No more typing reviews! Try our Samantha, our new voice AI agent.
reviewer1552971 - PeerSpot reviewer
Sr Technical Consultant at a tech services company with 11-50 employees
Reseller
Apr 18, 2021
Provides full visibility into multi-vendor firewalls with a centralized solution
Pros and Cons
  • "If you go through that compliance report, it will give you whether your firewall is in compliance or not. It will also give you a recommendation whether you need to change it. The compliance has helped us with customers, e.g., internal audit from the quality team and external auditors."
  • "This technology gives us total control of our stuff, validation, and clean up of everything that we need."
  • "I would like more documents and support for the cloud firewall."

What is our primary use case?

We are not personally using AlgoSec in our organization. We consult with the customer, as to why they have to buy such a solution like Firewall Analyzer. We are a distributor for the Indian market. We guide the customer to why they have to buy this kind of solution, what are the business requirements, etc. 

I have done PoCs and demos on the product.

The solution allows multi-vendor firewalls to have a centralized solution where they can analyze all the rules, duplicates rules, etc. Also, it helps them understand if a change can be automated.

How has it helped my organization?

We consult with big customers who have multiple locations. In every location, they have various firewalls available. With AlgoSec as our product, it has really helped with our operational tasks and activities.

If you go through that compliance report, it will give you whether your firewall is in compliance or not. It will also give you a recommendation whether you need to change it. The compliance has helped us with customers, e.g., internal audit from the quality team and external auditors.

AlgoSec integrates with multiple security vendors. It captures the rules, policies and authentication required.

What is most valuable?

It is pretty simple to use. Resources are readily available.

Firewall Analyzer and FireFlow are very helpful for IT guys, especially for multi-vendor firewalls.

We get a lot of visibility from Firewall Analyzer. It is definitely helpful to see the details of duplicate rules on the firewall. It can define the connectivity and routing.

The solution provides us with full visibility into the risk involved in firewall change requests. This is always required. For example, if you are implementing one rule for network A to network B, but you don't have that visibility in terms of network when you have multiple firewalls, then you have to deploy the rule on every firewall. However, if you have FireFlow, then FireFlow will automatically deploy this rule where it is needed.

What needs improvement?

I would like more documents and support for the cloud firewall.

Buyer's Guide
AlgoSec
June 2026
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,270 professionals have used our research since 2012.

For how long have I used the solution?

We have been using it for one year. I am level 2 certified. I am familiar with AFA (Algosec Firewall Analyzer), FireFlow, and CloudFlow. I have done the online training for AppViz and AppChange.

What do I think about the stability of the solution?

It has been good. I have not seen any issues.

One to two people are enough for deployment and maintenance. 

What do I think about the scalability of the solution?

The scalability is good.

How are customer service and support?

The technical support is good because it is already available in India as well as the R&D. Whenever I need help, they take my call. I don't have complaints in respect to the AlgoSec support.

Which solution did I use previously and why did I switch?

I also have experience with Tufin.

How was the initial setup?

It is straightforward and easy to deploy. Two to three days was enough time to complete the configuration along with the device integrations.

For implementation, I always follow these steps:

  1. Understand the customer's infrastructure, e.g., what are the customer expectations and primary pain points?
  2. Deployment architecture
  3. Hardware requirements and prerequisites
  4. Port prerequisites
  5. initial configuration and setup
  6. Onboard devices with default configuration
  7. Monitor devices for seven days, then apply the recommendation based on the AFA solution.

For the migration, it is really helpful because we all capture all their policies. We can clean up things with Firewall Analyzer. When doing a migration, we take a backup and that is really helpful for the migration process.

What was our ROI?

It has reduced the time it takes to implement firewall rules in hundreds of our customers' organizations. Without FireFlow and Firewall Analyzer, you would need one to two hours to deploy the firewall change request rule because you need to identify where to position that rule. It definitely reduces the time by half.

What's my experience with pricing, setup cost, and licensing?

The pricing is good. Though, I would like if pricing could better support small businesses.

Which other solutions did I evaluate?

We use Cisco ACI with Check Point , FortiGate, and Palo Alto.

What other advice do I have?

This technology gives us total control of our stuff, validation, and clean up of everything that we need.

If you are doing migration from on-prem to cloud, then there is definitely a very quick process and helpful process for that migration.

I would rate this product as an eight and a half out of 10.

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor. The reviewer's company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
PeerSpot user
Senior Security Analyst at Compugraf
Real User
Dec 7, 2020
Helps to manage large and complex environments, promoting efficiency and facilitating compliance
Pros and Cons
  • "In my opinion, the most valuable features are the network map, unused rules reports (IPT), and active change."
  • "AlgoSec products help to manage complex environments with many devices, so we can deliver requests more quickly."
  • "Environments with many devices need a lot of hardware resources to avoid slowdowns."

What is our primary use case?

We use this solution for device changes auditing, device compliance, network mapping, active change, clean-up of the rule base, and a ticket system.

The device changes audit is a quick identification when changing the configuration on devices. Device compliance gives us the ability to generate device compliance reports. The network map is the method for locating the devices that are related to the communication of origin and destination.

Active change is used to centralize the creation of rules in AlgoSec without the need to access other devices. Cleaning up the rule base means that AlgoSec reports and helps remove unused rules and even unused objects within a rule.

In terms of the ticket system, FireFlow helps to record user requests.

How has it helped my organization?

AlgoSec products help to manage complex environments with many devices, so we can deliver requests more quickly.

Environments with many devices are difficult to identify problems, especially when there are new analysts on the team. AlgoSec helps in troubleshooting and streamlines the analysis.

AlgoSec helps in the agility of the analysis, speed in the delivery of compliance reports, automation in the request to create rules in firewalls, removal of unused rules, and optimization of the rule base.

What is most valuable?

In my opinion, the most valuable features are the network map, unused rules reports (IPT), and active change. They are features that help with automation and reduce the analyst's time spent troubleshooting.

The unused rules reports (IPT) help remove unused rules and even unused objects within a rule.

What needs improvement?

I would like an analysis to be created for user group rules (Check Point - identity awareness). 

Current versions of AlgoSec do not perform analysis of Identity awareness (Check Point). It would be important for the user to be able to request a rule by an access role group and then AlgoSec would create this rule automatically in the firewall.

An improvement in tool performance would be important. Environments with many devices need a lot of hardware resources to avoid slowdowns. Memory consumption of the server is very high.

For how long have I used the solution?

I have been working with AlgoSec for five years.

What do I think about the stability of the solution?

The tool is very stable and does not present many problems.

What do I think about the scalability of the solution?

Currently, the tool works well with large environments.

It may be necessary to create a distributed solution of the product on different servers (WEB / DB).

Which solution did I use previously and why did I switch?

We did use another solution prior to AlgoSec and the change was due to the reports having more information and easy customization.

How was the initial setup?

The initial setup is simple.

After that, it is possible to make customizations to adapt the tool as desired.

What's my experience with pricing, setup cost, and licensing?

The cost of the tool can be recovered with AlgoSec automations.

Which other solutions did I evaluate?

We evaluated Tufin and FireMon before choosing AlgoSec.

What other advice do I have?

AlgoSec is the best tool on the market.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
AlgoSec
June 2026
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,270 professionals have used our research since 2012.
reviewer1449453 - PeerSpot reviewer
Managed Security Services Product Manager at a comms service provider with 10,001+ employees
Real User
Nov 12, 2020
Easy to navigate with good technical support and an easy initial setup
Pros and Cons
  • "The solution is easy to navigate."
  • "So far, our capabilities mapped with AlgoSec has always achieved the best of results for our customers."
  • "AlgoSec can probably do better at introducing features for the cloud firewall scenarios. This is something that will probably help customers. It needs a hybrid scenario that includes private cloud, public cloud, and on-prem things. If a feature could cover all three different types of deployment, that could probably make it even more desirable for clients."
  • "AlgoSec can probably do better at introducing features for the cloud firewall scenarios."

What is our primary use case?

We primarily use AlgoSec to just have a check on what firewall rule sets have been configured over a period of time, and if there are any redundancies within those rules, that we can eliminate without any confusion within the ruleset. It allows us to have the optimum support and effectiveness of the firewalls.

What is most valuable?

Doing the analysis of rule sets is very useful for us.

Being able to make and implement changes within a timeline is a very valuable aspect of the solution.

The solution is easy to navigate.

The initial setup is straightforward.

What needs improvement?

AlgoSec can probably do better at introducing features for the cloud firewall scenarios. This is something that will probably help customers. It needs a hybrid scenario that includes private cloud, public cloud, and on-prem things. If a feature could cover all three different types of deployment, that could probably make it even more desirable for clients.

For how long have I used the solution?

I've been dealing with the solution for two and a half years at this point.

What do I think about the stability of the solution?

We've not received any complaints so far when it comes to stability. So far, our capabilities mapped with AlgoSec has always achieved the best of results for our customers. There don't seem to be bugs or glitches. It doesn't crash or freeze.

What do I think about the scalability of the solution?

We haven't heard anything from clients that would lead us to believe they couldn't scale the solution if they needed to.

How are customer service and technical support?

The technical support is quite good. I would rate them eight or nine out of ten.

There are some points wherein when it comes to support, my engineer may not have gotten direct support immediately. In the past, my engineer might have to wait half an hour or one hour to get an answer, and then, of course, the customer is also waiting. That slightly impacts my customer experience. Due to that aspect, I am reducing one or two points for that. However, overall, we're pretty satisfied with the solution.

Which solution did I use previously and why did I switch?

I use a few other solutions as well. More often, I would advise clients to go with AlgoSec. Of course, as a secondary option, if our customers personally had some other preference, my experience is that they tend to go for Tufin rather than Skybox.

How was the initial setup?

The initial setup is pretty straightforward. It's not complex. We don't face any challenges on that front.

What about the implementation team?

We both deploy the solution and manage the solution for our customers.

What's my experience with pricing, setup cost, and licensing?

In terms of pricing, it would be useful if they could be a bit more aggressive to their competition in the market. They need more aggressive pricing. That would be certainly more helpful to the market overall.

What other advice do I have?

We have relationships with AlgoSec, Skybox, and Tufin. We are resellers as well as value-added service partners of all three solutions.

Our experience is across the board. What we advise depends on our customers' requirements and preferences. Based on that, we suggest select solutions.

We have a cloud model that we have worked out with AlgoSec. We are their managed security service partners. Along with that, we also do the on-prem deployment, especially in the Indian government sector.

Overall, I'd rate the solution a nine out of ten. I've had a fantastic experience with it so far.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
PeerSpot user
Digital Security Specialist at Derivco
Real User
Oct 21, 2020
Improves firewall performance, saves engineers time in optimization, and the technical support is responsive
Pros and Cons
  • "The most valuable feature is the Firewall Analyser, which has a number of fantastic features."
  • "I would like to see enhanced dashboards or build meaningful reports for executive consumption."
  • "There are areas where auditing rule changes are not accurate."

What is our primary use case?

The purpose of using the product was to attack and Analyse rule bases from a holistic perspective. The Firewall Analyzer has a rule base consolidator as well as a feature to make the rule base more permissive. It also helps to reduce rule base clutter, as well as legacy rules.

Traffic query helps us to quickly find rules that allow outbound access.

FireFlow is a useful ticketing system that integrates with many products.

We would like to use FireFlow's API to automate certain tickets that come through to leverage automation in our environment. 

How has it helped my organization?

An example is that we have a policy with 900 rules, which we were able to reduce to 500 rules. That's close to a 50 percent savings on the rule base.

We used the Unused rules function in Firewall Analyser to examine our rule base. This has drastic performance increases in our production firewalls.

Objects not used within rules can save even more when it comes to cleaning up rule bases. Where this is a very manual process without AlgoSec, engineers can have a level of automation by building useful reports to assist with clean up.

What is most valuable?

The most valuable feature is the Firewall Analyser, which has a number of fantastic features.

From a risk perspective, you can apply compliance Frameworks like ISO 27001 and PCI DSS against firewall rule bases to see if your rule base is compliant. If you are not then AlgoSec provides descriptive ways on how to adjust rules to make your rule base more compliant. 

Definitely, the policy-cleanup features are the main draw. Shadowed rules, rule duplication, rule consolidation, rules permitting too much access, and rule usage are very useful and help to clean up rule bases.

What needs improvement?

There are areas where auditing rule changes are not accurate. It is important to be accurate when using rule changes, as users need to be accountable for their changes; however, I cannot trust AlgoSec when rule changes come through on reports as they reflect incorrectly. I have taken this up with support and have never really had a resolution for this. 

I would like to see enhanced dashboards or build meaningful reports for executive consumption. 

AlgoSec is a fantastic product, and I would like to see more "granular" breakdowns of traffic on IPT traffic analysis for source and destination, as the way it does it currently does not allow me to self problems for rules with ANY in the destination.

For how long have I used the solution?

We have been using AlgoSec for one and a half years.

What do I think about the stability of the solution?

The stability is good.

What do I think about the scalability of the solution?

Scalability-wise, this product is good.

How are customer service and technical support?

The technical support is always responsive and always willing to understand the issues. 

Which solution did I use previously and why did I switch?

Our previous solution was not useful and did not have an intuitive interface. Support was also terrible.

How was the initial setup?

The initial setup is straightforward. If you understand your infrastructure, it will be easy to deploy in a central location.

What about the implementation team?

Our deployment was done through a vendor team and it took one week.

What was our ROI?

We haven't saved any money yet but we have improved the performance of certain devices.

What's my experience with pricing, setup cost, and licensing?

I would suggest that you start with a VM, get a PoC with a temp license, and try it out. You will love it.

Which other solutions did I evaluate?

I would not like to disclose which other products, but I have used two other products that didn't even come close to AlgoSec's power.

What other advice do I have?

Its a good production and good support, definitely worth it.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Sahanawaz khan - PeerSpot reviewer
Sr Platform Owner at Emirates NBD
Real User
Jul 27, 2020
Has made our life easier by optimizing and cleaning up tasks within a short span of time
Pros and Cons
  • "Traffic Analyzer provided the centralized view for our IT SOC operations to focus mainly on high-risk firewall rules exposing with explicit any rules."
  • "Both the modules of AlgoSec solution which has been on-boarded in our environment are amazing to use as it provides a central end to end visibility of the firewall rules spanning across the multiple layers of the firewall."
  • "Algosec should also be exploring the integration with the open source firewalls as well."
  • "Customer service is good but needs more improvement to be on listening side of the customers."

What is our primary use case?

The primary use case of this solution was to optimize and cleanup all the unused legacy firewall rules from multiple firewalls which was massive in terms of time and effort.

The other user case in our environment was to automate all the manual day to day firewall changes to reduce the turnaround time for application owners.

We wanted to have central visibility for our entire firewall portfolio to see the firewall flow of traffic traversing through multiple layers of firewalls.

How has it helped my organization?

Definitely with the help of this solution it made our life easier to optimize and clean up the task within a short span of time which provided the quick visibility of all the rules to be actioned.

Traffic Analyzer provided the centralized view for our IT SOC operations to focus mainly on high-risk firewall rules exposing with explicit any rules.

The other best feature is the Fire flow module which is in the process of implementation to automate the firewall rules changes along with the workflow model right from the requester to the implementer.

What is most valuable?

Both the modules of AlgoSec solution which has been on-boarded in our environment are amazing to use it as it provides a central end to end visibility of the firewall rules spanning across the multiple layers of the firewall.

It's helping our Risk and Compliance team to assess all our firewall rules periodically and help us to remain compliant. 

It saves a lot of manual time especially in daily operations and increases the turnaround time for business.

It has helped us internally to provide the documentation for our auditing and reporting purposes.

What needs improvement?

AlgoSec should explore integrating more multi-vendor platforms and should be looking towards ready infrastructure for providing Infrastructure as service (IAAS) on any cloud platforms as the trend and technology is gradually moving from In House platforms to Cloud platforms.

Algosec should also be exploring the integration with the open source firewalls as well.

The GUI features of Algosec solution should be more flexible to use and adopt.

For how long have I used the solution?

We have been using this solution for one year.

What do I think about the scalability of the solution?

In terms of scalability, it's a license-based model to add license at any point of time when you have any new firewalls added in the portfolio.

How are customer service and technical support?

Customer service is good but needs more improvement to be on listening side of the customers.

Which solution did I use previously and why did I switch?

No, this is the first time we have introduced this solution.

How was the initial setup?

Our Initial setup was not so straight forward as we were exploring all the features to its depth so lots of engagement was done with OEM level to explore and implement in our environment.

What about the implementation team?

We went through local vendor support however the involvement from OEM was also huge and phenomenal.

What's my experience with pricing, setup cost, and licensing?

Definitely the simplicity to use this solution is the key factor to be a leader in this competition and the other factor is the response and support model.

Which other solutions did I evaluate?

We went through the RFP process evaluation for all the magic quadrant leaders of the  market.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Network Security Engineer/Architect at a tech services company with 1,001-5,000 employees
Real User
Top 20
Nov 23, 2023
Excellent for firewall policy auditing and firewall policy automation
Pros and Cons
  • "It now takes less than half of the time it took before we had this tool to deploy the flows requested by the business."
  • "We would like to see more features in the GUI so that we don't have to work with the API as extensively."

What is our primary use case?

We've been using Algosec as our reference tool to clean our policies from old unused rules and objects and to assess rules that are categorized as risky so that we can fix those risks.

Firewall Analyzer from Algosec is our main tool for Firewall auditing and it makes our external auditors very confident on the way our policies are managed.

Fireflow from Algosec also helps us identifying which firewalls are on the way from source to destination when we need to open flows and it saves us a lot of time. We are still on our path to implement full automation of firewall policy creation with Algosec's Fireflow but the goal is to achieve it soon.

How has it helped my organization?

Since we deployed Algosec our Firewall policies which didn't have much maintenance over more than 15 years had their policies reduced to less than half the rules by using Algosec's Firewall Analyzer to remove unused rules, unused objects withing rules, compacting several firewall rules in one rule, etc.

We were also able with Firewall Analyzer to get risk reports of our firewall policies and start tackling them to close them or at least to be aware of its existance.

Firewall Analyzer is amazon in Policy Optimization and we feel we are much more secure since we have this product. If we add a rule that poses a risk we get an alert from Firewall Analyzer which is very important to us.

We are also starting to use Fireflow and our goal is to have the policy creation automated soon. For now we are already able to identify which firewalls are on the path between point A and point B and we are on the path to full automation which will reduce a lot the workload of our team.

What is most valuable?

The feature we find the most valuable is the Firewall Analyzer for the firewall policy audits and to show external auditors we have a process to identify risks and to tackle them. It's also very important for policy clean maintenance. 

This helps us know which devices are between the source and destination on the flows that we need to open for the business. The audit tools are also very important to us because we can easily have everything that needs to be presented to the security auditors.

We are in the process of implementing FireFlow for full automation which will save us time for more important things we need to to on daily basis that are not creating firewall rules. We aim to achieve the full automation soon.

What needs improvement?

In our case it would be very important to improve support to Dell switches and also some Juniper switches, which we have a lot of in our company network. This has been our difficulty for the full automation on the Fireflow. If all our network devices were Cisco I'm sure we would have the network map complete very easily and the full automation working with much less effort.

We already asked Algosec for the support of the switches we have that are not natively supported for the future versions and we expect that we are lucky enough for them to be supported on the next releases, although there are some ways of working around non-natively supported switches to complete the network map.

For how long have I used the solution?

We have been using Algosec solution for more than 5 years now.

What do I think about the stability of the solution?

We never had issues so far in terms of stability.

What do I think about the scalability of the solution?

The solution is very scalable and allows you to add all the firewalls and devices you need.

It is also scalable on the licensing as you can start by buying only the Firewall Analyzer license with which you can start onboarding all the devices and completing the network diagram so that Algosec's has the whole picture and know all the paths from network A to B.

After that you are ready to start using FireFlow and you can buy the license only when you are ready to start deploying it.

How are customer service and support?

Sometimes it takes more time than expected to have answers for support tickets, but in general the customer service is good.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Not in our case.

How was the initial setup?

The initial setup has been easy. The only difficult thing was the part in which we needed to onboard non natively supported switches. That part is a bit more complex.

What about the implementation team?

We implemented with a mix of external company and in-house. The external team was helpful and had a good expertise level.

What was our ROI?

The time we save on our daily operations is very important. We could reduce the team size with this tool as we had a trainee almost fully working on opening flows.

It also allows us to detect risks on firewall rules and fix them, keeping the company network safe.

What's my experience with pricing, setup cost, and licensing?

The price for the solution is not cheap but if you use it fully it will compensate in terms of securitization and in terms of time gained on the daily operations. It is also very helpful if your company is audited on the security part.

Which other solutions did I evaluate?

We heard about Tufin and Algosec, and after going through the specs we decided to go on a POC with Algosec and ended up buying it as it fitted our needs. We followed our Firewall integrator advice, who also recommended Algosec for our Firewall's park which is basically Fortinet and Check Point.

What other advice do I have?

We recommend trying fully automation in a controlled environment before widely deploying it to the production firewalls. It's important to gain confidence on the product.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Zufayri Zaidi - PeerSpot reviewer
Security Analyst at AceTeam Networks
Real User
Jun 5, 2023
A solution with a good interface that can be used for firewall policy management
Pros and Cons
  • "The most valuable feature of AlgoSec is its firewall analyzer."
  • "AlgoSec's audit management is not good enough and can be improved."

What is our primary use case?

We use AlgoSec for firewall policy management.

What is most valuable?

The most valuable feature of AlgoSec is its firewall analyzer. AlgoSec also has a better interface.

What needs improvement?

AlgoSec's audit management is not good enough and can be improved. Also, AlgoSec should be made more scalable.

For how long have I used the solution?

I have been using AlgoSec for around one year.

What do I think about the stability of the solution?

AlgoSec is a stable solution.

What do I think about the scalability of the solution?

AlgoSec is not a scalable solution. Only I use AlgoSec in our company to do firewall management.

How was the initial setup?

It is moderately easy to set up AlgoSec.

What about the implementation team?

Two staff were involved in AlgoSec's deployment, which took around three hours.

Which other solutions did I evaluate?

Before choosing AlgoSec, we evaluated Tufin as an option. We chose AlgoSec because it has a better interface.

What other advice do I have?

AlgoSec is a good firewall management tool for organizations with multiple firewall levels. If you only have two or three firewall levels, then AlgoSec is not worth investing in.

Overall, I rate AlgoSec an eight out of ten.

Which deployment model are you using for this solution?

Private Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1436436 - PeerSpot reviewer
Presales Engineer at a tech services company with 11-50 employees
Reseller
May 17, 2022
Automated firewall rule analysis saves time, and automated rule modification eliminates human error
Pros and Cons
  • "AlgoSec Firewall Analyzer can detect misconfigurations and unused or permissive rules, as well as rules without logging. Through a single dashboard, I can see all the problematic rules from all the firewalls. It's very simple, with AlgoSec, to get an analysis of all the rules, and that helps with visibility."
  • "AlgoSec saves time because it can detect all unused rules and I can just remove them via the AlgoSec platform through FireFlow."
  • "AlgoSec integrates with most of the leading firewall vendors, but one issue is that AlgoSec doesn't support Sophos and Forcepoint. AlgoSec competitors, like FireMon, support Forcepoint."
  • "One of the things I don't like about AlgoSec is that when a customer has an issue with the platform, it takes time to resolve."

What is our primary use case?

One of the use cases for the solution is when you have many firewalls from different vendors and would like to handle all the configurations from a single pane of glass.

We are an AlgoSec distributor, and another use case that is very important to our customers, especially in the financial sector, is generating compliance reports. AlgoSec has very comprehensive compliance reporting. Most of our customers who use AlgoSec care a lot about compliance reports, whether ISO or PCI or other types of compliance.

How has it helped my organization?

AlgoSec saves time by providing an analysis of all the firewall rules. For example, I might find 10 unused rules, or rules without objects or without a subnet. To get that information manually can take time. I might have to go through a firewall and check the rules and it would take at least 10 minutes for 10 rules. And a manual process can result in errors. AlgoSec saves time because it can detect all unused rules and I can just remove them via the AlgoSec platform through FireFlow. Removing those 10 rules manually can take about 20 minutes, but through AlgoSec it takes one or two minutes.

The solution can find all the misconfigurations in firewall rules and it can delete or modify them automatically, with no human action needed. As a result, there will no longer be errors in the firewalls. FireFlow handles the workflow of adding and removing policies. Sometimes, an engineer may not have solid experience when it comes to firewall rules. If he goes to the firewall portal itself and tries to add or remove a policy, this policy may cause errors or potential risk. AlgoSec handles this process instead. It helps eliminate human error.

Also, if you have a network engineer with less experience, he can still go through AlgoSec and submit rules. AlgoSec supports another tier of engineers who approve the policies. This is all done using FireFlow.

What is most valuable?

We use the AFA (AlgoSec Firewall Analyzer) and FireFlow. AFA is the most popular feature in our region and FireFlow is good for managing workflow.

AlgoSec Firewall Analyzer can detect misconfigurations and unused or permissive rules, as well as rules without logging. Through a single dashboard, I can see all the problematic rules from all the firewalls. It's very simple, with AlgoSec, to get an analysis of all the rules, and that helps with visibility. AlgoSec can do a risk assessment for each policy or rule in the firewall and detect the severity of each rule, whether low, medium, high, or critical. I can get a quick overview of the risk policies that a customer needs to change because, perhaps, there is a rule where the risk is high.

The AlgoSec dashboard is very simple. I can find all the information without any effort. All the tabs are clear and straightforward.

I can apply changes to rules through FireFlow. For example, when I detect many unused rules, I can remove them and, using FireFlow's process, it is very simple to do so.

It is very easy to generate a compliance report for ISO or PCI. It can be done with one click. Some organizations may have a baseline for compliance. The beauty of AlgoSec is that it can adjust compliance according to the corporate needs or environment, when standards vary from one region to another.

When it comes to visibility, the solution can make a network map for all the devices in the network, whether routers or firewalls. I can run queries to detect network policies. For example, if a customer cannot access the corporate stack or the application site, using AlgoSec I can detect which firewall, and which policy inside the firewall, may be fully or partially blocking access. This is a very important feature and most of our customers use network mapping to create visibility into the network.

What needs improvement?

AlgoSec integrates with most of the leading firewall vendors, but one issue is that AlgoSec doesn't support Sophos and Forcepoint. AlgoSec competitors, like FireMon, support Forcepoint. I have told AlgoSec a number of times that we have many customers that use Forcepoint. I have asked why they don't support integration with Forcepoint. They have said they don't care about Sophos, Forcepoint, and SonicWall. They don't consider those vendors to be leaders in the firewall market and they don't have plans to support them.

For how long have I used the solution?

I have been using this solution for about two years.

What do I think about the stability of the solution?

Sometimes a customer's platform is down, but overall AlgoSec is stable.

How are customer service and support?

Support from AlgoSec is good. When I create tickets, they support us and solve all the tickets. There is no delay in support.

One of the things I don't like about AlgoSec is that when a customer has an issue with the platform, it takes time to resolve. Issues often need more than tier-one or tier-two; they're often not easy for the customer to resolve. It requires the AlgoSec team to solve issues with configurations or performance.

For example, AlgoSec upgraded the platform six months ago and it was mandatory for all customers. On my side, it was not easy to perform the upgrade and I had to request support from AlgoSec.

How would you rate customer service and support?

Positive

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor. The reviewer's company has a business relationship with this vendor other than being a customer: Reseller.
PeerSpot user
reviewer1288842 - PeerSpot reviewer
Security Operations Engineer at a security firm with 201-500 employees
Real User
Jun 6, 2021
Enables us to create new rules and have a more secure flow
Pros and Cons
  • "We have critical security policies. With AlgoSec, we can create a security policy to manage critical applications. I have worked in the bank and they have critical applications. We created some security policies for those applications. Controlling the flow is critical for our customers."
  • "AlgoSec is better than Skybox and Tufin; we have a lot of AlgoSec licenses and it offers the ability to do optimization and varied tasks, including diagrams about different pieces of equipment and control over external IPs so we can see the configuration and log that traffic to have control over the flow."
  • "It can be optimized. There is a lot of RPA and we have scripts in AlgoSec that need recertification. With AlgoSec Firewall Analyzer, we can see lots of objects and lots of rules that tell us we need to clean the equipment. It will give us a solution but it doesn't always work. The solution that it gives us is not always accurate from the scripts."
  • "AlgoSec should be optimized. There is a lot of RPA and we have scripts in AlgoSec that need recertification."

What is our primary use case?

We use:

  • FireFlow 
  • AFA, AlgoSec Firewall Analyzer
  • BusinessFlow

I use AlgoSec to optimize the firewall rules and to analyze the logs of a lot of firewalls, like Palo Alto, Check Point, and Fortinet. 

When a user creates a ticket in AlgoSec, I validate the ticket or don't. It's opened flow in the firewalls also. 

I also use it to implement and push the rules in the equipment. 

I have used it for compliance and analytics. I audit Cisco ASA equipment. I do a compliance report for every piece of equipment. I do some reports and also weigh any risk on each piece of equipment. Some rules use, for example, a critical port. If it shows to be a risk, we'll take action. For example, we can optimize a permissive rule and create new rules to have a more secure flow.

I use FireFlow to help users when they create a ticket in AlgoSec. I help them with information like the IP source, IP destination, and endpoint. 

AlgoSec also helps users choose the right equipment. There are a lot of stages and at every stage, I can choose the equipment. We have a lot of equipment and a lot of firewalls so that we can identify equipment. I also use the map to see the flow from the source IP to the destination IP so we can discover the network. It's essential to have a picture of the flow in terms of the equipment, services, and protocol.

We have critical security policies. With AlgoSec, we can create a security policy to manage critical applications. I have worked in the bank and they have critical applications. We created some security policies for those applications. Controlling the flow is critical for our customers. 

How has it helped my organization?

In the beginning, we compared tools like AlgoSec, Tufin, and Skybox. We did some research. There was budget to purchase the resource. We did comparisons and found AlgoSec to be the best solution.  

What is most valuable?

It's easy to use. It's not very complex. You can do a lot of things with AlgoSec.

What needs improvement?

AlgoSec should be optimized. There is a lot of RPA and we have scripts in AlgoSec that need recertification. With AlgoSec Firewall Analyzer, we can see lots of objects and lots of rules that tell us we need to clean the equipment. It will give us a solution but it doesn't always work. The solution that it gives us is not always accurate from the scripts.

For example, because we have a workflow, when the user creates his ticket, the ticket was automatically dispatched to different teams. We have a security team and another team to implement and push the rules. The ticket automatically will get sent to the wrong team and then we need to send it back to the user for them to update. 

For how long have I used the solution?

I have used AlgoSec for two years. I use AlgoSec in French.

What do I think about the stability of the solution?

I find AlgoSec to be stable. Sometimes there are days that it doesn't work. We connect to AlgoSec via the web. Some days we don't have access to it and we get in touch with the support team to help us. This happens around once a month. 

What do I think about the scalability of the solution?

It is scalable. 

How are customer service and technical support?

I reach out to support when I have questions. I send emails with my questions. 

How was the initial setup?

The initial setup was not complex. It was easy.

What's my experience with pricing, setup cost, and licensing?

In terms of pricing, it is more expensive than other solutions. It's expensive because we also have the AFA module. 

Which other solutions did I evaluate?

AlgoSec is better than Skybox and Tufin. We have a lot of AlgoSec licenses. It offers the ability to do optimization and varied tasks.

AlgoSec offers diagrams about different pieces of equipment but Tufin and Skybox don't offer these features. I can also control external IPs. We can see the configuration. All equipment has configuration and AlgoSec enables us to log that traffic. We have control over the flow.

What other advice do I have?

I would rate it an eight out of ten. It's practical and easy to use. Many enterprises use it in France. Anytime we have questions, the support team is responsive.

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
Sr Technical Consultant at a tech services company with 51-200 employees
Real User
May 26, 2021
Very powerful and useful tool; reduces operating costs by enabling access to all firewalls
Pros and Cons
  • "Rather than logging in on separate firewalls, AlgoSec enables you to make changes on all firewalls from one pane of glass."
  • "It's a very powerful and useful tool that can be customized to your requirements."
  • "Lacking in support of other platforms."
  • "I'd like to see this solution support some other Cloud platforms as well such as Alibaba and a GCP to give the customer flexibility."

What is our primary use case?

We are security consultants based in India. We provide solutions to our customers and implement for them. We deploy AlgoSec on cloud and on-premise, depending on the customer. The use case is generally for companies that have multiple firewall vendors. If you have FireEye, for example, you can create the rules according to your environment. But if you have four different kinds of firewalls, and you want to allow or block something, you need the configuration on all the firewalls. AlgoSec simplifies that process. Many of our clients in India use this solution. We are official partners of AlgoSec. 

How has it helped my organization?

This solution will cut down operating costs in any company. 

What is most valuable?

It's a bit difficult for a network engineer to login on the firewall and make the changes and in that sense, AlgoSec is a lifesaver. You don't need to log in on each separate firewall, you just login on AlgoSec and make changes on all the firewalls from one single pane of glass. You can get the logs from all the firewalls to your AlgoSec as well. And if you see any blocked traffic, you can delete it at the point it gets blocked. If you have five firewalls, it will show which firewall is getting blocked and that can be automated. It's a very powerful and useful tool that can be customized to your requirements. One of the main features is that you can configure all the rules in one place. It also provides a complete report of Euro firewall rules that complies with security authorities such as GDPR.

What needs improvement?

If we talk about Cloud and SDN Platforms it support AWS, Azure etc.... 

I'd like to see this solution support some other Cloud platforms as well such as Alibaba and a GCP to give the customer flexibility. 

What do I think about the stability of the solution?

It's a very reliable and stable product because it's not dependent on any hardware, and is installed on a one-to-one machine. 

What do I think about the scalability of the solution?

Scalability in this case really depends on whether the customer is able to provide the resources or not. It requires resources including memory, RAM, and those sorts of things. From a software point of view, I'd say it is very scalable. 

How are customer service and technical support?

I haven't needed to access technical support because their documentation was so clean and in such a format that I was able to implement without any issues. My customers use it and they are pretty happy with it, because there is good customer support available in India.

How was the initial setup?

The initial setup is very straightforward. You just find the resources on the virtual machine and download.

What's my experience with pricing, setup cost, and licensing?

Licensing is on an annual basis. The best part is that if you have two or three firewalls, but you are using them in a cluster, it's counted as one. This is a basic aspect of the licensing with AlgoSec. I think the licensing is pretty good because they now have all the compliance issues sorted. 

What other advice do I have?

If any user or customer has firewalls, maybe 15 or 20 plus, definitely go for this product. It cuts down operating costs. The benefit of AlgoSec is that you only need one engineer to do all the configurating, rather than separate engineers for the different firewalls. Not only that but you can automate as well. Obviously you have to integrate a texting management tool, but you can integrate and follow the focus.

I rate this solution a 10 out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
Updated: June 2026
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.