- The ability to look for shadow-based rules
- The ability to look for rules that are being used
- Change management
- Gets alerts from the system
Network Support Systems Manager at a retailer with 1,001-5,000 employees
The most valuable features are change management and getting alerts from the system. The web interface requires a learning curve.
Pros and Cons
- "This tool allowed us to go through and identify rules that we could get rid of, allowing our rule sets to be a lot smaller than we originally had intended them to be and helping with our ongoing maintenance of our firewalls."
- "We don't quite like the web interface. We enjoy the so-called Fact Client a lot better because it just gives a bit more of the opportunities to work with the software faster."
What is most valuable?
How has it helped my organization?
- The ability for spotting the shadow-based rules helps us to eliminate overlapping rules. These may not otherwise be needed or may be under-used.
- Helps us to identify those items and gives us the ability to go back and audit the firewalls.
- It gives us the ability to determine what our security architecture looks like: This helps us secure our company better. This helps us to determine who is making the changes and we then have that historical information to give back to our auditors and say, "Okay, these are the changes that we've made and these are the corresponding service tickets that apply to them."
- We were in the middle of a project where we were migrating from one set of firewalls, that were old, to a newer set. This tool allowed us to go through and identify rules that we could get rid of. It allowed our rule sets to be a lot smaller than we originally had intended them to be. This helps us with our ongoing maintenance of our firewalls. It helps us to understand what's being used and what's not.
- It helps us to research what rules are already in place, so that way we don't have to add anything. It is a quick look up for us. Instead of having to go through maybe 10 different firewalls, we can easily trace through our network and say, "Okay, it has to touch each one of these firewalls and these are the rules and this is maybe where it's blocked." This is a feature that we like to use and it helps us save time.
What needs improvement?
So far, we're not too much into the product.
- We don't quite like the web interface.
- We enjoy the so-called Fact Client a lot better because it just gives a bit more of the opportunities to work with the software faster. There's been a huge learning curve for us to use the web interface.
- We have to learn their query language or define the details that we need.
- Unfortunately, we are such a fast-paced environment that we don't have a lot of time to spend with the software to really learn it the way that it probably should be learned. We have to kind of go back and reinvent it every single time we have to go look for something in particular. That's the only downside I can mention that we're having with the GUI.
For how long have I used the solution?
It's going on for at least three years now, if not more.
Buyer's Guide
FireMon Security Manager
May 2026
Learn what your peers think about FireMon Security Manager. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,438 professionals have used our research since 2012.
What do I think about the stability of the solution?
There were a few, initial issues with stability. Luckily, FireMon has a supportive staff.
They have been able to identify the issues that we've been having. In turn, they implement some kind of compensating mechanism or come up with a solution in order to fix it. This helps us resolve our issues. Overall, we've been pretty happy with the support team.
What do I think about the scalability of the solution?
We have not had any scalability issues. I've been very impressed with that aspect. At one point, we had a single server and we overloaded it pretty quickly with the amount of logs that we sent to it. The firewalls generate a ton of traffic as far as Syslog goes.
I had to out-size our environment in order to compensate for the additional logs. I had to deploy to a couple of different other sites, that initially we didn't imagine having a need for. However, it scaled up great and we've had no issues with it since then.
How are customer service and support?
Overall, I would give the technical support team a rating of 10/10. There have been maybe a few issues here and there. Unfortunately, it has taken some time for them to resolve them.
If the issues are not resolved, it goes back to them. They keep the case by asking for updates and working with me and the team to understand what issues we're having. They try to help us resolve those issues, either through training or going back to the development team and asking for a feature.
Which solution did I use previously and why did I switch?
We didn't use any other solution. This was definitely one of the best of its breed that we researched. Eventually, we selected this tool.
How was the initial setup?
The initial setup was pretty straightforward. It was just a matter of pointing the logs to the device and setting up a few basic things. It could then go out and fetch the configurations/settings. It was relatively easy.
Which other solutions did I evaluate?
I believe the other option that we looked at was Infoblox. However, Infoblox was just too cumbersome and didn't offer a lot of features. We felt that FireMon had built-in features that were out-of-the-box.
What other advice do I have?
You should definitely look into how many Syslogs you're getting. There is a limitation on how many Syslog messages it can handle per second.
We felt in a more distributed environment, it allowed us to support our network more adequately. Even in the main data centers, we usually had three or more collectors in order to deal with the amount of Syslogs we're sending.
We also had to include a few different offices that required their own implementation of data collectors.
This company does a pretty solid job and they're constantly striving to improve their products.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Sr. Systems and Network Engineer at a recruiting/HR firm with 1,001-5,000 employees
The most valuable feature is more or less the ability to look for the shadowed-based rules or rules that are being used.
Pros and Cons
- "On the whole, it gives us the ability to determine what our security architecture looks like, so as to help secure our company better."
- "However, we're not really liking the web interface."
What is most valuable?
The most valuable feature is more or less the ability to look for the shadowed-based rules or rules that are being used, and also for change management, i.e., getting alerts from the system. This helps us to determine who is making the changes and have that historical information to give back to our auditors and say, "Okay, these are the changes that we've made and these are the corresponding service tickets that apply to them."
The ability for spotting the shadowed-based rules helps us to eliminate overlapping rules that may not be otherwise needed or maybe under-used. It helps us to identify that stuff and gives us the ability to go back and audit the firewalls.
On the whole, it gives us the ability to determine what our security architecture looks like, so as to help secure our company better.
How has it helped my organization?
It's kind of a two-fold type thing for us. We were in the middle of a project, where we were migrating from one set of firewalls that were old to a newer set. So, this tool has allowed us to go through and identify rules that we could get rid off and allowed our rule sets to be a lot smaller than we originally had intended them to be. This helps us with our ongoing maintenance of our firewalls, so as to understand what's being used and what's not.
It helps us to just do a research into what rules are already in place, so that way we don't have to add anything and it is a quick lookup for us. Instead of having to go through maybe 10 different firewalls, we can easily trace through our network and say, "Okay, it has to touch each one of these firewalls and these are the rules and this is maybe where it's blocked at." This is a feature that we like to use and it helps us save time.
What needs improvement?
So far, we're not too much into the product yet. However, we're not really liking the web interface. We enjoy the so-called fat client a lot better because it just gives a bit more of the opportunities to work with the software faster, whereas there's been a huge learning curve for us to use the web interface. Then, we also have to learn their query language or define the details that we need.
Unfortunately, we are such a fast-paced environment that we don't have a lot of time to spend with the software to really learn it the way it probably should be learned. We have to kind of go back and reinvent it every single time we have to go look for something in particular. That's the only downside I can mention that we're having with the GUI.
For how long have I used the solution?
It's going on for at least three years now, if not more.
What do I think about the stability of the solution?
There were a few issues with stability initially, but luckily FireMon is very supportive in terms of their support staff. They have been able to identify the issues that we've been having, and in turn implement some kind of compensating mechanism or come up with a solution in order to fix it, so as to help us resolve our issues. Overall, we've been pretty happy with the support team.
What do I think about the scalability of the solution?
We have not had any scalability issues and I've been very impressed in that aspect. At one point, we had a single server and we overloaded it pretty quickly, with the amount of logs that we sent to it. The firewalls generate a ton of traffic as far as syslog goes. So, I had to out-size our environment to compensate for the additional logs and had to deploy to a couple of other different sites, that initially we didn't imagine having a need for. However, it scaled up great and we've had no issues with it since then.
How are customer service and technical support?
Overall, I would give the technical support team a 10/10. There have been maybe a few issues, here and there. Unfortunately, it has taken some time for them to resolve and it goes back to them, i.e., asking for updates, and working with myself and the team to understand what issues we're having. They try to help us resolve issues either through training or going back to the development team and asking for a feature.
Which solution did I use previously and why did I switch?
We didn't previously use any other solution. This was definitely one of the best of its breed that we researched. Eventually, this tool is what we selected to go with.
How was the initial setup?
The setup was pretty straightforward. It was just a matter of pointing the logs to the device and setting up a few basic things, so that it could go out and fetch the configurations/settings. Thus, it was relatively easy.
Which other solutions did I evaluate?
I believe the other option that we looked at was Infoblox and maybe one other tool. However, Infoblox was just too cumbersome and didn't offer a lot of features. In comparison, we felt that FireMon had those out-of-the-box features built-in.
What other advice do I have?
Definitely, you should look into how many syslogs you're getting because there is a limitation on how many syslog messages it can handle per second. We felt in a more distributed environment, it allowed us to support our network more adequately. So even with our main data centers, we had to usually have three or more collectors in order to deal with the amount of syslogs we're sending. We also had to include a few different offices needing their own implementation of data collectors.
This company does a pretty solid job and they're always constantly wanting to improve their products.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Buyer's Guide
FireMon Security Manager
May 2026
Learn what your peers think about FireMon Security Manager. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,438 professionals have used our research since 2012.
Sr Network Security Specialist at a government with 1,001-5,000 employees
The most valuable features are the reporting for change control as well as rule utilization.
Pros and Cons
- "FireMon has provided us with a better view into our environment."
- "When we transferred from one release to the next, the most recent upgrade, the integration with Check Point gateways was very poor and so it was for almost a year that the product was unusable to us."
What is most valuable?
The most valuable features are the FireMon reporting for change control as well as rule utilization.
How has it helped my organization?
It allows us to do utilization and cleaning of our policies. For your firewall, you have a series of rules and stuff that identify traffic, sort of whether or not the rules within your firewall policy are actually being used; what part of the rule is being used; whether or not it's identifying issues. You've got 1000 rules and only 900 are actually being used. About 100 of them are not.
We're now getting hit counts within Check Point that give us that information, but sometimes a rule says that it has been hit a lot even though it's not all the services within that rule. So it allows us to edit, modify and clean in order to remove anything that's not used.
What needs improvement?
I would say the most recent release caused us a lot of trouble as we couldn't get it working for a while, so we weren't getting the reports that we wanted, but it has improved. It's just very, very different. The most recent release level was dramatically different.
Maybe better videos or whatever could be included as to how to work with the updated product.
For how long have I used the solution?
I believe it's going on about five years, maybe as much as six.
What do I think about the stability of the solution?
When we transferred from one release to the next, the most recent upgrade, the integration with Check Point gateways was very poor and so it was for almost a year that the product was unusable to us.
What do I think about the scalability of the solution?
I think the scalability seems fine, although not all of our gateways are licensed so that in itself also caused some issues, because the product had to be more tuned to the fact that our environment doesn't utilize FireMon for all of its gateways.
How are customer service and technical support?
I would say technical support is about 8/10. Some issues just weren't handled quickly enough, I guess.
Which solution did I use previously and why did I switch?
We previously used an earlier release of FireMon and they had good success with that. In the newest release, we had a lot of problems. Prior to that, we really didn't have a tool to do that type of analysis for us. Although the most recent releases from Check Point have given us better analytics within our environment, FireMon has provided us with a better view into our environment. We didn't have anything prior to that.
How was the initial setup?
I haven't really been involved much with the licensing. It seems fairly straightforward. Regarding the training after setup, I find the videos maybe could be a little bit better in respect to how to work with your FireMon product to get the best out of it; so maybe some better training videos on how to work with the product.
Which other solutions did I evaluate?
I believe the only other option I looked at was Check Point's reporting option and it was quite costly.
What other advice do I have?
When using this product, you have to spend time understanding not only how it was installed but what information you can get from the product. The customization of reports, whether they can be automated or on demand. So just getting a better understanding of what you can get from the application is useful.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
it_user632862Technical Account Manager at a computer software company with 201-500 employees
Real User
Thanks for your review and feedback. The changes in our products from Version 7 to Version 8 were significant and many customers asked for help making the transition. Not only did we move from a client-based to web-based user interface, we focused much of that UI on metric Dashboards with Key Performance Indicators (KPIs) and drill-down capability to explore those KPIs. One of our responses to the demand for help transitioning to Version 8 was to add a free, online, instructor-led Post-Migration training course available to all customers following their migration. Hopefully, you have been able to avail yourself of that training. If not, you can get more information from our User Center - along with links to topic videos.
3rd Line Senior Engineer (Security) at a comms service provider with 10,001+ employees
We use it to run reports that show unused tools and unused objects. Removing the CSV export functionality seems to me to be like a step backwards.
Pros and Cons
- "The security policy manager: We run reports regularly for the customer to show unused tools and unused objects, and to clean up the firewall policy."
- "Overall, the product seems pretty good, but the fact that we've taken the CSV out now, that seems to me to be like a step backwards."
What is most valuable?
The security policy manager: We run reports regularly for the customer to show unused tools and unused objects, and to clean up the firewall policy.
How has it helped my organization?
Our firewall policies - we work under the standard ITIL framework - and project managers are very good at adding rules to allow their projects to work. However, they're not so good at coming back when the project is finished or the solution has been terminated and cleaning up the rubbish. So, if we don't use this product, we end up with thousands and thousands and thousands of rules, most of which aren't used.
What needs improvement?
I basically came on board to do the upgrade, which I've done. So, in the old product, we were able to get things out of the CSV file format and that allows you to then manipulate it, but now it's PDF mainly. Beforehand, we were able to take it into CSV and manipulate it in Excel, but now we can't do that anymore. A revert back on this would be good.
Overall, the product seems pretty good, but the fact that we've taken the CSV out now, that seems to me to be like a step backwards. They should be adding functionality, not taking it away.
For how long have I used the solution?
I only started using it literally about four months ago.
What do I think about the stability of the solution?
We haven't had any issues with stability yet. Well, we did during the upgrade, to be honest. So, when we did the upgrade, we had to get new versions written for us so that the upgrade worked. It didn't work just off the bat, but once we had that done, it worked fine.
What do I think about the scalability of the solution?
We haven't had any issues with scalability as we're not using that many devices reporting to it, so we haven't had any problems with scalability at all.
How are customer service and technical support?
I would rate technical support at around 7/10. I mean the reason for giving it a seven is the guy we spoke to over in Germany. He was quite good, but the problem was that it had to go back to the development team, which took a long time to get resolved.
So, basically what happened was, we raised a fault, we went through the upgrade with them and we were able to go to a particular version, as we were running a really old version; version six. We went to version seven but then stopped accessing the system. We then said to them, 'Well, how do we get to version eight?' The upgrade ping didn't seem to work. So they then had to go off and write us a new thing, but all that took months. Three months, four months and we were without access to that system for a long time.
Which solution did I use previously and why did I switch?
I don't think we used anything beforehand.
Which other solutions did I evaluate?
I think there has been an evaluation, but I wasn't party to it.
What other advice do I have?
I don't know what advice I would give to others. We are having a lot of problems with the licensing, to be honest. So, there's an issue with the UK and US date format.
When we renew our licenses, I don't know whether it's through our distributor or whatever, but they keep changing the format. In the American date format, you put the month first, then the date, then the year. In the UK we put the day first, then the month, then the year, and they keep flipping the dates over so we lose about three or four months on the licensing every time. We have to go back to our salesperson to get that fixed.
Also, when we did the upgrade, for some reason, we had enough licenses to start with but after the upgrade, we didn't. So, we didn't add any new devices, and we've got a thing in with the salesperson to find out why; what's changed there.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Thank you for taking the time to review our product. I am very glad to hear that Security Manager has helped you with your rule cleanup efforts! I do understand your frustration in migrating to version 8 of our software. It is a major leap in functionality and the upgrade process (especially all the way back from version 6) could be challenging at times.
Regarding CSV format in reporting, although it is less available in reports, CSV is one of the primary export formats for SIQL queries. If you can query it in SIQL in Security Manager, you can export it to a CSV. That said, there are certainly canned reports where this used to be an option and isn't anymore. If you haven't already done so, please reach out to your Customer Success Manager or Sales Engineer here at FireMon to get an RFE created. If you don't don't who your CSM or SE are, definitely open a Support ticket asking them to reach out to you.
At FireMon we take pride in our solution and the value that it brings to your environment. We look forward to continuing to work with you and your team in the future.
Works at a financial services firm with 501-1,000 employees
The Security Manager is the most valuable feature. It's been pretty stable.
Pros and Cons
- "I think it's a good product."
- "Make writing the reports easier. There's a lot of canned reports and if you want to write a specific report that you're interested in looking at, it's rather hard because I'm not a programmer."
What is most valuable?
The Security Manager is the most valuable feature.
How has it helped my organization?
It helps us eliminate rules that are not needed on the firewall and to consolidate them. It saves us a lot of time and makes my work easier.
What needs improvement?
Make writing the reports easier. There's a lot of canned reports and if you want to write a specific report that you're interested in looking at, it's rather hard because I'm not a programmer. I don't know all the programming languages needed to do that. I can look at what reports exist and try to take that and kind of change it to something that I want to see and it doesn't always work. It's not real easy to do.
For how long have I used the solution?
I have been using FireMon for about six months.
What do I think about the stability of the solution?
It's been pretty stable.
What do I think about the scalability of the solution?
I have not had any scalability problems at all.
How are customer service and technical support?
We have called them and they've always been really helpful. They've resolved our issue in a timely manner. I would rate them a 4/5.
Which solution did I use previously and why did I switch?
We didn't have any other solution. This is the first of its kind.
How was the initial setup?
Setup was straightforward. The instructions were really simple. We put in the basic information and then they scheduled some time with us to go through the setup and walk us through each one of the screens, what they do, what to look for and things like that. They kind of gave a little bit of a training class or training session.
What's my experience with pricing, setup cost, and licensing?
They set a round of what we wanted to see. They didn't just come in and say, "Here's how it works", because different companies are different. Different companies want to use it in different ways, so they found out what we wanted and helped us set the training up to look at things that we want to be able to use it for. That was nice.
Which other solutions did I evaluate?
We didn't evaluate any other products.
What other advice do I have?
I think it's a good product. It's very stable. It's quick and it's easy to learn. It's easy to run reports. There are a lot of reports that you can run. That helps the management of your firewall.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
SecArch3081IT Security Consultant and Platform Architect at a pharma/biotech company with 10,001+ employees
Real User
Be careful with the "clean-up" report recommendations. Firemon tends to recommend deleting the hidden or shadowed rules, but those are often the more restrictive (better) rules, shadowed by an overly permissive rule at the top. Consider removing the top rule, and keeping the more restrictive policies.
Works at a financial services firm with 1,001-5,000 employees
We use the forwarding capabilities and we use it for cleanup.
Pros and Cons
- "If someone asked me for advice, I would definitely say that it would help them, especially with being able to navigate through if you have a complex rule set."
- "We almost lost our database at one point. It would be nice to be able to back up the backup configuration to a network share or some other function."
What is most valuable?
We use the forwarding capabilities because we don't have another way to report on the firewall. We use it for cleanup and also for our biannual firewall review. Pretty much that's the big reason that we use FireMon.
How has it helped my organization?
The time that it takes for us to do the review: Previous to FireMon, we would have to go through the firewall pretty much manually, every line. This took an incredible amount of time. With the FireMon product, we did notice a significant decrease in the time that it takes for us to do any type of review. Also, just a general report, if you have an inquiry throughout the year, without actually doing a full review, you can just go to FireMon and click a few buttons and it tells you what you need to know. There's no need to dig around and spend additional time. So, it's mainly time.
What needs improvement?
We've had issues with backups. We almost lost our database at one point. It would be nice to be able to back up the backup configuration to a network share or some other function. The only way that we know how to do it right now is to do a manual backup. Or the server backs itself up to itself, which is not helpful. If you lose the server, the backup that's stored on the server is also lost. So, it's not that helpful.
One thing that is missing is the ability to export the entire rule base of a firewall. Suppose we were going to be migrating to a different firewall. Not getting rid of FireMon, but moving to a different firewall; either a different vendor or a different model of a firewall. So instead of taking bad stuff, or maybe old stuff out of the current firewall and going to a new firewall and using the exact same configuration, we may want to export that information into an Excel spreadsheet or some other format, so that we could work with that data outside of FireMon. That would be really helpful. I've called FireMon, I've also played around trying to figure out if I could get it to work and I still didn't get it. Nobody knew how to get the info out of FireMon to work on it. Also, potentially the ability to import it back into the system and maybe get some sort of a diff report; a difference of the configuration from the system.
For how long have I used the solution?
I have used FireMin for about four years.
What do I think about the stability of the solution?
We have an issue sometimes with the listener for logging. Sometimes the listeners, the ports, go down and the server has to be rebooted. It's very, very rare that that happens, but we have noticed that's really the only stability issue that we've had. The server application itself seems to be very, very stable. Even when the port goes down, the app stays up. It just has to be reset. That may be every three months or so we may notice that.
What do I think about the scalability of the solution?
We have three major production firewalls pushing thousands of logs every hour to this one box. We have two boxes in both of our data centers but they push a lot of logs to these guys. We've never had any issues.
How are customer service and technical support?
I would rate support a 4/5. I sort of get the feeling when I send an email that it's a little bit of a slow response time. There are things that we do need immediate attention on and sometimes when you call, they'll ask you to send an email in. That's sort of a backwards approach to technical support. If I've already got somebody on the phone, they should be able to take my information and proceed with handling the triage of the call. I shouldn't have to hang up the phone, write an email, and then wait for a telephone call back from them. I would rather see some sort of support model that has a better flow to it.
Which solution did I use previously and why did I switch?
Previously, we did not have a different solution.
How was the initial setup?
Setup was fairly straightforward. Our system is in a virtual environment. We pretty much turned logging on for the firewall, pointed it to the FireMon server, added the firewall to the FireMon server. Within seconds, there were tens of blocks being pushed over there. The reports pretty much created themselves. You just had to run them.
What other advice do I have?
If someone asked me for advice, I would definitely say that it would help them, especially with being able to navigate through if you have a complex rule set. I would definitely suggest FireMon. It's been extremely helpful for us to have. Even though they're missing a few functions, it's still workable from our standpoint.
Being able to export to Excel isn't a huge turnoff. It's a nice feature to have but I would definitely suggest purchasing FireMon. Especially if you have a large environment where you're trying to trim down your rule base, you're trying to optimize your firewall, or you're just trying to find stuff that's sort of lost in your configuration.
Also change management: I believe it's a PCI requirement. We use FireMon as well for notifications and that's helped satisfy a PCI. I don't have anything in front of me that shows me all the requirements but I believe a review of rules that are changed is part of that requirement, so they help fulfill that, too.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Thank you for providing your detailed feedback on FireMon Security Manager. We truly appreciate the investment of your time to post a review.
To address your "Room for Improvment" comments:
The FireMon backups are placed in /var/lib/backup. This can be configured to be an NFS mounted file system from an external host. This would satisfy your desire for having backups placed on a network share.
The entire policy for a device can be exported to an XLS file from the | Policy | Policy View tab in Security Manager. The resulting XLS file will have separate worksheets for the security rules, network, objects, user objects, application objects, etc…
Please let us know if there is anything we can do to help you better utilize FireMon.
Technology Engineer at a financial services firm with 501-1,000 employees
With the change control functionality, we can track firewall rule changes made outside of change windows.
Pros and Cons
- "From what I've seen of the product, it's fairly robust."
- "Some features don't have a description field that I can populate, and so I need to go back into FireMon later and document those."
What is most valuable?
Currently, the change management controls for monitoring the firewall configuration changes is the only feature that we really use, at this time.
How has it helped my organization?
With the change control functionality, if somebody was to go in and make a rule change on the firewall, it's configured to send a notification as soon as those changes have been made. If this happens outside of a change window, we can track those and go to that person/individual, and find out why they made the change without going through proper change control procedure.
What needs improvement?
We just updated to the latest version, so I haven't had a chance to play with the enhancements from what we were previously using. What I was looking for in the previous version was better capability of adding change control numbers manually for rule changes that don't allow me to put in a descriptor into the change on the actual device. That will automatically get pulled into FireMon for reporting purposes. Some features don't have a description field that I can populate, and so I need to go back into FireMon later and document those. Even though the field is available as an option in properties, there's no way for me to fill that because of the type of the category of the change. It may not be a security change. It could be just a documentation process that I'm not able to do. That was in a previous version. I haven't validated that in this latest version.
For how long have I used the solution?
I've only been using it for about a year. My employeer has used it for two to three years.
What do I think about the stability of the solution?
The product itself has been solid, stable. I haven't had any issues with stability issues at all, now.
What do I think about the scalability of the solution?
The scalability seems to only be limited based on licensing we have installed. It appears to be fairly robust. It does offer a very large variety of devices that it can monitor but it's only limited based on the licenses that we have installed. For example, when I started here over a year ago, the device was licensed just for Cisco ASA5520s, and now we're using it to also monitor 5545s, which is a different tier. Until we licensed it for that different tier, we weren't able to ingest the configurations or monitor those newer devices. It truly comes down just to licensing. So, making sure we have the proper licensing is key. From what I've seen, it can monitor many devices, from routers, switches, up to the firewalls, from across many vendors.
How are customer service and technical support?
We have asked for help a couple times, mainly about minor questions. There were questions about how to use documentation better, and they helped with that, but most of the questions that we've had have been around upgrading the product. We needed to know what is in the next version.
Which solution did I use previously and why did I switch?
Based on what I know, there were no previous products. My understanding was they brought this in because they did not have that capability, and so this was an enhancement to the organization overall. Previously, there wasn't any monitoring being done.
How was the initial setup?
Initial setup was done prior to me being here.
What other advice do I have?
From what I've seen of the product, it's fairly robust. Making sure to know everything that you want monitored, to get the proper licensing upfront, is probably the biggest thing. If you're only strictly wanting to do firewalls, make sure you get the right licensing that will match your firewall capabilities. If you want to match a more cross-spectrum of your devices, get licensing to support that. The biggest key is making sure to get all the licensing you need for the devices you want upfront.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Technolo63ef,
Thank you for taking the time to write a review of FireMon. I am glad to see you are finding overall satisfaction with the product.
Security Engineer at a logistics company with 1,001-5,000 employees
Assists us in our ability to review and validate firewall rule changes and implementations.
Pros and Cons
- "Technical support has been amazing."
What is most valuable?
Although we have a very mature infrastructure, one of the thorns that come with that maturity is developing policies and processes to support that infrastructure.
This solution assists us in our ability to review and validate firewall rule changes and implementations across a wide audience of users.
How has it helped my organization?
Here are some of the ways change management has improved our organization:
- Ensures that proper change controls were enforced.
- Engineers can check if a change was implemented properly.
- Compliance can easily monitor the environment for potential PCI concerns.
- We can heavily leverage the solution for firewall remediation.
- We can pull policy reports from various technologies.
- We can standardize those reports for analysis.
- When we make changes in our environment, we can run usage reports to gauge impact before we make permanent changes to our rules.
What needs improvement?
With fifteen years as a security administrator, I have used few solutions that are as polished as Security Manager. That being said, every solution has room for improvement.
I would like to see the ability to export reports to .xls. This would help me for the following reasons:
- It would allow for greater data manipulation.
- When I run a report, I have the option of saving or exporting that report as .html or .pdf. As someone who catalogs much of their work in .xls, it would be convenient if I were able to export a policy report to .xls.
- This would allow me to manipulate the data better.
- I would no longer need to copy and paste from the .html to .xls and clean up the information.
For how long have I used the solution?
I used version 7 for several years. We have upgraded to version 8, and we have been using that version for the last three months.
What do I think about the stability of the solution?
There have been no stability issues so far.
What do I think about the scalability of the solution?
There were absolutely no scalability issues.
How are customer service and technical support?
Technical support has been amazing. I would give them a rating of 10/10, an A+, and I would buy from them again.
Which solution did I use previously and why did I switch?
In this environment, there were no previous solutions.
I have used other solutions at previous jobs. However, this is a solution I would like to bring with me if I ever ended up elsewhere in the future.
How was the initial setup?
The initial setup using VMs was rather straightforward. The use of VM images sped up the process greatly. Professional services added a great deal of value in optimizing the environment.
What's my experience with pricing, setup cost, and licensing?
Much of this information is not applicable to me based on my relationship with the product.
That being said, the ROI for securing dedicated professional services (vendor support) is amazing. It is relatively inexpensive, very customizable, and is a great help when approaching projects with the solution.
What other advice do I have?
Consider investing in the policy planner. Further integration with a ticketing solution is on our roadmap. I certainly wish it was something we pulled the trigger on years ago.
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
Daniel,
Thank you for taking the time to write your review. We certainly take pride in making sure our clients are satisfied with our product. I apologize for having to copy and paste your reports, I would be happy to bring this up to our team for future consideration.
Buyer's Guide
Download our free FireMon Security Manager Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2026
Product Categories
Firewall Security ManagementPopular Comparisons
Tufin Orchestration Suite
Fortinet FortiGate Cloud
Skybox Security Suite
Palo Alto Networks Panorama
Azure Firewall Manager
AWS Firewall Manager
ManageEngine Firewall Analyzer
Cisco Security Cloud Control
Cisco Secure Firewall Management Center
Buyer's Guide
Download our free FireMon Security Manager Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Tasks to Perform on Preventive Maintenance.
- From your experience, what are the technical differences between AlgoSec and FireMon?
- What Is The Biggest Difference Between AlgoSec and FireMon?
- Which lesser known firewall product has the best chance at unseating the market leaders?
- Comparing network security vendors and devices
- When should companies use SSL Inspection?
- When evaluating Firewall Security Management, what aspect do you think is the most important to look for?
- What are the most important features you would be looking for in a firewall?
- How do I estimate the required firewall throughput for my organization?
- What are the pros and cons of Tufin, AlgoSec and RedSeal?











Policy Test is extremely useful, as well--we use that constantly in request design phase to quickly identify zones and policy placement. Object search/Omni search is invaluable, as well, providing the ability to find all the rules that may need updating when a server migrates or is decommissioned. it would take forever to manually retrieve and search across hundreds of firewall configs.