Try our new research platform with insights from 80,000+ expert users

ArcSight Logger vs Fortinet FortiAnalyzer comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

ArcSight Logger
Ranking in Log Management
31st
Average Rating
7.8
Reviews Sentiment
6.7
Number of Reviews
31
Ranking in other categories
No ranking in other categories
Fortinet FortiAnalyzer
Ranking in Log Management
8th
Average Rating
8.0
Reviews Sentiment
7.7
Number of Reviews
94
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Log Management category, the mindshare of ArcSight Logger is 0.8%, down from 1.2% compared to the previous year. The mindshare of Fortinet FortiAnalyzer is 2.0%, down from 3.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Geraldo Freitas - PeerSpot reviewer
Enhances our security incident investigation but not good for correlation
Investigation is good when you know what you want to search for in Logger. The most difficult part is parsing the logs and configuring the parsers. For investigation, it's good. For correlation, it's not good. We use Sentinel, and Sentinel has pre-built use cases that are much easier to configure. So, it enhances our security incident investigation. We have inbound integration, but configuring the parsers is sometimes very difficult. We only have two use cases where we have a correlation set up. We send the information to Check Point to block IP addresses when we see a lot of blocks from the same source. We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist. So, it offers the ease of integration.
Boaz Katabazi - PeerSpot reviewer
Enables flexible and comprehensive reporting across all syslog-enabled devices
I mainly use it for reporting. It also integrates other security solutions around. It can report onto anything that has a syslog on the network. It doesn't have to be a Fortinet product. It integrates within FortiGate and you can find the reports there. It's a very flexible and rich tool, providing custom reports along with default reports.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The ESM use cases are the most valuable. It enables us to use the big data collection inside our company. We are able to create use cases for whatever it suits and I find that the most interesting part of any SIEM solution."
"I am impressed with the product's ability to pick up logs. It also has UEBA which has reduced the time to take charge of the events."
"We haven't had any crashes or bugs. It is stable."
"We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist."
"It provides in-depth information on business activities once we log into the system."
"The technical support team is good...It is a scalable solution."
"It is one of the best products available in the market."
"In terms of ArcSight Logger's most valuable feature, it is their scalability. ArcSight's real advantage is its scalability because they have two layers, including the logger layer."
"From my perspective, we need to see the traffic in a good way so we can know what has happened in our network. The analyzing tools and the monitoring tools and the logs are the important part in the network."
"Support is helpful."
"The most valuable features of the solution are the reports and the playbooks."
"It has a simplified and user-friendly interface."
"The solution is easy to use and easy to integrate."
"Report generation is very easy"
"Based on the logs of Fortinet FortiAnalyzer you can have it trigger actions. For example, if the log has a word or a sentence you specified it can send an alert or Syslog to an email address."
"One of the greatest advantages of Fortinet FortiAnalyzer is its ability to integrate with a variety of software and solutions, providing comprehensive visibility into the network. The solution's strength lies in its capability to work with Fortinet's own products, such as the FortiAP access point, which allows for deep monitoring, automation, correlation, and incident management. However, this functionality is not present when utilizing other products, such as those from Cisco, limiting the visibility and benefits that can be gained."
 

Cons

"I would rate the technical support only 5 out of 10. The technical support is not satisfactory."
"The speed of Logger indexing and searching for certain bugs for some queries that we provide could be improved. It can handle a huge number of logs but it can be improved."
"We find that the search and access functionality is quite slow."
"You have limited reporting capabilities and I wouldn't choose ArcSight Logger for this purpose."
"The solution should make it possible to integrate network analysis features."
"The product's connectors should work better and the user manuals need an update."
"The console in older versions is not user-friendly."
"In the next release, I want to see more intelligence."
"The FortiAnalyzer is not good at managing multi-version environments. If all your FortiGate are at different versions in the field, that's difficult. The one thing we didn't like is the fact you have to have 100% of your environment at the same release, which is not pleasant, to have it fully functional. You can have a different release, but to have it fully functional 100% of your environment has to be the same release."
"In future releases, we'd like to see more granular reporting. The reports on offer right now are pretty short."
"The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough."
"I would like to see an improvement in the technical support. Stronger authentication will also be a plus."
"The following could be better: operation and maintenance, high-availability architecture, and management link embedded in the transmission link."
"Currently, Fortinet FortiAnalyzer provides a very basic level of correlation facilities. I would like to see improvements in the integration of better correlation capabilities."
"In terms of what could be improved, sometimes it's lagging and it also has some graphical issues with the GUI."
"Fortinet FortiAnalyzer should come bundled with other Fortinet solutions. Additionally, the performance and updates could improve. They need to test their updates better so there are not as many bugs."
 

Pricing and Cost Advice

"Pricing is reasonable compared to similar tools on the market. They offer perpetual licenses."
"The pricing is quite harsh."
"We have a lifetime license, so we don't pay a monthly fee."
"ArcSight Logger is very expensive compared to their competitors, but when we talk to the customer and explain what the features are and how we can scale, they understand. Still, ArcSight is more expensive than the competition."
"ArcSight is an expensive solution."
"It's not cheap at all as it's a big product and has been in the market for quite some time now."
"I would rate the product a seven out of ten since it's an enterprise product."
"I rate the product’s pricing a seven out of ten, where one is inexpensive, and ten is expensive."
"The hardware cost and services contract are fair."
"There is a license needed to use this solution."
"I believe that these devices were procured with a five-year maintenance and support license up front. I work at a university, so the vendor provides a considerable higher ed discount."
"I would rate the price of FortiAnalyzer as seven out of ten, with ten being the most expensive."
"I rate FortiAnalyzer six out of 10 for affordability. FortiAnalyzer pricing isn't steady. It changes each quarter or year. That's one of the main problems in West Abaco because most businesses here are small or medium-sized enterprises. It makes budgeting complicated. You always want to pay the same price on the subscription."
"I won't say the solution is too costly since it is available at a fair price."
"The pricing is reasonable."
"The solution is quite expensive"
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
845,406 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
20%
Computer Software Company
17%
Government
9%
Educational Organization
6%
Computer Software Company
17%
Manufacturing Company
8%
Government
8%
Financial Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about ArcSight Logger?
We have a trigger. So, Logger automatically blocks these IP addresses. We could have Logger put them on a blacklist.
What is your experience regarding pricing and costs for ArcSight Logger?
The pricing isn't the problem. We have a lifetime license, so we don't pay a monthly fee.
What needs improvement with ArcSight Logger?
The solution has room for improvement. We're currently upgrading to the newer version, where they have something like Kafka, a hub for all solutions feeding information into Logger. However, I thin...
What do you like most about Fortinet FortiAnalyzer?
The reporting features, which offer customization, real-time insights, and compliance support, are particularly noteworthy aspects.
What is your experience regarding pricing and costs for Fortinet FortiAnalyzer?
I am a technical engineer, so I am not privy to pricing details.
What needs improvement with Fortinet FortiAnalyzer?
Sometimes, there is a problem with CPU consumption, where one process consumes 100%, and I need to restart FortiAnalyzer to fix this. I am not familiar with the processes of scalability.
 

Also Known As

Micro Focus Arcsight Logger, HPE Arcsight Logger
No data available
 

Overview

 

Sample Customers

China Merchants Bank, Bank AlJazira, Banca Intesa
General Directorate of Information Technology
Find out what your peers are saying about ArcSight Logger vs. Fortinet FortiAnalyzer and other solutions. Updated: March 2025.
845,406 professionals have used our research since 2012.