We primarily use the AlgoSec solution to monitor and interpret the risk status in our firewalls. Seeing the troublesome situations experienced in our firewalls from the same point of view sometimes does not help to solve the problem. However, thanks to AlgoSec, it is of great benefit to observe these risks from a different perspective and to see that they improve in the process. Being able to see and follow these changes makes the work of system administrators and risk analysts much easier.
AlgoSec Cloud Enterprise (ACE) Private Offering only
AlgoSec, Inc.External reviews
External reviews are not included in the AWS star rating for the product.
Easy to set up with good monitoring and easy integrations
What is our primary use case?
How has it helped my organization?
It is of great benefit to observe the firewall risks from a different perspective and to see that they are improving in the process. When the effects of tightening and improvements are checked regularly, we can better monitor the current risk situation. It is a difficult process to examine the security risks in detail in each of our products and in our firewalls which may be different brands and models. AlgoSec enables us to manage this process in a central way.
What is most valuable?
AlgoSec can monitor the current status of firewalls. Other vendors mostly focus on working with daily tasks, however, AlgoSec is able to follow the live status and current issues or changes with the help of push technology. It can be easily integrated with different firewall devices (even different brands and models). In this way, it becomes very easy to monitor different risks from a single interface. Thanks to the web-based management screen, it can be easily managed through any end-user operating system.
What needs improvement?
At the integration point, a manual page could be added to the dashboard where directions about the products are explained in detail. In this way, if the system administrator wants to integrate a new product, they will be able to integrate this product by following these directions, even if they do not have deep knowledge of the product in question. Integrating different products should not require us to have to wait for coordinated work with a product specialist.
For how long have I used the solution?
I've used the solution for almost four years.
What do I think about the stability of the solution?
In terms of stability, we have no complaints so far. We didn't face any problems.
What do I think about the scalability of the solution?
This solution works well in mid-size companies.
How are customer service and support?
Customer service is very good and educated. However, the process to open a ticket sometimes could be harder than necessary since we need to collect some logs from the dashboard and upload them to the related ticket before submitting it.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I've used the Skybox Security solution as well.
How was the initial setup?
The product offers an almost straightforward setup. It is easy to install and integrate.
What about the implementation team?
I installed the product by myself.
What was our ROI?
We cannot calculate ROI based on vulnerability or data leak issues.
What's my experience with pricing, setup cost, and licensing?
The cost and licensing are reasonable.
Which other solutions did I evaluate?
I did not evaluate other options.
Great compliance management capabilities and policy optimization with very good visibility
What is our primary use case?
One of the standout features is its ability to provide visibility and control over security policies. The product offers a centralized dashboard that gives an overview view of the entire network infrastructure, including firewalls, routers, and switches, regardless of their vendor or location. This unified view enables administrators to easily manage and modify security policies from a single platform, eliminating the need for manual, error-prone processes.
AlgoSec also provides a powerful rule analyzer that detects and highlights any redundant, overlapping, or conflicting rules, helping organizations optimize their security policies for maximum efficiency. AlgoSec also allows administrators to define and enforce a standardized change management process, reducing the risk of unauthorized or misconfigured changes.
How has it helped my organization?
AlgoSec's compliance management capabilities have helped a lot in my organization. It offers predefined compliance frameworks, such as PCI DSS and HIPAA, and assists organizations in mapping their security policies to these standards. AlgoSec can generate comprehensive reports that demonstrate compliance with regulatory requirements, simplifying the audit process.
It also provides continuous compliance monitoring, alerting administrators of any of policy violations or any changes that may impact compliance.
What is most valuable?
The visibility of security policies and automation is the most valuable feature of AlgoSec. It offers a range of automated workflows and processes that accelerate security policy management. For example, it can automate the process of rule recertification, ensuring that rules are regularly reviewed and validated.
AlgoSec also facilitates policy optimization by automatically suggesting rule modifications based on industry best practices or specific compliance requirements. By automating these repetitive tasks, AlgoSec frees up valuable time for security teams to focus on more strategic initiatives.
What needs improvement?
AlgoSec offers almost everything that clients want and has a robust set of features. That said, there are a few areas where it could improve. The user interface, although functional, could benefit from a more modern and intuitive design. Additionally, the initial setup and configuration process may require some technical expertise, which could pose a challenge for organizations with limited security resources. A simple tutorial about the initial configuration on Youtube could provide a lot of help. Even a self-guide link inside the GUI would be helpful.
For how long have I used the solution?
I've used the solution for two years.
How was the initial setup?
The initial setup was complex.
What about the implementation team?
The implementation was handled in-house.
Great policy optimization, rule cleanup, and network discovery features
What is our primary use case?
We use the solution for rule optimization. We had almost 100+ firewalls in our network. AlgoSec helps us to manage the firewalls more effectively.
How has it helped my organization?
AlgoSec made our work simple in managing the multivendor firewall rule. Audit-ready reporting is an awesome feature.
What is most valuable?
The most valuable aspects of the solution include policy optimization, rule cleanup, and network discovery.
What needs improvement?
They need to do some improvements in multi-vendor firewall policy migration. They need improvements in network discovery. The solution could fix some bugs in the A32. Fireflow needs to be a little more user-friendly.
For how long have I used the solution?
I've used the solution for the past four years.
What do I think about the scalability of the solution?
The scalability is good.
Which solution did I use previously and why did I switch?
We previously used Firemon. AlgoSec has more functionality and is user-friendly to manage our firewall more effectively.
How was the initial setup?
The initial setup is good.
What was our ROI?
The ROI is good.
What's my experience with pricing, setup cost, and licensing?
AlgoSec provided the best price and the team helped effectively with the support and A32 migration.
Which other solutions did I evaluate?
We did look into Tufin.
What other advice do I have?
The solution is the best in the market.
A highly customizable tool that significantly reduces human error
What is our primary use case?
We use app flow, Firewall Analyzer, and FireFlow. We use AlgoSec to gain visibility on firewall rules and for gap-cleaning projects to clean up the firewalls. We also use the solution as a firewall assurance tool to stay clean, have an optimized set of firewalls, and then automate firewall rules deployed from start to finish.
We have on-prem data centers and 180 sites all over the world.
Additionally, we use cloud services, infrastructure as a service, platform as a service, and software as a service. The majority of it is standardized on Cisco networking with Fortinet security solutions, except for the data centers, which are Check Point.
The purpose is to gain visibility into firewall rules. We used it to go through a gap-cleaning project to clean up the firewalls. We also use the solution as a firewall assurance tool to stay clean and to have optimized firewall rules. In addition, we use the solution to automate firewall rule deployment from start to finish, so we have a complete change process in FireFlow and can automatically deploy the firewalls on appliances. For that, we also built a connection with BMC Remedy because that's the main tool used for change management.
How has it helped my organization?
AlgoSec has improved our organization through a safer firewall rule base and better time-to-market IT services provided to the rest of the organization. Those are the two main improvements. In general, AlgoSec has provided a better security posture.
What is most valuable?
Customizability is AlgoSec's best feature. You can customize everything and build anything you like, and that's a feature we missed in competitors' solutions.
What needs improvement?
AlgoSec is not a tool where people with little knowledge of security or IT can find their way around. AlgoSec has a less user-friendly interface compared to competitors, but it is comparatively more customizable. As such, the interface is more on the complex side.
For how long have I used the solution?
I have been using AlgoSec for four years.
What do I think about the stability of the solution?
AlgoSec is a stable solution. There are bugs, but those do not affect the system's stability. We have not had any unplanned downtime since we started.
We use the solution 24x7 to record cyber rules, with about 50 changes per week.
What do I think about the scalability of the solution?
The solution is scalable and we have approximately 50 users.
How was the initial setup?
The initial deployment was complex because we were integrating with ITIL systems since we had integrated with BMC Remedy. The integration with Check Point was complex because we were on the wrong version. We had to go through various administrative processes to update Check Point. If AlgoSec was more flexible in the ways one could integrate and the versions one could integrate it with, that would help.
A team of ten people handled the deployment, including testers, and they took approximately three months. The end-to-end deployment took just over two years. We did not migrate from a previous solution.
What was our ROI?
We have seen a return on investment only with efficiency gains and improved security posture. That might transfer to a monetary value, but we haven't assessed that.
What's my experience with pricing, setup cost, and licensing?
I find the price too expensive. It looks a bit like SAP, so it does have standard functionality out of the box, but you will spend a lot of money if you want to customize it. However, the price is not as extreme as SAP or Oracle, but the actual implementation does turn out to be expensive.
Which other solutions did I evaluate?
We finally chose AlgoSec over Skybox for its customizability, the options for integration, and the workflows. Though Skybox was much more user-friendly, it was weaker when it came to integration options and customizability.
What other advice do I have?
In our organization, we work with multiple security vendors, and integrating with leading vendors for the most part is easy, but there are some exceptions. The solution made integration with the majority of devices really easy, but it was really cumbersome with some devices.
The solution has massively reduced human error through automation by about 95%.
As far as multiple environments are concerned, we have a private cloud, which is just a data center hosted by an external party. We have a public cloud, multiple vendors, and multiple regions. We also have decentralized data centers throughout the world.
We're investigating combining the solution with Cisco ACI.
The cost versus the achieved business goals is in balance.
I recommend that new users do a proof-of-concept before choosing AlgoSec. I would rate the solution an eight out of ten.
A solution with a good interface that can be used for firewall policy management
What is our primary use case?
We use AlgoSec for firewall policy management.
What is most valuable?
The most valuable feature of AlgoSec is its firewall analyzer. AlgoSec also has a better interface.
What needs improvement?
AlgoSec's audit management is not good enough and can be improved. Also, AlgoSec should be made more scalable.
For how long have I used the solution?
I have been using AlgoSec for around one year.
What do I think about the stability of the solution?
AlgoSec is a stable solution.
What do I think about the scalability of the solution?
AlgoSec is not a scalable solution. Only I use AlgoSec in our company to do firewall management.
How was the initial setup?
It is moderately easy to set up AlgoSec.
What about the implementation team?
Two staff were involved in AlgoSec's deployment, which took around three hours.
Which other solutions did I evaluate?
Before choosing AlgoSec, we evaluated Tufin as an option. We chose AlgoSec because it has a better interface.
What other advice do I have?
AlgoSec is a good firewall management tool for organizations with multiple firewall levels. If you only have two or three firewall levels, then AlgoSec is not worth investing in.
Overall, I rate AlgoSec an eight out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Algosec Firewall Analyzer
useful tool when you deal with multivendor complex firewall environment
Efficient security policy management: With AlgoSec, it's possible to manage security policies across multiple platforms from a single console. This makes it much easier to enforce consistent security policies across the network.
Simplified auditing and compliance reporting: AlgoSec makes it easy to generate detailed reports on network activity, which is important for compliance with industry regulations and audits.
Automated risk analysis and prioritization: AlgoSec uses machine learning algorithms to analyze network data and identify potential risks. This enables IT teams to focus their efforts on the most critical issues.
Also we had a bit strugle introducing some of our multi-context firewalls. But fixed that eventually with support of algosec
For us main benefit was single pane of glass over all policies over whole network as well as documented and automated policy deployment tool.