Fortinet FortiSIEM vs SolarWinds NPM comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
32,763 views|18,195 comparisons
92% willing to recommend
Fortinet Logo
7,467 views|4,053 comparisons
81% willing to recommend
SolarWinds Logo
15,547 views|8,557 comparisons
92% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Fortinet FortiSIEM and SolarWinds NPM based on real PeerSpot user reviews.

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Fortinet FortiSIEM vs. SolarWinds NPM Report (Updated: May 2020).
768,415 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"It is always correlating to IOCs for normal attacks, using Azure-related resources. For example, if any illegitimate IP starts unusual activity on our Azure firewall, then it automatically generates an alarm for us.""Sentinel also enables you to ingest data from your entire ecosystem and not just from the Microsoft ecosystem. It can receive data from third-party vendors' products such firewalls, network devices, and antivirus solutions. It's not only a Microsoft solution, it's for everything.""Its inbuilt Kusto Query Language is a valuable feature. It provides the flexibility needed to leverage advanced data analytics rules and policies and enables us to easily navigate all our security events in a single view. It helps any user easily understand the data or any security lags in their data and applications.""The pricing of the product is excellent.""The analytics has a lot of advantages because there are 300 default use cases for rules and we can modify them per our environment. We can create other rules as well. Analytics is a useful feature.""I like the ability to run custom KQL queries. I don't know if that feature is specific to Sentinel. As far as I know, they are using technology built into Azure's Log Analytics app. Sentinel integrates with that, and we use this functionality heavily.""Microsoft Sentinel comes preloaded with templates for teaching and analytics rules.""Log aggregation and data connectors are the most valuable features."

More Microsoft Sentinel Pros →

"The advanced agents used to collect logs have been most valuable. We have also made use of the advanced intelligence this solution offers.""The seamless integration with FortiGate is the solution's most valuable aspect.""The solution’s IP database is awesome.""Easy alert setup which enables different alerts in different categories.""Technical support is helpful.""Fortinet FortiSIEM is less costly than other products and is available 24/7.""One of the most valuable features is that we can combine SOC and NOC operations in the same tool. We can provide NOC and SOC services in the same tool for two separate teams. There are plenty of third-party solutions that integrate with FortiSIEM. All these solutions already have a ready integration, and we have the possibility to create a custom connector for these solutions. Its reports are also very good.""I like the various options, including the option for CMDB and the easier access to create rules, playbooks, or use cases. It's also easier to use for creating dashboards and reports."

More Fortinet FortiSIEM Pros →

"The benefit of this solution is the reporting. We're able to report on and see our network in a graphical form. We are able to detect when a device is added to a network.""We can proactively fix historical issues, so we won't face those problems in future.""The solution is easy to install and it takes a couple of hours.""The people in technical support are very good.""The solution is extremely stable. We haven't had any issues in that regard. We haven't had issues with bugs, glitches, or crashes.""The product covers our needs for the basic care and feeding of servers, whether they are physical or virtual.""The most valuable features are language support and technical support.""I like SolarWinds support because it's 24/7. You describe your issues, your situation and maybe two or three hours later you can discuss a solution with a technical engineer."

More SolarWinds NPM Pros →

Cons
"The playbook development environment is not as rich as it should be. There are multiple occasions when we face problems while creating the playbook.""The reporting could be more structured.""Sentinel still has some anomalies. For example, sometimes when we write a query for log analysis with KQL, it doesn't give us the data in a proper way... Also, the fields or columns could be improved. Sometimes, it is not giving the desired results and there is a blank field.""Everyone has their favorites. There is always room for improvement, and everybody will say, "I wish you could do this for me or that for me." It is a personal thing based on how you use the tool. I do not necessarily have those thoughts, and they are probably not really valuable because they are unique to the context of the user, but broadly, where it can continue to improve is by adding more connectors to more systems.""Sentinel's alerts and notifications are not fully optimized for mobile devices. The overall reporting and the analytics processes for the end user should also be improved. Also, the compatibility and availability of data sources and reports are not always perfect.""Sentinel should be improved with more connectors. At the moment, it only covers a few vendors. If I remember correctly, only 100 products are supported natively in Sentinel, although you can connect them with syslog. But Microsoft should increase the number of native connectors to get logs into Sentinel.""Not all information shows up in Sentinel. Sometimes there are items provided in 365 and if you looked in Sentinel you would not see them and therefore think they do not exist. There can be discrepancies between Microsoft tools.""Sometimes, it is hard for us to estimate the costs of Microsoft Sentinel."

More Microsoft Sentinel Cons →

"The policy editing should be easier. Right now, it's too hard.""The solution's interface could be modernized and improved.""The dashboards need to be improved. It gives you so much detail, but sometimes too much detail, especially to an executive, it's too much.""With FortiSIEM, the issue has to do with the ways we can generate a report. It's not as flexible compared to that with other SIEM tools, like Splunk.""When compared with some competitors, in terms of performance, the CPU and RAM requirements and the capability of coordination with development all need some improvement.""Does not have load-sharing or high-availability, and these are important things to implement. I can do the same things in another way, but not naturally having these features makes it complicated.""The only drawback is the licensing model. It can get expensive if you want to integrate more solutions.""Creating parsers to try make unknown events or currently unsupported devices produce meaningful information is extremely cumbersome."

More Fortinet FortiSIEM Cons →

"The reporting module that got integrated into the system itself, used to be a standalone solution and I preferred that.""Being able to detect devices that are trying to connect wirelessly would make using this solution much easier.""My team has had a lot of issues with support.""In terms of scalability, there is room for improvement. When you start monitoring, if you have so many interfaces and you're trying to monitor them at a faster interval, or a shorter interval, you get to a point where you need to request another node.""It is not that stable. As a Windows software, I have seen issues with SolarWinds. The performance is slow.""The product is scalable, but at a cost. Extra modules have to be purchased for each extra server. The initial set up isn't complex, but will require someone who is experienced with the network monitoring system""If they’re going for a “cover everything” approach, then they need to do so and enable a bit more of the "cover everything approach" within every one of the tools.""We also had to be attentive to vulnerabilities, because SolarWinds NPM have some issues in that area. We had to work with our security team, so that they could help us check and backup the data, and check what they needed to secure."

More SolarWinds NPM Cons →

Pricing and Cost Advice
  • "It comes with a Microsoft subscription which the customer has, so they don't have to invest somewhere else."
  • "It is a consumption-based license model. bands at 100, 200, 400 GB per day etc. Azure Sentinel Pricing | Microsoft Azure"
  • "Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
  • "I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
  • "It is kind of like a sliding scale. There are different tiers of pricing that go from $100 per day up to $3,500 per day. So, it just kind of depends on how much data is being stored. There can be additional costs to the standard license other than the additional data. It just kind of depends on what other services you're spinning up in Azure, or if you're using something like Azure log analytics."
  • "I am just paying for the log space with Azure Sentinel. It costs us about $2,000 a month. Most of the logs are free. We are only paying money for Azure Firewall logs because email logs or Azure AD logs are free to use for us."
  • "Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
  • "Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "Please be cheaper and more simplified."
  • "We bought the perpetual license, so we own the product, but there is a three-year support renewal fee for that."
  • "Pricing is acceptable for more than 90% of our customers, as they normally get discounts."
  • "Its price can be better. We are Fortinet partners, so we can get discounts, but its price can be an issue at the beginning for others. There is a licensing scheme for every case. There are three licensing schemes that we can choose from."
  • "The price of Fortinet FortiSIEM is a lot less when compared to other solutions."
  • "They have a yearly subscription."
  • "The solution is available for both, perpetual and subscription licenses."
  • "Manageable, however would be better as pay as you go versus CapEX."
  • More Fortinet FortiSIEM Pricing and Cost Advice →

  • "I’d suggest that people be aware that licensing has tiers."
  • "Excluding the costs of running VMs and physical blade servers, our licensing costs run around US$200,000/year for over 60 polling engines."
  • "I think that the cost has risen, but the functionality and versatility is way above other products."
  • "The licensing model is such that you can purchase only what you need; and then grow into the next level by paying only the difference in price and the associated maintenance costs."
  • "The price points are more than competitive when compared to other vendors."
  • "I believe the original setup cost was around $3500 with an annual cost of around $1200-$1500 to renew the support license. This would bring the average day-to-day cost of around $5-$6 over three years."
  • "You have to license it per year, for the support. You don't really need to have support once you've already set it up. Once you install SolarWinds, you can skip on the licensing. It will still work."
  • "The pricing needs to be improved. It is too high. One full engine costs around $10 000, which is why we don't have high availability right now."
  • More SolarWinds NPM Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
    768,415 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have researched a quite a few network monitoring tools which can be used for various monitoring purposes of not only the servers, but the intermediate routers as well. There are majorly three types of these softwares. Ones which are completely open-source, you can do almost anything you want using these, but they require quite some expertise before you can use them. Then there are the ones that are not open source, the enterprise softwares and cost you some money, but on the other hand, they are extremely easy to set-up and learn. You can have them up and running in a matter of minutes. And then there are those which are completely cloud based. They can be free of cost or charge some money depending on the software. The good thing about these is that you don’t have to install any extra software, and it can be managed completely online but then again these have limited features and you cannot exploit them to the full extent as you can do with the open-source and to some extent the enterprise software, so I won’t suggest you to use these, because these are generally not the complete solutions and require other support software to achieve the same. Below I have listed the outstanding pros and cons of the various Network analyzers that you can look into Nagios Pros: Nagios offers an extensive set of collector plug-ins that allows users to gather performance and availability data from a broad range of operating systems, including  Windows and Netware Nagios… Read more →
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:Real-time monitoring makes life quite easy for me.
    Top Answer:The price is competitive. We can scale based on the licensing. It is an annual CapEx.
    Top Answer:Network detection and response is a separate product. That's how I ended up with Wazuh. I'm looking for something to… more »
    Top Answer:It actually depends on the exact purpose or kind of devices (network devices, servers, something else). Some tools are… more »
    Top Answer:From my point of view, SolarWind is the best tool.
    Top Answer:We are partners with SolarWinds and we sell a lot of Network management to large enterprises also because of… more »
    Comparisons
    Also Known As
    Azure Sentinel
    FortiSIEM, AccelOps
    Solarwinds Network Performance Monitor, SolarWinds Network Bandwidth Analyzer
    Learn More
    Overview

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.

    Companies around the world use FortiSIEM for the following use cases:

    • Threat management and intelligence that provide situational awareness and anomaly detection
    • Alleviating compliance mandate concerns for PCI, HIPAA and SOX
    • Managing “alert overload”
    • Handling the “too many tools” reporting issue
    • Addressing the MSPs/MSSPs pain of meeting service level agreements

    SolarWinds NPM is a network monitoring solution that enables you to detect, diagnose, and resolve network performance issues and outages quickly and efficiently. The solution is a powerful tool that can help you increase service levels, reduce downtime with multi vendor network monitoring, simplify the management of complex network devices, improve operational efficiency, and much more.

    SolarWinds NPM Features

    SolarWinds NPM has many valuable key features. Some of the most useful ones include:

    • Increased scalability
    • Fault, performance, and availability monitoring
    • Dynamic network discovery and mapping
    • Cross-stack network data correlation
    • Customizable topology
    • Dependency-aware intelligent alerts
    • Intelligent maps
    • Automated capacity forecasting, alerting, and reporting
    • Logical and physical network monitoring
    • Monitor Azure vNet gateway visibility

    SolarWinds NPM Benefits

    There are several benefits to implementing SolarWinds NPM. Some of the biggest advantages the solution offers include:

    • Comprehensive monitoring for advanced network devices: With SolarWinds NPM, you can gain insight into the health and performance of your load balancers, Cisco ASA and Palo Alto Networks, firewalls, and Cisco Nexus switches.
    • Hardware health monitoring: SolarWinds NPM makes it easy for you to monitor, alert, and report on key device metrics, including power supply, fan speed, and temperature.
    • Customizable performance and availability reports: With this feature, you can choose from more than 100 templates to schedule and also generate custom network performance reports.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by PeerSpot users currently using the SolarWinds NPM solution.

    PeerSpot user Andrew N., Senior Network Engineer at Element Critical, says, “The "Performance Analyzer" feature is the solution's most valuable aspect. It's able to do the bounded graphs of all the interface stats, from errors to broadcasts and to current traffic. With a click of a button you're able to, in one interface, look at historical data for those items.” He also adds, “From the troubleshooting point of view, just having that peace of mind is great. And, The solution is extremely stable. We haven't had any issues in that regard. We haven't had issues with bugs, glitches, or crashes."

    Daniel S., Systems and Data Warehouse Supervisor at MMSD, mentions, “The alerting and usage tracking is a valuable feature because it alerts us when we're getting near capacity on disk space, network utilization or processor utilization. It helps us manage our capacity and enables us to be proactive.”

    A Senior Vice President and CIO at a financial services firm explains, “As we look to add more servers to our virtual environment and to understand the impact, the solution allows us to dig into the historical charts related to capacity planning. It also gives us visibility of spikes and allows us to track down the reasons for their occurrences. So too, it makes room for potential processes that have gotten hung or runaway and to know when it's time to reboot a server or service.”

    Dinesh N., Digital Innovation at Bobcat Company, states, “The best part of the solution is the sharing display. It gives a general public ID wherein everyone can link to a public display. That's a good feature.”


    Fazal A., Implementation & Support Specialist at 360Factors, comments, “We have configured multiple alerts for our network devices, including routers and switches, so that we are notified if any interface goes down. In the event an interface goes down, we have multiple reports that include availability monitoring, network uptime monitoring, and network downtime monitoring. These reports are on multiple schedules such as the end of the day, end of the last business day of the week, monthly, and quarterly. This gives us the ability to provide reports to our management and let them know the performance of our network.”

    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
    Microsoft, Federal Express, Hewlett-Packard, and MasterCard
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company11%
    Comms Service Provider8%
    Manufacturing Company8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm10%
    Government9%
    Manufacturing Company7%
    REVIEWERS
    Comms Service Provider22%
    Financial Services Firm12%
    Computer Software Company10%
    Media Company10%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider10%
    Government9%
    Financial Services Firm6%
    REVIEWERS
    Computer Software Company12%
    Comms Service Provider12%
    Financial Services Firm11%
    Healthcare Company9%
    VISITORS READING REVIEWS
    Educational Organization50%
    Computer Software Company7%
    Government5%
    Manufacturing Company5%
    Company Size
    REVIEWERS
    Small Business33%
    Midsize Enterprise21%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    REVIEWERS
    Small Business42%
    Midsize Enterprise25%
    Large Enterprise33%
    VISITORS READING REVIEWS
    Small Business30%
    Midsize Enterprise17%
    Large Enterprise53%
    REVIEWERS
    Small Business33%
    Midsize Enterprise18%
    Large Enterprise49%
    VISITORS READING REVIEWS
    Small Business12%
    Midsize Enterprise55%
    Large Enterprise33%
    Buyer's Guide
    Fortinet FortiSIEM vs. SolarWinds NPM
    May 2020
    Find out what your peers are saying about Fortinet FortiSIEM vs. SolarWinds NPM and other solutions. Updated: May 2020.
    768,415 professionals have used our research since 2012.

    Fortinet FortiSIEM is ranked 8th in Security Information and Event Management (SIEM) with 63 reviews while SolarWinds NPM is ranked 4th in Network Monitoring Software with 147 reviews. Fortinet FortiSIEM is rated 7.6, while SolarWinds NPM is rated 8.2. The top reviewer of Fortinet FortiSIEM writes "It's cheaper than other solutions with the same features but lacks integration with many third-party vendors". On the other hand, the top reviewer of SolarWinds NPM writes "High-level, comprehensive, and proactive monitoring in a user-friendly interface". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, LogRhythm SIEM, Wazuh and ThousandEyes, whereas SolarWinds NPM is most compared with Zabbix, PRTG Network Monitor, ManageEngine OpManager, ThousandEyes and LogicMonitor. See our Fortinet FortiSIEM vs. SolarWinds NPM report.

    We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.