Cisco Secure Firewall delivers comprehensive threat protection for modern, distributed networks. Built to support hybrid workforces and multicloud environments, it enables Zero Trust access, application visibility, and secure remote connectivity. With integration across the Cisco Secure portfolio, including SecureX and Talos threat intelligence, the firewall powers organizations to detect and stop more sophisticated threats. Centralized management simplifies policy enforcement, orchestration,…
N/A
Cisco Umbrella
Score 8.7 out of 10
N/A
Cisco now offers OpenDNS Umbrella Web Filtering. Cisco acquired OpenDNS in August 2015, and rebranded the product as Cisco Umbrella.
N/A
Pricing
Cisco Secure Firewall
Cisco Umbrella
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco Secure Firewall
Cisco Umbrella
Free Trial
Yes
Yes
Free/Freemium Version
No
Yes
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Cisco Secure Firewall
Cisco Umbrella
Considered Both Products
Cisco Secure Firewall
Verified User
Anonymous
Chose Cisco Secure Firewall
on par with other firewalls vendors I've used over the years
While Cisco Secure Firewall is pricey, it delivers and does not compromise on capabilities. It is the best for network protection. Worthy every dollar.
The administraion interface of the Cisco secure firewall is a lot more easy to learn than the Palo Alto solution. Also, the dashboard panels offers by Cisco seems a lot more useful and details than the Palo Alto solution.
Having worked in the Fortinet and Sonicwall space, I have found that the Cisco Secure Firewall platform is the easiest to work with. The platform is easily customizable and overall very clean. Cisco has kept the platform feeling fresh with regular updates.
Cisco has a more seamless integration with its firewall management center compared to palo alto's panorama which tends to become out of sync with their firewalls. This can cause config differences, duplicate rules, or just the inability to deploy polices due to inconsistencies. …
They are peer competitors, with Palo Alto offering some advantages over the Cisco products in the way of licensing simplicity and costs. The Palo Alto also supports the abilty to do "to the box" filtering and policy enforcement where Cisco requires special rules that are …
I've used Ubiquiti products, SonicWall products, the various older Cisco and Meraki. Cisco is definitely more of an enterprise level and overall it has probably better overall options and integrations and functionality and we've continued to choose to use it because it works …
Cisco Secure Firewall works better with the Cisco ecosystem when we can utilize it and feels beefy enough when we utilize it in the data center. The Fortinet we have found are great, small cost boxes for remote offices with a better UI then Cisco Secure Firewalls. The feature …
I have used several different solutions over the years. The Cisco Umbrella solution is by far a way better solution than anything I have used. IT is easy to easy with basic implementations vs. others. Cisco Umbrella is more accurate than other solutions (though not as deeper …
Different products in different spaces. The Z3 was more of a VPN endpoint so that users didn't have to worry about a client. If they are at home, they are on their corporate network and able to access resources. Cisco Umbrella can be used then to serve corporate DNS across the …
Cisco Umbrella did what we needed it to do far more than the other apps that we tried out. For mobile work on MacBook and iPads, Cisco Umbrella was the best option for our district. The cost was lower as well and did not lower the level of security we received because of lower …
We evaluated a lot of products. The good part is that we didn't go outside. So Ineos grew by acquisition and therefore we inherited a lot of products there. So we looked at the Netskope and Fortinet because they were within our sphere of product portfolios that we had in the …
Price and integration to Meraki MX, plus ability to protect endpoints with roaming module. Umbrella also came with DLP and evolved to Cisco Secure Connect (special offering for Meraki)
Better integration with other Cisco portfolio of products. We have an enterprise subscription and Cisco Umbrella dns was already included as part of the offering. Also we are looking into integration with sd-wan in sites where it is hard to provide full spectrum of services that …
Auto SIG Tunnels is a feature that helps in provisioning tunnels automatically using Cisco Umbrella APIs and so this is one win for choosing Cisco Umbrella over others. With Cisco SD-WAN Viptela, the Cisco Umbrella stacks up well because its the same vendor so less …
Barracuda has some additional feature sets in its physical Web Security Gateway hardware, however Umbrella has been more reliable for what we are doing in our environment.
The software offers advanced firewall solutions from Web threats management to behavioural analytics and comprehensive application security. Cisco Secure firewall software is incredibly easy to deploy and implement. Customer support services providers are concise and very responsive. Integration and customization of the software are exceptional. The product boasts impressive capabilities, enabling it to stop threats and manage all security flaws in real time.
It is good for whole network protection, and individual PCs with the client. Provide good reporting on where your network is going on the net. One thing I would like is a longer history with the logs 14 and 30 days are too short some times.
It's good at segregating networks and ensuring that you only give the access that you need to give. Especially with medical devices, you want to only give the access that they need and keep them in their own separate areas so that they can't just communicate with the rest of the network. It's also good at the border for keeping attackers out of the network.
Managing the overall security policies is quite seamless in Cisco Umbrella. it is quite easy to set up and implement web filtering rules and other necessary configurations without any hassle.
The reporting features like 'activity search' provides greater visibility of our user's internet activity within our organization. We can identify security related risks quickly and take decisions to mitigate them.
The deployment and integration of Cisco Umbrella with other vendors product is quite appreciable. We other non cisco security devices which Cisco Umbrella was integrated with without any major issues.
We can easily track down any user that goes to the internet through the activity search feature.
I have one argument, failover scenario. It's not quite easy. Failover scenario of firewalls. It's sometimes not quite easy to know the issue. But if we open a tech case, a technical case to Cisco, Cisco will help us, it's a little bit con, but we are happy with this product.
There's always room for improvement in all products for sure. On the umbrella part, I would say that the room for improvement is on the data loss prevention part. So it sits on the PCs, it sees a lot of the traffic that goes on, it knows what files are on the PCs, but it's actually not stopping some of the intellectual property or personal identifiable information from going out. So we are able to block users from accessing applications and websites or even IP addresses, but we're not able to go a bit more granular, more on the data loss side. So that's a gap that I have in the product.
It works really well. We can do most anything we want or need to with it, and you don’t have to have a doctorate or multiple certs to necessarily figure it out. The thing that would probably have to happen to make us switch would be if we just got priced out - Cisco’s more powerful and higher bandwidth models cost a pretty penny.
First off I never give anything a "10" unless it's perfect. LOL - I grade on the curve. I think OpenDNS/Umbrella is a very good product. I think that fact that Cisco absorbed them is one of the proofs of that. I have used the product back when it was free for companies our size. I have not always appreciated the cost - but in the post pandemic cyber chaos, I believe the cost benefit ratio is still very high. I have honestly not looked at other products because Umbrella continues to work to my satisfaction. I consider Umbrella to be one of the key layers in my cyber security strategy.
The platform is powerful and feature-rich, especially when paired with tools like Firepower Management Center (FMC) and SecureX. The policy structure is logical, and the visibility into traffic flows, threat activity, and rule hits is quite strong once you're familiar with the interface
The product was easy to install and get running. To maintain the product is also a simple matter of maintaining lists of wanted and unwanted domains or URLs. The basic and advanced security features all do what they are intended to do with no known erroneous outcomes
As for the availability, in general we did not experience any issues with it, neither in situations where there's only one physical device implemented nor when there's and High Availability pair. Failover works like a charm, no complaints here, it works as it should and so far it has been highly reliable.
Cisco umbrella services in the cloud are always available. However, the weakness is the VM installed in the data center that are the first resolvers. If the VMs become unavailable for any reason or the vSphere goes down, then all DNS is affected
our experience with cisco products has always been awesome and same is the case with cisco umbrella .Under umbrella cisco provides flexible and scalable software solution to use across different dept and sites . These softwares are very user friendly ,pages load quickly as these applications are designed for minimum latency and reports are also provided quickely
Our experience with Cisco TAC support for Cisco Secure Firewall has been very good. The support engineers are knowledgeable about the product and have many tools available to them to work "under the hood" of the firewalls or management center. When we've had equipment failures, the RMA process has been simple and straightforward.
Whilst the support is good once you get through to them, it's email only and the response is slow. This is a issue, because its a core system that needs to work. We have had issues in the past where several of our companies have gone down due to Umbrella and support is nowhere to be seen. It is very difficult to know whether Umbrella is having service issues, since they do not regularly update customers on the status of their services, such as is seen by providers such as Microsoft (status.umbrella.com just seems to show up all of the time, I'm not sure it's even updated)
was a good training but questions was answered not so good. Training was "Fundamentals of Cisco Firewall Threat Defense and Intrusion Prevention (SFWIPF)".
Quite easy to understand training modules prepared by knowledgeable trainers. Training modules have included all the desired features of these softwares and the content delivery is very good from the respective module trainers and it explains in details the features and apart from that further training material support is also provided if needed.
Our initial implementation was aided by Cisco's professional services and was excellent. The engineer was very knowledgeable and helped us work through issues while building out our new internet security edge Part of this involved tools to migrate the firewall configuration from old to new.
At the time we were forced to move from Cloud Web Security to Cisco Umbrella, Cisco Umbrella was far from being a direct replacement. It was frustrating and difficult to migrate due to the lack of functionality. This has since been addressed, however we now have legacy rulesets that were built as bandaids that cannot be removed. Hopefully the migration to Secure Access will address this.
Cisco Secure Firewall works better with the Cisco ecosystem when we can utilize it and feels beefy enough when we utilize it in the data center. The Fortinet we have found are great, small cost boxes for remote offices with a better UI then Cisco Secure Firewalls. The feature set included with the firewalls feels similar from a security point of view.
Different products in different spaces. The Z3 was more of a VPN endpoint so that users didn't have to worry about a client. If they are at home, they are on their corporate network and able to access resources. Cisco Umbrella can be used then to serve corporate DNS across the VPN tunnel to the Z3 device and extend the capabilities of Cisco Umbrella.
Cisco umbrella provides fleaxible and scalable software solutions which are easy deploy across multiple departments and sites wherever needed and this softwares are very easy to use and provides the best interface along with cisco support for other devices apart from cisco infrastructure but still there is scope for improvement on the inclusion of latest features
Cisco Secure Firewall gives details on the possible intrusions attempts that are occurring on the network, which gives stakeholders confidence that the network is being protected.
Cisco's reputation as a longstanding network leader provides the trust that is needed in keeping networks secure.
The wide variety of tools and features that Cisco Secure Firewall provides allows business owners to plan for changes that can occur in the network as Cisco is able to adapt to the different needs.
It's too early for us to say now. We started with Cisco Umbrella with the migration and during the migration we choose all the specific access. Now we are going to Cisco Secure Access in our simulations there will be much of cost savings because we don't need the on-premise data center anymore for the ASARs and for the local firewalls and the people, they are managing that on-premise. So we estimate there will be a lot of cost savings, but currently it's not on the paper yet. So we have to wait what the experience is with it, but we are optimistic.