PeerSpot user
Senior Cyber Security Specialist at Richemont
Real User
Improves visibility, automatically creates and optimized firewall rules
Pros and Cons
  • "We met our goal by gaining visibility and automating rule creation."
  • "This solution would be improved if it were able to compare configurations and provide recommendations."

What is our primary use case?

Our primary uses for AlgoSec are to gain visibility and automate rule creation.

How has it helped my organization?

We met our goal by gaining visibility and automating rule creation. We are on a very good track.

What is most valuable?

The most valuable feature is the help of cleaning the firewall rules and object databases.

What needs improvement?

This solution would be improved if it were able to compare configurations and provide recommendations. For example, suggest cluster members.

Buyer's Guide
AlgoSec
April 2024
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,334 professionals have used our research since 2012.

For how long have I used the solution?

I have been using AlgoSec for four years.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Real User
The ability to see rules with a few clicks isd valuable

What is our primary use case?

  • Firewall management, configuration, and risk management functions to ensure the highest security posture
  • Automated change notification is a must and is critical in maintaining a safe environment and compliance. 
  • Need the ability to review the policy and NAT rule bases
  • Lastly, logs from a firewall can be overwhelming and difficult to maintain, so every security department needs the ability to review logs with accuracy.  

How has it helped my organization?

AlgoSec provides visibility of policy and NAT firewall rules for rule review and cleanup. It provides risk management status of our firewalls at a glance, and notifies when any change is made to the firewalls. This solution has improved our security posture, lowered our risk and exposure, saved time with cleanup and maintaining the firewalls, and allowed for log review with ease. Finally, AlgoSec has changed how firewall management and changes are conducted, so it has improved our overall process and procedures.

What is most valuable?

I value all the rich features of AlgoSec equally since it solves many problems with one solution. From the ability to see rules with a few clicks to maintaining or lowering the firewall's security risk score is priceless. And, the support team behind the solution is equally as strong and helpful, making this one of my best implementation decisions and tools in the toolset.

What needs improvement?

AlgoSec is my favorite tool because it does what it is designed to do and it does it well. The service I've received from their support teams is second to none. They have always successfully answered my questions and solved my problems. So, it is difficult to improve a solid solution but, not everything is perfect. Having executive type reporting capabilities which explain the security posture and scoring to provide to executive management would be a nice feature to add. Reports can be printed, but an executive summary report would be an improvement. 

For how long have I used the solution?

More than five years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
AlgoSec
April 2024
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,334 professionals have used our research since 2012.
PeerSpot user
Defensive Security Leader at Stone Pagamentos
Real User
Providing reports and security improvements added value to the services provided to our customers

What is our primary use case?

Implemented in a Managed Security Service Provider and had every managed customer firewalls integrated as part of the service. The tops were used to generate baseline reports and compliance views suiting all kinds of businesses.

How has it helped my organization?

The solution greatly improved the value delivered to the customer, generating reports and providing suggestions for improvements.

What is most valuable?

AlgoSec Firewall Analyser (AFA): Providing reports and security improvements actually added value to the services provided to our customers. This was a key feature provided as a service allowing us to be proactive anticipating possible flaws and vulnerabilities.

What needs improvement?

  • Support more and more vendors, like minor ones: WatchGuard and others. 
  • Also, it would be interesting if it could analyse iptables and IPFW rules and support migration.
  • Windows Firewall and Forefront would also be nice since we often need to migrate from those platforms and prove the value of the newly installed solutions.

For how long have I used the solution?

More than five years.

What do I think about the stability of the solution?

Very stable, I've had minimal problems using it, and the solution feels really mature.

What do I think about the scalability of the solution?

Not that great, they are improving though.

How are customer service and technical support?

Great support. Always available.

Which solution did I use previously and why did I switch?

No.

How was the initial setup?

Completely straightforward except with the configuration of Check Point devices which requires additional steps.

What about the implementation team?

In-house.

What was our ROI?

Great return since the firewall analysis was sold as a service to our customer.

What's my experience with pricing, setup cost, and licensing?

Setup is really straightforward, and their professional services are available for your every need. About costs, I don't see much difference from its competitors.

Which other solutions did I evaluate?

Yes. Tufin and FireMon.

What other advice do I have?

It's not a solution to install and forget. To bring out the best of its value you must always keep generating reports and applying corrections. It's a great tool to have especially if you have too many juniors operators.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Security Architect at a healthcare company with 1,001-5,000 employees
Real User
We like the ability to review and understand your firewall topology, run reports and have the ability for practitioners and auditors to review our security posture.

Valuable Features

The firewall analyzer allows for a quick and consistent method of reviewing your firewalls ruleset for security, compliance, and peace of mind. The ability to review and understand your firewall topology, run reports and have the ability for practitioners and auditors to review our security posture, gives us a sense of calm within this area of security.

Improvements to My Organization

Adding AlgoSec as a process into our network, compliance, security, and audit teams allowed for quick turnaround on any issues that arise regarding security rulesets. We often find these issues before they are pointed out to us, which leads to a quicker turnaround from compliance, but more importantly from a security mindset. This tool is used as part of the M&A process to analyze any new companies looking to incorporate our network. It's become one of the indispensable products we can't live without.

Room for Improvement

I would say cloud is an area for improvement, but AlgoSec in is that market now, too. I do want to see, however, the ability to set up an instance within the cloud instead of having to use physical appliances.

Deployment Issues

I've had no issues with deployment.

Stability Issues

It's been stable for me.

Scalability Issues

It's able to hit all the devices that I've put it up against and it was able to find rules that put our organization at risk.

Customer Service and Technical Support

The technical support is standard. They do a good job and understand the product.

Other Advice

It's head and shoulders above all the competitors in the field. They're the ones pushing the boundaries of the market.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
R. Engineer at a tech services company with 11-50 employees
Real User
Top 20
It helps us audit complex environments to ensure firewalls are in compliance
Pros and Cons
  • "The most valuable feature of AlgoSec is integration because it needs the be integrated with vendors' firewalls and other security products. AlgoSec has intelligent policy tuners."
  • "The documentation could be better."

What is our primary use case?

AlgoSec provides a secure connection between applications and helps customers maintain regulatory compliance.

How has it helped my organization?

The benefit depends on the type of client. Our banking customers are impressed with the compliance features, automatic policy installation, and FireFlow. They also realize performance improvements of approximately 20 percent. 

AlgoSec has simplified the work of security engineers. If I had to give that a grade, I would give it a nine out of ten. We used the solution to implement and manage micro-segmentation initiatives. Still, it has been limited since this is a private cloud version, and many of our customers use regular firewalls. 

We deal with customers with a mixture of environments, including private cloud, public cloud, and on-premises. Many of them have on-premises and private cloud environments. AlgoSec provides a single pane of glass for managing these mixed environments, making management more effortless. 

What is most valuable?

The most valuable feature of AlgoSec is integration because it needs the be integrated with vendors' firewalls and other security products. AlgoSec has intelligent policy tuners. 

It's easy to integrate AlgoSec with solutions from other vendors. It's currently integrated with the products of three or four vendors. We integrate AlgoSec with AppViz and other products to get complete visibility into our network policies, and FireFlow helps us manage risks from firewall change requests. It has reduced the time it takes to implement firewall rules by about 20%, according to the ROI calculator on the AlgoSec website. It varies, depending on the structure of the customer's environment. 

AlgoSec also helps us audit complex environments to ensure firewalls are in compliance. The benefit is marginal if there is only one firewall and a few policies, but it's significant when you have three firewall clusters and 60 devices. 

What needs improvement?

The documentation could be better. 

For how long have I used the solution?

I've been using AlgoSec for six years.

What do I think about the stability of the solution?

AlgoSec is stable.

What do I think about the scalability of the solution?

It's a scalable solution but there is room for improvement in that area. It has a high-availability structure, but some features need to be distributed using a collector, for example.

How are customer service and support?

I rate AlgoSec's support eight out of ten. I don't use it much, but it has improved greatly in the last two years. 

How would you rate customer service and support?

Positive

How was the initial setup?

Setting up AlgoSec isn't complicated. You can install it in half an hour, but the configuration time depends on the environment. Sometimes, it takes a day, but it could take up to a week to analyze the files, etc. We have a two-person team responsible for deployment and maintenance, but we also have partners. In all, we have about 10 technicians supporting our customers.

What's my experience with pricing, setup cost, and licensing?

I don't know about pricing because I'm a technical guy. I can say the licensing model is straightforward and should be in the future. It isn't an issue for our customers. 

What other advice do I have?

I rate AlgoSec an eight out of ten. I would recommend AlgoSec, depending on the client's structure and requirements. It's a good solution for regulatory compliance and analytics. 

Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor
PeerSpot user
Security Analyst at Ethnos IT Solutions LTD
Real User
Analyzes existing policies that you have set up on your devices, gauging the risk
Pros and Cons
  • "ActiveChange integrates with your change workflow and ticketing system. For example, a change request is made to open port 8080. Then, if the guy who was supposed to implement that change mistakenly opened port 80, then ActiveChange will say, "What was approved was 8080, but what you actually opened was 80." That actually helps to fix human errors. It helps to check everything that is being done. You can go through the analysis and see changes that were made, and AlgoSec is able to alert you immediately. Whenever there is a change, notifications are sent to the administrators because it gives you that real-time alerting and change."
  • "Since COVID-19, a number of the technical support team members have been working from home or remotely. So, we haven't gotten support people right when we need them. Sometimes, it takes a couple of hours or even days for us to get that instant support that we used to get."

What is our primary use case?

We help deploy solutions to customers around Africa and Nigeria. We deploy it, then we also provide local support to our customers. We do PoCs, deploy solutions, and provide support whenever we have the opportunity to provide solutions which solve problems of one or two customers.

Most of our clients just want to stick with AFA. Most times, we just work around AFA and do a lot of things with it. We are quite conversant with AFA's portfolio.

How has it helped my organization?

AlgoSec provides our customers with full visibility into the risk involved in firewall change requests. Most of our customers are in the financial industry. AlgoSec can analyze existing policies that you have set up on your devices, gauging the risk. For example, with PCI requirements, there needs to be a description for each firewall rule change as to why it was made. Therefore, if a change was made by one of our clients, who was unable to put a description or comment against that rule, then automatically I would need to flag that.

ActiveChange integrates with your change workflow and ticketing system. For example, a change request is made to open port 8080. Then, if the guy who was supposed to implement that change mistakenly opened port 80, then ActiveChange will say, "What was approved was 8080, but what you actually opened was 80." That actually helps to fix human errors. It helps to check everything that is being done. You can go through the analysis and see changes that were made, and AlgoSec is able to alert you immediately. Whenever there is a change, notifications are sent to the administrators because it gives you that real-time alerting and change. 

What is most valuable?

The most valuable features are:

  • Compliance reporting
  • Their immediate support team
  • Maps: You can trace the traffic and what firewall is blocking what connections, services, and websites.

You don't need to be tech-oriented to work with AlgoSec.

One of the beautiful things about AlgoSec is that it gives you templates. There are quite a number of compliance templates, depending on the industry that you are in. For example:

  • The ISO number system
  • The information security - ISMS management system
  • PCI DSS
  • FISMA Compliance. 

For our clients, they especially have to maintain ISMS and PCI DSS, as these are the two compliance regulations that they have to maintain. You can run analysis or reporting based on the templates. Within minutes, you get into the report, can see your compliance status, and what exactly you need to fix. You can clearly see what parts of the requirements you are not meeting and where you are falling short within standards. It is very clear and visible. We can customize all of this with the reporting, however the client wants it. This is one of the critical parts for most of our clients.

What needs improvement?

In late December or early January, we were trying to add another solution, but it wasn't working because there was no support for the version that we were running at that point. After they released the hotfix, that took care of this issue. That particular device was then supported. So, it has been very stable and working fine since then.

For how long have I used the solution?

I have been using it for about three years now.

What do I think about the stability of the solution?

The stability is excellent.

There have been some recent updates and hotfixes that have been released. These have taken care of a number of things, which include support for some particular firewalls.

What do I think about the scalability of the solution?

The scalability is good. We have had to scale for some of our clients who have about 10 firewalls or 10 network devices, and they wanted to have more. All we had to do was acquire more licenses, then we just scaled. It is quite seamless.

How are customer service and technical support?

I have worked with AlgoSec for about three years. Before COVID-19 struck, the technical support used to be 10 of 10. You would make a support call, someone would join you on a session, and you would get help almost instantly. Since COVID-19, a number of the technical support team members have been working from home or remotely. So, we haven't gotten to support people right when we need them. Sometimes, it takes a couple of hours or even days for us to get that instant support that we used to get. I think they are working on it. The last time that I had a support session with them, which was about two months back, I saw some relative improvements.

How was the initial setup?

We have been using the OVA file on a virtual box. Once we slam it on the VM, it is quite straightforward. Once you are done with that, then you define the IPs.

What's my experience with pricing, setup cost, and licensing?

We have had quite a number of our prospective clients have come to us, and say, "Hey guys, we want AlgoSec," but one of their turn-offs has been the pricing. I would like it if AlgoSec would review their pricing and come down on it. The solution is quite amazing and versatile, so we would really appreciate it if the pricing could be reviewed for Nigeria because we definitely would get more sales if that happened. 

In Nigeria, quite a number of industries have been hit hard by COVID-19 and we are not a high income generating country, so a lot of people want to cut costs. When it comes to the security, companies would rather settle for less and take a step back because of the cost. They might even put infrastructures off. However, if the pricing is reasonable and affordable for people in this part of the world, then our company will definitely see more sales.

Which other solutions did I evaluate?

AlgoSec is 10 out of 10 compared to FireMon. Compared to any other solution that does firewall analysis and policy management, AlgoSec deserves 10 out 10 because of:

  • Its simplicity: Virtually everything about AlgoSec is straightforward.
  • Versatility, as far as the reporting and alerting.
  • Support, which is quite amazing.

What other advice do I have?

If you are looking for a tool that will provide you clear visibility into all the changes in your network and help people prepare well with compliance, then AlgoSec is the tool for you. Don't think twice - AlgoSec is the tool for any company that wants clear analysis into their network and policy management.

Anybody can use AlgoSec once they take all the training.

Compared with other tools on the market, the solution is 10 out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor. The reviewer's company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
PeerSpot user
Lead - Security Infrastructure Consultant at TSYS
Real User
Greatly improved the time and resources spent on creating and deploying our firewall rules

What is our primary use case?

We use AlgoSec to manage our firewalls and to manage our firewall ACL change workflow. We also use AlgoSec to get better visibility into our traffic flows, to optimize our firewalls rules, and to analyze risks.

How has it helped my organization?

AlgoSec has greatly improved the time and resources spent on creating and deploying our firewall rules. Our network and security teams can now smartly research our ACLs and implement them with confidence.

What is most valuable?

We found the traffic simulation query, active change, policy optimization, FireFlow, and map features to be especially helpful. All the other application features are valuable as well. We have yet to fully unleash its full potential.

What needs improvement?

The tech support and ticketing system could use some improvement and need more of a personal touch.

For how long have I used the solution?

Less than one year.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
David Ord - PeerSpot reviewer
Works at Enbridge Gas
User
Currently, the primary use is log analysis as we are migrating from Check Point to Palo Alto and need to purge the unused rules during migration.

What is our primary use case?

I have a North American wide multi-site network with a large amount, 100+ primary firewalls and hundreds of remote firewalls. We have loaded into AlgoSec most of these via CheckPoint CMA and Palo Alto Panorama. Currently, the primary use is log analysis as we are migrating from CP to PA and need to purge the unused rules during migration. 

How has it helped my organization?

It is helping with the migration as we don’t carry over empty rules and allows consolidation of rules. 

What is most valuable?

AFA analyze reports are the biggest use case to review the rules before migration and removing the unused rules for cleanup.

What needs improvement?

The Network Map is a feature that could use work, it is a big piece but is always a moving target with large routing tables in use and speed of use becomes an issue doing queries. 

For how long have I used the solution?

Three to five years.

What do I think about the scalability of the solution?

In 2018.1 release the VIP always up is a great feature and a 3-way cluster is a good idea. 

Which solution did I use previously and why did I switch?

We were a Tufin user but moved due to a POC with another asset we acquired which had AlgoSec and at the end we preferred AlgoSec. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.