendors are offering, but it shouldn't be limited to firewalls. Similar to other competitors, Fortinet FortiEDR is also pushing towards platform options, but that isn't working out well for them on the customer's end, and they need to evaluate whether there is a prospect.
This solution is mostly used by small and medium enterprise vendors. Therefore, the solution needs to focus on basic Endpoint DLP protection, controlling USBs, and a single dashboard.
For how long have I used the solution?
I have been using the solution for 14 years.
What do I think about the stability of the solution?
I would rate the stability of the solution a seven out of ten.
What do I think about the scalability of the solution?
I would rate the scalability a six out of ten. Even though the solution is provided from a SaaS perspective, there are some limitations in member sign-in that need to be addressed. Fortinet FortiEDR is mostly suitable for small and medium enterprises.
How are customer service and support?
I would rate the tech support an eight out of ten.
How was the initial setup?
The initial setup of the product is comparatively easier and uncomplicated than other products.
What's my experience with pricing, setup cost, and licensing?
The pricing of the solution is on the high end compared to its offerings and capabilities.
Which other solutions did I evaluate?
I believe competitor products from CrowdStrike and SentinelOne cannot be compared to Fortinet FortiEDR. Sophos and Palo Alto are the major competitors of Fortinet FortiEDR. The deduction ratio point for Palo Alto EDR is better than Fortinet FortiEDR.
What other advice do I have?
The automated response capabilities of the solution is helpful to a certain extent, but a centralized management tool is required to realize auto responses. If the Fortinet FortiEDR is integrated with FortiSOAR, then the effectiveness of Fortinet FortiEDR becomes 2X in comparison to idle EDR.
The Fortinet FortiEDR can be easily integrated with third-party solutions. Every vendor is trying to integrate AI capabilities, and so is Fortinet FortiEDR , but there can be an adoption challenge for the users. HIPAA compliance customers shouldn't do an integral scan of the Bogies, or otherwise, the system should be on a metadata level. Therefore customers might disable AI driven features or might pass on solutions like Fortinet FortiEDR.
Fortinet FortiEDR has an ML component from the initial versions of the product before it became a trend. I would rate the solution overall as seven out of ten. I believe Fortinet FortiEDR can be much better based on my experience working with basic antiviruses since Symantec Version 6.0 and McAfee Version 2.0 were relevant.
I would definitely recommend Fortinet FortiEDR to organizations with users between 2000 and 5000 because it's an affordable solution compared to others. But Sophos has a better storage feature than Fortinet FortiEDR, which can help detect ATP if an endpoint misses. For SMBs, Sophos might be a better option for storage facilities.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: May 22, 2024
Flag as inappropriateInformation Technology Support Specialist at Chemtrade Logistics
Straightforward, easy to maintain, and works as per our expectations
Pros and Cons
- "It notifies us if there's any suspicious file on any PC. If any execution or similar kind of thing is happening, it just alerts us. It doesn't only alert. It also blocks the execution until we allow it. We check whether the execution is legitimate or not, and then approve it or keep it blocked. This gives us a little bit of control over this mechanism. Fortinet FortiEDR is also very straightforward and easy to maintain."
- "They can include the automation for the realtime updates. We have a network infrastructure with remote sites. Whenever they send updates, they are not automated. We have to go into the console and push those updates. I wish it was more automated. The update file is currently around 31 MB. It could be smaller."
What is our primary use case?
We had a ransomware attack in 2017, and that's when we went with enSilo, which is now called FortiEDR. It helps us to detect the hash files and all that. So far, it's really good. It detects any kind of anomaly. If any installation is happening, it checks the process and everything else and lets us know how it works.
What is most valuable?
It notifies us if there's any suspicious file on any PC. If any execution or similar kind of thing is happening, it just alerts us. It doesn't only alert. It also blocks the execution until we allow it. We check whether the execution is legitimate or not, and then approve it or keep it blocked. This gives us a little bit of control over this mechanism.
Fortinet FortiEDR is also very straightforward and easy to maintain.
What needs improvement?
They can include the automation for the realtime updates. We have a network infrastructure with remote sites. Whenever they send updates, they are not automated. We have to go into the console and push those updates. I wish it was more automated. The update file is currently around 31 MB. It could be smaller.
For how long have I used the solution?
I have been using this solution for three years.
What do I think about the stability of the solution?
It is really good.
What do I think about the scalability of the solution?
It is scalable. Currently, around 1500 users are using it.
How are customer service and technical support?
The support has gone down a little bit since Fortinet acquired enSilo. Earlier, because they were a small company, they used to pay more attention to the customers and proactively contact us for certain things, like product updates. The support structure has now changed. Now, it's a big umbrella. Fortinet is a big fish, so they can't contact you as much because they have more clients. As enSilo, it was a smaller footprint, and it was kind of personalized support.
How was the initial setup?
The initial setup was simple. The deployment time depends on how big the implementation is. Ours is a big organization. It took us a week to deploy to our systems, and that's obviously because we were pushing those agents. Some of our sites are so remote that they can only have 1MB lines. So, when you push the agent, it obviously takes time.
What about the implementation team?
We have a small team of only seven people for implementation. One dev person deals with it.
What other advice do I have?
Overall, we are quite happy with this product. It basically works the way we want it since we have installed it. It's as per expectations.
I would rate Fortinet FortiEDR a nine out of ten.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Security coordinator at a tech consulting company with 11-50 employees
protects specific applications, prevents unauthorized software installations and controls lateral movement
Pros and Cons
- "We have a specific policy to protect most of the software our employees use on EvoraMet, whether cloud-based or installed on Microsoft machines. We enforce a security rule where any software with a security score lower than three is blocked within the network."
- "The control of scripts could be improved because you use Microsoft Active Directory and unnecessary scripts to keep the roles updated with company policies."
What is our primary use case?
After experiencing issues with ransomware, the company decided to implement technology that could enhance endpoint protection. As a result, we partnered with Fortinet and chose to use FortiEDR in our environment. FortiEDR helps block USB devices, protects specific applications, prevents unauthorized software installations, and controls lateral movement within the network. This allows us to maintain greater control over third-party devices and software within our IT infrastructure.
How has it helped my organization?
We have a specific policy to protect most of the software our employees use on EvoraMet, whether cloud-based or installed on Microsoft machines. We enforce a security rule where any software with a security score lower than three is blocked within the network. Employees who request access to such software can open a ticket. We'll then conduct a review to determine if allowing the software or if it should remain blocked is necessary. This policy helps us maintain a secure environment by controlling the use of low-rated software.
What is most valuable?
The best feature is FortiEDR's integration with the operating system kernel. In our case, we're using it on endpoints running Microsoft Windows 11, and this integration provides enhanced protection. FortiEDR safeguards all applications, scripts, and behaviors on the machine by embedding with the OS. The key modules we rely on include Execution Prevention, Exfiltration Prevention, and Ransomware Prevention. These are the most critical protections for our devices.
What needs improvement?
The control of scripts could be improved because you use Microsoft Active Directory and unnecessary scripts to keep the roles updated with company policies. We have some filters to block potential malicious scripts on the Roast. It blocks USB devices, like storage or other devices that the company does not allow, from trying to present some malware, etc.
For how long have I used the solution?
I have been using Fortinet FortiEDR for six to eight months. We are a partner of Fortinet.
How was the initial setup?
The installation process on the host is straightforward, though Fortinet could improve it, such as allowing email distribution lists. We work around this by providing the software and installation password to the IT team, who then deploy it on the machines.
Our company has around forty employees, and they travel, the deployment generally takes about five days to complete.
What was our ROI?
Security is implemented in layers. Protecting our endpoints is essential because we relied on a Microsoft solution that didn't provide centralized management or visibility into our network's behavior. It's important to have full control over the network, like FortiGate and wireless controllers, at the endpoint level.
What other advice do I have?
Overall, I rate the solution an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Last updated: Sep 2, 2024
Flag as inappropriateInformation Security Analyst at a energy/utilities company with 1,001-5,000 employees
The consoles are easy to read, and I like the ability to move assets from one to the other
Pros and Cons
- "The console is easy to read. I also like the scanning part and the ability to move assets from one to the other."
- "FortiEDR could add a separate scanning dashboard. In incident management, we prefer to remove the endpoint system from the environment and scan the system. We typically use Symantec for that, but if we want to use FortiEDR for that, then we need a scanning tab to clarify things."
What is our primary use case?
We use FortiEDR to detect malicious activities that primarily occur on the endpoints. For example, it can catch a server downloading malicious software or a user accidentally accessing a harmful URL. Three or four engineers manage the solution.
What is most valuable?
The console is easy to read. I also like the scanning part and the ability to move assets from one to the other.
What needs improvement?
FortiEDR could add a separate scanning dashboard. In incident management, we prefer to remove the endpoint system from the environment and scan the system. We typically use Symantec for that, but if we want to use FortiEDR for that, then we need a scanning tab to clarify things.
If I'm scanning assets from the backend, I should be able to tell from my end if any malicious files were installed onto the server. It may be any server like Windows Server or the operating system for an endpoint laptop or desktop.
For how long have I used the solution?
We deployed FortiEDR around eight or nine months ago.
What do I think about the stability of the solution?
I rate FortiEDR 10 out of 10 for stability.
How are customer service and support?
Fortinet support is excellent. I don't deal with the Fortinet firewall, but a few of my colleagues are on the firewall team, and they say their T1 or P2 calls are handled smoothly.
How was the initial setup?
Setting up FortiEDR isn't difficult.
What other advice do I have?
I rate FortiEDR 10 out of 10. I say go for it.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network Engineer at a educational organization with 1,001-5,000 employees
A scalable tool that needs users to go through a straightforward initial setup phase
Pros and Cons
- "It is a scalable solution...The initial setup of Fortinet FortiEDR was straightforward."
- "I haven't seen the use of AI in the solution."
What is most valuable?
The most valuable attributes of the solution stem from the features of the next-generation firewall.
What needs improvement?
I haven't seen the use of AI in the solution. In the future, I am interested to see the use of AI in Fortinet FortiEDR.
For how long have I used the solution?
I have been using Fortinet FortiEDR for three years.
What do I think about the stability of the solution?
The downtime we faced in our company was not because of Fortinet FortiEDR.
What do I think about the scalability of the solution?
It is a scalable solution.
How are customer service and support?
I rate the technical support a seven out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup of Fortinet FortiEDR was straightforward.
The solution is deployed on an on-premises model.
From what I remember, the product's deployment process did not take too long.
Which other solutions did I evaluate?
I am still in the process of comparing Fortinet FortiEDR to Cisco, and till now, I have found Fortinet FortiEDR to be an easier tool to use.
What other advice do I have?
I recommend those who plan to use the solution to give it a try. Considering all the use cases, different environments, and costs, people need to find the best solution that suits them well.
I rate the overall product an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Fortinet FortiEDR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
CrowdStrike Falcon
Microsoft Defender for Endpoint
Cisco Secure Endpoint
SentinelOne Singularity Complete
Fortinet FortiClient
Cortex XDR by Palo Alto Networks
Microsoft Defender XDR
IBM Security QRadar
Elastic Security
Symantec Endpoint Security
Intercept X Endpoint
Proofpoint Email Protection
Trend Vision One Endpoint Security
Trellix Endpoint Security
Kaspersky Endpoint Security for Business
Buyer's Guide
Download our free Fortinet FortiEDR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are pros and cons of CrowdStrike Falcon vs Fortinet FortiEDR?
- What's the difference between Fortinet's FortiEDR and FortiClient?
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?