

Tufin Orchestration Suite and FortiGate Cloud-Native Firewall compete in network security management solutions. Tufin stands out in policy management and automation, while FortiGate excels in unified security features and centralized management.
Features: Tufin provides advanced policy management, compliance monitoring, and automation which enhance visibility across environments. It includes topology analysis and rule base clean-up for optimizing firewall rules. FortiGate delivers Unified Threat Management, offering application-level security, antivirus, and web filtering within a unified license, making it cost-effective for comprehensive threat protection.
Room for Improvement: Tufin could enhance platform support and adapt more swiftly to cloud environments. Users desire better integration for cloud management and simplified licensing. FortiGate needs to enhance VPN and IPS functions. Users seek more flexibility in customization and smoother migration processes.
Ease of Deployment and Customer Service: Tufin is mainly deployed on-premises with limited cloud options, praised for knowledgeable customer support but criticized for its escalation process. FortiGate offers extensive cloud deployment flexibility and receives positive reviews for responsive global customer support.
Pricing and ROI: Tufin is considered costly but offers significant ROI through its automation and integrated management features. Users recommend pricing adjustments for the mid-market. FortiGate is viewed as cost-effective due to its unified features under one license, though some regions experience higher costs due to exchange rates. FortiGate's flexible pricing appeals to a broad business spectrum.
FortiGate Cloud-Native Firewall provides the same features that higher-end models offer, but at a much lower cost.
The Orchestration Suite saves time when implementing rules.
There is local support through the distributor, which is efficient and provides a friendly relationship.
For technical support from the vendor, I would give it probably an eight as they are fairly responsive and usually fairly knowledgeable.
Technical support from Fortinet is rated high, a nine out of ten, though there is always room for improvement.
The support team is effective; they connect to the network quickly and help resolve any issues that arise.
The team is eager to help in fixing issues.
In recent years, they have stopped providing specialized engineering support.
Unfortunately, FortiGate Cloud-Native Firewall (FortiGate CNF) is not very scalable.
The scalability allows for increasing the capacity through configuration adjustments.
For scalability, if the hardware isn't fit or working, the box needs changing.
I would rate the stability of FortiGate Cloud-Native Firewall (FortiGate CNF) as nine out of ten, indicating it is very stable.
The stability of FortiGate Cloud-Native Firewall (FortiGate CNF) is highly appreciated by the people I work with, as they love its reliability.
The FortiGate firewall is stable and supports all our requirements for infrastructure security.
The Intrusion Prevention System (IPS) in Fortinet products, including FortiGate Cloud-Native Firewall (FortiGate CNF), is not very strong; we often prefer Cisco IPS instead.
It is a tool that we have used quite heavily, but it has a lot of vulnerabilities and they are starting to be dropping support for it.
The prices for FortiGate are way too high and are perceived as overpriced.
Issues can arise in larger enterprises, particularly concerning policy-based forwarding and NAT traffic.
The analytics features of Tufin Orchestration Suite are challenging to use and require technical expertise, which is a concern as there is not much knowledge in this field in Thailand.
The design needs improvement, particularly in recognizing target devices and target files.
A $80 or $200 device translates to approximately 8,000 to 10,000 Rand, which includes licensing costs.
FortiGate's cost-effectiveness is noticeable as it provides many features with one license, saving costs compared to Cisco ASA.
The pricing is considered too high and does not justify the value provided by the devices.
The pricing of Orchestration Suite is high, which is a point for improvement.
FireMon and Skybox are considered more cost-effective.
Tufin and AlgoSec are at the same level in terms of pricing.
The visibility and exposure to logs provide valuable insights for our InfraSec team, aiding in monitoring and managing communication and policies.
It enables better segregation and integration with on-premise firewalls and infrastructure so that I can seamlessly handle both on-prem physical firewalls and cloud firewalls.
Threat detection and prevention features are the most effective aspects of FortiGate CNF.
AlgoSec adds more value with its vulnerability control, which benefits organizations by reducing expenses associated with audits.
New employees can quickly grasp the various IPs, devices, and the network's logical and physical layout within a short period.
It offers automation capabilities that are very helpful, especially for network security orchestration and applying policies.
| Product | Mindshare (%) |
|---|---|
| Tufin Orchestration Suite | 17.3% |
| FortiGate Cloud-Native Firewall (FortiGate CNF) | 3.2% |
| Other | 79.5% |

| Company Size | Count |
|---|---|
| Small Business | 13 |
| Midsize Enterprise | 2 |
| Large Enterprise | 3 |
| Company Size | Count |
|---|---|
| Small Business | 29 |
| Midsize Enterprise | 13 |
| Large Enterprise | 153 |
FortiGate Cloud-Native Firewall (FortiGate CNF) is a scalable, enterprise-grade cloud-native firewall delivered as a service, providing robust threat protection to cloud environments like AWS and Azure.
FortiGate CNF offers advanced capabilities like IPS, web filtering, and DNS security, managed through a single interface to secure multiple accounts and networks across various regions. It integrates seamlessly with cloud service provider tools for simplified management and policy enforcement, reducing operational costs and maintaining security efficiency. Customers benefit from comprehensive threat prevention without the need for complex infrastructure deployments, ensuring cloud workloads remain protected.
What features does FortiGate CNF offer?Financial institutions, healthcare providers, and telecom companies deploy FortiGate CNF for robust cybersecurity across cloud environments. It supports compliance mandates like PCI DSS, enables zero trust policies for APIs, extends protection to high-bandwidth tasks, and integrates with on-premises infrastructure for comprehensive security strategies.
Tufin Orchestration Suite offers change tracking, policy management, automation, and comprehensive visibility, aiding in secure and efficient network control. Its customization capabilities enable efficient rule analysis and optimization for multiple vendors.
With its robust capabilities, Tufin Orchestration Suite facilitates firewall policy management, automation, and compliance. Organizations benefit from its role in auditing, rule cleanup, policy standardization, and change tracking. While it provides efficient network orchestration, challenges such as dated interface design, incomplete cloud platform integration, and slow report generation demand attention. Security policy automation and vendor integration improvements are essential. Despite these issues, Tufin is crucial for managing multi-vendor environments and coordinating change management. Centralized management offers benefits in monitoring, reporting, risk assessment, role recertification, and network orchestration.
What are the key features of Tufin Orchestration Suite?In finance, Tufin integrates with existing systems to automate security policy management and ensure compliance, optimizing efficiency and risk management. In healthcare, it aids regulatory adherence and patient data protection, while in retail, it enhances security protocols amid a diverse vendor landscape.
We monitor all Firewall Security Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.