We performed a comparison between Fortinet FortiSIEM and Pandora FMS based on real PeerSpot user reviews.
Find out in this report how the two Security Information and Event Management (SIEM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Sentinel pricing is good"
"Having your logs put all in one place with machine learning working on those logs is a good feature. I don't need to start thinking, "Where are my logs?" My logs are in a centralized repository, like Log Analytics, which is why you can't use Sentinel without Log Analytics. Having all those logs in one place is an advantage."
"Log aggregation and data connectors are the most valuable features."
"Another area where it is helping us is in creating a single dashboard for our environment. We can collect all the logs into a log analytics workset and run queries on top of it. We get all the results in the dashboard. Even a layman can understand this stuff. The way Microsoft presents it is really incredible."
"The Identity Behavior tab furnishes us with the entire history linked to each IP or domain that has either accessed or attempted to access our system."
"The Log analytics are useful."
"The scalability is great. You can put unlimited logs in, as long as you can pay for it. There are commitment tiers, up to six terabytes per day, which is nowhere close to what any one of our customers is running."
"I like the unified security console. You can close incidents using Sentinel in all other Microsoft Security portals, when it comes to incident response."
"The product's initial setup phase was easy."
"I like FortiSIEM because it integrates natively with our other Fortinet solutions and the Fortinet Fabric, but it also integrates with Cisco, Palo Alto and other security fabrics."
"The primary valuable feature is that it has replaced a whole lot of other products with one platform."
"We find the solution to be stable."
"The most valuable feature is the dashboard. CMDB database collects data from a lot of pre-configured devices."
"The CMDB and the device discovery features are most valuable."
"We have found the most important features in Fortinet FortiSIEM to be the correlation, file utility check, latest file, and hash changes. These features are important for us."
"The ability to write my own parsers for the devices that are not supported by Fortinet is the most valuable feature."
"The monitoring system within this solution is very good. It is easy to use and navigate, and makes issue alarms easily viewable."
"I like this solution a lot because it has a very large Hispanic community and the platform looks very friendly."
"We are able to control our business with this all-in-one monitoring tool."
"The solution is so lightweight that with only 4GB of ram, it allows keeping track of up to two hundred agents from a single console."
"Features I have found most valuable with Pandora are the personalized metrics and the simplicity of data."
"Pandora FMS provides us with a general report (graphical) about all of the connected devices, which helps with planning new stations and tracking them."
"It provides us with proactive monitoring and is very easy to configure and maintain."
"Thanks to its flexibility, I have been able to adapt the tool to our servers and find out quickly how their console works."
"Some of the data connectors are outdated, at least the ones that utilize Linux machines for log forwarding. I believe that Microsoft is already working on improving this."
"There are certain delays. For example, if an alert has been rated on Microsoft Defender for Endpoint, it might take up to an hour for that alert to reach Sentinel. This should ideally take no more than one or two seconds."
"We are invoiced according to the amount of data generated within each log."
"It could have a better API to be able to automate many things more extensively and get more extensive data and more expensive deployment possibilities. It can gain some points on the automation part and the integration part. The API is very limited, and I would like to see it extended a bit more."
"It has been a challenge with Azure Sentinel to onboard the Syslog server from FortiGate. Azure Sentinel can work better on that shift between the Syslog server and a firewall."
"They can work on the EDR side of things... Every time we need to onboard these kinds of machines into the EDR, we need to do it with the help of Intune, to sync up the devices, and do the configuration. I'm looking for something on the EDR side that will reduce this kind of work."
"Sometimes, it is hard for us to estimate the costs of Microsoft Sentinel."
"The learning curve could be improved. I am still learning it. We were able to implement the basic features to get them up and running, but there are still so many things that I don't know about all its features. They have a lot of features that we have not been able to use or apply. If they could work on reducing the solution's learning curve, that would be good. While there is a training course held by Microsoft to learn more about this solution, there is a cost associated with it."
"Our team tried configuring MS SQL database logs with Fortinet FortiSIEM, but it did not work for some time."
"The support of the product changed recently, and I don't think it's for the better. They should work to improve the support they offer to clients."
"The product does not have Security Orchestration and Automation Response, I would recommend adding this feature."
"There could be more AI features included in the product."
"It's difficult to integrate unsupported devices with FortiSIEM compared to QRadar. It's easier to integrate and develop processes in QRadar. It's harder to develop a custom process in FortiSIEM."
"Sometimes, if there are changes made by a user on a database server, it can be difficult to get that information on the fly. I would like to see a situation where once I specify a user with the database server I need, and with the changes they have performed on that, I don't need to continue my search pattern to drill down just to get the information."
"Its training can be improved. Its price also needs to be improved."
"When compared with some competitors, in terms of performance, the CPU and RAM requirements and the capability of coordination with development all need some improvement."
"The product lacks APIs for integration with other systems."
"In the future, we may have double the number of devices, and we do not want to have any issues with performance in the data display."
"Third-party integration should be improved for some commonly used products."
"I find that this software is resource heavy, and demands a lot of processing capacity."
"Pandora could deliver better analytics out of the box. You can work around these limitations with the help of other tools like Grafana. The shortcomings are mostly on the graphical side. The built-in report generators are a bit limited in some areas."
"Improvements are needed for server and network discovery, including service-based discovery."
"We would like to see improvement in the mainframe integration that this solution is capable of."
"This solution requires proper training to get 100% out of it."
Fortinet FortiSIEM is ranked 9th in Security Information and Event Management (SIEM) with 63 reviews while Pandora FMS is ranked 29th in Network Monitoring Software with 22 reviews. Fortinet FortiSIEM is rated 7.6, while Pandora FMS is rated 9.2. The top reviewer of Fortinet FortiSIEM writes "It's cheaper than other solutions with the same features but lacks integration with many third-party vendors". On the other hand, the top reviewer of Pandora FMS writes "The open architecture is easy to extend and enhance". Fortinet FortiSIEM is most compared with IBM Security QRadar, Splunk Enterprise Security, LogRhythm SIEM, Wazuh and ThousandEyes, whereas Pandora FMS is most compared with Zabbix, PRTG Network Monitor, Wazuh, SolarWinds NPM and Icinga. See our Fortinet FortiSIEM vs. Pandora FMS report.
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.