NetworkAdmin - PeerSpot reviewer
Network Engineer at Ti Automotive
Consultant
Reduces costs and errors for compliance and audit preparation
Pros and Cons
  • "It has reduced our audit preparation efforts and costs drastically and maintains continuous compliance."
  • "The GUI has not been upgraded for a long time and could use updating."

What is our primary use case?

AlgoSec is a global tool that has been purchased to get a centralized view of our infrastructure. This enables us to review our security posture and implement a compliance strategy.

AlgoSec is also used for in-depth firewall analysis and intelligent policy tuning and optimization. It helps in regulatory compliance metrics and overall firewall security optimization. It is currently used by the network security, audit, and internal control departments of organizations, giving overall insight/visibility and enhancing improved security across the enterprise.

It has been really helpful in automating changes. This helps us to reduce operational work drastically. The product has centralized visibility, unified management, and reporting across an entire hybrid environment. It can be deployed on-premises, in a private cloud, public cloud, and in SDN platforms. It automatically discovers applications and their connectivity flows, then associates connectivity with their underlying firewall rules.

AlgoSec's solutions are incredibly powerful, providing us with intelligent process improvement that has directly translated into the highest level of security and compliance for our internal network.

How has it helped my organization?

AlgoSec is one of the most complete security management solutions on the market. It manages security and compliance based on the applications that power our business. It is one product combining multiple tools. This makes a real difference compared to its competitors.

It helps us deploy new business applications quickly and securely. It ties cyber threats directly to critical business processes.

Using AlgoSec is a double benefit to us. By using this solution we can reduce the cost and the number of errors in our daily operation and also expand our offerings. 

It has reduced our audit preparation efforts and costs drastically and maintains continuous compliance.

AlgoSec delivers a rich set of change management workflows and enables zero-touch change processes if no risks are identified.

What is most valuable?

AlgoSec proactively analyzes all risks in the network security policy, across multi-vendor firewalls and cloud security groups.

AlgoSec is the only solution that supports the entire security policy management lifecycle from application connectivity discovery, through migration, maintenance, and decommissioning. Independent testing describes it as ‘one of the most complete security management solutions on the market’.

It seamlessly integrates with all leading brands of traditional and NGFWs, cloud security controls, routers, and load balancers.

The graphical user interface is much better than in other products.

What needs improvement?

The GUI has not been upgraded for a long time and could use updating.

Buyer's Guide
AlgoSec
May 2024
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
770,765 professionals have used our research since 2012.

For how long have I used the solution?

We have been using AlgoSec for several years.

What other advice do I have?

I'm sure we will use this solution for ten more years, at least, as long as it continues to do what is promised.

This product is ready to work within a next-generation infrastructure environment. It simplifies and automates network security policy management to make your enterprise more agile, more secure and more compliant – all the time.

Overall, this is a complete product that helps our organization on a daily basis.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1006992 - PeerSpot reviewer
Works at a tech services company with 10,001+ employees
Real User
Detects in a few seconds which flows are right or wrong which saves a lot of troubleshooting time

What is our primary use case?

I mainly use this application to check the flows. I work for a big company in the network team which needs to check the flows every day.

How has it helped my organization?

This application is very nice. We save a lot of time with troubleshooting the flows and we can detect in a few seconds what flows are right or wrong.

What is most valuable?

The AlgoSec Firewall Analyzer is for me the most valuable thing in this application. I don't know how much time we saved with this application, but I now know that without it, we would lose several hours every day solving networks incidents.

We also use the AlgoSec FireFlow to generate and manage the tickets concerning the flows.

What needs improvement?

I think that AlgoSec could improve the application by improving the treatment speed.

If AlgoSec could make few seconds less to analyze research, theses few seconds will be used by my team to be more efficient.

I mean, in the Traffic Simulation Query, it will be wonderful if Algosec could find a way to make the research faster than now. In fact, we are often waiting arround 1,30 min to see the results.

Maybe something can be done to make this reasearch faster?

For how long have I used the solution?

One to three years.

Which solution did I use previously and why did I switch?

No, it is my first application for this kind of work.

Which other solutions did I evaluate?

It was not my work to choose this solution; a project team did it.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
AlgoSec
May 2024
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
770,765 professionals have used our research since 2012.
reviewer1003116 - PeerSpot reviewer
Works with 10,001+ employees
Real User
Tremendously improved our organization's security with much better and efficient firewall rules

What is our primary use case?

Our primary use case is to clean up firewall rules of migration from Cisco ASA to another firewall vendor. We try to get rid of old rules and get these converted into new rules which apply better to our environment.

How has it helped my organization?

It tremendously improved the security of our organization with much better and efficient firewall rules. We saved a lot of time using this tool to get the rules clean. Also, the overview of the network topology map is a very good thing to get a clear view of every single region in your network.

What is most valuable?

The best feature is, in my opinion, the firewall analyzer. Just let the tool analyze the traffic for a few days or weeks, and you will get perfect ideas on how to improve your rules and which rules are just unnecessary or too spacious. So getting a better security level by better firewall rules is just what you want to have if you're using a firewall. Otherwise, it would not make sense to have a firewall, right?

A nice feature as well is that it gives a compliance report on each of your security devices. This helps a lot to get an overview of every single security device in your network and its status.

What needs improvement?

The versioning is a bit weird. We used to use version 2017 which is quite current, but it looks like it is a 2017 version. As far as I know, they want to have this changed soon. Nevertheless, this is something which definitely needs to be improved.

For how long have I used the solution?

One to three years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Senior Network Security Engineer at Prudential Corporation Asia
Real User
Helps with application connectivity and our users are able to documents their rules
Pros and Cons
  • "ABF is application-centric. which helps to track changes in the application from day one."
  • "We needs object level permissions and application level recertifications."

What is our primary use case?

  • ABF application centric
  • Risk and compliance
  • Zone matrix
  • Conditional workflow
  • IPT
  • Active change 

How has it helped my organization?

It improved a lot in our flow database. In the past, application owners did not know their application connectivity. AlgoSec helps with this and our users are able to documents their rules.

What is most valuable?

ABF: It is application-centric. which helps to track changes in the application from day one.

Compliance: It helps to have a zone matrix and capture risks.

What needs improvement?

ABF needs to be more integration with AFF/AFA. We needs object level permissions and application level recertifications.

For how long have I used the solution?

Less than one year.

What do I think about the stability of the solution?

No stability issues.

What do I think about the scalability of the solution?

No scalability issues.

Which solution did I use previously and why did I switch?

We used a different network security policy management tool, but we felt it would not be able to fulfill our requirements and address our previous gap. We were looking for a place where we could keep our rules and also track ownership of each rule in the application.

How was the initial setup?

The initial setup was straightforward.

What about the implementation team?

We implemented through a vendor team, whose expertise level was high.

What was our ROI?

We are satisfied with our ROI.

Which other solutions did I evaluate?

We evaluated all of AlgoSec's competitors and chose AlgoSec as it was the best.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Network Engineer at a tech services company with 1,001-5,000 employees
Real User
Top 20
It has worked very well for our compliance needs
Pros and Cons
  • "The solution provides us with full visibility into the risk involved in firewall change requests. This is very important for us because we are regulated according to the FDA. It shows us which changes have been made and why. So, it has worked very well for our compliance needs."
  • "I would rate the support as six or seven out of 10."

What is our primary use case?

We use FireFlow, AppViz, and AppChange. We use them mainly to visualize our firewalls.

We have three data centers, but we are also providing the public cloud as well.

How has it helped my organization?

We implemented it to get a better, clearer view. It has supported us very well.

The solution provides us with full visibility into the risk involved in firewall change requests. This is very important for us because we are regulated according to the FDA. It shows us which changes have been made and why. So, it has worked very well for our compliance needs.

AlgoSec is a tool that really supports our work in compliance and our customers' requirements, fulfilling their FDA requirements.

Our security has been stronger due to AlgoSec. We don't have human errors.

What is most valuable?

The most valuable feature is its ease of use.

It provides a very good, clear view. I really love the product. 

Overall, it gives a better overview of our firewalls. This is a tool that we cannot live without because it is easy to view and maintain.

For how long have I used the solution?

I have been using this solution for four years.

What do I think about the stability of the solution?

Overall, the stability is good. It supports our work. We are happy and our customers are happy.

What do I think about the scalability of the solution?

It has very good scalability.

How are customer service and support?

The technical support is fast and very good. I would rate the support as six or seven out of 10.

How would you rate customer service and support?

Neutral

What was our ROI?

We have seen ROI on time. AlgoSec has reduced the time it takes to implement firewall rules in our organization. It used to take around an hour, and we can now implement them in 20 minutes.

It is a good investment due to the losses that a customer will have if they are not aligning with the FDA. That would be in the millions, so it is a good investment from our side and the customer's side.

What's my experience with pricing, setup cost, and licensing?

Quality has a price. 

Which other solutions did I evaluate?

We have tried other vendors. This is the best solution that we came up with due to our requirements and demands.

What other advice do I have?

It is good for integrating with leading security vendors.

I would rate the solution as eight out of 10. If you have requirements with very strict alignment for firewall rule processes, then I would really recommend this product.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Security Analyst at a tech services company with 1,001-5,000 employees
Real User
Good reporting and improves the security and compliance of our environment
Pros and Cons
  • "It is helpful in improving the security and compliance of our environment. We can optimize our environment by improving the rules that are not used or are duplicated. FireFlow is useful in creating and implementing new rules. It allows us to automate rules implementation and have more control over the rules."
  • "In our environment, we add rules in the files based on user logins, but currently, we can't do that with AlgoSec. AlgoSec can't create rules based on user logins. For example, generally, when we create a rule, we put IP Address, Destination IP Address, and Service Port. However, in our environment, we put IP Address, User Login, Destination IP Address, and Service Port, but AlgoSec doesn't support a rule in this format. We opened a ticket regarding this with their support two months ago, and they said that they will be able to add it in the future, but they don't know the timeframe."

What is our primary use case?

We started deploying the application in January of this year. Currently, in our contract, we have a license for AlgoSec FireAnalyzer and FireFlow. So, at this moment, we are only working with AlgoSec FireAnalyzer. 

We are using AlgoSec to have a good view of our environment in terms of the risks and compliance and to implement rules. Our environment at this moment is only on-premises. We have servers, routers, firewalls, etc.

How has it helped my organization?

The visibility that AlgoSec provides about our environment is very important. Without it, we won't have visibility into various risks to our environment. AlgoSec can show us these risks and allows us to improve and close some rules. It improves the security of the network, and we can protect the data of our customers more efficiently.

What is most valuable?

It is helpful in improving the security and compliance of our environment. We can optimize our environment by improving the rules that are not used or are duplicated. FireFlow is useful in creating and implementing new rules. It allows us to automate rules implementation and have more control over rules.

Its reports are very important for compliance and understanding and mitigating risks. They show us the rules that are open or that can create risks for our environment. This information is very important for us for optimizing our environment and correcting the policies.

What needs improvement?

In our environment, we add rules in the firewall based on user logins, but currently, we can't do that with AlgoSec. AlgoSec can't create rules based on user logins. For example, generally, when we create a rule, we put IP Address, Destination IP Address, and Service Port. However, in our environment, we put IP Address, User Login, Destination IP Address, and Service Port, but AlgoSec doesn't support a rule in this format. We opened a ticket regarding this with their support two months ago, and they said that they will be able to add it in the future, but they don't know the timeframe. We are currently in the process of making changes in our environment for such rules, and after two months, we won't be using the rules that are based on user logins. We will make them consistent with the market, and we will use only the IP Address, Destination IP Address, and Service Port for rules. So, it won't be a problem for us, but this can be an improvement for other clients.

For how long have I used the solution?

It is quite new for us. We starting working with it just a few months ago.

What do I think about the stability of the solution?

Its stability is good. We never had a problem where we couldn't access the platform. It is always available, and we don't have any problems related to the downtime of this platform.

What do I think about the scalability of the solution?

At the moment, it gives us what we need. Next month, we will add new technologies to AlgoSec.

How are customer service and technical support?

AlgoSec has a great team. They are professional and have good knowledge of AlgoSec. We have a good relationship with them, and we got good support from them.

Which solution did I use previously and why did I switch?

We never had a solution like this. It is the first one in our environment.

How was the initial setup?

We started its implementation in January with the help of a partner company. It was very easy to implement, and we didn't have to contact AlgoSec.

We completed the deployment in February. We put it in our environment and started the server. After that, we did the configuration and started to add our devices to AlgoSec.

What about the implementation team?

We implemented it with the help of a partner company in Brazil called Logicalis. When we have any problem, we talk to them, and they are able to help us.

What other advice do I have?

I would recommend this solution because AlgoSec provides a lot of reports and views of your environment. You won't be able to get this view through a firewall manager. For example, the CheckPoint firewall manager won't provide what AlgoSec provides, especially related to the compliance of your environment.

We have implemented Cisco ACI in our environment, and AlgoSec will help us to work with this new technology implemented in our environment. We will integrate AlgoSec and ACI next week.

I would rate AlgoSec a 10 out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
PeerSpot user
Senior Security Analyst at Compugraf
Real User
Helps to manage large and complex environments, promoting efficiency and facilitating compliance
Pros and Cons
  • "In my opinion, the most valuable features are the network map, unused rules reports (IPT), and active change."
  • "Environments with many devices need a lot of hardware resources to avoid slowdowns."

What is our primary use case?

We use this solution for device changes auditing, device compliance, network mapping, active change, clean-up of the rule base, and a ticket system.

The device changes audit is a quick identification when changing the configuration on devices. Device compliance gives us the ability to generate device compliance reports. The network map is the method for locating the devices that are related to the communication of origin and destination.

Active change is used to centralize the creation of rules in AlgoSec without the need to access other devices. Cleaning up the rule base means that AlgoSec reports and helps remove unused rules and even unused objects within a rule.

In terms of the ticket system, FireFlow helps to record user requests.

How has it helped my organization?

AlgoSec products help to manage complex environments with many devices, so we can deliver requests more quickly.

Environments with many devices are difficult to identify problems, especially when there are new analysts on the team. AlgoSec helps in troubleshooting and streamlines the analysis.

AlgoSec helps in the agility of the analysis, speed in the delivery of compliance reports, automation in the request to create rules in firewalls, removal of unused rules, and optimization of the rule base.

What is most valuable?

In my opinion, the most valuable features are the network map, unused rules reports (IPT), and active change. They are features that help with automation and reduce the analyst's time spent troubleshooting.

The unused rules reports (IPT) help remove unused rules and even unused objects within a rule.

What needs improvement?

I would like an analysis to be created for user group rules (Check Point - identity awareness). 

Current versions of AlgoSec do not perform analysis of Identity awareness (Check Point). It would be important for the user to be able to request a rule by an access role group and then AlgoSec would create this rule automatically in the firewall.

An improvement in tool performance would be important. Environments with many devices need a lot of hardware resources to avoid slowdowns. Memory consumption of the server is very high.

For how long have I used the solution?

I have been working with AlgoSec for five years.

What do I think about the stability of the solution?

The tool is very stable and does not present many problems.

What do I think about the scalability of the solution?

Currently, the tool works well with large environments.

It may be necessary to create a distributed solution of the product on different servers (WEB / DB).

Which solution did I use previously and why did I switch?

We did use another solution prior to AlgoSec and the change was due to the reports having more information and easy customization.

How was the initial setup?

The initial setup is simple.

After that, it is possible to make customizations to adapt the tool as desired.

What's my experience with pricing, setup cost, and licensing?

The cost of the tool can be recovered with AlgoSec automations.

Which other solutions did I evaluate?

We evaluated Tufin and FireMon before choosing AlgoSec.

What other advice do I have?

AlgoSec is the best tool on the market.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Paulo Ataides - PeerSpot reviewer
Senior Information Technology Security Analyst at a integrator with 1,001-5,000 employees
MSP
Speeds time required for compliance audits and provides a safer environment
Pros and Cons
  • "Optimizing the operation making it possible to focus on other improvements."
  • "In an environment that is very large, with many firewalls and routers, it is sometimes impossible to buy all of the licenses."

What is our primary use case?

Increase the visibility of CyberSec and the area of compliance (audit) of the environment, with the AFA increasing the visibility of vulnerabilities in the environment caused by extensive configurations, and with the AFF optimizing the operation, allowing to focus on improvements.

We implemented in an environment with more than 280 Firewalls from different manufacturers and the AlgoSec solution enabled a more detailed analysis of the environment, ensuring greater security.

It made it possible to reduce the performance of the operating team in the reactive combat of threats, making the operation more active and focused on quality.

How has it helped my organization?

Reducing operational costs and decreasing the cat's time with rework and unproductive audits.

We find that the traffic simulation query, active change, policy optimization, FireFlow, and map features are especially useful. All other features of the app are also valuable.

The time spent on auditing before AlgoSec was very heavy, at least one analyst dedicated for a week for small audits, and for most, we lost an analyst for weeks.

After implementing AlgoSec, we reduced the audit time to three days.

The environment is much safer with more active configurations.

What is most valuable?

Analysis of the environment to optimize the use of the solution (firewall) and obtain a greater view of compliance.

Optimizing the operation making it possible to focus on other improvements.

The possibility for the end-user to request their rule and ensure that policies are complied with using AlgoSec adds greater security, and it also speeds up the request process. It also makes it possible to automate the implementation of rules.

The user receives the information if his request is within the policies and can continue the request, or if it is denied, the applicant must adjust their request to stay within the policies. The time spent for this without AlgoSec is up to one week, whereas with AlgoSec, in a maximum of 15 minutes we have the request analyzed.

What needs improvement?

I would like to see support more technologies, but I know that AlgoSec is always in the process of evolution.

Perhaps a better financial option would allow customers to choose the complete solution. In an environment that is very large, with many firewalls and routers, it is sometimes impossible to buy all of the licenses. This makes the AFF solution impossible.

What do I think about the stability of the solution?

This product is stable. There have been a few problems, but when there is some instability the support is always available.

What do I think about the scalability of the solution?

Scalability-wise, this product is good. You can increase capacity simply by buying more licenses.

How are customer service and technical support?

We had a few cases where we needed support, but whenever we did, it was available, and with the information needed to solve the problems.

How was the initial setup?

The initial setup is easy and simple.

What about the implementation team?

Always by supplier, highly qualified work with positive results.

What was our ROI?

The solution has a high cost, but the reduction in operation pays the investment.

What's my experience with pricing, setup cost, and licensing?

For the AFF solution, it is necessary to purchase a license for each network asset so that the solution is complete, depending on the size of the environment. 

Which other solutions did I evaluate?

Before choosing this product, we evaluated SolarWinds and FireMon.

What other advice do I have?

Overall, this is a good product and it meets the needs of customers.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2024
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.