We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
"The most valuable features are network mapping and configuration."
"RedSeal integrates the network and gives us a visual or graphical overview of our network. If an organization is geographically dispersed, for instance, with one office in Canada and one office in the Philippines, the whole network, including all devices, is integrated into RedSeal, and you can see from where the traffic is going in and out."
"This is the only solution in the world that gives you a digital resilience score."
"There are a lot of benefits to using the reporting. It gives us duplicate objects, duplicate services, shadow firewall rules, and the firewall rules not needed for a given number of days or months."
"The solution is quite scalable."
"It is an important application for controlling and monitoring firewall rules. It is useful for making and monitoring the changes."
"It allows administrators to visualize the traffic flow, and troubleshoot when necessary."
"You can easily scale the solution if you need to."
"It's user-friendly. It's easy to understand menus on the web GUI. That's a good feature for us. I can say that it's doing what it's supposed to do. It also integrates well with other products like Check Point."
"All the basic functions work well."
"It provides very good reports. It can easily integrate with multiple firewalls, such as Cisco, Juniper, Palo Alto, and Checkpoint. We can push a policy from Tufin to a firewall, which is a very good feature. We can monitor all access rules and the operating system of a firewall."
"One of the areas of concern is the GUI. It is important to our customers that the GUI looks beautiful. It's a Java Client, so you have a Java dependency."
"Sometimes, it required us to refresh the configuration. When we integrated any of the configurations into the device, sometimes, it could not detect the exact picture of that device. So, we had to reset the device to see that if it was giving true-positive results or false-positive results. In some cases, we were not able to get true-positive results. There was some kind of bug in that version. Its interface is not user-friendly and needs to be improved. It takes time to understand the interface and various options. Skybox has quite a user-friendly interface. They could provide a feature for compliance audit policy if it is already not there. A compliance audit policy ensures that all configurations are based on the best practices standards, such as CIS benchmarks standard or other similar standards. It provides visibility about whether your device configuration is based on best practices or not. Usually, such a feature is provided by other solutions such as Meteor or Tenable Nessus."
"The dashboard should be improved to make correlating data easier to do."
"I would like to see visibility into the FW features like IPS/Content Filter policies, the same way it does for FW rules/policies."
"There are pros and cons to the workflow. You cannot customize it fully and there are some limitations. You cannot create a pure object, a firewall, IP, or service (single layer) object. You can only create a firewall object group. That is one of the challenges."
"The pricing could be a bit more competitive."
"Currently, we are able to monitor access rules and the operating system of a firewall. It would be great if we can also monitor the configuration of the firewall through Tufin."
"I would like to see AI elements included with this solution."
"Lacks ability to create a Terraform that would enable deployment without manual steps."
"They are a little bit behind on some of their support for the Palo Alto firewall platform. I'd like to see that catch up, specifically around importing certain objects."
"The pricing of the solution is rather expensive."
"The pricing is based on the number of endpoints and devices, and we have seen it range from mid-five figures to low six figures."
"The pricing is reasonable."
"Price could always be better, but there are always consequences."
"It's quite an expensive solution."
"The price is on the cheaper side."
"I believe our cost is more than $100,000 per year."
"Because we're quite a large company, the price wasn't too much of a factor for us."
"Its price is reasonable, but it could be lower. It has been cost-effective for us. We have a contract for three years."
RedSeal’s network modeling and risk scoring platform builds an accurate, up-to-date model of an organization’s entire, as-built network to visualize access paths, prioritize what to fix, so you can target existing cybersecurity resources to protect your most valuable assets. With RedSeal’s Digital Resilience Score, decision makers can see the security status and benchmark progress toward digital resilience.
Tufin enables organizations to automate their security policy visibility, risk management, provisioning and compliance across their multi-vendor, hybrid environment. Customers gain visibility and control across their network, ensure continuous compliance with security standards and embed security enforcement into workflows and development pipelines.
RedSeal is ranked 3rd in Network Modeling with 3 reviews while Tufin is ranked 2nd in Firewall Security Management with 14 reviews. RedSeal is rated 8.0, while Tufin is rated 8.2. The top reviewer of RedSeal writes "Improves visibility, helps determine risk and compliance, and reliably enhances security". On the other hand, the top reviewer of Tufin writes "Provides great visibility, allows us to automate the entire change process, and saves A LOT of time". RedSeal is most compared with AlgoSec, Skybox Security Suite, FireMon, Darktrace and Riverbed Modeler, whereas Tufin is most compared with AlgoSec, FireMon, Skybox Security Suite, Palo Alto Networks Panorama and Cisco Defense Orchestrator.
We monitor all Network Modeling reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.