Try our new research platform with insights from 80,000+ expert users
Cyber Security Analyst at a retailer with 1,001-5,000 employees
Real User
Has easy access to create rules, playbooks, or use cases
Pros and Cons
  • "I like the various options, including the option for CMDB and the easier access to create rules, playbooks, or use cases. It's also easier to use for creating dashboards and reports."
  • "With FortiSIEM, the issue has to do with the ways we can generate a report. It's not as flexible compared to that with other SIEM tools, like Splunk."

What is our primary use case?

We use it as our main SIEM tool for creating rules, creating alerts, monitoring, and accessing CMDB. We also use it to monitor a few more things related to writing security.

What is most valuable?

I like the various options, including the option for CMDB and the easier access to create rules, playbooks, or use cases. It's also easier to use for creating dashboards and reports.

What needs improvement?

With FortiSIEM, the issue has to do with the ways we can generate a report. It's not as flexible compared to that with other SIEM tools, like Splunk.

When you work with a service provider who is using FortiSIEM as a service for other clients, you cannot run more than 30 clients on one tool. You cannot onboard, which would consume more resources and would make it slower. Also, resource consumption would be high.

For how long have I used the solution?

I've been using it for a year and a half.

Buyer's Guide
Fortinet FortiSIEM
January 2025
Learn what your peers think about Fortinet FortiSIEM. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,158 professionals have used our research since 2012.

What do I think about the stability of the solution?

It's pretty stable. We haven't faced any critical issues with stability.

How are customer service and support?

We had some issues when there were a few more updates or patches, but the technical support from FortiSIEM was pretty good and got it all sorted.

What other advice do I have?

If you're using it for multi-tenant solutions, it will be pretty good, but it won't support running more than 20 clients on the same platform. It would need more resources. Even if you are implementing it for multi-tenant solutions, you would need implement fewer clients on it so that it has to use less effort.

On a scale from one to ten, I would rate it at eight.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Security Analyst at netfiniti
Real User
Good GUI, helpful technical support, and easy to configure
Pros and Cons
  • "The product is quite well-organized. The GUI makes it easy to navigate."
  • "It would be good if the solution offered even more configuration options, especially in relation to the VPN so that it continues to be a very flexible option."

What is our primary use case?

I primarily use the solution as part of the firewall. I work mostly with banks and have extensive experience with configuring the VPN in relation to Fortinet.

What is most valuable?

The solution is quite user-friendly.

It's very easy to configure everything, including the VPN. It gives you lots of good options.

The product is quite well-organized. The GUI makes it easy to navigate.

What needs improvement?

The solution is almost 100% perfect. It's already quite simple and easy to configure. In that sense, no improvements are needed.

You do seem to be constantly learning new things with the product. There's a bit of an ongoing learning curve in terms of usage. Right now, I'm learning about higher availability and that's an ongoing process.

It would be good if the solution offered even more configuration options, especially in relation to the VPN so that it continues to be a very flexible option. 

The solution offers both command line and GUI visualizations. They need to ensure that their GUI offers just as much flexibility on the configuration as the command line structure.

For how long have I used the solution?

I've been using the solution for about seven months at this point. It's been less than a year.

What do I think about the stability of the solution?

The stability of the product is fairly good. It's likely 70-80% there in terms of stability. There are many versions and the stability may vary slightly on each. 

In terms of security, however, I would say it's very stable. 

We haven't implemented the latest version yet as it hasn't been implemented widely. 

In general, the stability isn't a problem for us and we don't need to worry too much about it.

How are customer service and technical support?

The technical support is quite fine. We can communicate with them easily if we need to. If we have a problem or we need an issue addressed, we simply open a ticket and the Fortinet team is ready to assist. They are very knowledgeable and responsive. We've been satisfied with the support they give us.

How was the initial setup?

The initial setup does take some time to learn. I'm in the process of learning more about it now, specifically in relation to configuration or the VPN.

What's my experience with pricing, setup cost, and licensing?

If you are comparing the product to Cisco's solutions, it's very cheap and moderately priced. It's affordable. At the same time, it's a very effective solution. It's affordable and it works well.

What other advice do I have?

On a scale from one to ten, I would rate the product at an eight. It's been a pretty positive experience overall. I'm still learning the solution and discovering new things about it, however, it has everything I need at the same time. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Fortinet FortiSIEM
January 2025
Learn what your peers think about Fortinet FortiSIEM. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,158 professionals have used our research since 2012.
Security Manager at BKL
Real User
Seamless integration with FortiGate, and has an easy setup, but is lacking user behavior analytics
Pros and Cons
  • "The seamless integration with FortiGate is the solution's most valuable aspect."
  • "When compared with some competitors, in terms of performance, the CPU and RAM requirements and the capability of coordination with development all need some improvement."

What is our primary use case?

We primarily use the solution for integration with FortiGate Firewall. We use it for multiple authentification, malware detection, and protection from DDoS attacks.

What is most valuable?

The seamless integration with FortiGate is the solution's most valuable aspect.

What needs improvement?

When compared with some competitors, in terms of performance, the CPU and RAM requirements and the capability of coordination with development all need some improvement.

The solution should offer user behavior analytics in a future release.

For how long have I used the solution?

I've been using the solution for two years.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

We don't have any expansion requirements, so I've never looked into scalability.

How are customer service and technical support?

We've never reached out to technical support. If we need assistance, we typically look for FortiGate documents or scan their blog site. We handle any problems internally.

Which solution did I use previously and why did I switch?

We previously used an open-source solution called Elastic.

How was the initial setup?

The initial setup is easy.

What about the implementation team?

We received support from an integrator.

Which other solutions did I evaluate?

We evaluated AlienVault and SolarWinds. These were both within our limited budget, but we chose FortiSIEM because it integrated seamlessly with FortiGate firewall.

What other advice do I have?

We use the on-premises deployment model.

I'd recommend this solution to companies that have a FortiGate firewall and are on a limited budget. 

I'd rate the solution six out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user404421 - PeerSpot reviewer
Associate Director, Network Services at a university with 1,001-5,000 employees
Vendor
It can take logs from all my devices agentlessly and correlate data. I'd like to see a more streamlined dashboard.
Pros and Cons
  • "The primary valuable feature is that it has replaced a whole lot of other products with one platform."
  • "It lacks a "wizard" that shows a particular user's activity or particular circumstance. I think the interface is intimidating because there's so much information there."

How has it helped my organization?

Although we're still in training, we can expect to see and address issues in our network, such as configuration errors that caused latency between disc, storage and server that we weren't aware of before.

What is most valuable?

The primary valuable feature is that it has replaced a whole lot of other products with one platform. That's a huge win right there. It can take logs from all my devices agentlessly and correlate data. It already has a lot of the advanced analytics and dashboards that we need already built-in.

Accelops is also well positioned within the industry, for example, by partnering with Octave which we're using as a login index for Accelops. We're able to bring up a security operations center, which helps a lot of the newer information security people.

What needs improvement?

It lacks a "wizard" that shows a particular user's activity or particular circumstance. I think the interface is intimidating because there's so much information there. I'd like to see a better dashboard that pretty. I want to be able to see incidences or stats, depending on what I'm looking for to determine whether we're healthy, what's our security posture, SOX-incident problems. So streamlining all that information on the initial interface would be great.

What do I think about the stability of the solution?

So far, it appears to be stable. Early on, there were some lags with certain things happening and my guys weren't quite sure how stuff fit together, but I think that will wash out in the training. We need it to provide alerts, monitoring, security, and SIEM.

What do I think about the scalability of the solution?

We've had no issues with scalability.

How is customer service and technical support?

It's too early to comment on technical support. I don't have any complaints, and neither do my guys, so that's a good sign.

How was the initial setup?

They got the system up and running pretty easily and now he's working with the engineering groups and others to start making sure that the SM&NT logs are all set. Right now we're in ramp-up mode, so once it's fully loaded we'll be able to talk more about how it's performing with that volume of logs and all the dashboards and things that we started automating.

What about the implementation team?

I trust my server lead and his guys for the setup. They had to build a bigger box with new storage to keep all the new logs that we started pointing at it.

Which other solutions did I evaluate?

We knew we needed an SIEM tool, and actually looked at Accelops a year ago. At the time, it just wasn't stable enough and we didn't quite have the funding. Now, we did another review and Accelops came out on top with some improvements and better pricing. I found the initial money and had extra budget for ongoing maintenance.

What other advice do I have?

Any of the top SIEM tools like this is going to give you a lot of information and that in itself is the challenge. There's so much information that you need to have at least one person who's dedicated almost full-time to it.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user799953 - PeerSpot reviewer
it_user799953Network Security Engineer at Spectrotel
Real User

Presently on 4.10 version. You must deploy using Workers and Collectors. Or else the Supervisor take control of all the memory, Currently the Country location and IP does not match up. report as a Bug since v 4,2 version

reviewer1905006 - PeerSpot reviewer
Senior Product Manager at a financial services firm with 201-500 employees
Real User
Simple implementation, good performance, but scalability lacking
Pros and Cons
  • "The most valuable feature of Fortinet FortiSIEM is the correlation of many events."
  • "Fortinet FortiSIEM could improve to extend to several locations or sites."

What is our primary use case?

I am using Fortinet FortiSIEM to correlate events in our enterprise.

How has it helped my organization?

Fortinet FortiSIEM has helped our organization by providing us with business monitoring.

What is most valuable?

The most valuable feature of Fortinet FortiSIEM is the correlation of many events.

What needs improvement?

Fortinet FortiSIEM could improve to extend to several locations or sites.

For how long have I used the solution?

I have been using Fortinet FortiSIEM for approximately two years.

What do I think about the stability of the solution?

The stability of Fortinet FortiSIEM is okay but it could improve.

What do I think about the scalability of the solution?

We would like to increase the usage of Fortinet FortiSIEM.

How are customer service and support?

The technical support from Fortinet FortiSIEM is good.

Which solution did I use previously and why did I switch?

We previously used Juniper Security Threat Response Manager.

How was the initial setup?

The initial setup of Fortinet FortiSIEM is easy. The full deployment took approximately seven days.

What about the implementation team?

We had one supervisor and two others that helped do the implementation of Fortinet FortiSIEM. We did the implementation in-house.

We have five network administrators for maintenance.

What was our ROI?

We have seen a return on investment using Fortinet FortiSIEM.

What's my experience with pricing, setup cost, and licensing?

There are additional features that cost more than the standard licensing fees.

Which other solutions did I evaluate?

We evaluated two other solutions before choosing Fortinet FortiSIEM. The graphical user interface is better in Fortinet FortiSIEM.

What other advice do I have?

I rate Fortinet FortiSIEM a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1051230 - PeerSpot reviewer
Asst Programmer Data Center at a consultancy with 10,001+ employees
Real User
Stable and pretty affordable
Pros and Cons
  • "We find the solution to be stable."
  • "The solution needs to do a better job with third party integration. Right now, that's lacking on the solution. I specifically am talking about the AWS environment. Most of the AWS environment products do not have that capability to integrate."

What is our primary use case?

We primarily use it for all of our cloud space and for firewalls,and AWS security services etc., for example, for the email, Cloud watch and AWS security HUB

How has it helped my organization?

Single pane of glass for security issues

What is most valuable?

There's a great feature on the solution that allows us to analyze security issues and incidents. It automatically allows us to trace any incident. It's an invaluable aspect of the solution. 

The solution has a relatively low cost.

We find the solution to be stable.

It's my understanding that the solution can scale well.

What needs improvement?

The solution needs to be form flow diagram automatically with AWS platform

For how long have I used the solution?

I've only been using the solution for the last six months.

What do I think about the stability of the solution?

The solution is stable. It's very reliable. There aren't bugs or glitches. It doesn't freeze or crash.

What do I think about the scalability of the solution?

I personally have never tried to scale the solution. That said, the solution is scalable and companies shouldn't have any issue expanding it as needed.

The solution is being used pretty extensively in our organization and we have several teams on it.

How are customer service and technical support?

We've definitely called technical support in the past when we have run into issues. We've been satisfied with the level of service they provide. We always get a proper response and they're always ready to resolve any issues we have. We are able to close tickets very quickly because they are so knowledgeable and responsive.

How was the initial setup?

The solution was fairly complex. However, this was due to the fact that we had to do a lot of configurations at the outset. The solution didn't make the process easy for us. Typically, it's easy to implement and I would be able to handle the process myself.

It took us about 15 days to deploy everything on our end.

What about the implementation team?

Implementation was done by Fortinet's Professional Service Team which was quite satisfactorily 

What's my experience with pricing, setup cost, and licensing?

The solution is very cost-effective compared to competitors. We just need to pay licensing and support costs. There aren't added costs beyond that.

Which other solutions did I evaluate?

We didn't previously look at other solutions. We saw that Fortinet fit our needs, and therefore we chose it.

What other advice do I have?

We're a public utility, so we just use the solution. We don't have a business relationship with the company.

We use the latest version of the solution.

We use a variety of Fortinet solutions at our organization. For example, we integrate the complete AWS cloud space into that all FortiSIEM.

I'd recommend the solution to other organizations, especially those that are cost-conscious. Compared to there solutions' it's rather easy to implement.

I'd rate the solution overall seven out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Termphong Tana - PeerSpot reviewer
Assistant to Vice President at IT Green Public Company Limited
Reseller
Plenty of features, good support, but lacking signature updates
Pros and Cons
  • "The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls."
  • "Fortinet FortiSIEM could improve by having a signature update."

What is our primary use case?

We use Fortinet FortiSIEM for security, a gateway, and for authentication.

What is most valuable?

The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls.

What needs improvement?

Fortinet FortiSIEM could improve by having a signature update.

For how long have I used the solution?

I have been using Fortinet FortiSIEM for approximately 16 years.

What do I think about the stability of the solution?

Fortinet FortiSIEM is stable. However, it was not stable from the beginning.

What do I think about the scalability of the solution?

Fortinet FortiSIEM is the best soltuions here in Thailand. There are many users and partners here.

There are 10 to 3,000 users in my company. Most of the users are specialists in IT. We plan to increase usage in the future.

How are customer service and support?

I have used the technical support and they have been good.

Which solution did I use previously and why did I switch?

I have used other solutions previously.

How was the initial setup?

The initial setup of Fortinet FortiSIEM was easy. The deployment would take a few days for the middle and large models.

We need some information for the customer, such as policies, before we can implement the solution.

What about the implementation team?

We do the implementation of Fortinet FortiSIEM. We use one IT specialist for the deployment and maintenance of the solution.

What other advice do I have?

I would advise others this solution is easy to use and has a lot of features. They should try it out.

I rate Fortinet FortiSIEM a seven out of ten

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
reviewer1146195 - PeerSpot reviewer
Head - IT & SWIFT at a financial services firm with 1-10 employees
Real User
Good dashboards and customization but issues with licensing
Pros and Cons
  • "FortiSIEM's best features are the dashboards and customization."
  • "An improvement would be if FortiSIEM's licensing was based on the number of nodes rather than the EPS."

What is our primary use case?

I use FortiSIEM for email events and security alarms.

What is most valuable?

FortiSIEM's best features are the dashboards and customization.

What needs improvement?

An improvement would be if FortiSIEM's licensing was based on the number of nodes rather than the EPS. In the next release, FortiSIEM should implement a central repository.

For how long have I used the solution?

I've been working with FortiSIEM for more than three years.

What do I think about the stability of the solution?

FortiSIEM's stability is quite good.

What do I think about the scalability of the solution?

FortiSIEM is scalable, though this is constrained by the licensing model.

How are customer service and support?

FortiSIEM's technical support is satisfactory, but its knowledge base could be better.

How would you rate customer service and support?

Positive

What about the implementation team?

We used an in-house team and the local vendor.

What's my experience with pricing, setup cost, and licensing?

FortiSIEM's licensing is based on EPS, and its pricing is competitive in the market.

Which other solutions did I evaluate?

I also evaluated LogRhythm and McAfee.

What other advice do I have?

I would give FortiSIEM a rating of seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiSIEM Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2025
Buyer's Guide
Download our free Fortinet FortiSIEM Report and get advice and tips from experienced pros sharing their opinions.