We performed a comparison between AlgoSec and Tufin based on our users’ reviews in four categories. After reading all the collected data, you can find our conclusion below.
Comparison Results: Although the setup and support could use some improvement for both solutions, the easy integration with widely used firewalls put AlgoSec slightly ahead of Tufin.
"It gives us 100% visibility into our network security policies. It has given us a couple of surprises. Over the years, the network that we are administrating has been subject to people who have an idea of how a network should be set up. That differs from technician to technician or engineer to engineer. So, we are finding little pockets of hidden little self-engineered configurations and the way things were done that nobody knew about. Once the engineer left, the knowledge of that setup disappeared. You don't know about those until something either goes wrong, or you get something like AlgoSec to discover it for you, and it says, "Hey, there is this going on over here.""
"The PCI compliance feature has been helpful in preparing for audits."
"Detection of malicious activities and malware is much better than other options."
"The most valuable feature is the unused rule optimization, where it clears the policy when appropriate."
"Breaking down a rule to specify used objects within groups and protocols has proven invaluable for us because we are able to narrow exposure to potential threats, and more generally, areas in which we are exposed."
"The solution is easy to navigate."
"There are some legacy customers still using AlgoSec. The benefit is the ease in management of firewalls and rules."
"AlgoSec has reduced the need for additional manpower and we can now use the time to tackle other security-related issues."
"Being able to customize your own clarity to that aspect of change management."
"It gives our firewall administrators visibility into the total infrastructure."
"The automation piece is the most valuable feature: having SecureChange make the change on the firewalls, instead of my having to go manually make the changes on the vendor product."
"It provides very good reports. It can easily integrate with multiple firewalls, such as Cisco, Juniper, Palo Alto, and Checkpoint. We can push a policy from Tufin to a firewall, which is a very good feature. We can monitor all access rules and the operating system of a firewall."
"The most valuable function is the SecureChange where it is able to automate everything from the validation of the rules to the pushing of the rules."
"We've scaled it to hundreds of firewalls."
"The time that we require to makes changes has been reduced from weeks to days."
"The best feature for me is being able to look up objects within all of our policies, because we have a little over 12,000 rules and over 30,000 objects. When one person says, 'Hey, where's my server?' I can just go to Tufin and say, 'Hey, where is that server?' and very quickly it tells you where it is, what policy it's on. That is a life saver."
"Having the ability to patch an issue as oppose to upgrading the entire suite."
"We don't dare push the new policy automatically, We don't have confidence in this feature."
"Needs better integration between modules and also a better troubleshooting methodology."
"The FireFlow's out-of-the-box workflow configuration/customization wizard could be improved to be more user-friendly and have a shorter learning curve."
"The GUI has not been upgraded for a long time and could use updating."
"Environments with many devices need a lot of hardware resources to avoid slowdowns."
"We are using AlgoSec directly against our Cisco Firepower. At first, AlgoSec didn't work with Firepower. It didn't know how to read the logs. So, improvement has been made. Now, the feature that was available on the older generation firewall is available on the current one, but this is a problem which has already been dealt with."
"There is room for improvement in the rollback process."
"I would like to see more configuration options on next-generation firewalls, defining possible standards for devices."
"A big improvement would be on the USP policy. If we could use Palo Alto to take those zone names and auto import them into the policy, then just do the policy based on the zone names instead of having to put in every single subnet."
"This solution increases the time it takes to make changes."
"I would like to see the setup of the Unified Security Policy simplified."
"The pricing should be reviewed, as it is a little too high."
"We will be using the appliance based product, which cannot be scaled as much. It is a limitation in the hardware."
"A limitation right now for compressed firewalls is the limited ability to see above a site level in terms of the Topology Mapping in the policy display. While Tufin's actively working on a solution, or at least they have this in the queue, from being able to view this on a higher level and how all of our site networks are connected, this ability would be useful, as we expect to have these compressed firewalls in place for quite some time."
"I would like to see more about the cloud in the next release. They need a large plan to deploy the cloud into the solution and a way to implement it."
AlgoSec is ranked 1st in Firewall Security Management with 173 reviews while Tufin Orchestration Suite is ranked 2nd in Firewall Security Management with 180 reviews. AlgoSec is rated 9.0, while Tufin Orchestration Suite is rated 8.0. The top reviewer of AlgoSec writes "Helps identify risks, reduce attack surfaces, and streamline policy changes". On the other hand, the top reviewer of Tufin Orchestration Suite writes "A flexible, very secure solution that works well in Layer 2 environments". AlgoSec is most compared with FireMon Security Manager, Skybox Security Suite, Palo Alto Networks Panorama, ManageEngine Firewall Analyzer and Fortinet FortiManager, whereas Tufin Orchestration Suite is most compared with FireMon Security Manager, Skybox Security Suite, Palo Alto Networks Panorama, ManageEngine Firewall Analyzer and Cisco Defense Orchestrator. See our AlgoSec vs. Tufin Orchestration Suite report.
See our list of best Firewall Security Management vendors.
We monitor all Firewall Security Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.