Try our new research platform with insights from 80,000+ expert users
Sales Manager at ACA Pracific Group
Real User
Top 20
Has good accuracy and integration with other products is easy but it is expensive
Pros and Cons
  • "Overall, the tool has helped us reduce risks. If any step is missing, it's easier for my team or engineers to identify it. The tool provides accurate recommendations based on the data. Its integration is easy, and I have integrated it with Fortinet firewalls."
  • "It's expensive."

What is our primary use case?

Our company's main use case for Skybox Security Suite is typically for user architects. Since our company primarily serves enterprise clients, Skybox is often used as a cost-effective solution.

What is most valuable?

Overall, the tool has helped us reduce risks. If any step is missing, it's easier for my team or engineers to identify it. The tool provides accurate recommendations based on the data. Its integration is easy, and I have integrated it with Fortinet firewalls. 

What needs improvement?

The setup is expensive.

For how long have I used the solution?

I have been using the product for one and a half years. 

Buyer's Guide
Skybox Security Suite
January 2025
Learn what your peers think about Skybox Security Suite. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
838,713 professionals have used our research since 2012.

How are customer service and support?

The product's support offers remote assistance and is available in many countries. 

How would you rate customer service and support?

Neutral

How was the initial setup?

The tool's deployment takes one month to complete. 

What's my experience with pricing, setup cost, and licensing?

Skybox Security Suite has indeed helped us reduce costs. The prices of AlgoSec and Skybox Security Suite are approximately 50 percent different. The tool may require special vendor support from abroad, resulting in slightly higher costs. Its pricing is in the middle. 

What other advice do I have?

I rate the overall product a seven out of ten. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
VP Technology at a outsourcing company with 51-200 employees
Real User
Suitable for complex networks, reliable, and good support
Pros and Cons
  • "It can be integrated with a vulnerability management solution. When a client comes, apart from pitching network and firewall change management, we are recommending having vulnerability management. So, rather than just having the audit of the firewall, they can integrate it with their vulnerability management solution, which could be Rapid7, Qualys, or any other solution. This provides them the most value out of the platform. That is the way we are approaching our customer base."
  • "Change Manager can be improved. If they can improve Change Manager so that whatever we want to do on a firewall, we are able to do it through Change Manager, it will be helpful for us. Whenever we are doing a change, it only does them at an L3 and L4 level, but all the firewalls are at the application layer. So, whatever needs to be done on the firewall, we aren't able to get it done through Change Manager. Currently, this functionality is not there because of which we are sometimes losing customers. I can create a role on Layer 3, Layer 4, but when it comes to the application layer, such as configuring and defining URLs or other things at the application level, it can't be done through Change Manager. Customers demand that they should be able to do everything through Change Manager. They don't want to do it through some other mechanism to accomplish their complete change management policy. They don't want to use a firewall manager because sometimes, they don't have any manager. They ask if they can use our solution so that a manager is not required. If Change Manager can do all the management automatically without involving any other manager, it will be great. They can also provide better integration with other managers so that everything can be done through a central point."

What is our primary use case?

Our clients are using it from the firewall assurance perspective. They want to do an audit of their firewalls. So, the use cases are related to policy audit, such as which shadow rules they have and which rules are not getting utilized. 

We are recommending the latest version to our clients because sometimes, a lot of integrations are required with respect to different firewalls and virtual devices. If we are using an old version, some of the things are not getting integrated. That's why we are going with the latest or the latest minus one version.

To my knowledge, most of the deployments that we have done are on-prem.

What is most valuable?

It can be integrated with a vulnerability management solution. When a client comes, apart from pitching network and firewall change management, we are recommending having vulnerability management. So, rather than just having the audit of the firewall, they can integrate it with their vulnerability management solution, which could be Rapid7, Qualys, or any other solution. This provides them the most value out of the platform. That is the way we are approaching our customer base.

It is reliable, and their support is good.

What needs improvement?

Change Manager can be improved. If they can improve Change Manager so that whatever we want to do on a firewall, we are able to do it through Change Manager, it will be helpful for us. Whenever we are doing a change, it only does them at an L3 and L4 level, but all the firewalls are at the application layer. So, whatever needs to be done on the firewall, we aren't able to get it done through Change Manager. Currently, this functionality is not there because of which we are sometimes losing customers. I can create a role on Layer 3, Layer 4, but when it comes to the application layer, such as configuring and defining URLs or other things at the application level, it can't be done through Change Manager. Customers demand that they should be able to do everything through Change Manager. They don't want to do it through some other mechanism to accomplish their complete change management policy. They don't want to use a firewall manager because sometimes, they don't have any manager. They ask if they can use our solution so that a manager is not required. If Change Manager can do all the management automatically without involving any other manager, it will be great. They can also provide better integration with other managers so that everything can be done through a central point.

On the OT side, if they can provide more visibility, it would help. We are working on some of the features related to OT, so more visibility would be helpful.

For how long have I used the solution?

We have been working with this solution for two to three years.

What do I think about the stability of the solution?

It is reliable. Whatever features are there, they are reliable.

What do I think about the scalability of the solution?

As of now, we don't have any challenges with scalability. If we are fulfilling all prerequisites, it is okay. 

Earlier, in some of the cases, it was a bit slow, but if we are fulfilling all the requirements, it gives a good performance. For a PoC, when we were using an old platform, the performance was not up to the mark, but when we use the latest platform and hardware, the performance is good.

How are customer service and support?

Their support is good. Support is not a challenge.

How was the initial setup?

It is not complex.

What about the implementation team?

We are acting as a vendor and distributor for Skybox in India. So, our team is taking care of whatever implementations are coming on behalf of Skybox.

What's my experience with pricing, setup cost, and licensing?

Licensing is normally on a yearly basis. There may also be a perpetual license. Normally, the customers ask for a lower price. If you want to sell more, you have to think about it.

What other advice do I have?

I would definitely recommend this solution. If you have a complex network with more than 20 firewalls, it is better to go with this solution. It might not be suitable if you have only four or five firewalls, but when the network is complex, or you are managing a data center with a lot of security challenges, I would recommend this solution.

I would rate this solution a nine out of 10.

Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor
PeerSpot user
Buyer's Guide
Skybox Security Suite
January 2025
Learn what your peers think about Skybox Security Suite. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
838,713 professionals have used our research since 2012.
Information Security Officer at Sony Corporation of America
Real User
Stable, with good port division management but requires more automation features
Pros and Cons
  • "The port division management was the solution's most valuable aspect for our organization."
  • "The solution was quite technical. It would be easier to manage if the solution was more specific about aspects of the solution and provided more advisory around how to use it effectively. It would help users a lot if they were more clear about everything."

What is our primary use case?

We primarily used the solution for model sites, on the configuration side of things. We also used it to review certain port services, etc.

What is most valuable?

The port division management was the solution's most valuable aspect for our organization.

What needs improvement?

The solution was quite technical. It would be easier to manage if the solution was more specific about certain aspects and provided more advisory around how to use it effectively. It would help users a lot if they were more clear about everything.

The solution requires more integration in terms of automation features.

It would be great to have proxies, IDs, IPs, firewalls, certain network centers, etc. on the solution. If more of that can be looked at or reviewed from a Skybox standpoint it would be helpful. The solution needs to expand its scope.

For how long have I used the solution?

We had been using the solution for about a year. It hadn't been too long.

What do I think about the stability of the solution?

For us, the stability of the solution was okay. Our organization managed to use it just fine.

What do I think about the scalability of the solution?

The solution isn't great at scalability. I'm not saying it is not scalable, but then, of course, companies have to test and see. For us, when it came to scalability, there were always question marks as to if it could be done effectively. We were never 100% confident in its capabilities. For us, and the environment we worked in, we were somewhat sensitive to scaling with this solution.

There were two types of users for this solution in our organization. One type of user had full access to the tool and they were the leadership team, IT and security. The other type of user had access to automated reports. There were about 200 people who had access to this.

How are customer service and technical support?

We were never in touch with technical support. I can't speak to how helpful they were. We had a team that dealt with technical support, but I don't recall ever hearing from them about how good or bad the service was.

Which solution did I use previously and why did I switch?

We've since moved from Skybox to another solution, therefore, we aren't using it anymore. About four to six months ago, we migrated from Skybox to another tool called AlgoSec.

What other advice do I have?

I'd advise other companies to scan the solution from time to time and be mindful of it. It's also important to make sure the services of the tool are enabled for the actions a company will need to handle or monitor.

I'd rate the solution seven out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
reviewer1202646 - PeerSpot reviewer
Head of Cyber Security at a tech vendor with 11-50 employees
Real User
Mature and powerful with elaborate tools for creating focused views or attack vectors
Pros and Cons
  • "Robust modules can be used for different parts of network security."
  • "The solution does not support certain devices or vendors in some regions or countries due to regulations."

What is our primary use case?

Our company uses the solution to provide firewall and vulnerability management for customers. We work with our customer's IT and cybersecurity departments to determine the use case such as viral assurance, network assurance, and change management. We have implemented the solution for 60 customers. 

We provide firewall management for customers who can afford to purchase the Skybox firewall model. 

Most of our use cases are implementing Skybox Control as a firewall tool. We provide customers with more focus so they can understand attack vectors and whether they come from different parts of a network or a partner workforce. The vulnerability control determines how we operate with an attack vector. For example, we might close ports, close some vectors, or patch software. 

What is most valuable?

The solution is mature and powerful because it includes elaborate tools for getting a focused view of an infrastructure or creating attack vectors based on details from Qualys and Tenable. 

Robust modules can be used for different parts of network security to match the business needs of big organizations. 

There is a strong focus on customer retention because the customer satisfaction department works with the development department to implement customers' feedback in new releases.

What needs improvement?

The solution does not support certain devices or vendors in some regions or countries due to regulations. A universal connector would be an interesting way to ensure that support is worldwide. 

The UX interface could be simplified and more convenient. 

For how long have I used the solution?

I have been using the solution for eight years. 

What do I think about the stability of the solution?

The solution has a mature environment and is quite stable. We properly implement any hardware and cover the infrastructure so we have no issues with operating and analyzing data. 

The solution includes tools for backup. If for some reason a customer experiences a slow down, then it takes only ten or twenty minutes to use the backup and recover. 

What do I think about the scalability of the solution?

The solution is scalable so it works well for retail. For example, you can use a number of consoles or servers that operate with specific data in a specific segment. You can have a management server with a proxy in a different part of the network that operates specific devices on a segment or provides data for analyzing a management service. 

You can add RAM or cores for virtual machines if you need more or deeper infrastructure segments. 

How are customer service and support?

Training and technical support are provided at no extra charge. 

Which solution did I use previously and why did I switch?

Most of our customers were using custom tools or scripts. They may have been trying to get insights from Cisco or Juniper. 

Once businesses grow and mature, they understand the need for viral or vulnerability management tools. The solution can operate with custom tools so it provides the needed coverage.

For example, customers might have specific scanners but they do not cover or provide reports for all of the infrastructure's vulnerabilities. It is important for IT to manage the configuration of all network devices while competently managing vulnerabilities.  

How was the initial setup?

I have years of experience so setup is quite simple. 

It is important to understand networking and how various modules work. In general, a bit of training from the solution's partners is beneficial. 

What about the implementation team?

We implement the solution for customers. Easy use cases can be completed by one technician and more complex security networks might be completed by three technicians. 

We train our internal team and provide training to customers that includes general administration or common issues. 

One or two administrators can handle hardware maintenance and report interpretation. 

What was our ROI?

We work with customers to understand their ROI. The buy-in cost varies by customer because it is based on the modules selected. 

The cost of implementation might end up being equal to a yearly salary but the importance of cybersecurity cannot be outweighed. 

What's my experience with pricing, setup cost, and licensing?

The solution is based on a subscription model with annual licenses. Modules of interest are purchased separately. Training and updates are included at no extra charge. 

A perpetual license used to be popular but is rarely used these days. 

Which other solutions did I evaluate?

The solution is the most interesting for customers because its complexity and power is a match to different parts of networks. 

AlgoSec is the toughest tool for viral management so is an option for customers who only want to focus on that. 

What other advice do I have?

It is important to understand your company's needs. Jumping in and implementing all functionality or modules is not advised because they might not be needed.

Additionally, module implementation is complex because you must meet corporate compliance requirements for library management, network maps, and network security.

Take a step-by-step approach and try modules before purchasing them. Understand your needs and see if modules match them. 

I rate the solution an eight out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
erdemerdag - PeerSpot reviewer
Cybersecurity Operations Engineer at a tech services company with 201-500 employees
Real User
Top 10Leaderboard
Impressive optimization and clean-up but UX needs improvement
Pros and Cons
  • "The most impressive feature is optimization and clean-up."
  • "Skybox should improve their UX features by making them easier to use."

What is our primary use case?

I mainly use Skybox to harden firewall rules and for rule usage analysis and compliances. We also use it for configuration compliance for firewalls, most of the Cisco switches and routers, and enterprise firewall vendors.

What is most valuable?

The most impressive feature is optimization and clean-up.

What needs improvement?

Skybox should improve their UX features by making them easier to use. They're also trying to transfer from Java GUI to web-based systems, but it's not consistent right now, so they need to develop and improve the features on that side. I mean, the native Java based GUI results and the new Web GUI results are not always the same. I have experienced some inconsistency results among them. So, I need to trust newer GUI for results.

For how long have I used the solution?

I've been using Skybox Security Suite for more than five years.

What do I think about the scalability of the solution?

Skybox is scalable.

How are customer service and support?

Skybox's technical support is fine, but getting help takes some time because they request rules and models and pack logs instead of offering a remote session.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup was extremely straightforward - the installation took about twenty minutes, but the integration took some more time because there were lots of different vendors and integrations. We also had some problems with login and port rules, which delayed integration. 

What's my experience with pricing, setup cost, and licensing?

Skybox comes with extra licenses and has a change management license. The licenses are expensive, but they come with extra value.

What other advice do I have?

Skybox is a full-feature product that comes with different modules like firewall and network assurance, network mapping, and a vulnerability control module. It's a very, very good solution for medium and large companies. I would advise anyone thinking of implementing Skybox to use a professional team to do the integration. I would rate Skybox seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Karthik-Krishnamoorthy - PeerSpot reviewer
Principal Consultant at Wipro
Real User
Implementation is straightforward but needs custom dashboards
Pros and Cons
  • "We are currently working on rule review and compliance. The logging features are good."
  • "There are multiple dashboards but no custom dashboard. It would be good to include a custom dashboard so that we can actually choose which field and what kinds of things we want to look at."

What is our primary use case?

It's for integrating with firewall logs, and we are looking for automation where we can actually select all of the network architecture. Then, we can understand the rules that are available. We can look at the complexity as to whether the rules are compliant as per the standards or not. It's depends on the compliant order.

What is most valuable?

We are currently working on rule review and compliance. The logging features are good.

What needs improvement?

As for room for improvement, there are issues in logging. The logs are not coming into the log.

There are multiple dashboards but no custom dashboard. It would be good to include a custom dashboard so that we can actually choose which field and what kinds of things we want to look at.

For how long have I used the solution?

We've been using it for probably more than six months.

What do I think about the scalability of the solution?

In terms of scalability, I would give it a six out of ten. The logging features are good, but zones and zone mapping to get interactive topology are not straightforward.

How are customer service and support?

I would give technical support an eight out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I used AlgoSec at another company. Skybox Security Suite is nicer than AlgoSec.

How was the initial setup?

The initial setup is pretty straightforward. It gets more complex only when you try to integrate with the logs.

What other advice do I have?

The implementation of Skybox is straightforward and you can integrate and get the logs and compliance reporting.

The integration might be a little tricky and may need tweaking.

Overall, I give Skybox Security Suite a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1451070 - PeerSpot reviewer
Chief Information Security Officer at a financial services firm with 1,001-5,000 employees
Real User
Stable with good dashboards and excellent firewall compliance
Pros and Cons
  • "The solution offers very nice dashboards and they've recently added a very good Java-based web interface."
  • "The support could be improved."

What is our primary use case?

I primarily use the solution for my firewall. It offers a firewall compliance test and can check and verify firewall configurations and firewall changes on a daily basis. They also send you information on which are activated and which should be deactivated.

What is most valuable?

The solution is very good at dealing with firewall changes and firewall compliance. For network assurance, you need to know the compliance for your related devices, for example, the configuration and your network and switches. The solution allows you to look for something that is already in review or consultation and provides proper configuration. 

The most important feature in Skybox is the offline attack simulation. It helps you understand what your priorities should be in terms of deployments or patches. It's important to know what is the most important and what is the least, due to the fact that, every day, if you have a large enterprise network, it would be very difficult to install all of the patches on your environment. By having the most important highlights, you can start there and work your way down the list of patches. 

The solution offers very nice dashboards and they've recently added a very good Java-based web interface.

What needs improvement?

The pricing is too high. 

Other competitors provide a solution that rebuilds holes from scratch and rebuilds configurations on all the holes. Skybox does not offer this capability. It's something they should add to their list of features.

The support could be improved. 

The implementation process could be a lot faster and much less complex.

The search functionality could be better. There's no way to exclude items from your search criteria, for example.

They need to find a way to revamp the firewalls in a professional way. They need to figure out a proper implementation strategy for the firewalls.

For how long have I used the solution?

I've been using the solution for six years now.

What do I think about the stability of the solution?

The stability is actually okay. We don't have any issues in that sense.

What do I think about the scalability of the solution?

In terms of scalability, if you need anything to be extended in your environment, you have to pay for Skybox security in order for it to be supported. It costs extra money to scale.

We have about 14 people in our organization who use the solution.

How are customer service and technical support?

Support is not the greatest. 

If you need help with a new product or service, they seem to take forever to be able to help you. They'll also not help you unless you are on the newest versions, so they sort-of force upgrades.

How was the initial setup?

The initial setup was not straightforward at all. In fact, it was quite complex. We took about one and a half years to stabilize Skybox. It took far too much time.

What about the implementation team?

Normally, when you require assistance, like we did, it's via Skybox consultants.

What's my experience with pricing, setup cost, and licensing?

Due to the cost of the solution, I've decided to switch products. I'm already paying a lot and I have to pay a subscription each year. I'm looking for another solution that would less money and could provide the same features.

The pricing is very expensive. If you have the enterprise version, you have multiple products and multiple versions you need to activate. If you need to do a replacement, for example, you'll have to pay for Skybox professional services in order to support your version.

Currently, the licensing costs me about $300 USD for the year. This is a huge amount for my environment.

Which other solutions did I evaluate?

We were looking at FireMon and another solution previously. It is my understanding that we will be switching to FireMon soon due to the relative costliness of this product. We're going to do a POC on FireMon, and if all the features we need are supported, we're likely to switch.

What other advice do I have?

We're just a customer.

The latest version is 11, however, I am currently one version behind.

For small and medium-sized environments, this may not be the best solution, due to the cost involved. However, if you are an enterprise-level company, this might work well for you.

Overall, I would rate the solution nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user725601 - PeerSpot reviewer
Enterprise Architect - Information Security at a transportation company with 5,001-10,000 employees
Real User
Simple to use and scalable but needs more detailed reporting
Pros and Cons
  • "The solution's simplicity of use is its most valuable feature."
  • "The solution needs to add more automation and orchestration capabilities. Those features would make the solution much stronger."

What is our primary use case?

We primarily use the solution for our management and optimization.

What is most valuable?

The solution's simplicity of use is its most valuable feature.

What needs improvement?

The solution needs more detailed reporting. In Skybox the reporting is good, but it could be improved.

The solution needs to add more automation and orchestration capabilities. Those features would make the solution much stronger.

For how long have I used the solution?

I've been using the solution for about four years now.

What do I think about the stability of the solution?

We've found the product to be quite stable. We haven't come across any bugs or glitches. We also haven't experienced any crashes that would lead us to believe there was instability.

What do I think about the scalability of the solution?

The scalability of the solution is very good. There's nothing stopping a company from expanding if they need to.

How are customer service and technical support?

Reaching out to the solution's technical support wasn't in my remit. I'm the enterprise architect, so I don't get involved in tech support issues.

Which other solutions did I evaluate?

We did evaluate other solutions before choosing this one. In fact, I'd recommend other companies to also take a look at Tufin and AlgoSec. Evaluating each of these will help organizations pick the best solution for their needs.

What other advice do I have?

We're just a customer. We're not a partner or reseller of the solution.

I'd rate the solution seven out of ten.

I'd recommend those considering the solution to also look at Tufin and AlgoSec. I'd advise anyone considering any of these three options to compare them together and request a detailed proof of concept.

In general, I'd recommend the product. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Skybox Security Suite Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2025
Buyer's Guide
Download our free Skybox Security Suite Report and get advice and tips from experienced pros sharing their opinions.