Try our new research platform with insights from 80,000+ expert users

Fortinet FortiAnalyzer vs NetWitness Platform comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiAnalyzer
Ranking in Log Management
11th
Average Rating
8.2
Reviews Sentiment
7.3
Number of Reviews
108
Ranking in other categories
No ranking in other categories
NetWitness Platform
Ranking in Log Management
34th
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Security Information and Event Management (SIEM) (33rd)
 

Mindshare comparison

As of March 2026, in the Log Management category, the mindshare of Fortinet FortiAnalyzer is 1.6%, down from 2.1% compared to the previous year. The mindshare of NetWitness Platform is 0.8%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Fortinet FortiAnalyzer1.6%
NetWitness Platform0.8%
Other97.6%
Log Management
 

Featured Reviews

Manikandan Kannan - PeerSpot reviewer
Head of Technology at Techfruits
Simplifying log management by displaying detailed access information
The most valuable feature of Fortinet FortiAnalyzer is its ability to simplify and display logs clearly, providing details like which IPs are accessing the system, the destination, and the policies applied. This visualization and detail make managing logs more straightforward. In conjunction with our VMware setup, Fortinet FortiAnalyzer enhances organizational efficiency, meeting the standard log retention period for up to a year.
MOTASHIM Al Razi - PeerSpot reviewer
CISO at One Bank Limited
It is a stable solution, but they should make the user interface easier to understand
The solution's initial setup takes work. We have to organize multiple paths and many features. The deployment process takes less than a week. But it takes a month to complete if we want to make the solution smarter by integrating it with various devices. I rate the process as a six out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The interface is simple and easy to navigate."
"Its robust security and performance are the two main features. We also use the log reporting feature."
"FortiAnalyzer's reporting features like graphs, threat intelligence, and vulnerabilities analysis are helpful. Fortinet knows how to do reporting. You can customize your reports to show exactly what you want to analyze. It's user-friendly and doesn't require a lot of effort."
"I completely recommend Fortinet FortiAnalyzer to others."
"The most valuable feature of the solution is reporting."
"It has detailed reporting, e.g., user-wise reporting, threat analysis, etc. It also gives you live logs, which can be really helpful during troubleshooting."
"With Fortinet FortiAnalyzer, it is easy to get reports and read specific logs."
"If we're talking about the integration side, like how to integrate FortiGate in FortiAnalyzer, I don't think it's complex."
"Setting up NetWitness is straightforward. There are multiple connectors, including standard and specialized connectors. One purpose of the connectors is the enhanced capability integrate the custom applications. NetWitness comes with E6 appliances and application images that we use for the initial configurations and for the OS stack information. From there, you can consider the correlation rules, integrate the different log sources, and easily create correlation rules and backlog reports."
"Overall, this is a good solution with suitable features and it very well fits our needs."
"Their customer service is excellent, one of the best."
"The most valuable features are its ingestion of logs and raising of alerts based on those logs."
"In my opinion, the solution's most valuable feature is its capacity to monitor network traffic, logs from devices within the network, and network captures. This capability extends beyond logs to include full network capturing."
"Integration is exceedingly minimal, since its project development is much easier than that of LogRythm or IBM."
"RSA NetWitness is a SIEM and real-time network traffic solution that collects logs and packets, applies a set of alerting, reporting, and analysis rules on them, and thus provides the enterprise with full visibility of the networks and activities of the systems."
"The most valuable features are its ingestion of logs and raising of alerts based on those logs."
 

Cons

"The upgradation process is slow"
"It is a little complex in terms of scalability and mostly because we're using a kind of high-end systems."
"I would like to see an improvement in the technical support. Stronger authentication will also be a plus."
"The only issue that I can see is with the cost. For example, if you buy support for one year, you are messed up next year. It's better to buy another gateway."
"The solution lacks business intelligence features. It's much too basic."
"FortiAnalyzer is a good product; but, I keep thinking that FortiAnalyzer isn't really what I'm looking for which is why I am looking to acquire a SIEM solution."
"The user interface could be a bit more user-friendly, and they could have more robust support."
"I think technical support should be better. Sometimes support from Fortinet does not help with creating policies or configuration issues and directly routes to the service integrator."
"An area for improvement would be better automation and more inbuilt use cases."
"But the 11.3 version is a complete disaster. You cannot analyze anything."
"Nowadays, their support is a little subpar compared to other solutions. I rate RSA support six out of 10."
"The initial setup is very complex and should be simplified."
"The multi-tenant capabilities are lagging compared to IBM QRadar."
"The tool's integration capability isn't so great."
"The solution is pretty complex to set up. Comparatively, I have worked on IBM QRadar and Splunk; they are much easier to set up."
"More customizability is required, which is something that they need to improve on."
 

Pricing and Cost Advice

"It is not very expensive when customers understand the value of this product and the importance of the information that it provides for security."
"I believe that these devices were procured with a five-year maintenance and support license up front. I work at a university, so the vendor provides a considerable higher ed discount."
"t varies depending on your needs. However, after-sales support is expensive."
"The price of Fortinet FortiAnalyzer is expensive."
"The cost of the license is high."
"The pricing of this solution is fair, and it is based on what you can manage."
"FortiAnalyzer was in the product itself, but two years ago they split it from Fortinet. We paid the license two years ago."
"Its worth spending on FortiAnalyzer if you have multiple firewalls in your network."
"It is cheap."
"It provides tools to assist in selecting the appropriate license and usage scenarios."
"The licenses are good but the cost is very expensive."
"The product is expensive."
"The product price was reasonable for my region and the market."
"We have yearly licensing costs. The license fee can be based on the volume of EPS. Some organizations may have, as a gentlemanly gesture, 10,000 EPS and get a 3,000 EPS license but actually use 5,000 EPS."
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"Compared to the competition, the is price is not that high."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
884,976 professionals have used our research since 2012.
 

Comparison Review

VS
Manager, Enterprise Risk Consulting at a tech company with 1,001-5,000 employees
Feb 26, 2015
HP ArcSight vs. IBM QRadar vs. ​McAfee Nitro vs. Splunk vs. RSA Security vs. LogRhythm
We at Infosecnirvana.com have done several posts on SIEM. After the Dummies Guide on SIEM, we are following it up with a SIEM Product Comparison – 101 deck. So, here it is for your viewing pleasure. Let me know what you think by posting your comments below. The key products compared here are…
 

Top Industries

By visitors reading reviews
Manufacturing Company
9%
Computer Software Company
9%
Comms Service Provider
7%
Government
6%
Financial Services Firm
11%
Performing Arts
8%
Computer Software Company
7%
Marketing Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business57
Midsize Enterprise22
Large Enterprise31
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
 

Questions from the Community

What needs improvement with Fortinet FortiAnalyzer?
I think technical support should be better. Sometimes support from Fortinet does not help with creating policies or configuration issues and directly routes to the service integrator. A little more...
What is your primary use case for Fortinet FortiAnalyzer?
I am using Fortinet FortiAnalyzer along with the analyzer for traffic monitoring and event checking. It is effective for analyzing traffic purposes.I use Fortinet FortiAnalyzer for event monitoring...
What do you like most about NetWitness Platform?
The product's initial setup phase was not at all difficult.
What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
 

Also Known As

No data available
RSA Security Analytics
 

Overview

 

Sample Customers

General Directorate of Information Technology
Los Angeles World Airports, Reply
Find out what your peers are saying about Fortinet FortiAnalyzer vs. NetWitness Platform and other solutions. Updated: March 2026.
884,976 professionals have used our research since 2012.