Try our new research platform with insights from 80,000+ expert users

Fortinet FortiEDR vs NetWitness NDR comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
2.8
Fortinet FortiEDR boosts ROI by reducing risk management, saving time, improving security, and increasing customer satisfaction and staffing efficiency.
Sentiment score
8.0
Implementing NetWitness NDR enhances security, improves network visibility, reduces costs, and boosts efficiency and productivity for businesses.
 

Customer Service

Sentiment score
7.3
Fortinet FortiEDR's customer service is mixed, with varied responsiveness; engaging local distributors and resellers can aid support experience.
Sentiment score
7.3
NetWitness NDR's customer service is generally efficient and highly regarded, though some users report occasional slow response times.
The technical support from Fortinet is excellent.
Web Relationship Manager (WRM) at Bharat Sanchar Nigam Limited
I believe the support from Fortinet is very good based on my experiences asking for help.
Pre Sales/ Cybersecurity Engineer at Contacta
For setting up some proper solutions for issues at the customer site, it can take about one week.
Security Team Lead at a outsourcing company with 1,001-5,000 employees
 

Scalability Issues

Sentiment score
5.6
Fortinet FortiEDR is scalable and adaptable but may face integration issues and high costs for additional services.
Sentiment score
7.0
NetWitness NDR is scalable for large enterprises, though some users report issues with scalability and agent migration.
When implemented in a Fortinet environment with an existing firewall, FortiAnalyzer, and FortiManager, it is straightforward to install and scale by adding more EDR for endpoints.
Security Team Lead at a outsourcing company with 1,001-5,000 employees
I can give it nine points in terms of scalability.
Web Relationship Manager (WRM) at Bharat Sanchar Nigam Limited
 

Stability Issues

Sentiment score
8.4
Fortinet FortiEDR is reliable with some memory and integration issues; praised for seamless updates but needs ecosystem improvements.
Sentiment score
7.7
NetWitness NDR is generally reliable, providing real-time data and stability, though minor technical issues are occasionally reported.
After that, I stopped scanning the Cisco AnyConnect and switched to Fortinet VPN. Everything worked fine afterward.
Security Team Lead at a outsourcing company with 1,001-5,000 employees
For stability, I would give it a score of ten, as we are not having any issues with that currently.
Web Relationship Manager (WRM) at Bharat Sanchar Nigam Limited
 

Room For Improvement

Fortinet FortiEDR needs improvements in cloud security, usability, integration, machine learning capabilities, and enhanced scalability to better meet user expectations.
NetWitness NDR requires improvements in UI, scalability, detectability, integration, session times, pricing, training, and features, making it complex and slow.
Fortinet could consider reducing the minimum order quantity for EDR, currently set at 500 pieces.
Security Team Lead at a outsourcing company with 1,001-5,000 employees
 

Setup Cost

Fortinet FortiEDR's pricing is mixed, seen as competitive by some, expensive by others, offering long-term value and scalability.
It's reasonably priced compared to other vendors' similar products.
Security Team Lead at a outsourcing company with 1,001-5,000 employees
The pricing is moderate; I cannot label it as cheap, but it is moderate compared to other main solutions.
Web Relationship Manager (WRM) at Bharat Sanchar Nigam Limited
 

Valuable Features

Fortinet FortiEDR excels in deployment, integration, threat response automation, and scalability, with strong security measures and user-friendly management.
NetWitness NDR offers high detection rates, real-time malware response, third-party integration, and a user-friendly, interoperable interface with advanced analytics.
The agent provides on-client web and video filtering that offers phishing and botnet protection, along with granular application threat control, including web-based applications, YouTube, and software as a service.
Pre Sales/ Cybersecurity Engineer at Contacta
We also require a proactive protection mechanism, including an alarm system for threat detection before attacks occur.
Web Relationship Manager (WRM) at Bharat Sanchar Nigam Limited
 

Categories and Ranking

Fortinet FortiEDR
Ranking in Endpoint Detection and Response (EDR)
11th
Average Rating
8.0
Reviews Sentiment
6.2
Number of Reviews
40
Ranking in other categories
No ranking in other categories
NetWitness NDR
Ranking in Endpoint Detection and Response (EDR)
57th
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
15
Ranking in other categories
Endpoint Protection Platform (EPP) (55th), Threat Intelligence Platforms (TIP) (40th), Security Orchestration Automation and Response (SOAR) (25th), Network Detection and Response (NDR) (19th), Extended Detection and Response (XDR) (38th)
 

Mindshare comparison

As of January 2026, in the Endpoint Detection and Response (EDR) category, the mindshare of Fortinet FortiEDR is 3.2%, down from 4.1% compared to the previous year. The mindshare of NetWitness NDR is 0.7%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR) Market Share Distribution
ProductMarket Share (%)
Fortinet FortiEDR3.2%
NetWitness NDR0.7%
Other96.1%
Endpoint Detection and Response (EDR)
 

Featured Reviews

Anoop K Jayan - PeerSpot reviewer
Web Relationship Manager (WRM) at Bharat Sanchar Nigam Limited
Has strengthened endpoint protection for on-premise networks and supported migration to Linux environments
What really stands out in Fortinet FortiEDR is that we are integrating it with some private clouds at the customer's premises with secure SD-WAN networks. I don't know how much it contributes to this SD-WAN network in the own premises cloud solution, but that is what we are doing. This is especially relevant for government projects where the SD-WAN solution is within their private network, not touching the Internet or any other access. Their first requirement is centralized management. Additionally, they need antivirus updates and other things to be done through a centralized platform within that private cloud. That is their requirement, and currently, we temporarily allow internet access, but it is not preferred. We are moving towards a complete air gap, providing full isolation from the internet for that. We have started to work with machine learning capabilities in Fortinet FortiEDR. We are not that well-versed yet, but we have begun using machine learning for intrusion detection and other purposes. Regarding forensic analysis in Fortinet FortiEDR, it is useful in understanding attack vectors because our projects are based on the voice side, such as cloud PBX solutions and call center management. There are media activities and many attacks coming from the outside, as well as vulnerabilities from endpoints. In those cases, we need detailed analysis through an AI platform to inspect how these attacks are coming. We also require a proactive protection mechanism, including an alarm system for threat detection before attacks occur.
reviewer1799727 - PeerSpot reviewer
Manager, IT Security Operations at a non-profit with 11-50 employees
Reliable and good support but can be expensive
I have no real complaints about the solution. Threat detection could be better. They need to enhance their threat intelligence feeds. We would like to have more IOCs or more trade intelligence to not only rely on the intelligence of the engineer in charge but to have some threat intelligence and some seeds of IOCs and to have the host have some artificial intelligence to reduce the number of false positives. I don't see this solution being very scalable. The solution is pricey.
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Manufacturing Company
8%
Government
8%
Financial Services Firm
7%
Financial Services Firm
10%
Computer Software Company
10%
Manufacturing Company
9%
Performing Arts
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise9
Large Enterprise14
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise5
 

Questions from the Community

What's the difference between Fortinet's FortiEDR and FortiClient?
I suggest Fortinet’s FortiEDR over FortiClient for several reasons. For starters, FortiEDR guarantees solid protection because it continually scans servers for emerging vulnerabilities, which gives...
What do you like most about Fortinet FortiEDR?
We have FortiEDR installed on all our systems. This protects them from any threats.
What is your experience regarding pricing and costs for Fortinet FortiEDR?
The pricing is moderate; I cannot label it as cheap, but it is moderate compared to other main solutions.
Ask a question
Earn 20 points
 

Also Known As

enSilo, FortiEDR
RSA ECAT, NetWitness Network
 

Overview

 

Sample Customers

Financial, Healthcare, Legal, Technology, Enterprise, Manufacturing ... 
ADP, Ameritas, Partners Healthcare
Find out what your peers are saying about Fortinet FortiEDR vs. NetWitness NDR and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.