TrustRadius: an HG Insights company

FortiAnalyzer

Score9.1 out of 10

29 Reviews and Ratings

What is FortiAnalyzer?

As part of the Fortinet Security Fabric, FortiAnalyzer provides security fabric analytics and automation to provide better detection and response against cyber risks.

Categories & Use Cases

Must Have for FortiGate Management

Pros

  • Event correlation
  • Real-time detection
  • Compliance Reporting
  • Security Tools orchestration
  • Security workflow automation
  • Integration with ServiceNOW
  • Centralized NOC/SOC visibility

Cons

  • Administrative Domains and Software Versions are difficult to maintain
  • managing different FortiOS versions gets complicated quite easily
  • Administrative Domains must be well architected from the beginning

Most Important Features

  • log aggregation
  • multi firewall visibility
  • analysis of enterprise security landscape
  • easy to deploy

Return on Investment

  • we were able to retire 3 legacy security tools in favor of FortiAnalyzer
  • Automate 155 security tasks and reporting
  • one click compliance reporting for PCI-DSS
  • Enterprise security governance
  • Visualize the security landscape
  • Eliminate and or prune unnecessary rules
  • Tune overly permissive rules for tighter security

Alternatives Considered

Tufin Orchestration Suite and Splunk Enterprise Security (SIEM)

Other Software Used

Tufin Orchestration Suite, Splunk Enterprise Security (SIEM), AlgoSec

Usability

Fortianalyzer - Your go-to solution for centralized logging, cutting-edge analytics, and seamless automation within the Fortinet Security Fabric

Use Cases and Deployment Scope

We primarily leverage FortiAnalyzer for comprehensive monitoring of both inbound and outbound internet and intranet traffic through our perimeter firewall. This product provides us with a customized dashboard tailored to our specific use cases. Additionally, it plays a crucial role in generating monthly executive summary reports for management, offering insights into internet usage across the organization and individual users.

Pros

  • Custom dashboard
  • VPN traffic monitoring
  • Internet traffic monitoring
  • Users behavior analysis
  • Integrate well with the FortiGate firewall
  • Log analysis

Cons

  • In-depth user behavior analysis
  • Better UI/UX dashboard
  • Better integration with other product than FortiGate

Return on Investment

  • We are able to report to the management the real-time attacks on the network
  • User behavior analysis has become easy
  • Achieving a favorable return on investment (ROI) is easily attainable, given that the product cost is relatively moderate. Without the product, the amount of human work time required is significantly higher, further emphasizing the cost-effectiveness of its implementation.

Alternatives Considered

IBM Security QRadar SIEM, SolarWinds NetFlow Traffic Analyzer (NTA) and ManageEngine NetFlow Analyzer

Other Software Used

Cisco 3504 WLAN Controller, Cisco Application Centric Infrastructure (Cisco ACI), Fortinet FortiGate, McAfee DLP Endpoint