I have used Tufin for traffic analysis, to check the traffic hitting a specific rule, for rule consolidation and so on. It’s really helpful. For my usage, it's very good.
Security Operations Engineer at a hospitality company with 1,001-5,000 employees
I use it for traffic analysis, to check the traffic hitting a specific rule, for rule consolidation and so on.
What is most valuable?
What needs improvement?
We would like to see historic reports for the device, for a policy, for rule consolidation, and for rule optimization.
Also, it's pretty slow for us. Just to run an analysis for a single rule, we need to wait at least five minutes.
What do I think about the stability of the solution?
We had a couple of stability issues before, when we were running on our old core. We used to not get the reports as we expected. The Tufin used to get disconnected from the device and just not provide the exact reports such as the hits on the rules.
Over the last year and a half, we upgraded twice, and right now it's pretty stable.
What do I think about the scalability of the solution?
It has been scalable for our needs.
Buyer's Guide
Tufin Orchestration Suite
March 2025

Learn what your peers think about Tufin Orchestration Suite. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,651 professionals have used our research since 2012.
How are customer service and support?
Technical support is really good. They're supportive.
Which other solutions did I evaluate?
We've been using AlgoSec as well for analysis. We use both Tufin and AlgoSec for our reports.
What other advice do I have?
It's a good tool. We would need a view of all the tabs, for the analysis. If it's pretty fast, that should be good for us.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.

Network, Telecom and Storage Manager at a financial services firm with 1,001-5,000 employees
We were able to reduce the number of rules we had.
Valuable Features
The first one is the policy analyzer to help the network facility to remove objects and the server needs an object, an appliance object.
Improvements to My Organization
For the first one, we were able to reduce the number of rules, and the signaling one is about the compliance. We have many security rules to define the flows between the security zones, so we put all the rules under 13, and then we can generate reports.
Room for Improvement
It needs more compatibility with older firewalls.
Stability Issues
We have no issues.
Scalability Issues
We have 2000 employees, and it's been able to scale to meet our needs.
Customer Service and Technical Support
Very easy. We got the license, and we got all the roles and information from the firewall to generate reports.
Other Advice
Prior to implementing, you need to know the needs for each project. If you know the needs, you will probably meet expectations.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Tufin Orchestration Suite
March 2025

Learn what your peers think about Tufin Orchestration Suite. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,651 professionals have used our research since 2012.
IT-Security - Consulting (Licensing, Maintenance) at a tech consulting company with 501-1,000 employees
It addresses the weaknesses of our internal customers and we can perform changes in real-time.
Valuable Features
It supports failure operational processes of the administrator, which sometimes in small companies is difficult to do. This helps me in my job to help others free up time to do other, more important tasks.
Improvements to My Organization
The biggest and most important benefit is that it addresses the weaknesses of our internal customers. We can perform changes in real-time instead of having to wait for days or weeks. Of course, if there are compliance issues, we can see right away whether they have documentation that addresses the issues and we can then approach management with the solution.
Room for Improvement
It doesn't have cross-vendor support for solutions such as Barracuda.
Deployment Issues
We had no issues with deployment.
Stability Issues
We haven't had to log any support cases, so I'd say that it's a stable solution. We haven't had any issues with stability.
Scalability Issues
Our Austrain customers are not big, so scalability from my point of view is not an issue. At the moment, we haven't come across any issues with scalability, so I'd say it's perfect in that regard.
Customer Service and Technical Support
We aren't in direct contact with technical support, but we could be if necessary. But I've heard my colleagues talk about how Tufin isn't as big a company as Check Point, so that if there's a problem, the entire company helps to find a solution.
Initial Setup
I didn't perform the initial setup, but I don't think it was too complex. We have a lot of Check Point engineers and thy have an understanding of security solutions, so it was easy for them. We have all three Tufin solution, and I think SecureApp was the most challenging, but we have experience, so the setup was still not too difficult.
Implementation Team
We implemented it with our in-house team.
Other Solutions Considered
We have a close relationship with people within Tufin, many of whom came from Check Point. We didn't think about going with another vendor.
Other Advice
Just try it out. You should perform Proof of Concept and you’ll be reaping the benefits and seeing it’s a good product.
Disclosure: My company has a business relationship with this vendor other than being a customer: We're partners.
Great technical support, saves time, and excellent performance
Pros and Cons
- "I like the policy topology map, which allows us to visualize the picture of the security policy of the whole organization."
- "I would like to see the hardware specifications improved."
What is our primary use case?
Our primary use case is the policy request automation workflow.
How has it helped my organization?
Tufin saves a lot of time on the policy requests deployment. It enhances the SLA of the policy requests or changes and enhances the accuracy of the policy deployment.
What is most valuable?
I like the policy topology map, which allows us to visualize the picture of the security policy of the whole organization.
What needs improvement?
I would like to see the hardware specifications improved. The solution requires very high specifications of hardware platforms to run it. These high requirements are quite difficult to be acquired for users.
For how long have I used the solution?
I have been working with Tufin for the past three or four years.
What do I think about the stability of the solution?
Tufin performs very well.
What do I think about the scalability of the solution?
Tufin is definitely scalable.
How are customer service and support?
Technical support is very good when escalating questions with them.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is straightforward and easy.
What's my experience with pricing, setup cost, and licensing?
I think the pricing, comparatively, is good.
What other advice do I have?
The functionality, roadmap, and technical support are important to most customers. It is important to consider the integration support with other security tools and compatibility. I would rate Tufin a eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Technical Lead at M.Tech
Good reporting and monitoring capabilities, easy integration with different firewalls, and good stability and scalability
Pros and Cons
- "It provides very good reports. It can easily integrate with multiple firewalls, such as Cisco, Juniper, Palo Alto, and Checkpoint. We can push a policy from Tufin to a firewall, which is a very good feature. We can monitor all access rules and the operating system of a firewall."
- "Currently, we are able to monitor access rules and the operating system of a firewall. It would be great if we can also monitor the configuration of the firewall through Tufin."
What is our primary use case?
Our customers use Tufin to manage multiple firewall access rules through a single console. We have done on-prem, public, and private deployments of this solution.
What is most valuable?
It provides very good reports. It can easily integrate with multiple firewalls, such as Cisco, Juniper, Palo Alto, and Checkpoint.
We can push a policy from Tufin to a firewall, which is a very good feature. We can monitor all access rules and the operating system of a firewall.
What needs improvement?
Currently, we are able to monitor access rules and the operating system of a firewall. It would be great if we can also monitor the configuration of the firewall through Tufin.
For how long have I used the solution?
I have been using this solution for the last three years.
What do I think about the stability of the solution?
It is very stable. It has good stability.
What do I think about the scalability of the solution?
It has very good scalability.
How are customer service and technical support?
Their technical support is good.
How was the initial setup?
Its initial deployment is not very easy. It is a little bit complex. After the deployment, it is easy to work with it in the GUI. Its deployment takes at least two or three days.
Which other solutions did I evaluate?
Customers usually evaluate AlgoSec.
What other advice do I have?
I would advise others to go for it to manage firewalls from multiple brands in a single console.
I would rate Tufin a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor
Presales Network & Security Engineer at a tech services company with 51-200 employees
User-friendly, intuitive, easy to set up, with good monitoring and support
Pros and Cons
- "It allows administrators to visualize the traffic flow, and troubleshoot when necessary."
- "They need to offer more support to vendors, such as Cisco, Checkpoint, Fortinet, and Forcepoint."
What is our primary use case?
The primary use case of this solution is for monitoring, automation, policy orchestration, and security.
What is most valuable?
The most valuable feature is the monitoring. I quite enjoy the monitoring this solution provides. It allows administrators to visualize the traffic flow, and troubleshoot when necessary. It's a useful tool.
The interface is quite user-friendly and intuitive.
What needs improvement?
The cost of this solution should be improved.
They need to offer more support to vendors, such as Cisco, Checkpoint, Fortinet, and Forcepoint.
They have an API, but it needs more service on this.
While technical support is good, they could still improve.
For how long have I used the solution?
I have been working with Tufin for one year.
What do I think about the stability of the solution?
It's a stable solution. There are some bugs that they are working on but that is common with any vendor.
They do mention that they don't support specific features from Nexus for some automation but it does actually work, although it is not listed as working.
How are customer service and technical support?
Technical support is relatively good. They are not the best but they are good.
They could improve but they do respond with accurate responses.
How was the initial setup?
The initial setup was straightforward. It was deployed in less than an hour.
The first time without training, it took an hour or so, but it was quite easy.
What's my experience with pricing, setup cost, and licensing?
It's quite an expensive solution.
What other advice do I have?
I would recommend this solution to others who are interested in using it.
I have not worked with any other vendors with this type of solution, for example, FireMon. I haven't worked with it.
I would recommend it specifically to start with a secure track, which is a monitoring tool. Once the customer sees it, they want the solution. Afterward, for automation and secure change.
I would rate Tufin an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor
Chief Information Security Officer at a computer software company with 201-500 employees
We are able to stay compliant with many of the regulations
Pros and Cons
- "We are able to stay compliant with many of the regulations."
- "There was some complexity during the initial setup"
What is our primary use case?
We do firewall reviews on a quarterly basis.
How has it helped my organization?
It provides me great insight into my firewalls across my organization.
We are able to stay compliant with many of the regulations.
What is most valuable?
The rules, as they change over time, are the most valuable feature.
Its capabilities help me grow trust back and have less in-depth experience to go faster.
What do I think about the stability of the solution?
It is very stable.
What do I think about the scalability of the solution?
It is very scalable.
How are customer service and technical support?
The technical support has been on point.
Which solution did I use previously and why did I switch?
The previous solution was all manual.
How was the initial setup?
There was some complexity during the initial setup, but otherwise, it was fairly straightforward.
What about the implementation team?
I used a partner for the integration, who was very good to work with.
What was our ROI?
Our engineers are spending less time on manual processes: 20 to 30 hour plus.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Security Operations Engineer at a security firm with 201-500 employees
Quantifies and reduces many risks and eliminates traffic between different zones
Pros and Cons
- "I like the deployment and management of this solution."
- "In the next release I would like to see better migration in the Cloud because that will allow more visibility in the network."
What is our primary use case?
Our primary use case is fo the security of our medical facility. We have a lot of holes in the firewall and we wanted to see the details. For example, we see a lot of traffic between the different zones that we needed to reduce. So we use the solution to eliminate this traffic. It also allows us to have a lot of optimization rules for a good switching policy in the firewall.
It can quantify and reduce a lot of risks.
What is most valuable?
I like the deployment and management of this solution. I don't have much experience in that kind of security solution, but I have three years of experience in similar solutions, like AlgoSec. I do some scripts to optimize the solution, such as configuring the API.
Additionally, when we export the report, you can see a lot of logs of all the equipment in the company and we can identify some of the machines or some log station in the network. Also, the user can create some requests to implement the flow and push the rules in the firewall. You can analyze the log and the traffic, you can have a lot of API's, and do some reporting.
What needs improvement?
In the next release I would like to see better migration in the Cloud because that will allow more visibility in the network.
For how long have I used the solution?
I have been working with Tufin Orca for one year.
This solution was already deployed and we just manage it.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
This solution is scalable.
How are customer service and technical support?
I have tons of contact with support. If you have some problems or issues you can contact support and manage the problem together. I did that with a lot of competitors, like Palo Alto on our network. If we have an issue in production, my production team will try to solve it or you can contact support to manage the issue.
I am satisfied with the support.
How was the initial setup?
The initial setup is not complex. It's easy for me because I have some experience and training on it. Now I can do a whole production on the application.
What about the implementation team?
We used an integrator for implementation because I have a colleague who has a lot more experience than me and we worked together to manage that solution.
What other advice do I have?
I would recommend this solution. I think it's a good solution to have. It is good to know what this solution does in the network. You can have a lot of training on it and see a lot of questions from different users in the company.
On a scale of one to ten, I would rate it an eight.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.

Buyer's Guide
Download our free Tufin Orchestration Suite Report and get advice and tips from experienced pros
sharing their opinions.
Updated: March 2025
Product Categories
Firewall Security ManagementPopular Comparisons
FireMon Security Manager
Skybox Security Suite
Palo Alto Networks Panorama
AWS Firewall Manager
Azure Firewall Manager
ManageEngine Firewall Analyzer
Cisco Defense Orchestrator
Buyer's Guide
Download our free Tufin Orchestration Suite Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What is the biggest difference between AlgoSec and Tufin?
- Which lesser known firewall product has the best chance at unseating the market leaders?
- Comparing network security vendors and devices
- When should companies use SSL Inspection?
- When evaluating Firewall Security Management, what aspect do you think is the most important to look for?
- What are the most important features you would be looking for in a firewall?
- How do I estimate the required firewall throughput for my organization?
- What are the pros and cons of Tufin, AlgoSec and RedSeal?
- Tasks to Perform on Preventive Maintenance.
- Why is network segmentation important?