Try our new research platform with insights from 80,000+ expert users
Security Manager at a transportation company with 1,001-5,000 employees
Real User
Makes audits much easier, providing an almost instant "yes" or "no" regarding compliance
Pros and Cons
  • "The firewall policy summarization is the most valuable feature. It helps us to cross-check the firewall ruleset. That's the main purpose of it. And of course, it monitors changes of the firewall policy. It provides full visibility into the risk involved in firewall change requests. It helps us to check for any integrity issues and conflicts with other rulesets, and of course the compliance."
  • "Now that we've moved to the VM it is more stable and independent of hardware."

What is our primary use case?

We use it for firewall ruleset management. It's mainly to manage the firewall ruleset changes and for monitoring compliance.

In our environment we use Algosec Firewall Analyzer. Our network environment is a mixture of public and private clouds. We have more than 3,000 network switches and we are managing almost 20 firewalls that are on-premises. That doesn't include the cloud firewalls because AlgoSec does not extend to that area.

How has it helped my organization?

The main benefit is mainly related to security and our network operation. It helps with firewall and ACL management. In terms of security, it helps us safeguard the firewall ruleset. It's not directly important to the business for income, but it helps us to safeguard our operations and security.

It's also good to have AlgoSec for monitoring, as a measure for security compliance, because the firewall is the gateway from on-premises to the internet or to our business partners. It plays an important role.

It makes the audit process much easier because it provides an almost instant "yes" or "no" regarding compliance. On top of that, you can generate a move-and-change record for auditing purposes. It fulfills the requirements.

Algosec's automation helps reduce human error as well. It helps ensure our firewall policy integrity. It's the kind of machine that helps cross-check those areas, and that helps. Before we really applied AlgoSec for operations, we just used it as a monitoring tool. But after we started discovering manual errors, we tried to use AlgoSec as a prerequisite, and to check the ruleset changes that would be applied to production before they were applied in production. It works well as a checker.

In addition, it has reduced our workload in terms of manual checking to some extent. The lead time for AlgoSec to check against basic, fundamental compliance is great; much better than when done by humans. It reduces the time needed for that part of the analysis. And it helps me to make sure that the applied changes are meeting compliance requirements.

What is most valuable?

The firewall policy summarization is the most valuable feature. It helps us to cross-check the firewall ruleset. That's the main purpose of it. And of course, it monitors changes of the firewall policy. It provides full visibility into the risk involved in firewall change requests. It helps us to check for any integrity issues and conflicts with other rulesets, and of course the compliance.

When it comes to integrating with the leading vendors, we haven't had any hiccups integrating Algosec with existing firewalls or network switches, router switches, ASAs, or VPNs. It has to be great. I don't think another brand name or latecomer will do better than Algosec.

For how long have I used the solution?

I have been using AlgoSec for more than seven years.

Buyer's Guide
Prevasio
January 2025
Learn what your peers think about Prevasio. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,265 professionals have used our research since 2012.

What do I think about the stability of the solution?

The stability is good. When we had the appliances it ran for a couple of years. Now that we've moved to the VM it is more stable and independent of hardware.

How are customer service and support?

We used to be in an appliance for AlgoSec but two years ago we moved it to a VM version. The vendor supported us in that process. That was good. Other than that, we haven't needed to contact their technical support much.

I don't work directly with their technical support, my subordinate works with them. According to what I've heard so far, it's been very good and very helpful.

How was the initial setup?

The initial setup was a long time ago. I remember it being a little bit hard, but I don't think we're a good reference point because it was almost seven years ago. When we moved to the VM version two years ago, we updated our skill set and it is manageable for my people. It should be easy to integrate.

For our initial setup, I remember the Check Point firewalls were seeing some key exchange. When there is an upgrade, you need to do a key installation. That was a little bit difficult seven years ago, but I believe most people now have experience and they know how to handle that. Back then, not many people had experience on Check Point firewalls or even AlgoSec.

Overall, the deployment is easy, but because our organization has a change process, the testing process involved with that takes a longer time. The actual integration is not difficult and it won't take much time.

Rather than talking about simplifying the installation, it should be standardized. There should be more documentation for AlgoSec. The firewall vendors, and even the network equipment vendors have more "Welcome to This Type of Management Tool." They have more clear documentation.

Some of the use cases appear in the community but the vendor could set up a forum where users can share tricky experiences and how to resolve them. An actual case-scenario Knowledge Base is much better than documentation that only describes the straightforward settings.

For maintenance of Algosec we need just one person. The deployment was done by our network team. I used to be on the network team and I was the one who introduced it. Later, I transferred to the security team. I log in to the content now, but not the platform. It is now managed by one of the network team members. Across our organization, there are about five people accessing it.

What about the implementation team?

We used a system integrator to deploy it, called Dimension Data. 

What other advice do I have?

It does its job. I don't expect more than that. We use it to manage the firewall and the firewall is such a mature product, and everything is satisfied.

We don't use it to help us in speeding up setting the firewall ruleset or doing testing phases, because our development cycle is a little bit different. The developers have to state what they need and then we apply it. We only use AlgoSec to cross-check when the testing result moves to production. It doesn't help us much in the development stage.

In terms of the cloud, we are just beginning to build a CoE, a core of excellence. There are many other native solutions provided by the CSP and there are some CASPI solutions—CWP, PP, and CSPM—that will help us with the governance of firewalls or the network security policies. We haven't determined our direction yet.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Network Security Engineer at a comms service provider with 51-200 employees
Real User
Powerful, easy, and manageable
Pros and Cons
  • "AlgoSec has good tools to manage policies and devices. Many administrators like how it helps you monitor and clean up the policy for the on-premise firewall."
  • "In the new version H32, there are many, many bugs."

What is our primary use case?

I use AlgoSec Firewall Analyzer, BusinessFlow, AppViz, AppChange and CloudFlow. We use the appliances from the AlgoSec framework and the AlgoSec Firewall. The customer environment is mostly managed on-premise.  

How has it helped my organization?

AlgoSec has reduced the time to implement firewall rules in my customers' organizations by about 17%. AlgoSec has helped us keep our firewalls in compliance with data security regulations. It can produce many reports, like the ISO 27001, PCI DSS, and OX. It can even make recommendations to optimize your firewall based on compliance standards. 

For example, one of my clients uses the Palo Alto firewall device together with a user admin Palo Alto device. When the admin device needs to detect configuration on the Palo Alto firewall device, AlgoSec can verify if this is correct and in compliance with standards like ISO. In this example, my customer is conducting an assessment via Palo Alto based on ISO 27001. AlgoSec might provide recommendations, like passive complexity, for the firewall settings because the SMTC hasn't been configured. 

What is most valuable?

AlgoSec has good tools to manage policies and devices. Many administrators like how it helps you monitor and clean up the policy for the on-premise firewall. AlgoSec can give you recommendations to optimize your rules. It supports ITSM, and it's a powerful tool for monitoring firewall change requests.

A large company has many devices working with its firewall as well as many policies for managing router switches and networks. If a single security admin changes one policy, it impacts all the routers throughout the entire network. If you do not have a system for firewall change management, you're vulnerable to human error, misconfiguration, and other problems. AlgoSec has one central management system for managing your planning and implementation policies for your devices and firewall. This minimizes risk.

I think it's simple for AlgoSec to integrate with other security solutions. AlgoSec is supported on device firewalls like Cisco and Palo Alto. To integrate, you just have to verify that it has AlgoSec support. It's relatively easy to integrate with AlgoSec because it communicates using the SHA protocol with just a username and password.

I've used AlgoSec with Cisco ACI but only as a proof of concept. My clients are mostly using Cisco ASA with a Cisco router, Palo Alto, and Juniper.

What needs improvement?

In the new version H32, there are many, many bugs.

For how long have I used the solution?

I've been using AlgoSec since 2019, so almost two years now.

What do I think about the stability of the solution?

In terms of stability, I think it's good for what our end-user wants to do. When you integrate your device on the firewall analyzer and you analyze, AlgoSec can show you the root of your device. AlgoSec can also monitor changes on the specific firewall.  

What do I think about the scalability of the solution?

AlgoSec is powerful, easy, and manageable. It's user-friendly and deployment is easy. In my experience, it scales to my clients' needs because it helps track the policy and the changes.

How are customer service and support?

AlgoSec support is good and professional. And before you contact support, you can search the reference AlgoSec portal. For example, if you have issues with the SHA and AlgoSec cannot communicate with a specific firewall. You can search on the AlgoSec help portal. The whole issue is covered on the AlgoSec portal. From the 2018 version of AlgoSec to the latest version, all the references are there on the portal. AlgoSec support responds on schedule to explain the issue and recommend ways to fix it.

Which solution did I use previously and why did I switch?

I know the competitor of AlgoSec is Tufin, but I don't have experience with Tufin. If I did, maybe I could compare AlgoSec with it. At this time, I don't have any comment on its competition.

How was the initial setup?

Setting up AlgoSec is very simple and easy. Because I'm using the VMware appliance for AlgoSec, you can just download everything. After that, you just configure the IP address for AlgoSec, set up a username, and verify your configuration license. For the VMware appliance, it takes maybe 30 minutes to deploy AlgoSec.

What's my experience with pricing, setup cost, and licensing?

Licensing AlgoSec is easy. To license AlgoSec, you must get a MAC address on the AlgoSec server, then you can deploy the AlgoSec server in your environment. And if you get a MAC address, you must update on the AlgoSec portal to request the license

What other advice do I have?

I would rate it a nine out 10. It would get a perfect 10 if they fixed the many bugs in the new version.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user