Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs Skybox Security Suite comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 14, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Firewall Manager
Ranking in Firewall Security Management
7th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
11
Ranking in other categories
No ranking in other categories
Skybox Security Suite
Ranking in Firewall Security Management
6th
Average Rating
7.6
Reviews Sentiment
6.2
Number of Reviews
38
Ranking in other categories
Vulnerability Management (40th)
 

Mindshare comparison

As of February 2026, in the Firewall Security Management category, the mindshare of AWS Firewall Manager is 3.2%, down from 4.8% compared to the previous year. The mindshare of Skybox Security Suite is 8.8%, down from 10.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
Skybox Security Suite8.8%
AWS Firewall Manager3.2%
Other88.0%
Firewall Security Management
 

Featured Reviews

Venda E - PeerSpot reviewer
Cloud Option Engineer at a tech vendor with 10,001+ employees
Centralized security policies have streamlined audits and ensure consistent protection by default
One area for improvement is the reporting and customization option. The compliance reports are helpful, but having more granular insights or export options would make it even easier to use during audits. Also, support for more third-party integration could improve flexibility. Another improvement I need to see is a smoother setup experience. Some of the initial configuration steps, especially around the organization and permissions, can feel complex. A more guided setup or clear UI explanation would make it easier for teams to adopt quickly. One more improvement would be better alerting options. Right now, we mostly rely on AWS Security Hub or CloudWatch for detailed alerts. Having more built-in, real-time notification directly from AWS Firewall Manager would make it easier to monitor policy violations without extra setup.
reviewer2697804 - PeerSpot reviewer
Security Engineer at a financial services firm with 10,001+ employees
Tool identifies vulnerabilities and monitors connectivity effectively
Skybox Security Suite was a very good tool for my organization. I used it for monitoring connectivity between internal and external sites, monitoring our AWS instances, and ensuring workstations and Layer 3 devices met security specifications. The tool successfully helped in preventing vulnerabilities and breaches, but unfortunately, operations ceased before completing a migration to SaaS.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It is helpful for our compliance, as the compliance manager manages compliance with leading industry standards such as FedRAMP, which my company complies with, GDPR laws, and ISO 27001."
"Also, the strength of the community is invaluable."
"We work with compliance monitoring in the product, which is helpful for identifying framework-based misconfigurations, as it can tell you where to deploy firewall policies based on the frameworks."
"The product is highly reliable."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"Once this solution is set up, we hardly have to touch it."
"instead of asking for firewall rules which may or may not be relevant, or could already be there, or could be over-permissioned, Skybox can be used to map out the resources that that application is going to use and provide the exact rules that an application would require to function correctly. If the traffic isn't able to flow for the application, if it's erring out, Skybox can be used to troubleshoot that and say, "All right, where is the traffic being stopped and why, and how do I fix that.""
"I am impressed with the tool's change management, firewall and network assurance."
"This type of tool does a great job of reaching into those other devices producing risk recommendations, compliance recommendations, and a single plane of glass to do your queries, so you can find where these rules might exist."
"We use Network Assurance for network visualisation and troubleshooting."
"The most valuable features are the rule compliance and the OS vulnerability checks."
"The way that it's built with three-tier architecture, it makes it very horizontally scalable, so I can have multiple fallbacks. If one machine does fall offline, there are four other machines that are doing the exact same job to pick it up"
"The solution offers very nice dashboards and they've recently added a very good Java-based web interface."
"The most valuable feature is the compliance, whether it's access compliance or the configuration compliance, to make sure that all of our devices are configured as they're supposed to be, to limit access as much possible, to follow least-access guidelines."
 

Cons

"The areas of improvement are definitely platform resiliency, as we have seen outages on the AWS backbone, and whenever there is an outage on the AWS backbone, it impacts all the services hosted on that region, so we expect regional resiliency."
"The product could benefit from improvements in the user interface and integration capabilities."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"I would like to see AWS add some UTM features to the firewall. It would also be great if AWS Firewall had native IPS/IDS. They have the separate IPS/IDS, GuardDuty."
"The system should be more customizable."
"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
"Reporting. A lot of the reports, out of the box, are limited to a certain number of either configuration violations or access rule violations. So when you first set up a new firewall to be monitored by Skybox, you don't get a real full report. You have to really tweak it to get everything."
"The primary room for improvement would be to enable a web interface, which is not something which is there in the product. This is supposed to have come a year, a year and a half ago, but still has failed to come out. It still needs a client application to be installed on a workstation to be able to access that server and then run these reports. So I cannot extend that access to anybody. It has to be one administrator all the time. So unlike a web interface, where you can give multiple users simultaneous access and generate the various reports, that isn't a possibility at the moment."
"The Network Assurance, which helps to create the network model, is not so rich."
"There are multiple dashboards but no custom dashboard. It would be good to include a custom dashboard so that we can actually choose which field and what kinds of things we want to look at."
"The support could be improved."
"The solution needs improvement in firewall configuration checks. I would also like to see more configuration checks for Forcepoint and for other non-supported firewalls."
"The price is costly, and I hope they can reduce the cost."
"The stability is something that is questionable. I don't know whether it is because of the kind of infrastructure we have or because of the product in itself. We're running it on a virtual machine right now. Maybe once a month, or once in every 45 days, it requires a restart because the application fails to connect. So I have to restart the whole Skybox Manager itself, the Skybox server itself, and then connect to it from our Skybox Manager."
 

Pricing and Cost Advice

"The licensing is on a pay-as-you-go basis and we are billed monthly."
"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"The AWS Firewall Manager is a little on the costly side."
"It is a cost-efficient product."
"The pricing has increased exorbitantly in the last few years, so now it is questionable. Now, it makes me want to review other products."
"Skybox comes with extra licenses and has a change management license. The licenses are expensive, but they come with extra value."
"The pricing is high, and the licensing model needs more flexibility."
"The product's pricing is excellent value. In terms of licensing, make sure you understand your network components, all your hops through your network, thoroughly, before you decide on the total cost. If you want to do point-to-point flow analysis and such, you need to have the configuration of all the devices in between point A and point B. A lot of people don't realize all their network components until they start using this product."
"I rate the pricing two on a scale of one to ten, where one is very expensive, and ten is cost-effective."
"The price of the Skybox Security Suite can be expensive."
"It's expensive."
"The price is not expensive."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
881,665 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
8%
Comms Service Provider
8%
Hospitality Company
8%
Manufacturing Company
7%
Financial Services Firm
17%
Computer Software Company
11%
Manufacturing Company
11%
Energy/Utilities Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Large Enterprise8
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise4
Large Enterprise21
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Firewall Manager?
My experience with pricing, setup cost, and licensing for AWS Firewall Manager has been straightforward. There is no separate licensing cost for AWS Firewall Manager itself. It is included with AWS...
What needs improvement with AWS Firewall Manager?
One area for improvement is the reporting and customization option. The compliance reports are helpful, but having more granular insights or export options would make it even easier to use during a...
What is your primary use case for AWS Firewall Manager?
My main use case for AWS Firewall Manager is centrally managing and enforcing security policies across multiple AWS accounts. It helps me to ensure consistent WAF rules, security group policies, an...
What do you like most about Skybox Security Suite?
Overall, the tool has helped us reduce risks. If any step is missing, it's easier for my team or engineers to identify it. The tool provides accurate recommendations based on the data. Its integrat...
What is your experience regarding pricing and costs for Skybox Security Suite?
From a commercial perspective, AlgoSec is more expensive compared to Skybox Security Suite. Skybox Security Suite is cost-effective.
What needs improvement with Skybox Security Suite?
The features that I appreciated the most in Skybox Security Suite were not comparable with Tufin, as Tufin was far ahead in terms of the technology and the user interface. The effectiveness of the ...
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
ADP, Blue Cross Blue Shield, BT, USAID, Delta Dental, EDF Energy, EMC, HSBC, Johnson & Johnson
Find out what your peers are saying about AWS Firewall Manager vs. Skybox Security Suite and other solutions. Updated: December 2025.
881,665 professionals have used our research since 2012.