Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs AlgoSec comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AlgoSec
Ranking in Firewall Security Management
1st
Average Rating
9.0
Reviews Sentiment
6.8
Number of Reviews
186
Ranking in other categories
No ranking in other categories
AWS Firewall Manager
Ranking in Firewall Security Management
9th
Average Rating
7.8
Reviews Sentiment
6.6
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2025, in the Firewall Security Management category, the mindshare of AlgoSec is 22.8%, up from 21.0% compared to the previous year. The mindshare of AWS Firewall Manager is 3.7%, down from 5.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
AlgoSec22.8%
AWS Firewall Manager3.7%
Other73.5%
Firewall Security Management
 

Featured Reviews

SAURABH JAMBHULKAR - PeerSpot reviewer
Empowers organizations to reduce change management time by 80% and improve audit efficiency
AlgoSec offers essential features such as risk management, policy optimization, change management, traffic simulation, and compliance auditing. Risk management is crucial for security, enabling deep analysis and threat prioritization, while traffic simulation allows interactive diagnostics for operational traffic management. Change management includes tools for monitoring policy changes and ensuring compliance with security standards, making these features significant for any organization. AlgoSec positively impacts my organization by reducing operation burden, enhancing time efficiency, and saving costs associated with security management. AlgoSec firewall analyzer helps with policy complexity by identifying unused or redundant rules and objects, recommending optimizations such as merging similar rules and removing unnecessary allows. Over time, firewalls can accumulate risky configurations, leading to increased overhead and troubleshooting time, but with AlgoSec, we simplify our rule sets, improve firewall performance, and facilitate faster change implementations.
Karthik Ekambaram - PeerSpot reviewer
Has centralized rule management and improved protection against suspicious traffic but needs better threat intelligence integration and automated policy enforcement
I have not compared AWS WAF with any other WAF solution yet, but whatever WAF you choose, there will always be challenges, and it cannot block all malicious traffic. For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads. However, the malicious payloads are not straightforward, and there are assembly scripts that come with the HTTP headers that sometimes AWS WAF misses. In the last four or five years, we have seen a case where WAF was unable to capture a threat. On the other hand, we also see alerts from WAF indicating that it has figured out many DDoS protection alerts and was able to block them, even with rate limiting. Rule-based WAF works perfectly fine, but I don't think any threat intelligence-based WAF solutions can be 100% accurate. The integration with AWS Organizations and enforcement of security policies, particularly SCP, is difficult to deploy in most of my companies due to client environments. When I say difficult, it depends on the client's organization processes, not AWS itself. The SCP feature is excellent in my view and is the best way to reduce the attack surface for organizations structured in a specific manner. While we have used it internally, limited features of SCPs can be utilized by customers. Regarding automating security policy deployment, we have utilized automated security policy features, but it is difficult in some instances. We have identified what has been identified, but enabling automated SCP policies can be restrictive, which is actually good but makes it hard to implement for all organizations. Automating security policy features could understand the customer's environment better. An AI- or ML-enabled automated SCP could be a better option since it can understand the actions of administrators or developers in the customer's organization within the AWS platform, providing more in-depth automated assessments and SCP features. I rate this solution 8 out of 10.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the Firewall Analyser, which has a number of fantastic features."
"The Firewall Analyser feature is the most important and valuable part of this tool. This provides quick and simple visibility on the firewall's risk assessment."
"It gives us 100% visibility into our network security policies. It has given us a couple of surprises. Over the years, the network that we are administrating has been subject to people who have an idea of how a network should be set up. That differs from technician to technician or engineer to engineer. So, we are finding little pockets of hidden little self-engineered configurations and the way things were done that nobody knew about. Once the engineer left, the knowledge of that setup disappeared. You don't know about those until something either goes wrong, or you get something like AlgoSec to discover it for you, and it says, "Hey, there is this going on over here.""
"The Compliance module is one of the best features which can help anyone to perform security review with predefined security matrix configurations. The compliance module can save a lot of time for security reviews and provide full visibility of the risk required in firewall change requests."
"The solution provides us with full visibility into the risk involved in firewall change requests. This is very important for us because we are regulated according to the FDA. It shows us which changes have been made and why. So, it has worked very well for our compliance needs."
"We are moving towards an automated environment so the ability to work with Ansible, ServiceNow, and Palo Alto gives us the ability to automate our firewall policy creation. And it does so in a manner where we do not have to worry about a policy being created that may put our organization at risk."
"We have critical security policies. With AlgoSec, we can create a security policy to manage critical applications. I have worked in the bank and they have critical applications. We created some security policies for those applications. Controlling the flow is critical for our customers."
"AlgoSec contributes more in the security space for our company, especially in automatically ​finding the high risk and medium risk rules instead of manually reviewing over a few thousand rules."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"Once this solution is set up, we hardly have to touch it."
"Also, the strength of the community is invaluable."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"We work with compliance monitoring in the product, which is helpful for identifying framework-based misconfigurations, as it can tell you where to deploy firewall policies based on the frameworks."
"The most valuable feature is scaling, which allows you to deploy one configuration and scan and deploy it across the network. The automated policy application feature also streamlines security operations."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"The product is highly reliable."
 

Cons

"In our environment, we add rules in the files based on user logins, but currently, we can't do that with AlgoSec. AlgoSec can't create rules based on user logins. For example, generally, when we create a rule, we put IP Address, Destination IP Address, and Service Port. However, in our environment, we put IP Address, User Login, Destination IP Address, and Service Port, but AlgoSec doesn't support a rule in this format. We opened a ticket regarding this with their support two months ago, and they said that they will be able to add it in the future, but they don't know the timeframe."
"The initial cost was high for us, but we have always been behind the tech curve and cost has always been the limiting factor."
"have also heard a few qualms about the technical support and that it could be improved. However, this doesn't detract from the value the tool brings to our business."
"It would be nice to have a good tool for network map discovery in the GUI to make it more user-friendly."
"The documentation could be better."
"The initial setup can be complex for beginners."
"There is room for improvement in the rollback process."
"In terms of integrations, we would like to see a greater number with the upcoming and next-generation tools (i.e. SOAR and a selection of other SIEMs)."
"Enabling and configuring the logging is not that straightforward."
"I would like to see AWS add some UTM features to the firewall. It would also be great if AWS Firewall had native IPS/IDS. They have the separate IPS/IDS, GuardDuty."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"It needs to be more employee-friendly, and the security management could be more efficient."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"The system should be more customizable."
 

Pricing and Cost Advice

"The pricing of AlgoSec is fair."
"The pricing is good. Though, I would like if pricing could better support small businesses."
"The cost of the tool can be recovered with AlgoSec automations."
"The price came in where we really didn't even need to have much of a discussion. That was very good. There are also options regarding what you want to pay for. It wasn't really pushed on me that I have to get all of it or else I can't be an AlgoSec customer."
"AlgoSec is not much more expensive compared to other products available in the market."
"When it comes to the cost of support and licensing, it is much cheaper than other competing products."
"We are working with our finance department right now to be able to purchase it. The AlgoSec team is doing everything that they can in their power to get the costs down to where our budget is. They have worked a lot on it. They have cut the cost in half for us so far by questioning, "This is in the quote. Is this something that is actually needed?" They have pulled some stuff out and cut our costs down by 50% for the product itself."
"It is worth spending the cost for visibility on security. Of course, security is not cheap."
"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"It is a cost-efficient product."
"The AWS Firewall Manager is a little on the costly side."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
868,759 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
16%
Manufacturing Company
8%
Healthcare Company
6%
Computer Software Company
12%
Financial Services Firm
10%
Comms Service Provider
7%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise31
Large Enterprise175
By reviewers
Company SizeCount
Small Business5
Large Enterprise6
 

Questions from the Community

What do you like most about AlgoSec?
AlgoSec's ability to integrate with various security and networking solutions enhances its overall value.
What is your experience regarding pricing and costs for AlgoSec?
Pricing and licensing for AlgoSec depend entirely on custom quotes based on the organization's specific needs. My experience as a cybersecurity consultant prevents me from diving deep into pricing ...
What needs improvement with AlgoSec?
One improvement I see for AlgoSec is implementing an optimized rule cleanup and recertification process to address the challenge of companies neglecting clean-up recommendations. Establishing a qua...
What do you like most about AWS Firewall Manager?
It has centralized cloud firewall management rules. It provides compliance in tracking and reporting.
What is your experience regarding pricing and costs for AWS Firewall Manager?
On a scale of one to ten, I would rate the pricing for AWS Firewall Manager as seven, where one is cheap and ten is expensive.
What needs improvement with AWS Firewall Manager?
AWS Firewall Manager should be open to manage other third-party appliances as well.
 

Overview

 

Sample Customers

Maersk, Delta Airlines, Chevron, General Motors, T-Mobile, Chevron, AT&T, BP, Bell Canada, HCA Healthcare, Morgan Stanley, Unilever, Nationwide Insurance Enterprise, US Bank, Microsoft 
Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Find out what your peers are saying about AWS Firewall Manager vs. AlgoSec and other solutions. Updated: September 2025.
868,759 professionals have used our research since 2012.