USM Anywhere and Fortinet FortiSIEM are both popular solutions in the SIEM market. Based on user reviews, Fortinet FortiSIEM seems to have the upper hand due to its robust features that justify its higher cost.
Features: USM Anywhere users value the product's threat detection, compliance capabilities, and ease of use. Fortinet FortiSIEM stands out with its scalability, advanced analytics, and comprehensive monitoring tools.
Room for Improvement: USM Anywhere could benefit from better performance, more frequent updates, and improved reporting. Fortinet FortiSIEM users desire an enhanced alerting system, more intuitive navigation, and simplified administration.
Ease of Deployment and Customer Service: USM Anywhere is praised for its straightforward deployment process and responsive customer service. Fortinet FortiSIEM, while more complex to deploy, provides excellent customer support to ease the process.
Pricing and ROI: USM Anywhere is seen as more cost-effective with a quicker ROI. Fortinet FortiSIEM, despite higher initial setup costs, delivers significant long-term value through its extensive feature set.
Customers see ROI as they save on staff and other resources.
There is a knowledgeable, though small, team of support engineers around the world.
Local tech support is available, however, for more critical or technical issues, we depend on the OEM directly, especially when it comes to on-prem solutions.
They take some time to respond because they need logs and investigations, which delays the response time.
Fortinet FortiSIEM is highly scalable.
At any point in time, when network devices increase or there is a change in the infrastructure, we can add more workers and collectors to expand our infrastructure setup.
Fortinet FortiSIEM is easy to scale.
USM Anywhere faces scalability issues because of a 60 TB limit.
It stabilizes itself in an appropriate time, so its uptime is good.
Some stability issues occur, but Fortinet's technical support team provides assistance.
These issues may cause unusual errors and user interface issues.
Fortinet FortiSIEM should broaden its remediation part to include more features for incident management.
Enhancing the completeness of its APIs could aid in better external integrations.
Recently, they revised it to a subscription-based, all-inclusive license.
There are scalability issues due to a 60 TB limit, which restricts its use for large customers like banks.
Windows agent licenses cost around 3,000 Rupees per device per year.
Setting it up for oneself as an enterprise-licensed product can be quite expensive.
The revised model is subscription-based and more flexible.
The pricing is amazing and really cheap.
It provides extensive logging and record-keeping for internal networks, cloud applications, and services as well as perimeter physical network security.
I find the real-time monitoring and correlation capabilities effective for security alerts.
The 365-day block query is a major feature.
FortiSIEM (formerly AccelOps 4) provides an actionable security intelligence platform to monitor security, performance and compliance through a single pane of glass.
Companies around the world use FortiSIEM for the following use cases:
USM Anywhere centralizes security monitoring of networks and devices in the cloud, on premises, and in remote locations, helping you to detect threats virtually anywhere.
Discover
Analyze
Detect
Respond
Assess
Report
We monitor all Security Information and Event Management (SIEM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.