No more typing reviews! Try our Samantha, our new voice AI agent.

NetWitness Platform vs Palo Alto Networks WildFire comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

NetWitness Platform
Average Rating
7.4
Reviews Sentiment
7.4
Number of Reviews
36
Ranking in other categories
Log Management (36th), Security Information and Event Management (SIEM) (34th)
Palo Alto Networks WildFire
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
72
Ranking in other categories
Advanced Threat Protection (ATP) (1st)
 

Mindshare comparison

NetWitness Platform and Palo Alto Networks WildFire aren’t in the same category and serve different purposes. NetWitness Platform is designed for Log Management and holds a mindshare of 1.1%, up 0.4% compared to last year.
Palo Alto Networks WildFire, on the other hand, focuses on Advanced Threat Protection (ATP), holds 6.7% mindshare, down 10.5% since last year.
Log Management Mindshare Distribution
ProductMindshare (%)
NetWitness Platform1.1%
Splunk Enterprise Security6.8%
IBM Security QRadar4.5%
Other87.6%
Log Management
Advanced Threat Protection (ATP) Mindshare Distribution
ProductMindshare (%)
Palo Alto Networks WildFire6.7%
Microsoft Defender for Office 3656.1%
Microsoft Defender for Endpoint5.6%
Other81.6%
Advanced Threat Protection (ATP)
 

Featured Reviews

reviewer2256927 - PeerSpot reviewer
Head of Information Security, Cyber Defense and IT Risk Management at HCT. at a transportation company with 201-500 employees
A solid SIEM solution that should improve technical support and online resources to be easier to use
A big problem with the product is that we don't have much professional experience in Israel installing, implementing, and integrating this product. There is not enough of a knowledge base. There is no support for this product in this country, so problems have to be resolved through global technical teams. We like to work locally because of the language, and when the product is only supported outside the country, it's a little difficult to implement and use this product. Moreover, AI is something that must be added immediately. Artificial intelligence is a part of the competitors' products, and it's not been implemented for us.
reviewer2695164 - PeerSpot reviewer
IT Security Specialist at a tech services company with 11-50 employees
Advanced threat detection has protected critical document workflows and checks suspicious files
I would say the setup and putting together the hierarchy within the devices was not straightforward. There were many reboots and reconfigurations while the optimal setup was established. However, we were happy with the device. The setup process could be easier to establish the cluster. It should be easier to establish the Palo Alto Networks WildFire cluster between the devices. We had some difficulty with it, but it was not catastrophic. The operation and usability itself is what I was happy with.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"This solution has a very good dashboard with a separate tab for incidents and alerts."
"Overall, I feel that the product is very good and my biggest complaint is about their support."
"Overall, this is a good solution with suitable features and it very well fits our needs."
"RSA NetWitness is a SIEM and real-time network traffic solution that collects logs and packets, applies a set of alerting, reporting, and analysis rules on them, and thus provides the enterprise with full visibility of the networks and activities of the systems."
"The most valuable features are the packet inspection and the automated incident response."
"Alerting Module: It provides real-time event processing language on all the logs/packets stream for advanced alerting, i.e., using SQL LIKE statements."
"The most valuable feature is that we can create our own connectors for any application, and NetWitness provides the training and tools to do it."
"The most valuable feature is the ability to write rules and triggers for network communication and then being able to investigate based on that, where you can see the payload and deconstruct the packets."
"It has powerful threat prevention capability with very few false positives."
"​Installing this product as a datacenter firewall for segregation and segmentation, and also configuring policies between zones has improved my organization."
"Stability is never a concern."
"For example, if a security Intel threat talks about an IOC. We can then go to our MSP and say, "Is there a signature for this particular type of malware that just came out?" And if they'll say yes, then we'll say, "Okay. Does it apply to these firewalls? And have we seen any hits on it?" There's absolutely value in it."
"It is stable and pretty much scalable."
"It has one of the best WebUIs that I have used, because at a glance it looks simple, but offers us a lot of options to secure all the traffic that is passing through the device (or all traffic that the user decides to pass through)."
"If you're running Palo Alto firewalls there is no reason not to use it at the free level."
"The solution handles DSD segregation and monitors the gateways"
 

Cons

"More customizability is required, which is something that they need to improve on."
"Lots of competing products have vulnerability protection built into their products, and this solution would be improved by including that support."
"The user interface is a little bit difficult for new users and it needs to be improved."
"Health monitoring of the event sources and devices."
"The system architecture is complex and sometimes it’s hard to troubleshoot potential problems."
"It is not so easy to customize this product."
"Cross Platform Integration could be improved."
"There is no support for this product in this country, so problems have to be resolved through global technical teams."
"The product fails to offer protection when dealing with high-severity vulnerabilities, making it an area of concern where improvements are required."
"The data analytical system for deployment needs to improve."
"Perhaps an anti-spam feature could be considered."
"The threat intelligence that we receiving in the reporting was not as expected. We were expecting more. Additionally, we should be able to whitelist a specific file based on a variety of attributes."
"The cost of this solution could still be improved, in particular, giving product discounts for charitable causes."
"It's not really their problem, it's a problem across the board. There will always be problems with interrupted traffic. We have to set it up where we're playing a middle man game where we're stripping it out, looking at it, and then putting it back together and sending it on its way. That requires CPU cycles. And there's some overhead with that."
"In terms of what I'd like to see in the next release of Palo Alto Networks WildFire, each release is based on malware that has been identified. The key problem is an average of six months from the time malware is written to the time it's discovered and a signature is created for it. The only advice that I can give is for them to shorten that timeframe. I don't know how they would do it, but if they shorten that, for example, cut it in half, they'll make themselves more famous."
"I would like to see them continue on their developmental roadmap for the product."
 

Pricing and Cost Advice

"The product is expensive."
"The new pricing and licensing mechanisms are fair. I would advise always to get the full solution (i.e., not only Logs)."
"This is a pricey solution; it's not cheap."
"The licenses are good but the cost is very expensive."
"The tool is very expensive, so I rate the pricing a ten out of ten. The solution has an annual subscription."
"It is cheap."
"We have a perpetual license, so the total cost of ownership is not very expensive. It's a good investment."
"Many clients are not able to purchase the packet capability because there is a huge amount of data, and the cost depends on the number of EPS (Events per second), as well as the number of gigabytes of data per day."
"Palo Alto Networks WildFire is a product with a high price."
"This is an expensive product and the market for Palo Alto in Poland could be much bigger if the pricing was comparable to Fortinet."
"It's comparable to what the competition is. It is probably a little lesser than what the competition is because, as a state government, we go for whatever the lowest cost is."
"Palo Alto Networks WildFire is an expensive product."
"WildFire is a little bit pricey. Sometimes it's difficult to sell it to customers at the current price."
"The price is fair and comparable to other solutions."
"The physical appliance is around €3,000 or €4,000, and then, you have the licensing for a year for around €3,000."
"There are different types of licenses."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Construction Company
13%
Financial Services Firm
11%
Comms Service Provider
11%
Outsourcing Company
10%
Manufacturing Company
10%
Outsourcing Company
9%
Comms Service Provider
9%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise7
Large Enterprise20
By reviewers
Company SizeCount
Small Business38
Midsize Enterprise15
Large Enterprise29
 

Questions from the Community

What is your experience regarding pricing and costs for NetWitness Platform?
The pricing is comparable to others, and I consider the cost to be intermediate. Specific cost details are unknown to me.
What needs improvement with NetWitness Platform?
There is currently no need for improvement in the SIEM ( /categories/security-information-and-event-management-siem ), though there could be potential enhancements by integrating with AI.
What is your primary use case for NetWitness Platform?
I use NetWitness Platform ( /products/netwitness-platform-reviews ) in the financial industry as a good product with excellent capabilities and integration with various devices.
How does Cisco Firepower NGFW Firewall compare with Palo Alto Networks Wildfire?
The Cisco Firepower NGFW Firewall is a very powerful and very complex piece of anti-viral software. When one considers that fact, it is all the more impressive that the setup is a fairly straightf...
Which is better - Wildfire or FortiGate?
FortiGate has a lot going for it and I consider it to be the best, most user-friendly firewall out there. What I like the most about it is that it has an attractive web dashboard with very easy nav...
How does Cisco ASA Firewall compare with Palo Alto's WildFire?
When looking to change our ASA Firewall, we looked into Palo Alto’s WildFire. It works especially in preventing advanced malware and zero-day exploits with real-time intelligence. The sandbox featu...
 

Also Known As

RSA Security Analytics
No data available
 

Overview

 

Sample Customers

Los Angeles World Airports, Reply
Novamedia, Nexon Asia Pacific, Lenovo, Samsonite, IOOF, Sinogrid, SanDisk Corporation
Find out what your peers are saying about Splunk, Wazuh, Datadog and others in Log Management. Updated: September 2026.
913,683 professionals have used our research since 2012.