Try our new research platform with insights from 80,000+ expert users

Cortex XSIAM vs Fortinet FortiSIEM comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.7
Organizations using Cortex XSIAM saw significant ROI and improved incident management through automation, though results vary short-term.
Sentiment score
1.0
Fortinet FortiSIEM delivers security improvements and customer satisfaction, leading to positive financial outcomes despite no explicit ROI measurement.
 

Customer Service

Sentiment score
6.1
Customer service differs for Cortex XSIAM: Premium support is favored; other tiers vary in efficiency and responsiveness.
Sentiment score
7.4
Fortinet FortiSIEM's customer service is seen as professional but has mixed reviews on response times and support accessibility.
Premium support provides direct access, while distributor support quality can vary.
It is ineffective in terms of responding to basic queries and addressing future requirements.
The Palo Alto support team is fully responsive and helpful.
Local tech support is available, however, for more critical or technical issues, we depend on the OEM directly, especially when it comes to on-prem solutions.
There is a knowledgeable, though small, team of support engineers around the world.
They take some time to respond because they need logs and investigations, which delays the response time.
 

Scalability Issues

Sentiment score
6.8
Cortex XSIAM is praised for scalability and flexibility, though some desire improved on-premises options and integration capabilities.
Sentiment score
7.2
Fortinet FortiSIEM scales well, accommodating different business sizes but faces challenges with licensing, architecture, and configuration complexities.
Without proper integration, scaling up with more servers is meaningless.
Cortex XSIAM is highly scalable.
At any point in time, when network devices increase or there is a change in the infrastructure, we can add more workers and collectors to expand our infrastructure setup.
Fortinet FortiSIEM is highly scalable.
Fortinet FortiSIEM is easy to scale.
 

Stability Issues

Sentiment score
7.5
Cortex XSIAM is highly stable, despite occasional issues, praised for reliability, installation ease, and performance across environments.
Sentiment score
5.6
Fortinet FortiSIEM is reliable and stable, handling updates well, with users rating its performance highly despite occasional bugs.
The product was easy to install and set up and worked right.
Overall, Cortex XSIAM is stable.
It stabilizes itself in an appropriate time, so its uptime is good.
These issues may cause unusual errors and user interface issues.
Some stability issues occur, but Fortinet's technical support team provides assistance.
 

Room For Improvement

Cortex XSIAM needs better integration, user interface, and performance, with improvements in vulnerability detection, support, and licensing options.
Fortinet FortiSIEM needs improvements in integration, user interface, support, cost, and features like AI and automated responses.
Obtaining validation for integrations from Palo Alto takes around eight months, which is quite long.
Cortex XSIAM needs improvements in terms of data onboarding, parsers, and third-party integration supports.
Improvements could be made to the dashboard and GUI, making it easier to deploy.
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management.
Enhancing the completeness of its APIs could aid in better external integrations.
Recently, they revised it to a subscription-based, all-inclusive license.
 

Setup Cost

Cortex XSIAM's competitive pricing faces mixed reviews, with additional costs for add-ons and integration despite perceived value.
Fortinet FortiSIEM provides flexible pricing that can be cost-effective, but costs may increase with additional modules and scalability.
The first impression is that XSIAM would be more expensive than others we tried.
The product is very expensive.
Cortex XSIAM is pretty expensive, and the licensing process is not very comfortable.
Setting it up for oneself as an enterprise-licensed product can be quite expensive.
Windows agent licenses cost around 3,000 Rupees per device per year.
The revised model is subscription-based and more flexible.
 

Valuable Features

Cortex XSIAM offers advanced SOAR capabilities, enhancing security with machine learning, automation, and efficient threat detection without extensive logs.
Fortinet FortiSIEM provides automation, analytics, and integration with a user-friendly interface for efficient threat detection and network monitoring.
One of the valued aspects of the product is its use of artificial intelligence to detect security vulnerabilities.
Its signature-less subscriptions and robust detection power stand out in improving threat detection.
Cortex XSIAM allows us to onboard almost every device, whether they are on-prem or on SaaS.
I find the real-time monitoring and correlation capabilities effective for security alerts.
It provides extensive logging and record-keeping for internal networks, cloud applications, and services as well as perimeter physical network security.
 

Categories and Ranking

Cortex XSIAM
Ranking in Security Information and Event Management (SIEM)
15th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
13
Ranking in other categories
Identity Threat Detection and Response (ITDR) (5th), AI-Powered Cybersecurity Platforms (7th)
Fortinet FortiSIEM
Ranking in Security Information and Event Management (SIEM)
7th
Average Rating
7.6
Reviews Sentiment
5.8
Number of Reviews
75
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of August 2025, in the Security Information and Event Management (SIEM) category, the mindshare of Cortex XSIAM is 2.9%, up from 1.4% compared to the previous year. The mindshare of Fortinet FortiSIEM is 3.3%, up from 3.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Security Information and Event Management (SIEM)
 

Featured Reviews

AKASH MAJUMDER - PeerSpot reviewer
Incident response times have significantly reduced with efficient device integration and log parsing capabilities
Cortex XSIAM needs improvements in terms of data onboarding, parsers, and third-party integration supports. Additionally, a future update request is to enable tagging of endpoints in groups, similar to a feature available in Cortex XDR. The AI analytics need fine-tuning because some use cases are not working from my side.
Oliver Jackson - PeerSpot reviewer
Systems monitoring enhanced by firewall and intrusion detection features
My primary use case for Fortinet FortiSIEM is systems monitoring and alerting. I use it for standard functions like log monitoring, incident detection, and notification.  My customers are mostly medium-sized enterprises ranging from engineering companies, mining companies, independent schools, and…
report
Use our free recommendation engine to learn which Security Information and Event Management (SIEM) solutions are best for your needs.
865,295 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Manufacturing Company
10%
Financial Services Firm
10%
Government
7%
Computer Software Company
13%
Financial Services Firm
9%
Government
7%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Cortex XSIAM?
It is an effective solution in terms of performance and functionalities.
What is your experience regarding pricing and costs for Cortex XSIAM?
The licensing cost of Cortex XSIAM is more or less the same as Splunk, making it quite expensive compared to other tools. There are additional expenses for more functionalities.
What needs improvement with Cortex XSIAM?
Cortex XSIAM needs improvements in terms of data onboarding, parsers, and third-party integration supports. Additionally, a future update request is to enable tagging of endpoints in groups, simila...
What do you like most about Fortinet FortiSIEM?
Fortinet FortiSIEM needs to provide better API integrations to users.
What is your experience regarding pricing and costs for Fortinet FortiSIEM?
The pricing is reasonable, which is why it is preferred by government customers. Windows agent licenses cost around 3,000 Rupees per device per year.
What needs improvement with Fortinet FortiSIEM?
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management. Currently, to manage repetitive incidents or for remediation, I need to use a separate softw...
 

Also Known As

No data available
FortiSIEM, AccelOps
 

Overview

 

Sample Customers

Information Not Available
FortiSIEM has hundreds of customers worldwide in markets including managed services, technology, financial services, healthcare, and government. Customers include Aruba Networks, Compushare, Port of San Diego, Cleveland Indians, Infoblox, Healthways, and Referentia.
Find out what your peers are saying about Cortex XSIAM vs. Fortinet FortiSIEM and other solutions. Updated: July 2025.
865,295 professionals have used our research since 2012.