Try our new research platform with insights from 80,000+ expert users

Cortex XDR by Palo Alto Networks vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.8
Fortinet FortiGate offers a high ROI with cost-effective cybersecurity, reducing costs and improving efficiency through centralized control.
Sentiment score
5.2
Cortex XDR provides value through threat blocking, compliance benefits, cost savings, and increased performance and user satisfaction.
Sentiment score
6.9
WatchGuard Firebox improved security, efficiency, and remote access, saving time and cost, though some experienced higher operational expenses.
Clients are now comfortable and not wasting productive hours on IT support.
Managing Director at a manufacturing company with 10,001+ employees
The automation part is giving us a cost benefit and speed; we can react faster.
BDM Fortinet & BDM Teamlead at Exclusive Networks
It's a very useful tool to mitigate and protect your enterprise.
Staff Infrastructure & Security Engineer at Mozn Systems
They appreciate the rich telemetry data from the solution, as it provides in-depth threat identification.
Cyber Security Manager at Welab bank
Cortex XDR by Palo Alto Networks helps to reduce my total cost of ownership significantly.
Detection and Response Consultant at Inovasys
I have seen a return on investment with Cortex XDR by Palo Alto Networks, as this product is offered at a minimal cost, and we can find a good ROI from it.
Cyber Security Information Security Specialist at MHM Holding GmbH
I do not see any return on investment after WatchGuard Firebox implementation in terms of cost reductions.
CEO at ajuntament del Prat
Reduced incidents and easier management helped lower operational cost.
Security Engineer at Antina Empleos
 

Customer Service

Sentiment score
6.6
Fortinet FortiGate support is generally effective, but users report variable responsiveness and rely on comprehensive documentation.
Sentiment score
6.9
Cortex XDR support is praised for expertise and responsiveness but criticized for slow resolutions and inconsistent international support.
Sentiment score
6.3
WatchGuard Firebox support is praised for expertise and responsiveness, despite occasional delays with complex issues or time zone challenges.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
IT Manager at a consultancy with 10,001+ employees
I would rate the technical support for Fortinet FortiGate a ten out of ten.
NAC Support at Rah Infotech Pvt Ltd
As a solution provider, when I encounter problems, I connect directly with Fortinet support, and they provide solutions within a very short time.
Manager, Information Technology Operation/Presales at TechMonarch
The technical support from Palo Alto deserves a mark of ten because they reach out within an hour whenever assistance is needed.
Head of data centers at a non-profit with 10,001+ employees
There is no back and forth, and they know what we are asking for and come up with the best resolution for a solution.
Senior Process Expert at A.P. Moller - Maersk
If any of these services are missed, it becomes a problem in terms of support tickets, follow-up, or special configuration that needs to be done in the system.
Chief of IT Architecture at a financial services firm with 10,001+ employees
On a scale of one to 10, I would rate the technical support of the WatchGuard Firebox a 10.
Consultant at a tech services company with 51-200 employees
Finally, we connected with someone, and I would rate their support as eight or nine out of ten once we were able to speak with them.
Senior Network Consultant at NETOPS
Customer support for WatchGuard Firebox is very good and very fast.
Security Engineer at Antina Empleos
 

Scalability Issues

Sentiment score
7.1
Fortinet FortiGate is considered scalable for small to medium enterprises, though less so for large-scale expansions.
Sentiment score
7.5
Cortex XDR offers exceptional scalability, supporting thousands of users with effortless deployment and enterprise-grade capabilities for large-scale environments.
Sentiment score
6.8
WatchGuard Firebox is scalable and supports easy upgrades, though some users noted performance limits and functionality constraints.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
IT Manager at Daltons Limited
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
Cewa Solutions Architect at a tech services company with 11-50 employees
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
General Surgery Specialist at Helwan University Cairo
Cortex XDR by Palo Alto Networks can be expanded anytime by purchasing another license without any issues related to scalability.
Head of data centers at a non-profit with 10,001+ employees
I think scalability for Cortex XDR by Palo Alto Networks is good.
Threat Analyst II at a tech vendor with 1,001-5,000 employees
The user interface and features compared to newer firewalls are not up to the mark, which includes functionalities such as filtering, web filtering, threat protection, user identity, and UTM features that need improvement.
Senior Network Consultant at NETOPS
You can choose different models based on throughput and features, which makes it easy to support growing environments.
Security Engineer at Antina Empleos
If we're going for more concurrent users, we need to change the entire box.
Owner at it logic
 

Stability Issues

Sentiment score
7.7
Fortinet FortiGate is stable and reliable, with occasional issues linked to updates and high traffic, requiring regular patches.
Sentiment score
8.0
Cortex XDR is stable with reliable performance and valued support, though minor bugs and alert issues occasionally occur.
Sentiment score
7.9
WatchGuard Firebox is stable and reliable, with minimal crashes, occasional reboots, and robust performance despite minor issues.
We're experiencing 99.999% availability consistently.
Manager, Information Technology at a consumer goods company with 11-50 employees
I would rate the stability of Fortinet FortiGate a ten out of ten.
NAC Support at Rah Infotech Pvt Ltd
Currently, we are experiencing a general outage of one of the main internet service providers of the Dominican Republic, and we have not been impacted in our operations because with SD-WAN, we have another internet service provider and we are working with the second WAN connection without any disruption.
CISO at a financial services firm with 1,001-5,000 employees
Cortex remains fast and responsive, even with increasing data and alerts.
Final Year Student at Gitam University
The thresholds we've seen on our firewall boxes at some instances reached 80% to 85%, but even at that level of utilization, we don't observe any latency or any issues reported with respect to accessing the application.
Senior Process Expert at A.P. Moller - Maersk
Cortex XDR is stable, offering high quality and reliable performance.
Cyber Security Manager at Welab bank
I have just one WatchGuard Firebox unit that is licensed, and I have no bugs on it, so I am happy with that.
Administrateur Systã¨Mes Et Rã©Seau at Btp Consultants
There are issues with traffic hitting the firewall, which could indicate performance problems related to throughput.
Senior Network Consultant at NETOPS
We had many bottlenecks before deploying WatchGuard Firebox, but when we switched to a higher version of our firewalls, the bottlenecks were solved.
CEO at ajuntament del Prat
 

Room For Improvement

Fortinet FortiGate users desire better reporting, intuitive UI, improved documentation, simpler pricing, stability, integration, and advanced features.
Cortex XDR struggles with integration, complex interface, resource use, and pricing, needing improvements in management, automation, and detection.
WatchGuard Firebox requires simplified management, improved integrations, enhanced reporting, revisited pricing, stronger security features, and better support for users.
These sessions should be around five to ten minutes long, allowing users and partners to quickly grasp the information without disrupting their daily tasks.
Managing Director at a manufacturing company with 10,001+ employees
The solution should be able to implement machine learning and analytics of all the logs for threat detection and protection.
Senior Systems Engineer at Caribbean Development Company
It would be better for customers to get immediate replacements even with a standard subscription.
Director at a tech services company with 11-50 employees
Improving reporting and dashboard customization, along with the addition of real-time and exportable reports, would help SOC teams greatly.
Final Year Student at Gitam University
The inclusion of this feature would allow the application of DLP policies alongside antivirus policies via a single agent and console, making it more competitive as other OEMs often offer DLP solutions as part of their antivirus products.
Pre-Sales Architect at network techlab
If the per GB data could be provided at a certain level free of cost or at the same cost which the customer is taking for the entire bundle, that would be better.
Cyber Security Information Security Specialist at MHM Holding GmbH
The cost for renewal after three years is 75% of the hardware cost, which is a significant problem.
Owner at it logic
When implementing a rule using a group of IPs, it is not possible to do that directly.
Solution Architect at Simvicitsolutions
It is also difficult to diagnose issues if any devices get compromised; for example, if someone hacks our system, it becomes hard to trace who made changes or accessed the firewall.
Senior Network Consultant at NETOPS
 

Setup Cost

Fortinet FortiGate offers competitive pricing, though renewal and add-on costs can affect long-term affordability, providing good feature value.
Cortex XDR offers flexible, cost-effective security for enterprises, despite high setup costs and additional charges for extra features.
WatchGuard Firebox offers competitive pricing, three-year plans, and discounts, making it appealing despite additional advanced security costs.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
Network & System Admin at Invoke Studios
It offers cost savings as it is generally cheaper than the competition.
IT Infrastructure Architect at Apotek 1
It is about 20% cheaper.
Network Security Engineer at TD SYNNEX
The pricing on SentinelOne is far more reasonable and cheaper than Cortex XDR by Palo Alto Networks.
Consultant at a tech services company with 1,001-5,000 employees
I would say it is definitely not a cheap product, considering how mature it is and how scalable all Palo Alto products are together.
Senior Process Expert at A.P. Moller - Maersk
Cortex XDR is perceived as expensive by some customers, yet offers dynamic pricing.
Cyber Security Manager at Welab bank
When we tried to renew the Palo Alto license, the cost was beyond any reasonable range.
Digital Solution Designer at Accenture
Fortinet is more expensive than WatchGuard.
Security Engineer at Antina Empleos
It's expensive us here.
Owner at it logic
 

Valuable Features

Fortinet FortiGate excels with ease of use, robust security, and affordability, featuring web filtering, VPN, SD-WAN, and IPS.
Cortex XDR delivers AI-driven endpoint security with seamless integration, efficient management, and enhanced detection and response capabilities.
WatchGuard Firebox is lauded for its user-friendly setup, robust security features, strong performance, and excellent support, enhancing network protection.
The most valuable feature of FortiGate is FortiView which provides proactive monitoring.
General Manager Group IT at DART GLOBAL LOGISTICS PTE. LTD.
We got a firewall and gave an SSL VPN to my client to connect to their servers, after which, such kind of activities involving ransomware attacks stopped.
Owner at Mindware Computer Solutions
They put in a thing called the FortiCookbook, which is very easy to read with real-life scenarios that make networking tasks like joining networks very straightforward.
IT Manager at Daltons Limited
It incorporates AI for normal behavior detection, distinguishing unusual operations.
Cyber Security Manager at Welab bank
The product provides automation responses in case of a threat attack, severity assessments, centralized manageability, and comprehensive compliance features, resulting in reduced costs.
Pre-Sales Architect at network techlab
It includes machine learning to easily analyze data and detect complex threats across endpoints, networks, or clouds.
Final Year Student at Gitam University
The Firebox offers valuable features such as network security, URL filtering, UTM features, intrusion prevention and detection, and authentication.
Solution Architect at Simvicitsolutions
Basically, we have received a good return on investment.
Owner at it logic
I utilize AI within the WatchGuard Firebox, as we use the interconnection with threat syncs, and AI is implemented.
Consultant at a tech services company with 51-200 employees
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
581
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cortex XDR by Palo Alto Net...
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
104
Ranking in other categories
Endpoint Protection Platform (EPP) (5th), Endpoint Detection and Response (EDR) (8th), Extended Detection and Response (XDR) (7th), Ransomware Protection (2nd), AI-Powered Cybersecurity Platforms (2nd)
WatchGuard Firebox
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
129
Ranking in other categories
Data Loss Prevention (DLP) (11th), Firewalls (11th), Intrusion Detection and Prevention Software (IDPS) (5th), Anti-Malware Tools (6th), Endpoint Detection and Response (EDR) (18th), Application Control (4th), Unified Threat Management (UTM) (4th)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
ABHISHEK_SINGH - PeerSpot reviewer
Senior Process Expert at A.P. Moller - Maersk
Gained full visibility and streamlined threat detection through behavior-based insights and AI integration
Initially, we got to have a lot of false positives when we onboarded, but nowadays it's quite smooth. We have fine-tuned our security policies and allowed different levels of policies to get rid of those false positives. Currently, we are getting a fairly good amount of incidents that are not false positives or benign, but actionable items. The process is streamlined. In the initial days, the operations used to get involved in a lot of benign and other activities, but now the process is streamlined. We are leveraging the auto-detection and remediation plans. The operations teams are now more involved in other business roles as well, not just looking into the logs and fetching out what's happening there. They have fixed a lot of things. Initially, they didn't have IAC code drift detection, cloud posture management, or security posture management, but they have those now. They purchased different vendors and did a merger with that. They have now Prisma Cloud that gets integrated and now they are working with Cortex Cloud. Everything that was negative has now been addressed, and the product altogether looks to be in a very better and mature shape now. Currently, it's more or less detecting the workloads with AI-based best practices. Since most organizations are consuming AI agents and other things, we are looking forward to seeing what other feature enhancements Palo Alto can support in that.
PS
CEO at ajuntament del Prat
Network protection has improved with stronger VPN connectivity but administration remains complex
Deploying WatchGuard Firebox was quite easy, but we have had some problems regarding the VPN and the administration of the tool and the two firewalls that we have. When comparing WatchGuard Firebox with our previous solution, Palo Alto, we have had some problems in administration because of the tools. I think that they have some aspects in their system that are cloud-provided, but they also have an on-premise solution, which makes this combination good. Although I should say that when compared to Palo Alto, we have taken a step backwards. In general, I would rate WatchGuard Firebox around 6-7; it is a good firewall, but they lack good administration tools. We experience many problems with the performance and administration tools on the web, including several issues with VPNs.
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
881,757 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
10%
Financial Services Firm
10%
Manufacturing Company
8%
Comms Service Provider
6%
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
7%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise189
By reviewers
Company SizeCount
Small Business43
Midsize Enterprise20
Large Enterprise46
By reviewers
Company SizeCount
Small Business93
Midsize Enterprise28
Large Enterprise15
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Cortex XDR by Palo Alto vs. Sentinel One
Cortex XDR by Palo Alto vs. SentinelOne SentinelOne offers very detailed specifics with regard to risks or attacks. ...
Comparing CrowdStrike Falcon to Cortex XDR (Palo Alto)
Cortex XDR by Palo Alto vs. CrowdStrike Falcon Both Cortex XDR and Crowd Strike Falcon offer cloud-based solutions th...
How is Cortex XDR compared with Microsoft Defender?
Microsoft Defender for Endpoint is a cloud-delivered endpoint security solution. The tool reduces the attack surface,...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Cyvera, Cortex XDR, Palo Alto Networks Traps
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
CBI Health Group, University Honda, VakifBank
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Cortex XDR by Palo Alto Networks vs. WatchGuard Firebox and other solutions. Updated: December 2025.
881,757 professionals have used our research since 2012.