Fortinet FortiSIEM vs Nagios XI comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
32,763 views|18,195 comparisons
92% willing to recommend
Fortinet Logo
7,467 views|4,053 comparisons
81% willing to recommend
Nagios Logo
9,851 views|7,524 comparisons
86% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Fortinet FortiSIEM and Nagios XI based on real PeerSpot user reviews.

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Fortinet FortiSIEM vs. Nagios XI Report (Updated: May 2020).
768,857 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Free ingestion for Azure logs (with E5 licence)""The UI-based analytics are excellent.""Having your logs put all in one place with machine learning working on those logs is a good feature. I don't need to start thinking, "Where are my logs?" My logs are in a centralized repository, like Log Analytics, which is why you can't use Sentinel without Log Analytics. Having all those logs in one place is an advantage.""The dashboard that allows me to view all the incidents is the most valuable feature.""Sentinel has an intuitive, user-friendly way to visualize the data properly. It gives me a solid overview of all the logs. We get a more detailed view that I can't get from the other SIEM tools. It has some IP and URL-specific allow listing""The log query feature has been the most valuable because it's very good. You can put your data on the cloud and run queues from Sentinel. It will do it all very fast. I love that I don't have to upload it to an Excel file and then manually look for a piece of information. Sentinel is much faster and is good for big databases.""The UI of Sentinel is very good and easy to use, even for beginners.""Sentinel is a Microsoft product, so they provide very robust use cases and analytic groups, which are very beneficial for the security team. I also like the ability to integrate data sources into the software for on-premise and cloud-based solutions."

More Microsoft Sentinel Pros →

"The ability to write my own parsers for the devices that are not supported by Fortinet is the most valuable feature.""The primary valuable feature is that it has replaced a whole lot of other products with one platform.""We're able to get real-timec as well as our customer networks that we're monitoring at all times.""Fortinet FortiSIEM's most valuable feature is the simplicity in handling multi-tenancy and the ability to switch between different clients at the same time. That was handled flawlessly.""The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls.""The most valuable features for us are the built-in reports and alerts, along with the extreme flexibility in reporting and rule generation.""Some of our customers who use this solution have seen improvement in their connection with load balancing on both connections.""This solution offers extensive customization options, making it possible to adapt it precisely to their requirements."

More Fortinet FortiSIEM Pros →

"Though I downplayed the administrative NCC GUI, this is by far the strongest aspect of the Nagios XI product.""I can monitor a software made in-house to software of bigger companies.""It is an open-source platform with valuable features for performance and stability.""The most valuable feature is its support for different types of devices, where it can use all of the equipment that you need.""The most useful aspect of this solution is the ability to customize it for the client agent.""The most valuable feature is the dashboard, where I can have a single screen that provides a summary for hundreds of servers.""The installation is no problem. I've installed Nagios several times.""BPI: It allows defining peripherals to map business criticality for efficient monitoring, as required."

More Nagios XI Pros →

Cons
"Sentinel still has some anomalies. For example, sometimes when we write a query for log analysis with KQL, it doesn't give us the data in a proper way... Also, the fields or columns could be improved. Sometimes, it is not giving the desired results and there is a blank field.""There are certain delays. For example, if an alert has been rated on Microsoft Defender for Endpoint, it might take up to an hour for that alert to reach Sentinel. This should ideally take no more than one or two seconds.""For certain vendors, some of the data that Microsoft Sentinel captures is redacted due to privacy reasons.""The built-in SOAR is not really good out-of-the-box. The SOAR relies on logic apps and you almost need to have some kind of developer background to be able to make these logic apps. Most security people cannot develop anything...""The on-prem log sources still require a lot of development.""Sentinel can be used in two ways. With other tools like QRadar, I don't need to run queries. Using Sentinel requires users to learn KQL to run technical queries and check things. If they don't know KQL, they can't fully utilize the solution.""They need to work with other security vendors. For example, we replaced our email gateway with Symantec, but we couldn't collect these logs with Azure Sentinel. Instead of collecting these logs with Azure Sentinel, we are collecting them on Qradar. We couldn't do it with Sentinel, which is a problem for us.""While I appreciate the UI itself and the vast amount of information available on the platform, I'm finding the overall user experience to be frustrating due to frequent disconnections and the requirement to repeatedly re-authenticate."

More Microsoft Sentinel Cons →

"Not very good on non-API features, lacks that functionality.""Network detection and response is a separate product.""It's difficult to integrate unsupported devices with FortiSIEM compared to QRadar. It's easier to integrate and develop processes in QRadar. It's harder to develop a custom process in FortiSIEM.""An improvement would be if FortiSIEM's licensing was based on the number of nodes rather than the EPS.""The dashboards need to be improved. It gives you so much detail, but sometimes too much detail, especially to an executive, it's too much.""Our customers are noticing configuration available in the GUI interface and I think that they should be equal.""FortiSIEM needs to expand its integration with third-party vendors. I don't know if Forcepoint has been added, but there were limited resources for integrating Forcepoint solutions when we implemented FortiSIEM. It integrates well with other Fortinet products and solutions from established cybersecurity companies like Palo Alto but doesn't integrate with some of the newer vendors.""FortiSIEM is not a market leader in the SIEM space."

More Fortinet FortiSIEM Cons →

"The reporting part should be made simpler. While we can obtain all the reports we need, we always have to create work-arounds to get them.""The PNP4Nagios plugin not working easily with XI is an issue for me, because some open source monitoring plugins do not work out of the box. But in the end, you learn to live with it.""The Configuration Wizard needs improvement, because not all vendors are present.""They need more documentation for the plugins.""I would like a much easier GUI so that I can delete events and logs, which will free up a lot of space.""The technical support is variable - sometimes I get answers, but most of my tickets go unanswered.""The product's stability could be even better.""The way Nagios displays information isn't easy for a new user to understand. It's not intuitive enough. You need to read some tutorials or be trained to understand what it's displaying. Also, I think it needs more features to improve network visibility because there are some things you can't detect."

More Nagios XI Cons →

Pricing and Cost Advice
  • "It comes with a Microsoft subscription which the customer has, so they don't have to invest somewhere else."
  • "It is a consumption-based license model. bands at 100, 200, 400 GB per day etc. Azure Sentinel Pricing | Microsoft Azure"
  • "Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
  • "I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
  • "It is kind of like a sliding scale. There are different tiers of pricing that go from $100 per day up to $3,500 per day. So, it just kind of depends on how much data is being stored. There can be additional costs to the standard license other than the additional data. It just kind of depends on what other services you're spinning up in Azure, or if you're using something like Azure log analytics."
  • "I am just paying for the log space with Azure Sentinel. It costs us about $2,000 a month. Most of the logs are free. We are only paying money for Azure Firewall logs because email logs or Azure AD logs are free to use for us."
  • "Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
  • "Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "Please be cheaper and more simplified."
  • "We bought the perpetual license, so we own the product, but there is a three-year support renewal fee for that."
  • "Pricing is acceptable for more than 90% of our customers, as they normally get discounts."
  • "Its price can be better. We are Fortinet partners, so we can get discounts, but its price can be an issue at the beginning for others. There is a licensing scheme for every case. There are three licensing schemes that we can choose from."
  • "The price of Fortinet FortiSIEM is a lot less when compared to other solutions."
  • "They have a yearly subscription."
  • "The solution is available for both, perpetual and subscription licenses."
  • "Manageable, however would be better as pay as you go versus CapEX."
  • More Fortinet FortiSIEM Pricing and Cost Advice →

  • "The pricing is really cost efficient. The licensing is perpetual and can be renewed very easily."
  • "You can grow into the higher-priced scale as they learn how to utilize the features for Nagios XI."
  • "For the cost of the commercial product and support, and taking into account the open source characteristics of it, I believe it is difficult to a better value."
  • "We are using the free version of this solution."
  • "This solution is very expensive, at approximately $5,000 USD when I purchased it, which is why I haven't upgraded my version in several years."
  • "The licensing fees for this solution are approximately $3,000 USD per year."
  • "The pricing is high with separate licensing for the product and support."
  • "Nagios Core does not have any payment, but Nagios XI requires payment for the license."
  • More Nagios XI Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
    768,857 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have researched a quite a few network monitoring tools which can be used for various monitoring purposes of not only the servers, but the intermediate routers as well. There are majorly three types of these softwares. Ones which are completely open-source, you can do almost anything you want using these, but they require quite some expertise before you can use them. Then there are the ones that are not open source, the enterprise softwares and cost you some money, but on the other hand, they are extremely easy to set-up and learn. You can have them up and running in a matter of minutes. And then there are those which are completely cloud based. They can be free of cost or charge some money depending on the software. The good thing about these is that you don’t have to install any extra software, and it can be managed completely online but then again these have limited features and you cannot exploit them to the full extent as you can do with the open-source and to some extent the enterprise software, so I won’t suggest you to use these, because these are generally not the complete solutions and require other support software to achieve the same. Below I have listed the outstanding pros and cons of the various Network analyzers that you can look into Nagios Pros: Nagios offers an extensive set of collector plug-ins that allows users to gather performance and availability data from a broad range of operating systems, including  Windows and Netware Nagios… Read more →
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:Real-time monitoring makes life quite easy for me.
    Top Answer:The price is competitive. We can scale based on the licensing. It is an annual CapEx.
    Top Answer:Network detection and response is a separate product. That's how I ended up with Wazuh. I'm looking for something to… more »
    Top Answer:It is an open-source platform with valuable features for performance and stability.
    Top Answer:I don't deal with the licensing aspect of the product.
    Top Answer:The product's stability could be even better.
    Comparisons
    Also Known As
    Azure Sentinel
    FortiSIEM, AccelOps
    Learn More
    Overview

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.

    Companies around the world use FortiSIEM for the following use cases:

    • Threat management and intelligence that provide situational awareness and anomaly detection
    • Alleviating compliance mandate concerns for PCI, HIPAA and SOX
    • Managing “alert overload”
    • Handling the “too many tools” reporting issue
    • Addressing the MSPs/MSSPs pain of meeting service level agreements

    Nagios XI provides monitoring of all mission-critical infrastructure components, including applications, services, operating systems, network protocols, systems metrics, and network infrastructure. Third-party add-ons provide tools for monitoring virtually all in-house and external applications, services, and systems.

    Nagios XI uses a powerful Core 4 monitoring engine that provides users with the highest levels of server monitoring performance. This high degree of performance enables nearly limitless scalability and monitoring powers.

    With Nagios XI, stakeholders can check up on their infrastructure status using the role-based web interface. Sophisticated dashboards enable access to monitoring information and third-party data. Administrators can easily set up permissions so users can only access the infrastructure they are authorized to view.

    Nagios XI Benefits and Features

    Some of the benefits and top features of using Nagios XI include:

    • Extensive IT infrastructure monitoring: Comprehensively monitor all of your organization’s infrastructure’s components. Hundreds of third-party add-ons let you monitor virtually any internal application, service, or system.

    • Proactivity: With built-in, automated trend analysis and capacity planning charts, organizations can plan infrastructure upgrades before legacy systems encounter unexpected issues. IT staff, business stakeholders, and end users are notified via email or SMS with details of the outage so they can begin handling the issue immediately.

    • Multiple integration options: Numerous available APIs allow seamless integration with in-house and third-party applications. Thousands of community-developed add-ons that extend monitoring and native alerting capabilities as well as custom interfaces are available, allowing you to customize Nagios XI to your company's needs.

    • Complete visibility: Get a single view of your entire IT operations network and business processes. The Nagios XI dashboards provide at-a-glance access to monitoring information and third-party data. Views give users quick access to the most useful information.

    • User-friendly interface: Customize the layout, design, and settings for each user’s GUI, providing clients and team members with the flexibility they need. Administrators can easily delegate control over monitoring configuration management, system settings, and more to end users and team members using the built-in web-based configuration interface. A configuration wizard guides users through the process of monitoring new devices, services, and applications without understanding complex monitoring concepts.

    • Configuration snapshots: Snapshots allow you to save and archive your most recent configurations. Later on, you can revert back to them whenever you like.

    • Advanced user management: Ensure a secure infrastructure environment by easily setting up and managing user accounts and assigning custom roles with just a few mouse clicks.

    Reviews from Real Users

    Nagios XI stands out among its competitors for a number of reasons. Several major ones are its integration options and monitoring abilities, as well as its alerting features.

    David P., a senior DevOps engineer at EML Payments Ltd, writes, “We use Nagios as a network discovery tool. We use Nagios to maintain our uptime statistics and to monitor our services. It has allowed us to be much more sophisticated in our monitoring and alerting.”

    An IT-OSS manager at a comms service provider notes, “Nagios XI has a custom API feature, and we can expose custom APIs for our integration. This is a great feature.”

    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
    Nagios has over one million users globally, including AOL, DHL, McAfee, MCI, MTV, Yahoo!, Universal, Toshiba, Sony, Siemens, and JPMorgan Chase.
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company11%
    Comms Service Provider8%
    Manufacturing Company8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm10%
    Government9%
    Manufacturing Company7%
    REVIEWERS
    Comms Service Provider22%
    Financial Services Firm12%
    Media Company10%
    Computer Software Company10%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider10%
    Government9%
    Financial Services Firm6%
    REVIEWERS
    Comms Service Provider32%
    Manufacturing Company24%
    Financial Services Firm12%
    Retailer8%
    VISITORS READING REVIEWS
    Educational Organization49%
    Computer Software Company8%
    Financial Services Firm5%
    Government5%
    Company Size
    REVIEWERS
    Small Business33%
    Midsize Enterprise21%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    REVIEWERS
    Small Business42%
    Midsize Enterprise25%
    Large Enterprise33%
    VISITORS READING REVIEWS
    Small Business30%
    Midsize Enterprise17%
    Large Enterprise53%
    REVIEWERS
    Small Business39%
    Midsize Enterprise27%
    Large Enterprise34%
    VISITORS READING REVIEWS
    Small Business12%
    Midsize Enterprise54%
    Large Enterprise34%
    Buyer's Guide
    Fortinet FortiSIEM vs. Nagios XI
    May 2020
    Find out what your peers are saying about Fortinet FortiSIEM vs. Nagios XI and other solutions. Updated: May 2020.
    768,857 professionals have used our research since 2012.

    Fortinet FortiSIEM is ranked 8th in Security Information and Event Management (SIEM) with 63 reviews while Nagios XI is ranked 8th in IT Infrastructure Monitoring with 54 reviews. Fortinet FortiSIEM is rated 7.6, while Nagios XI is rated 8.2. The top reviewer of Fortinet FortiSIEM writes "It's cheaper than other solutions with the same features but lacks integration with many third-party vendors". On the other hand, the top reviewer of Nagios XI writes "Great for monitoring IT services infrastructure with nice tools and helpful notifications". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, LogRhythm SIEM, Wazuh and ThousandEyes, whereas Nagios XI is most compared with Zabbix, Nagios Core, PRTG Network Monitor, Wireshark and Icinga. See our Fortinet FortiSIEM vs. Nagios XI report.

    We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.