Overview
FortiSIEM provides the centralized IT/OT event collection, advanced detection analytics, incident management, and other functions needed by today's security teams. Built on UEBA analytics, a unique CMDB, native SOAR automation, and GenAI assistance, the intuitive analyst experience supports all aspects of threat investigation, incident response, and compliance validation across Fortinet Security Fabric and multivendor infrastructures.
FortiSIEM is the SOC foundation for the modern enterprise and Managed Services Providers. Features include:
- IT/OT CMDB including asset discovery, classification, and health monitoring
- Advanced detection using UEBA, 1000's of correlation rules, and custom ML
- Rich, risk-prioritized incident management capabilities
- Built-in SOAR powered automation for all SIEM activities
- Multi-tenancy and other MSSP-focused features
- Extendible from a single instance to multi-tier, distributed processing scale with high availability
Contact AWSsales@fortinet.com with questions or additional platform licensing via Private Offers.
Highlights
- Reduced Risk of Attack via enterprise-wide IT/OT visibility and threat detection
- Rapid Threat Response with rich analyst features optimized, automated, and powered with genAI
- Immediate Value using out-of-the box configurations, detection rules, dashboards, and playbooks.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
10 FortiSIEM Compute Units | Quantity 1 only. Deployment regions A, refer to datasheet for region locations. Annual Subscription. Includes FortiCare Premium Support. | $29,000.00 |
Vendor refund policy
No refund
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
upport description Fortinet FortiCare support offerings provide global support and deliver best-in-class support services. With FortiCare support, customers can be assured that their Fortinet security products are performing optimally and protecting their corporate assets.
If you do not have an account yet, please sign using the link below https://support.fortinet.com/login/CreateAccount.aspx
Or contact us at: 1 (866) 868-3678
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products


Customer reviews
Unified Visibility and Faster Threat Detection with FortiSIEM
Building a multi-customer SOC has become more efficient with reliable event correlation and strong licensing support
What is our primary use case?
My main use case for Fortinet FortiSIEM is building a SOC and serving as an event management platform for correlating events in my work.
I use Fortinet FortiSIEM for event correlation by building a SOC for many customers, allowing the SOC team to rely on SIEM technology to correlate and manage events from all security products.
What is most valuable?
The best features Fortinet FortiSIEM offers are reliability and scalability.
Reliability and scalability have helped me in my work, especially because the license for Fortinet FortiSIEM is excellent from a cost perspective, and we can add more collectors as we expand.
Fortinet FortiSIEM has positively impacted my organization by allowing us to manage our security and build our SOC.
What needs improvement?
Fortinet FortiSIEM is great overall. Performance could be enhanced, but I do not wish to elaborate on needed improvements.
For how long have I used the solution?
I have been using Fortinet FortiSIEM for five years.
What do I think about the stability of the solution?
Fortinet FortiSIEM is stable.
What do I think about the scalability of the solution?
Fortinet FortiSIEM's scalability is excellent, and it is also easy to configure, maintain, and operate.
How are customer service and support?
The customer support for Fortinet FortiSIEM is excellent. I have interacted with their support team, and Fortinet's support is known to be wonderful.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I previously used IBM QRadar as a different solution.
What was our ROI?
I have seen a return on investment that is excellent. The platform has resulted in time saved and reduces mean time to response, making it a great platform.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for Fortinet FortiSIEM is wonderful, as it offers an excellent license compared to other vendors.
Which other solutions did I evaluate?
Before choosing Fortinet FortiSIEM, I evaluated IBM QRadar as another option.
What other advice do I have?
My advice for others looking into using Fortinet FortiSIEM is that it is better to use Fortinet FortiSIEM for building your SOC and maintaining your incident response at the SOC. I have provided this review with a rating of 10.
Security tool facilitates efficient monitoring and policy customization
What is our primary use case?
I have a lot of experience working with solutions such as Fortinet FortiSIEM , FortiSOAR , and FortiGate . I have also worked with ImmuniWeb . However, I did not have the credentials or the software to work with ImmuniWeb , which is why I was searching for more information on the website to learn more about the tool.
In the company I work for, we have a partnership with Fortinet.
In my organization, I work on Fortinet FortiSIEM in the cloud.
What is most valuable?
Fortinet FortiSIEM is really user-friendly. You can filter easily, find rules, and even create new rules. I appreciate Fortinet FortiSIEM the most because it is easy to search, filter, make rules, and look for correlations and events.
For Fortinet FortiGate , it is easy to navigate through the tool itself, make policies, and look at events and logs. It is very easy to monitor on Fortinet FortiGate. I really appreciate it and believe anyone in the field can work with it easily.
For FortiSOAR , it is easy to work with playbooks and rules for approvals, and everything there is straightforward. Fortinet FortiSIEM pulls the events from FortiSOAR, processes them, and applies the playbooks. It is simple in its functions, has correlations, and offers everything needed.
I can find everything I need on Fortinet FortiSIEM. The filters, trends, and dashboard make it easy to use. The database, alerts, and customer service are excellent as well.
What needs improvement?
Regarding Fortinet FortiSIEM, I cannot identify any specific areas for improvement because I can find everything I need. For the time being, I cannot find a real point for improvement. Everything is working great on Fortinet FortiSIEM.
For how long have I used the solution?
I have experience with Fortinet FortiSIEM for almost six months.
How are customer service and support?
For Cortex XDR from Palo Alto, it rates 10 out of 10. Everything is excellent with XDR and the technical support is exceptional.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have worked with Splunk and QRadar SIEM tools, but I prefer Fortinet FortiSIEM the most.
What's my experience with pricing, setup cost, and licensing?
I am not familiar with the price and cost of Fortinet FortiSIEM. I cannot tell you if it is high, expensive, or low. However, I can say that it is cost-effective as it provides everything needed.
Which other solutions did I evaluate?
I do not have relevant experience with tools such as Acunetix , Synopsys, Invicti , Snyk , Prolexic , AWS Shield , or Global Accelerator.
What other advice do I have?
I wish to remain anonymous, with no names for my company or myself. I prefer written communication rather than voice-based.
Based on my experience, I would rate this solution 9 or 10 out of 10.
Comprehensive monitoring boosts security, yet incident management features need expansion
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What was my experience with deployment of the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
How would you rate customer service and support?
Negative
How was the initial setup?
What about the implementation team?
What's my experience with pricing, setup cost, and licensing?
Which other solutions did I evaluate?
What other advice do I have?
Systems monitoring enhanced by firewall and intrusion detection features
What is our primary use case?
My primary use case for Fortinet FortiSIEM is systems monitoring and alerting. I use it for standard functions like log monitoring, incident detection, and notification.
My customers are mostly medium-sized enterprises ranging from engineering companies, mining companies, independent schools, and government departments to agencies.
What is most valuable?
Fortinet FortiSIEM is valuable mainly for its features around firewall monitoring, intrusion detection, and authentication. It provides extensive logging and record-keeping for internal networks, cloud applications, and services as well as perimeter physical network security. Compliance management capabilities, although limited, are utilized by mature customers for reporting.
What needs improvement?
The built-in APIs in Fortinet FortiSIEM are somewhat lacking and could be improved for better integration with external ITSM products. Improving software stability and reducing bugs will make it a better tool for future use. Enhancing the completeness of its APIs could aid in better external integrations.
For how long have I used the solution?
I have used Fortinet FortiSIEM for three and a half years to nearly four years.
What do I think about the stability of the solution?
The product has some instability and bugs, which are not service-stopping but may cause unusual errors and user interface issues. I regularly work with Fortinet support to address these issues.
What do I think about the scalability of the solution?
Fortinet FortiSIEM is highly scalable. I would rate its scalability nine out of ten.
How are customer service and support?
The customer support from Fortinet is good. There is a knowledgeable, though small, team of support engineers around the world. I have come to know them all by name.
How would you rate customer service and support?
Positive
How was the initial setup?
From a new user's perspective, setting up Fortinet FortiSIEM could be rated as a five or six out of ten. However, with my four years of experience, I would rate the setup an eight out of ten.
What was our ROI?
Many of my customers are happy and have provided positive reviews about their experiences. They continue to pay for services and see value in the investment.
What's my experience with pricing, setup cost, and licensing?
As a service, the cost is reasonable and affordable with scalable pricing based on the number of monitored devices. However, setting it up for oneself as an enterprise-licensed product can be quite expensive.
What other advice do I have?
If you want to set it up yourself, seek expert support before starting. If considering a service, contact Fortinet for a recommended service provider in the FortiSIEM space.
I'd rate the solution eight out of ten.