Fortinet FortiSIEM vs NETSCOUT nGeniusONE comparison

Cancel
You must select at least 2 products to compare!
Microsoft Logo
32,763 views|18,195 comparisons
92% willing to recommend
Fortinet Logo
7,467 views|4,053 comparisons
81% willing to recommend
NETSCOUT Logo
3,150 views|1,989 comparisons
93% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Fortinet FortiSIEM and NETSCOUT nGeniusONE based on real PeerSpot user reviews.

Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Fortinet FortiSIEM vs. NETSCOUT nGeniusONE Report (Updated: May 2020).
768,857 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"There are a lot of things you can explore as a user. You can even go and actively hunt for threats. You can go on the offensive rather than on the defensive.""You can fine-tune the SOAR and you'll be charged only when your playbooks are triggered. That is the beauty of the solution because the SOAR is the costliest component in the market today... but with Sentinel it is upside-down: the SOAR is the lowest-hanging fruit. It's the least costly and it delivers more value to the customer.""The solution offers a lot of data on events. It helps us create specific detection strategies.""If you know how to do KQL (kusto query language) queries, which are how you query the log data inside Sentinel, the information is pretty rich. You can get down to a good level of detail regarding event information or notifications.""It's easy to use. It's a very good product. It can easily ingest data from anywhere. It has an easily understandable language to perform actions.""The UI of Sentinel is very good and easy to use, even for beginners.""Sentinel's most important feature is the ability to centralize all the logs in one place. There's no need to search multiple systems for information.""We have no complaints about the features or functionality."

More Microsoft Sentinel Pros →

"The most valuable feature of Fortinet FortiSIEM is the user and entity behave as analytics(UEBA). This feature mixes your data and provides useful information based on the behavior of the targeted.""The Threat Hunting feature provides complete traffic analysis.""Our customer did not have security monitoring in the first place. With this solution, it provided security posture management and visibility about the security landscape and threats that they had.""We like the integration of all of these Fortinet platforms together. Everything is integrated well, and we are able to sell that as a service to our customers.""It's a very nice solution to work with.""I like FortiSIEM because it integrates natively with our other Fortinet solutions and the Fortinet Fabric, but it also integrates with Cisco, Palo Alto and other security fabrics.""The advanced agents used to collect logs have been most valuable. We have also made use of the advanced intelligence this solution offers.""FortiSIEM helped us discover all the threats at the time that were attacking the IT services of the company. We now have multiple-level authentication."

More Fortinet FortiSIEM Pros →

"The solution helps to troubleshoot and put our hands on the weak points of customer networks.""Packet decode and bandwidth analysis reports are the two most valuable features.""We are using nGeniusONE to run our bandwidth capacity management reports. In the past, we used to be very reactive, we used to depend a lot on suppliers to tell us which sites are our hot sites, meaning, which have high bandwidth utilization. Now we do this in a much more proactive way and we are moving to a more predictive approach in that aspect, thanks to nGeniusONE.""The quick drill-down views are similar to Wireshark views. Those are quite nice, with the views on how you interpret some of the data. The granularity of how far you can drill down into milliseconds or microseconds is a very nice feature. It actually stores quite a lot of data in its database.""The solution transforms packet wire data into real-time data that is actionable. It helps us with faster detection of issues and allows us to create alerts.""It catches bigger issues on a weekly basis. That's how often we find something big enough that the only reason we know about it is because of the nGeniusONE. The bigger issues are mostly security-type issues: Odd traffic leaving our network or coming into it, that has found its way past a firewall.""It has versatility to correlate different traffic types and performance management statistics.""It helps us get to the root cause quickly. It helps us find massive error codes, then we drill down on that error code, knowing that is the source of our problem."

More NETSCOUT nGeniusONE Pros →

Cons
"It could have a better API to be able to automate many things more extensively and get more extensive data and more expensive deployment possibilities. It can gain some points on the automation part and the integration part. The API is very limited, and I would like to see it extended a bit more.""While I appreciate the UI itself and the vast amount of information available on the platform, I'm finding the overall user experience to be frustrating due to frequent disconnections and the requirement to repeatedly re-authenticate.""Sentinel provides decent visibility, but it's sometimes a little cumbersome to get to the information I want because there is so much information. I would also like to see more seamless integration between Sentinel and third-party security products.""We're satisfied with the comprehensiveness of the security protection. That said, we do have issues sometimes where there have been global outages and we need to raise a ticket with Microsoft.""The solution should allow for a streamlined CI/CD procedure.""They should just add more and more out-of-the-box connectors. It is quite a new product, and it has a lot of connectors, and even more would be good.""I believe one of the challenges I encountered was the absence of live training sessions, even with the option to pay for them.""They're giving us the queries so we can plug them right into Sentinel. They need to have a streamlined process for updating them in the tool and knowing when things are updated and knowing when there are new detections available from Microsoft."

More Microsoft Sentinel Cons →

"The UI could improve in Fortinet FortiSIEM. Humans view the UI frequently for data and if it was more visually pleasing it would be beneficial.""Customer support service could be better.""They need to integrate better with Cisco and Palo Alto.""The support of the product changed recently, and I don't think it's for the better. They should work to improve the support they offer to clients.""We need to see incident reports about the event log, without events from the administrator or through human interaction.""Sometimes, if there are changes made by a user on a database server, it can be difficult to get that information on the fly. I would like to see a situation where once I specify a user with the database server I need, and with the changes they have performed on that, I don't need to continue my search pattern to drill down just to get the information.""They should enhance the solution's AI capabilities, including XDR and EDR.""If there is a configuration on the wrong side of the network or there are changes that result in harm to our IT infrastructure, the solution should immediately fix it."

More Fortinet FortiSIEM Cons →

"There is currently less visibility or GUI to analyse the packet for troubleshooting purposes.""The current solution is not easy to scale, because it is an appliance-based solution. So, you have to swap everything out.""The scalability needs some work. From a probe perspective, we are limited to a certain amount of throughput on the devices themselves. Without having actual hooks into the bare metal hardware for the solutions, it's a bit of a "thumb in the air" as to when we hit our capacity or when our high watermark is.""The stability is only fair. It goes down a lot.""They can improve still on the workflows, document their workflows that are commonly used... We don't know some of the workflows yet, and it's not something that you can just read up in the manual. There is some stuff in the help manual and online, but it's to a point where you need to purchase extra training and services from them. You can't just go and read up on it yourself and learn from A to Z...""The product is a little complicated.""Its initial setup process is complicated.""For individual subscriber tracings, sometimes it does not capture all the messages. There is a little bit of room for improvement there."

More NETSCOUT nGeniusONE Cons →

Pricing and Cost Advice
  • "It comes with a Microsoft subscription which the customer has, so they don't have to invest somewhere else."
  • "It is a consumption-based license model. bands at 100, 200, 400 GB per day etc. Azure Sentinel Pricing | Microsoft Azure"
  • "Good monthly operational cost model for the detection and response outcomes delivered, M365 logs don't count toward the limits which is a good benefit."
  • "I have had mixed feedback. At one point, I heard a client say that it sometimes seems more expensive. Most of the clients are on Office 365 or M365, and they are forced to take Azure SIEM because of the integration."
  • "It is kind of like a sliding scale. There are different tiers of pricing that go from $100 per day up to $3,500 per day. So, it just kind of depends on how much data is being stored. There can be additional costs to the standard license other than the additional data. It just kind of depends on what other services you're spinning up in Azure, or if you're using something like Azure log analytics."
  • "I am just paying for the log space with Azure Sentinel. It costs us about $2,000 a month. Most of the logs are free. We are only paying money for Azure Firewall logs because email logs or Azure AD logs are free to use for us."
  • "Sentinel is a bit expensive. If you can figure a way of configuring it to meet your needs, then you can find a way around the cost."
  • "Azure Sentinel is very costly, or at least it appears to be very costly. The costs vary based on your ingestion and your retention charges."
  • More Microsoft Sentinel Pricing and Cost Advice →

  • "Please be cheaper and more simplified."
  • "We bought the perpetual license, so we own the product, but there is a three-year support renewal fee for that."
  • "Pricing is acceptable for more than 90% of our customers, as they normally get discounts."
  • "Its price can be better. We are Fortinet partners, so we can get discounts, but its price can be an issue at the beginning for others. There is a licensing scheme for every case. There are three licensing schemes that we can choose from."
  • "The price of Fortinet FortiSIEM is a lot less when compared to other solutions."
  • "They have a yearly subscription."
  • "The solution is available for both, perpetual and subscription licenses."
  • "Manageable, however would be better as pay as you go versus CapEX."
  • More Fortinet FortiSIEM Pricing and Cost Advice →

  • "If you are able and you are willing to use everything that Netscout provides to you, it's probably a relatively fair price. The problem is that it's such a large and such a complex tool that I'm not sure that many companies would be able to use it entirely, the way it's expected to be used."
  • "Like any company, we always want better pricing. The pricing is okay, but it's not a cheap solution. When you want to deploy it across an enterprise as large as ours, you go into seven figures. It's not a cheap solution to get out there."
  • "Their pricing is very competitive with other solutions... But what I like about NETSCOUT's licensing is that it's shared across all their platforms. They don't create a new licensing scheme for every one of their products. So for nGeniusONE, you buy a certain license level, and it works on all of their products."
  • "Cost is probably the biggest drawback. Compared to some of the newer vendors that have popped up in the space, it's definitely more on the expensive side... [But] it's been able to keep its value, even in the face of the cheaper competition."
  • "The biggest problem we have with this product is the expense."
  • "It can be expensive, but if you have a good configuration, based on what you are looking for, it's okay, it's manageable."
  • "It is very expensive, but it's well worth the money."
  • "It is a little overall pricey and expensive, but you get what you pay for."
  • More NETSCOUT nGeniusONE Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
    768,857 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:Yes, Azure Sentinel is a SIEM on the Cloud. Multiple data sources can be uploaded and analyzed with Azure Sentinel and… more »
    Top Answer:It would really depend on (1) which logs you need to ingest and (2) what are your use cases Splunk is easy for… more »
    Top Answer:We like that Azure Sentinel does not require as much maintenance as legacy SIEMs that are on-premises. Azure Sentinel is… more »
    Top Answer:Real-time monitoring makes life quite easy for me.
    Top Answer:The price is competitive. We can scale based on the licensing. It is an annual CapEx.
    Top Answer:Network detection and response is a separate product. That's how I ended up with Wazuh. I'm looking for something to… more »
    Top Answer:I would say if it’s an ISP that will build a scrubbing center, Netscout/Arbor is a good solution. In all other… more »
    Top Answer:Stability-wise, I rate the solution a ten out of ten.
    Top Answer:There is a need to make yearly payments towards the licensing charges attached to the product. The product may come… more »
    Comparisons
    Also Known As
    Azure Sentinel
    FortiSIEM, AccelOps
    NETSCOUT nGenius, nGeniusONE
    Learn More
    Overview

    Microsoft Sentinel is a scalable, cloud-native, security information event management (SIEM) and security orchestration automated response (SOAR) solution that lets you see and stop threats before they cause harm. Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise, providing a single solution for alert detection, threat visibility, proactive hunting, and threat response. Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs. With Microsoft Sentinel, you can:

    - Collect data at cloud scale—across all users, devices, applications, and infrastructure, both on-premises and in multiple clouds

    - Detect previously uncovered threats and minimize false positives using analytics and unparalleled threat intelligence from Microsoft

    - Investigate threats with AI and hunt suspicious activities at scale, tapping into decades of cybersecurity work at Microsoft

    - Respond to incidents rapidly with built-in orchestration and automation of common tasks

    To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.

    FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.

    Companies around the world use FortiSIEM for the following use cases:

    • Threat management and intelligence that provide situational awareness and anomaly detection
    • Alleviating compliance mandate concerns for PCI, HIPAA and SOX
    • Managing “alert overload”
    • Handling the “too many tools” reporting issue
    • Addressing the MSPs/MSSPs pain of meeting service level agreements
    The nGenius Real-Time Monitor software provides you with tools to monitor and display information about your network both historically and in real time. The nGenius Real-Time Monitor software allows you to understand your current network usage and to plan for future needs. It also allows you to proactively troubleshoot problem areas in your network.
    Sample Customers
    Microsoft Sentinel is trusted by companies of all sizes including ABM, ASOS, Uniper, First West Credit Union, Avanade, and more.
    FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
    Cerner Corporation
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company11%
    Manufacturing Company8%
    Comms Service Provider8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm10%
    Government9%
    Manufacturing Company7%
    REVIEWERS
    Comms Service Provider22%
    Financial Services Firm12%
    Media Company10%
    Computer Software Company10%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider10%
    Government9%
    Financial Services Firm6%
    REVIEWERS
    Comms Service Provider35%
    Financial Services Firm16%
    Government11%
    Computer Software Company11%
    VISITORS READING REVIEWS
    Financial Services Firm17%
    Computer Software Company14%
    Government8%
    Manufacturing Company8%
    Company Size
    REVIEWERS
    Small Business33%
    Midsize Enterprise21%
    Large Enterprise47%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    REVIEWERS
    Small Business42%
    Midsize Enterprise25%
    Large Enterprise33%
    VISITORS READING REVIEWS
    Small Business30%
    Midsize Enterprise17%
    Large Enterprise53%
    REVIEWERS
    Small Business22%
    Midsize Enterprise6%
    Large Enterprise73%
    VISITORS READING REVIEWS
    Small Business16%
    Midsize Enterprise13%
    Large Enterprise72%
    Buyer's Guide
    Fortinet FortiSIEM vs. NETSCOUT nGeniusONE
    May 2020
    Find out what your peers are saying about Fortinet FortiSIEM vs. NETSCOUT nGeniusONE and other solutions. Updated: May 2020.
    768,857 professionals have used our research since 2012.

    Fortinet FortiSIEM is ranked 8th in Security Information and Event Management (SIEM) with 63 reviews while NETSCOUT nGeniusONE is ranked 27th in Network Monitoring Software with 47 reviews. Fortinet FortiSIEM is rated 7.6, while NETSCOUT nGeniusONE is rated 8.2. The top reviewer of Fortinet FortiSIEM writes "It's cheaper than other solutions with the same features but lacks integration with many third-party vendors". On the other hand, the top reviewer of NETSCOUT nGeniusONE writes "We use it every day for the triaging of events, saving us a lot of time". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, LogRhythm SIEM, Wazuh and ThousandEyes, whereas NETSCOUT nGeniusONE is most compared with Gigamon Deep Observability Pipeline, Dynatrace, ThousandEyes, AppDynamics and SolarWinds NPM. See our Fortinet FortiSIEM vs. NETSCOUT nGeniusONE report.

    We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.