Most Helpful Review
Improves firewall performance, saves engineers time in optimization, and the technical support is responsive
Find out what your peers are saying about AlgoSec vs. Cisco Defense Orchestrator and other solutions. Updated: January 2021.
456,719 professionals have used our research since 2012.
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
"It saves time by allowing administrators to test network traffic and pinpoint which rules are being triggered for a particular traffic flow."
"We have not seen many faults reported from our customers."
"The features that are most valuable are the interactive topology map and the traffic simulation queries."
"It assists in provisioning the application rapidly, which increases the organization's revenue."
"We are currently in a rule base performance improvement process and AlgoSec is an invaluable tool to accomplish this."
"One of the quick wins is to view our device status easily, with out-of-the-box dashboards and charts."
"AlgoSec has reduced the need for additional manpower and we can now use the time to tackle other security-related issues."
"The most valuable features are the FW report, traffic simulation, and the FireFlow system to help manage requests."
"There are a lot of templates that are already built-in. They give you quick-to-create and quick-to-apply policies that are typically a little more complicated for people."
"When we're looking to the policies, it identifies the shadow rules. It notifies us about anything that will supersede other rules."
"The most valuable feature is that you can push one policy or one rule out to several devices at a time."
"This product provides excellent centralized device controls and reporting."
"The ability to do operations on multiple firewalls at once is valuable because it saves time and mental effort. The solution's ability to make bulk changes makes it very convenient to manage things at once on multiple targets."
"For this product, they are very uncharacteristically interested in resolving whatever issue the customer reports. They're really attentive, and they address whatever we bring up as quickly as they can. That's been a very positive aspect of the product."
"The most valuable feature is being able to do centralized upgrades on the ASAs. We can select all of those ASAs, and say, "Upgrade these ASAs at this scheduled time." It will copy down the ASA image, ASDM image, and then do the upgrade and failovers, and then put it all back into service as required at a scheduled time. It automates that process for us."
"I like the upgrade feature. That is pretty valuable to me because I have dual ASAs and when I go through CDO it does it for me pretty well. It's all done in the back-end and I don't really have to be involved. I just initiate, pick the image, and I pick when I want it done and it just does it, whether I have a single ASA or have a dual ASA."
"I would like the reporting to be more customizable, as per user and auditing needs."
"There is room for improvement in the rollback process."
"The MAP has a persistent issue with a firewall that is using a double BVI (Bridge virtual interface)."
"This product could be improved in several ways including more device support, an automated rollback process and options in active push, software-defined WAN integration and support, and application-aware policy identification and optimization."
"The product is severely lacking in vendor support."
"A more granular approach and the possibility to separate data and show relevant data to specific key roles or key users would be a great achievement in future releases."
"We would like to see them utilize the cloud to help with performance improvement, and with various processes needed on a daily basis."
"We have a complaint about the compliance check, in that sometimes we want to keep rules rather than merge them."
"We had some MX devices that were blocking Windows Update from happening. We found out it was a Meraki issue, but it would have been nice if it had been flagged for us: "Hey, these updates are failing because the MX is blocking it." It wasn't a huge problem, but there was a loss of our time as well as the fact that the updates didn't get pushed out... It would have been nice if CDO had let us know that that was an issue."
"If I make a change locally to the firewall, CDO gives an alarm or an error message and says there's a change in compliance: "The firewall has this configuration but the last time it was compiled it had that configuration." That view of new changes versus the old could be better... I had to log in manually, locally on the firewall, to check which version, which configuration was actually running. I couldn't see it in CDO."
"It would be a better product if it incorporated device control for third-party products easily."
"I've found dozens of bugs over the year we've been using it. The more I use it for different things, the more problems I find... Most of the problems have to do with the user interface. A lot of thought and work has gone into the back-end component to make the product do what it's intended to do, but the way it is presented for use hasn't gotten nearly as much thought to make it smart and bug-free."
"There could be some slight improvements to navigation. In some of the navigation you've got to go back to be able to get into where you need to be once you've made a change. If I make a change, I've then got to go back to submit and send the change."
"The main thing that would useful for us would the logging and monitoring. I have to check it out, to get the beta, because I don't have access to them... I wanted CDO to be a central place so where I could do everything but right now I don't think that's possible. I really don't want to go back and forth between this and FMC. Maybe the logging portion, when I look at it, will give me some similarities."
"It should have more features to manage FirePOWER appliances."
"When logging into the device, we sort of had problems with it staying in sync. If somebody made a change onsite, it wouldn't do an automatic sync. It would have to wait, as you would have to do a manual sync up."
Pricing and Cost Advice
"The pricing is flexible with a low cost setup."
"The licensing is very easy to set up, with flexible licensing methods such as subscription and perpetual."
"My advice is that you must do a POC and show value."
"The price is adapted to the product's utilization for each company."
"The price is high but the support is extremely poor, so keep that in mind before choosing this product."
"AlgoSec is not much more expensive compared to other products available in the market."
"The pricing of AlgoSec is fair."
"It seems we have recovered our money on this appliance, so it is money well spent."
"It is about a $100 per year for an ASA 5506 firewall, and from there it keeps going up if you have a bigger box. For example, the 5516 is $200 to $300 per year."
"It's around £500 per unit for a three-year license."
"After our free trial was done we got a subscription for three years and it was under $3,000 or so. It's part of the EA we already paid for, so I don't know what it would be if it was a la carte."
"It is covered under the CIsco Enterprise License Agreement (ELA). So, it is licensed and ours."
"If you compare to what is available on the market, they are in the same range with respect to pricing."
Questions from the Community
Top Answer: Thank you, Sunil and Carlo, for your insightful responses. I really appreciate that and will investigate further. Best regards, John
Top Answer: The product gave us more agility on the process to analyze and resolve tickets by requesting permissions to access services not enabled by default.
Top Answer: It is fair. For cloud environments, it can be expensive. The model adopted to use as licensing for the cloud environment should be reviewed since it sometimes can increase the value of the… more »
Ask a question
Earn 20 points
out of 11 in Firewall Security Management
Average Words per Review
out of 11 in Firewall Security Management
Average Words per Review
Compared 51% of the time.
Compared 19% of the time.
Compared 18% of the time.
Compared 5% of the time.
Compared 28% of the time.
Compared 25% of the time.
Compared 14% of the time.
Compared 9% of the time.
Also Known As
The leading provider of business-driven network security management solutions, AlgoSec helps the world’s largest organizations align security with their mission-critical business processes. With AlgoSec, users can discover, map and migrate business application connectivity, proactively analyze risk from the business perspective, tie cyber-attacks to business processes and intelligently automate network security changes with zero touch – across their cloud, SDN and on-premise networks. Over 1,800 enterprises, including 20 of the Fortune 50, utilize AlgoSec’s solutions to make their organizations more agile, more secure and more compliant – all the time. Since 2005, AlgoSec has shown its commitment to customer satisfaction with the industry’s only money-back guarantee.
Cisco Defense Orchestrator is a cloud based policy management solution to drive simple and consistent security policy across multiple Cisco security platforms.
Learn more about AlgoSec
Learn more about Cisco Defense Orchestrator
|NASDAQ, Oracle, T-Mobile, Chevron, AT&T, BP, Intel, Skype, Microsoft, Volkswagen||Insurance Company of British Columbia, Shawmut|
Financial Services Firm28%
Comms Service Provider7%
Computer Software Company32%
Comms Service Provider18%
Financial Services Firm9%
Comms Service Provider40%
Computer Software Company30%
Financial Services Firm4%
AlgoSec is ranked 1st in Firewall Security Management with 70 reviews while Cisco Defense Orchestrator is ranked 4th in Firewall Security Management with 13 reviews. AlgoSec is rated 9.4, while Cisco Defense Orchestrator is rated 8.2. The top reviewer of AlgoSec writes "Excellent for firewall policy auditing and firewall policy automation". On the other hand, the top reviewer of Cisco Defense Orchestrator writes "Provides visibility into entire infrastructure and bulk changes save time and resources". AlgoSec is most compared with Tufin, FireMon, Skybox Security Suite and ManageEngine Firewall Analyzer, whereas Cisco Defense Orchestrator is most compared with Tufin, FireMon, Palo Alto Networks Panorama and Skybox Security Suite. See our AlgoSec vs. Cisco Defense Orchestrator report.
See our list of best Firewall Security Management vendors.
We monitor all Firewall Security Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.