We performed a comparison between Fortinet FortiSIEM and NETSCOUT nGeniusONE based on real PeerSpot user reviews.
Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Sentinel is a SIEM and SOAR tool, so its automation is the best feature; we can reduce human interaction, freeing up our human resources."
"Native integration with Microsoft security products or other Microsoft software is also crucial. For example, we can integrate Sentinel with Office 365 with one click. Other integrations aren't as easy. Sometimes, we have to do it manually."
"It has a lot of great features."
"One of the most valuable features is that it creates a kind of a single pane of glass for organizations that already use Microsoft software. So, when they have things like Microsoft 365, it is very easy for them to kind of plug in or enroll those endpoints into the Azure Sentinel service."
"The main benefit is the ease of integration."
"It has basic out-of-the-box integrations with multiple log sources."
"We’ve got process improvement that's happened across multiple different fronts within the organization, within our IT organization based on this tool being in place."
"One of the most valuable features of Microsoft Sentinel is that it's cloud-based."
"The most valuable features of Fortinet FortiSIEM are the SD-WAN, Global LAN, and application controls."
"Some of our customers who use this solution have seen improvement in their connection with load balancing on both connections."
"The ability to write my own parsers for the devices that are not supported by Fortinet is the most valuable feature."
"It's a very nice solution to work with."
"Fortinet FortiSIEM's most valuable feature is the simplicity in handling multi-tenancy and the ability to switch between different clients at the same time. That was handled flawlessly."
"Real-time monitoring makes life quite easy for me."
"The most valuable feature is the anomaly-reporting alarms."
"The solution is easy to use and user-friendly."
"The product is very good. We have very few problems."
"We've saved a lot of time in triaging. We have found root cause identities on packet captures and have been able to feed that information back to a specific vendor, because a lot of our technology is emerging. So, we're able to give that feedback to our vendors and have them solve the problems that they need to fix, and they have the evidence to do so."
"The best feature is when we have it connected permanently via TAPs. That enables us to constantly collect data and then we can go back in time... To be able to rewind, back in time, and see the problem as it happened, is very helpful."
"From the standpoint of VoLTE and related things, it's providing visibility into the network and how it operates."
"It gives me the MOS, latency, and jitter."
"When we have any type of outage, and we dig into it, we are able to tell what the root cause is instead of having to go through Wireshark, etc."
"The ability of the dashboards is useful for discover, mapping and understanding of application behaviour."
"The most valuable feature is that it is in line with the traffic. It already captures the raw traffic itself and then filters it, giving us the correct image. Some other companies may just extract what they think is valuable from the traffic itself. nGeniusONE is in line."
"Everyone has their favorites. There is always room for improvement, and everybody will say, "I wish you could do this for me or that for me." It is a personal thing based on how you use the tool. I do not necessarily have those thoughts, and they are probably not really valuable because they are unique to the context of the user, but broadly, where it can continue to improve is by adding more connectors to more systems."
"Documentation is the main thing that could be improved. In terms of product usage, the documentation is pretty good, but I'd like a lot more documentation on Kusto Query Language."
"I would like to see more AI used in processes."
"If Sentinel had a graphical user interface, it would be easier to use. I would also like it to be more customizable."
"I would like to be able to monitor applications outside of the Azure Cloud."
"Currently, the watchlist feature is being utilized, and although there have been improvements, it is still not fully optimized."
"Multi-tenancy, in my opinion, needs to be improved. I believe it can do better as a managed service provider."
"I believe one of the challenges I encountered was the absence of live training sessions, even with the option to pay for them."
"Its training can be improved. Its price also needs to be improved."
"I would like to see more integration with other platforms."
"Areas for improvement would be the ease of use and the integration with Fortinet's own products."
"The UI could improve in Fortinet FortiSIEM. Humans view the UI frequently for data and if it was more visually pleasing it would be beneficial."
"It would be good if the solution offered even more configuration options, especially in relation to the VPN so that it continues to be a very flexible option."
"The interface needs some improvements because it's a bit cumbersome when you're trying to view items. It takes some time to get used to. Additionally, sometimes the scrolling does not work."
"With FortiSIEM, the issue has to do with the ways we can generate a report. It's not as flexible compared to that with other SIEM tools, like Splunk."
"Fortinet FortiSIEM could improve by having better integration and extensions. This would benefit by allowing us to give more rules."
"here is a big issue with the special way they use InfiniStream to store data."
"I'd like to see the nGeniusONE, the nGeniusPULSE, and the OptiView, their three separate products, work a little better together, a little more streamlined."
"There are so many pieces of their product that integrate with one another that perhaps a recommendation for improvement would be some sort of bigger overview and map to help understand how all their pieces integrate together."
"The scalability needs some work. From a probe perspective, we are limited to a certain amount of throughput on the devices themselves. Without having actual hooks into the bare metal hardware for the solutions, it's a bit of a "thumb in the air" as to when we hit our capacity or when our high watermark is."
"On a network the size of ours, the loading times seem a little extensive, 20 or 30 seconds to load up some graphs."
"I would like more in-depth convergence between all the applications, especially when I look for information through a data mine."
"We would like more encryption of customer data, because we have a very security conscious company. We have a lot of regulation coming in which requires us to make customer data private."
"One of the products we use is SolarWinds, and it provides a very cool mapping of an agent from end-to-end. If NETSCOUT could somehow implement that into their design... make it quicker and easier to get those net paths, it would be huge."
Fortinet FortiSIEM is ranked 8th in Security Information and Event Management (SIEM) with 63 reviews while NETSCOUT nGeniusONE is ranked 27th in Network Monitoring Software with 47 reviews. Fortinet FortiSIEM is rated 7.6, while NETSCOUT nGeniusONE is rated 8.2. The top reviewer of Fortinet FortiSIEM writes "It's cheaper than other solutions with the same features but lacks integration with many third-party vendors". On the other hand, the top reviewer of NETSCOUT nGeniusONE writes "We use it every day for the triaging of events, saving us a lot of time". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, LogRhythm SIEM, Wazuh and ThousandEyes, whereas NETSCOUT nGeniusONE is most compared with Gigamon Deep Observability Pipeline, Dynatrace, ThousandEyes, AppDynamics and SolarWinds NPM. See our Fortinet FortiSIEM vs. NETSCOUT nGeniusONE report.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.