We use the solution as a middleware for orchestrations and integrations from a single console.
Director & CEO at Prime Net Limited
Beautiful fabrications and built-in connectors for integrating with many products
Pros and Cons
- "The solution is easy to implement and includes 450 built-in connectors."
- "The technology and integrations are important so should continue to be enhanced."
What is our primary use case?
What is most valuable?
The solution is easy to implement and includes 450 built-in connectors.
You can push policies without needing to access the firewall.
It is easy to monitor an environment because alerts can be classified as low, medium, or high priority.
The fabrication, management, and communication across a single platform is beautiful. The end-to-end format handles switching endpoints, security, and firewalls.
What needs improvement?
The licensing model could be better.
The technology and integrations are important so should continue to be enhanced.
For how long have I used the solution?
Our company has been using the solution for one year in our test lab.
For the last eight years, we have been one of the big Fortinet partners in the Bangladesh region. We partner with five of the world's premium products and implement any solution of interest to our customers.
Buyer's Guide
Fortinet FortiSOAR
November 2024
Learn what your peers think about Fortinet FortiSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,636 professionals have used our research since 2012.
What do I think about the stability of the solution?
The stability and security are good in Bangladesh where Fortinet and Palo Alto are the top two products in the market. Mechanisms and situations are different by geographic location.
For example, the USA has different mechanisms than Bangladesh so their top products might differ. In the UK, maybe Sophos is the best product. It all depends on who uses it and the technologies available.
What do I think about the scalability of the solution?
The solution is scalable. It is important to know how to size the solution and deploy it properly in the network or your client will suffer.
How was the initial setup?
The setup is not complex. If you have familiarity with the technology, setup will be easy.
Nothing is tough or easy for any product, but knowledge should be clear about the solution.
What about the implementation team?
We implemented the solution in-house for our test lab.
What's my experience with pricing, setup cost, and licensing?
The solution offers both licensing and subscription models that are similar in price to other products.
Which other solutions did I evaluate?
Our company works with many products including the solution, Cisco, Palo Alto, and Juniper. We assess our customer's network and recommend the best solution.
What other advice do I have?
I recommend the solution because of its fabrications and built-in connectors that allow it to integrate with many products.
I rate the solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Helps create playbooks, but documentation needs to be improved
Pros and Cons
- "The solution's most valuable feature is playbook creation, which allows us to integrate all data ingestion into the same platform."
- "The solution lacks proper documentation, so we have to test and trial each playbook and integration."
What is our primary use case?
Our government clients need the solution to automate the attacks and threats they receive. The clients use the tool to integrate their security posture.
What is most valuable?
The solution's most valuable feature is playbook creation, which allows us to integrate all data ingestion into the same platform.
What needs improvement?
The solution lacks proper documentation, so we have to test and trial each playbook and integration. Because of that, we are facing many challenges. There are too many connectors that are not available on the documents.
For how long have I used the solution?
I have been using Fortinet FortiSOAR for six months.
What do I think about the stability of the solution?
We sometimes faced server issues, and the SMTP protocol got disconnected a few times. We faced many issues and had to restart the server every time. When in production, the client wouldn't let us restart the server, so we had to wait another day to restart it.
I rate the solution’s stability a five out of ten.
What do I think about the scalability of the solution?
I rate the solution a seven out of ten for scalability.
How are customer service and support?
The solution's technical support is not good. The support team provides late replies, and I think they don't have proper engineers.
How would you rate customer service and support?
Neutral
How was the initial setup?
On a scale from one to ten, where one is difficult and ten is easy, I rate the solution's initial setup a seven out of ten.
What other advice do I have?
The solution's integrated CICD pipelines and Ansible and YAML playbooks are the most effective in automating the security tasks.
The solution was pre-installed. We just needed to do the technical assistance and admin work, like creating playbooks. The solution's implementation and installation were already done. It was already integrated and connected with FortiEDR and Active Directory. We just wanted to check the data ingestion flow and whether Fortinet FortiSOAR could capture everything.
Overall, I rate the solution a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: msp
Last updated: Jun 13, 2024
Flag as inappropriateBuyer's Guide
Fortinet FortiSOAR
November 2024
Learn what your peers think about Fortinet FortiSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,636 professionals have used our research since 2012.
Hybrid Cyber Security Team Lead at Dndx CyberSecurity
A security solution that needs to improve analysis
Pros and Cons
- "We use the product for security."
- "Fortinet FortiSOAR should improve its analysis."
What is our primary use case?
We use the product for security.
What needs improvement?
Fortinet FortiSOAR should improve its analysis.
For how long have I used the solution?
I have been working with the solution for three years.
What do I think about the stability of the solution?
I rate the product's stability a nine out of ten.
What do I think about the scalability of the solution?
I rate the tool's scalability an eight out of ten.
How was the initial setup?
We have deployed Fortinet FortiSOAR on the cloud, and installation was easy.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiSOAR is expensive.
What other advice do I have?
I rate the product a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer:
SALES PRODUCT MANAGER at NOURNET
Integration with FortiAnalyzer is good; unfortunately doesn't connect well with network devices
Pros and Cons
- "It's great that the solution is integrated with FortiAnalyzer."
- "The solution doesn't connect well with the network devices."
What is our primary use case?
The primary use case of this solution is for security and for using FortiSOAR with FortiSIEM for connecting logs and analysis. We are resellers and partners of Fortinet.
What is most valuable?
I like that the solution is integrated with FortiAnalyzer, it's the best feature.
What needs improvement?
The solution doesn't connect well with the network devices, with FortiNAC. It's also a very expensive product and I've found that the Fortinet engineers don't have much experience with the product and they require training, particularly when dealing with enterprise organizations.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
The solution is scalable.
What's my experience with pricing, setup cost, and licensing?
In general, this product is expensive. I think maintenance requires a minimum of three people.
What other advice do I have?
I recommend this solution. If a customer is looking at FortiSIEM, it's better to take FortiSOAR to reduce the number of people or the employees working and monitoring FortiSIEM.
I rate this solution six out of 10
Disclosure: My company has a business relationship with this vendor other than being a customer:
Technical Director - Cyber Security at a comms service provider with 1-10 employees
Price high, features need improvements, but good reputation
Pros and Cons
- "The reputation of the brand is very good."
- "I have found that Fortinet FortiSOAR needs a lot of improvement. The Orchestration needs to be improved."
What is our primary use case?
We are in the initial stages with the use of Fortinet FortiSOAR.
What needs improvement?
I have found that Fortinet FortiSOAR needs a lot of improvement. The Orchestration needs to be improved.
Most of its functionalities are yet to be operational, I have tried to click on the icons but they do not work.
For how long have I used the solution?
I have been using Fortinet FortiSOAR for approximately one year.
What do I think about the stability of the solution?
I would rate the performance of Fortinet FortiSOAR a 4 out of five.
How was the initial setup?
The initial setup is complicated. The APIs are not able to be used easily, they claim to have integration. When it comes up to the next firmware, there are some challenges.
What's my experience with pricing, setup cost, and licensing?
The price of the product should be lower. The brand value that Fortinet has, it has the reputation of being a reasonably priced product, and they have an enormous customer base in India. Most of the SME market is covered by FortiGate firewalls. It becomes an easy way for consultants, such as us, or even system integrators, to open the door with the Fortinet product lines.
The reputation of the brand is very good.
What other advice do I have?
You have a lot of Fortinet products. You can choose Fortinet FortiSOAR or you wait for them to improve the product a little more as it is needed.
I rate Fortinet FortiSOAR a five out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Principal Cyber Security Technologist at a computer software company with 51-200 employees
Quick detection and response time, with helpful playbooks used to automate our response
Pros and Cons
- "It has a quick detection and response time."
- "The area that needs improvement is integration with multiple third-party vendors."
What is our primary use case?
The primary use case of this solution is as a next-generation firewall. It is used to restrict the breach that will occur from any particular malicious server command or control.
The primary focus is to save the customer's confidential data and break the connection.
What is most valuable?
The most valuable features are the playbooks that allow you to take action immediately after the approval of the analytics and anomalies.
It has a quick detection and response time.
What needs improvement?
The area that needs improvement is integration with multiple third-party vendors. For example, if you have customers who are using the CheckPoint firewall or Sophos firewall, and they are forwarding any logs to the Syslog format system, it should re-automate though the third-party firewall or any third-party proxy.
In the next release, I would like to see UEBA included. User entity behavior analytics is very important. Also, I would like to have the UEBA integrated with the cloud, making it accessible from any specified region. This would be very helpful for our customers.
For how long have I used the solution?
I have been working with FortiSOAR for five years.
What do I think about the stability of the solution?
After the new hardware and software were launched, it became more stable.
What do I think about the scalability of the solution?
It's now scalable since the new release.
How are customer service and technical support?
Technical support is good.
Depending on what hour you are calling, it may take some time. If you are calling within the same time zone then it 's fine, but if you are calling from Africa for example, it will be rerouted to another region.
How was the initial setup?
I was not a part of the initial setup. I only saw the demo and it seems that it is easy, rather than complex.
Now that I have more hands-on experience, I see that it is easy to manage and configure.
What's my experience with pricing, setup cost, and licensing?
Pricing is fine compared to other solutions.
What other advice do I have?
I am a Fortinet certified engineer.
Depending on the customer's requirements, and based on their RFP demand and budget, I would recommend this product.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Software Engineer at a tech services company with 11-50 employees
The solution’s dashboard is not easy to understand, though it can be used to monitor internal system logs
Pros and Cons
- "The most valuable feature of Fortinet FortiSOAR is the playbook, which has to be defined to apply the policies."
- "Fortinet FortiSOAR's dashboard is not easy to understand."
What is our primary use case?
I use Fortinet FortiSOAR for monitoring my internal system logs.
What is most valuable?
The most valuable feature of Fortinet FortiSOAR is the playbook, which has to be defined to apply the policies.
What needs improvement?
Fortinet FortiSOAR's dashboard is not easy to understand.
For how long have I used the solution?
I have been using Fortinet FortiSOAR for around four months.
What do I think about the scalability of the solution?
Around ten users are using the solution in our organization.
How was the initial setup?
Fortinet FortiSOAR's initial setup is easy.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiSOAR is an expensive solution.
What other advice do I have?
Our company decided to use Fortinet FortiSOAR because of the malicious IP and some threats that entered the internal network. Our organization uses the solution for security purposes.
Overall, I rate Fortinet FortiSOAR a five out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Cyber Security Tech Lead at a tech services company with 1,001-5,000 employees
A great security automation response and no missing features
Pros and Cons
- "The product can be automated for network security purposes. The solution offers a great security automation response."
- "I don't currently see where the solution is lacking features. For us and for our clients it works very well and we're pleased with it."
What is our primary use case?
We primarily use this solution with our clients for security operations.
What is most valuable?
The solution has many connectors, which is quite helpful.
It's easy to integrate the product with others.
The product can be automated for network security purposes. The solution offers a great security automation response.
What needs improvement?
I don't currently see where the solution is lacking features. For us and for our clients it works very well and we're pleased with it.
What do I think about the stability of the solution?
The stability of the solution is good. It's not buggy or glitchy. It doesn't freeze. We're satisfied with the level of stability provided.
How are customer service and technical support?
We have a local distributor for Fortinet that we contact when we need assistance with something technical. They're excellent when it comes to helping us. They're responsive and knowledgeable. I'd rate them very highly.
Which solution did I use previously and why did I switch?
We've used Splunk in the past, however, we haven't used it in about two years.
How was the initial setup?
The initial setup is not complex. It's straightforward. We found it to be quite easy to install.
It takes about one month to install everything. It's pretty quick. It also takes about one week to create a playbook and educate clients on the use of the device.
What about the implementation team?
We help our clients implement this solution within their organizations.
What other advice do I have?
We're a Fortinet partner.
We're security integrators in Thailand, with clients in the banking and retail sectors, among other industries.
I'm not sure if we're using the latest version of the solution or not.
I'd recommend the solution. I've installed many products, and I believe Fortinet to be one of the best of them.
I would rate the solution five out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Download our free Fortinet FortiSOAR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Product Categories
Security Orchestration Automation and Response (SOAR)Popular Comparisons
Microsoft Sentinel
Palo Alto Networks Cortex XSOAR
Splunk SOAR
ThreatConnect Threat Intelligence Platform (TIP)
ServiceNow Security Operations
IBM Resilient
Swimlane
McAfee ePolicy Orchestrator
Google Security Operations
Cyware Cyber Fusion
Rapid7 InsightConnect
D3 Security
Securonix SOAR
Buyer's Guide
Download our free Fortinet FortiSOAR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the Top 5 cybersecurity trends in 2022?
- What is the difference between SIEM and SOAR platforms?
- What is an incident response playbook and how is it used in SOAR?
- What are the latest trends in Security Operations Center (SOC)?
- What tools and solutions do you use for automated incident response in an enterprise in 2022?
- How to evaluate SIEM detection rules?
- Why a Security Operations Center (SOC) is important?
- What types of Security Operations Center (SOC) deployment models do exist?
- When evaluating Security Orchestration, Automation, and Response (SOAR), what aspect do you think is the most important to look for?
- Why is Security Orchestration Automation and Response (SOAR) important for companies?