Network Administrator at a retailer with 1,001-5,000 employees
Real User
Enables us to run our call center 24/7 and has good tech support engineers
Pros and Cons
  • "Most of the engineers I've worked with have been really good. Very knowledgeable and easy to work with."
  • "We've run into some issues with the configuration."

What is our primary use case?

Our primary use case is for it to run our call center 24/7 365 days a year. 

What is most valuable?

There's a lot of stuff on the new version we haven't had the chance to work with yet. 

What needs improvement?

We're trying to upgrade to the newest release. We're running a version that's three versions behind. 

What do I think about the stability of the solution?

So far we've had a good experience with stability. We've run into some issues with the configuration. 

Buyer's Guide
Cisco Secure Network Analytics
May 2024
Learn what your peers think about Cisco Secure Network Analytics. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
770,428 professionals have used our research since 2012.

What do I think about the scalability of the solution?

It's not scalable due to our own implementation. Everything that I read though, indicates that it can be scalable. 

How are customer service and support?

Most of the engineers I've worked with have been really good. Very knowledgeable and easy to work with.    

Which solution did I use previously and why did I switch?

We've used Cisco for around ten years. Prior to that, we were using Nortel. We had a relationship with a Cisco account manager prior to the collaboration products. 

What about the implementation team?

We had engineers that set it up. There were some problems that Cisco support came to fix. 

What other advice do I have?

I would rate it an eight out of ten. 

Check the vendors and the options out there to see how they can meet your needs. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Information Security Analyst at a non-profit with 1,001-5,000 employees
Real User
Enables me to detect devices talking to suspect IPs.
Pros and Cons
  • "I value the feature which enables me to detect devices talking to suspect IPs."
  • "We need to be able to filter out internal IPs as non-threats."

What is most valuable?

I value the feature which enables me to detect devices talking to suspect IPs.

How has it helped my organization?

We can now see what is going on in our network.

What needs improvement?

We need to be able to filter out internal IPs as non-threats.

For how long have I used the solution?

We have been using the product since 2008.

What do I think about the stability of the solution?

We did not encounter any issues with stability.

What do I think about the scalability of the solution?

We did not encounter any issues with scalability.

How are customer service and technical support?

The technical support is good.

Which solution did I use previously and why did I switch?

We did not use any other solution previously.

How was the initial setup?

The initial setup was relatively easy, though different devices need different configurations for the flow exports.

What's my experience with pricing, setup cost, and licensing?

It is worth the cost.

Which other solutions did I evaluate?

We evaluated Arbor.

What other advice do I have?

Get it in and see what you can see!

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Cisco Secure Network Analytics
May 2024
Learn what your peers think about Cisco Secure Network Analytics. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
770,428 professionals have used our research since 2012.
it_user734160 - PeerSpot reviewer
Senior Technical Consultant
Consultant
​Provides complete network visibility and has made troubleshooting easy
Pros and Cons
  • "Most valuable features are the network maps and server and network response time."
  • "The version with the Dell server had iDRAC problems. Often, it reported iDRAC failure."

What is most valuable?

SMC and FC, though they are components, not features.

Most valuable features are the network maps and server and network response time. Maps is a unique feature which provides logical grouping of different segments of the network with complete visibility and alerting based on a total or protocol base as per defined threshold. So, one can check how many connections to the server and/or on the protocol, and who is consuming the most bandwidth. This is done, while the server and network response time provide quick identification of root cause of slow response from the server.

How has it helped my organization?

Provided complete network visibility and made troubleshooting easy.

For how long have I used the solution?

I have used Cisco Stealthwatch for four to five years: versions 5.0 to 6.22.

What do I think about the stability of the solution?

Yes. The version with the Dell server had iDRAC problems. Often, it reported iDRAC failure.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

Very good.

Which solution did I use previously and why did I switch?

No, we did not use a different solution.

How was the initial setup?

Straightforward.

What's my experience with pricing, setup cost, and licensing?

Pricing is much higher compared to other solutions.

Which other solutions did I evaluate?

Yes, SolarWinds.

What other advice do I have?

It is a good product. I don't see any matching product with level of detailed information.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Sr. Network Engineer at a tech services company with 10,001+ employees
Real User
We have seen improved network visibility of our organization but the setup is complex
Pros and Cons
  • "Cisco Stealthwatch provides the solutions analytics and threat detection capabilities that I am looking for. It has also improved the network visibility of our organization."
  • "The configuration of the solution was quite complex."

What is our primary use case?

Our primary use case for Cisco Stealthwatch is to ensure net flow.

How has it helped my organization?

Cisco Stealthwatch provides the solutions analytics and threat detection capabilities that I am looking for. It has also improved the network visibility of our organization. 

What is most valuable?

The most valuable feature of this solution is that it give us insight into what's happening in our network. 

What needs improvement?

I don't really think we really save time while using this solution.

What do I think about the stability of the solution?

Cisco Stealthwatch is quite stable.

What do I think about the scalability of the solution?

It all depends on the platform you are using, but I think it is pretty scalable.

How was the initial setup?

The configuration of the solution was quite complex so I won't say that it is straightforward to set everything up.

What about the implementation team?

We used a vendor, Cisco, for implementation. 

What was our ROI?

I believe ROI will take around a year.

Which other solutions did I evaluate?

We also look at Red Hat.

What other advice do I have?

I will rate this solution a five or six out of ten because I do believe it is beneficial to our organization. I will recommend others to use endpoint management.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user983178 - PeerSpot reviewer
PIC for Cyber Security at a university with 51-200 employees
Real User
Scalable and good for training students
Pros and Cons
  • "There are already many functionalities, so I don't think there is anything to improve."

    What is most valuable?

    The Cisco IOS is very important because that is what we have to teach our students.

    What needs improvement?

    There are already many functionalities, so I don't think there is anything to improve. Its the best one on the market I have seen.

    For how long have I used the solution?

    We've been using Cisco equipemnt for four or five years.

    What do I think about the scalability of the solution?

    It's scalable, there are many models that we can use for a small network. Cisco offers the scalability that we need. We have about eighty students, and all the students have to do some training on it. We have plans to increase the usage of Cisco.

    How was the initial setup?

    I think in order to master the network security issues it's complex. The deployment took a week or so.

    What other advice do I have?

    I think that maybe we need more products for our students to try and to master. It's part of their learning.

    I would rate this solution as nine or ten out of ten.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Chief Consultant at a tech services company with 11-50 employees
    Consultant
    Good anomaly and malware detection, and highly-rated technical support
    Pros and Cons
    • "The most valuable feature is anomaly detection, where it finds things that are not allowed internally."
    • "The usability of this solution needs to be improved."

    What is our primary use case?

    We are a system integrator and I have implemented this solution for one of our customers.

    This solution is normally used for anomaly detection and malware detection.

    It is deployed on-premises.

    How has it helped my organization?

    The organization now have a better overview how their traffic is flowing.

    What is most valuable?

    The most valuable feature is anomaly detection, where it finds things that are not allowed internally.

    What needs improvement?

    The usability of this solution needs to be improved.

    The initial setup of this solution can be simplified.

    For how long have I used the solution?

    We have been using this solution for three months.

    What do I think about the stability of the solution?

    The stability of this solution is good.

    What do I think about the scalability of the solution?

    We have three people who are using this solution.

    How are customer service and technical support?

    I would rate technical support for this solution highly.

    Which solution did I use previously and why did I switch?

    We used Darktrace before.

    How was the initial setup?

    The initial setup of this solution is complex.

    What other advice do I have?

    My advice for anybody who is implementing this solution is to know the whole infrastructure before beginning. Also, before starting, you have to know about the licensing of the equipment.

    I would rate this solution an eight out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller.
    PeerSpot user
    it_user735216 - PeerSpot reviewer
    Highly motivated Security Engineer incident Response, Vuln Mgmt, Malware Analysis, IDS/IPS, DLP, Network Security +more at a transportation company with 10,001+ employees
    Vendor
    NetFlow data is the beginning of any security investigation, very easy to use
    Pros and Cons
    • "The most valuable feature is NetFlow. The beginning of any security investigation starts with NetFlow data."
    • "One update I would like to see is an agent-based client. Currently StealthWatch is network based."

    What is most valuable?

    There's nothing like it and a dream to operate, very intuitive. The most valuable feature is NetFlow. The beginning of any security investigation starts with NetFlow data.

    How has it helped my organization?

    Easily identifiable anomalies that you can't see with signature detections.

    What needs improvement?

    I am so familiar with the product I would say none. Lancope has always listened to customer input for product enhancements. One update I would like to see is an agent-based client. Currently StealthWatch is network based. A local agent could help manage endpoints.

    For how long have I used the solution?

    12 years.

    What do I think about the stability of the solution?

    No.

    What do I think about the scalability of the solution?

    No.

    How are customer service and technical support?

    I've known those guys for a long time. They are completely familiar with their product.

    Which solution did I use previously and why did I switch?

    No.

    How was the initial setup?

    Very straightforward. They helped in every step of the installation.

    What's my experience with pricing, setup cost, and licensing?

    Licensing is done by flows per second, not including outside>in traffic.

    Which other solutions did I evaluate?

    I have tried the Sourcefire solution but StealthWatch wins because of ease of use.

    What other advice do I have?

    Go for it. Also great for your network segmentation project.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    it_user1107381 - PeerSpot reviewer
    Senior Security Consultant at a tech services company with 51-200 employees
    Real User
    Easy to set up and has good stability
    Pros and Cons
    • "It's easy to set up. The deployment takes one or two days. You need to collect the data from a device and then direct it to the portal."
    • "Cisco could improve the administration for the customers."

    What is our primary use case?

    My customers buy Stealthwatch for traffic analysis. 

    What needs improvement?

    Cisco could improve the administration for the customers.

    For how long have I used the solution?

    I have been selling Stealthwatch for one to two years. 

    What do I think about the stability of the solution?

    I haven't heard from my customers that they had any problems with stability. 

    How was the initial setup?

    It's easy to set up. The deployment takes one or two days. You need to collect the data from a device and then direct it to the portal. 

    What other advice do I have?

    I would rate Stealthwatch a nine out of ten. To make it a ten, Cisco should offer more training. 

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
    PeerSpot user
    Buyer's Guide
    Download our free Cisco Secure Network Analytics Report and get advice and tips from experienced pros sharing their opinions.
    Updated: May 2024
    Buyer's Guide
    Download our free Cisco Secure Network Analytics Report and get advice and tips from experienced pros sharing their opinions.