Try our new research platform with insights from 80,000+ expert users

Fortinet FortiAnalyzer vs Microsoft Purview Audit comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiAnalyzer
Ranking in Log Management
12th
Average Rating
8.0
Reviews Sentiment
7.3
Number of Reviews
107
Ranking in other categories
No ranking in other categories
Microsoft Purview Audit
Ranking in Log Management
30th
Average Rating
8.2
Reviews Sentiment
5.1
Number of Reviews
4
Ranking in other categories
Microsoft Security Suite (29th)
 

Mindshare comparison

As of February 2026, in the Log Management category, the mindshare of Fortinet FortiAnalyzer is 1.7%, down from 2.1% compared to the previous year. The mindshare of Microsoft Purview Audit is 0.8%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Market Share Distribution
ProductMarket Share (%)
Fortinet FortiAnalyzer1.7%
Microsoft Purview Audit0.8%
Other97.5%
Log Management
 

Featured Reviews

Manikandan Kannan - PeerSpot reviewer
Head of Technology at Techfruits
Simplifying log management by displaying detailed access information
The most valuable feature of Fortinet FortiAnalyzer is its ability to simplify and display logs clearly, providing details like which IPs are accessing the system, the destination, and the policies applied. This visualization and detail make managing logs more straightforward. In conjunction with our VMware setup, Fortinet FortiAnalyzer enhances organizational efficiency, meeting the standard log retention period for up to a year.
OK
Cloud Solution Engineer at a computer software company with 51-200 employees
Integrated auditing has strengthened data retention and improved incident investigations
I have seen areas for improvement, specifically in Microsoft Purview Audit or in general about Microsoft. I have had a situation with documentation. I had a customer who wanted to create alerts and they had Microsoft 365 Business Premium. In the documentation, it was noted that this license is enough for creating alerts. When we tried to make them, we noticed they cannot do it with Microsoft 365 E3 because the customer had limited features to manage alerts. The customer had to buy E3. We created Microsoft support requests, and they confirmed that the documentation displayed not the real situation and they have been going to update documentation. The same situation occurred now with implementing Microsoft Purview Audit in the last autumn. eDiscovery was combined with search and content search, and the documentation was not clear at the beginning. It was a little difficult to describe to customers that now it is a part of eDiscovery. Content search is a very simple functionality, while eDiscovery is a little difficult. I am not entirely sure why Microsoft is going in the way of combining these services because they are the same. However, for a customer who has never seen these services, it is difficult to understand quickly. The same situation occurs with litigation holds and some other holds. For any mail, I am trying to keep data. For example, emails are held for a year or two years, ten years, it does not matter. It is difficult to understand where to find this data and where these emails are being held. I need to use eDiscovery to find out all deleted data that was kept somewhere in some hidden folders of the mailbox. Regular customers and regular administrators know that on-premises Exchange, for example, allows them to find the data in some repository and review the list of kept data. However, with this hold, we do not have any functionality to review the list of kept data. It is difficult to understand for customers how to work with this. I had a case where I spent three or four hours working deeply with a customer to explain how to work with eDiscovery, why Content Search is not there when it was before, what is an eDiscovery case, and why we are talking about all of this just to review a list of kept emails. This is difficult.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical reports clearly identify system checks, locations and areas, how many times things escape, which firewall is affected, and source IDs."
"Initial setup is ok."
"It is very stable and reliable."
"The traffic log information we receive from Fortinet FortiAnalyzer is valuable."
"Report generation is very easy"
"Separating sections or conditions on Fortinet FortiAnalyzer is quite clear."
"The feature I find most useful is the handy dashboard."
"The reporting and organizing part of Fortinet FortiAnalyzer is very interactive, smooth, and easy to use."
"We're easily saving at least one hour per day using this solution."
"The main Microsoft feature is that it offers common integration of services, of data, of identity, meaning user accounts, user access, and privileged access."
"The overall user experience with Microsoft Purview Audit is of higher quality than when it was branded as Compliance Center, and Microsoft consistently updates and evolves functionalities and the overall experience."
"The platform has significantly enhanced our operational insight into the overall Microsoft 365 environment."
 

Cons

"The product's high price is an area of concern where improvements are required."
"It will be better if behavior or indicators of compromise were on the same licensing schema. Currently, it is an advanced feature that you have to purchase as an add-on. This is the reason we're trying to do the ELK so that we can integrate them and create those rules by using open-source software. It will also be better if it has some more integration with IT service management tools so that we can do endpoint protection and response based on those indicators of compromise or those behavior analysis rules that create events that can automatically flow. We can inject that data into a service incident ticket on our IT service management tool, and that way we can assign the ticket to the proper teams and respond right away. Currently, we only have integration with ServiceNow."
"The solution is expensive."
"When it comes to pushing logs to a SIEM, most of the time we have some issues when it comes to filtering."
"The integration between specific tenants and FortiAnalyzer can be simplified when utilizing a multi-tenant EMS for our FortiClient."
"The setup of the solution can be improved because it is currently complex."
"When using this solution, you need a high-level expert to make it work as it should."
"We'd like to see more embedded features."
"We are still in the early stages of leveraging Microsoft Purview Audit. Currently, it's primarily used for the audit function."
"I had a case where I spent three or four hours working deeply with a customer to explain how to work with eDiscovery, why Content Search is not there when it was before, what is an eDiscovery case, and why we are talking about all of this just to review a list of kept emails."
"We do have a Denial of Access happening."
"Areas for product improvement include enhancing customization options and integrating more comprehensive compliance features."
 

Pricing and Cost Advice

"Fortinet FortiAnalyzer is very expensive."
"​It depends upon the company.​"
"I rate Fortinet FortiAnalyzer's pricing as five out of ten."
"When you compare with other firewall vendors, FortiAnalyzer is quite competitive in pricing."
"The hardware cost and services contract are fair."
"We pay approximately $11,000 for a three-year license to use Fortinet FortiAnalyzer. When we compared the price of this solution to others it is not expensive. Palo Alto is a more expensive solution."
"The enterprise version of this solution is costly. We have considered FortiAuthenticator for network control, but the pricing was focused on the larger companies and didn't suit our needs as a smaller business."
"The company's choice to utilize Fortinet FortiAnalyzer was based on the overall security strategy and compatibility with existing solutions. It was deemed the best fit as it provided a centralized point of visibility for all of their security solution, including Fortinet FortiGate firewall, FortiClient, Forti EMS, and FortiAP. The company conducted a thorough evaluation of various solutions in the market but found that none of them could fully integrate and manage all their solutions as effectively as Fortinet FortiAnalyzer."
Information not available
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
881,757 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Manufacturing Company
9%
Comms Service Provider
7%
Financial Services Firm
6%
Financial Services Firm
16%
Computer Software Company
11%
Manufacturing Company
6%
Construction Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business58
Midsize Enterprise20
Large Enterprise31
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Fortinet FortiAnalyzer?
The pricing of Fortinet FortiAnalyzer is okay. For smaller companies, the pricing is acceptable.
What needs improvement with Fortinet FortiAnalyzer?
I don't know what the main room for improvement is for Fortinet FortiAnalyzer, but perhaps I don't have much experience, so I cannot answer this question comprehensively.
What is your primary use case for Fortinet FortiAnalyzer?
I am using Fortinet and Red Hat myself as a consultant. I am dealing with Fortinet products and can provide information about them. I am working with Fortinet products, including firewalls and othe...
What needs improvement with Microsoft Purview Audit?
We are still in the early stages of leveraging Microsoft Purview Audit. Currently, it's primarily used for the audit function. In a year's time, we will be able to provide more clarity and context ...
What is your primary use case for Microsoft Purview Audit?
Microsoft Purview Audit functions as a compliance center. Whenever these systems generate logs, we use Microsoft Purview Audit to capture or retrieve those logs. While there are more tools availabl...
 

Overview

 

Sample Customers

General Directorate of Information Technology
Information Not Available
Find out what your peers are saying about Fortinet FortiAnalyzer vs. Microsoft Purview Audit and other solutions. Updated: February 2026.
881,757 professionals have used our research since 2012.