Try our new research platform with insights from 80,000+ expert users
PeerSpot user
Conseiller sécurité des TI at a tech services company with 1,001-5,000 employees
Consultant
Jan 15, 2017
It is possible to highlight differences between policy revisions.

What is most valuable?

  • The possibility to highlight differences between policy revisions
  • FireMon Insight with FMSQL
  • Hidden reports
  • Rule usage/unused rules report
  • Object usage report

How has it helped my organization?

FMSQL allows us to quickly query our ruleset to check which trafic is allowed. That greatly helps us to fill in the compliance report.

What needs improvement?

  • Support of checkpoint clusters: Rule usage is logged for each cluster member but not for the whole cluster. It may lead to wrong conclusions when you clean rules.
  • Comments with special characters (French accent) are not supported. So we can't use the report for uncommented rules.

For how long have I used the solution?

I have used it for >5 years.

Buyer's Guide
FireMon Security Manager
February 2026
Learn what your peers think about FireMon Security Manager. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
881,733 professionals have used our research since 2012.

What was my experience with deployment of the solution?

We first had FireMon 5 on Windows Platform. It was a pain in the ...

Now, with the FireMon appliances, you just have to connect your Check Point SmartCenters and ... enjoy!

What do I think about the stability of the solution?

I have not encountered any stability issues because we purchased Linux appliances.

What do I think about the scalability of the solution?

We have quite a large Check Point environment (>60) with a lot of rules. Reports may be a bit slow but they are so valuable that they are worth the wait. Newer, beefier appliances may also be available from FireMon.

How are customer service and support?

Customer Service:

I don't have to deal with customer support, so I won't rate them.

Technical Support:

With Windows, it was difficult to get support.

I only had to open once a ticket with the FireMon appliances; fast handling of the case.

Which solution did I use previously and why did I switch?

I did not previously use a different solution.

How was the initial setup?

Initial setup was quite simple.

What about the implementation team?

I was not in charge of the implementation project. I think we installed the FireMon appliances on our own.

What was our ROI?

I'm not an accountant !!

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user632862 - PeerSpot reviewer
it_user632862Technical Account Manager at a computer software company with 201-500 employees
Real User

Thanks for your review and feedback. FireMon re-architected our Version 8 with scalability and better performance in mind, so faster reporting should be attainable. As you suspected, we do have newer, beefier appliances available. But the most significant performance and scalability impact comes from horizontal scaling and a more distributed architecture availability in Version 8.

it_user563418 - PeerSpot reviewer
Network Security Architect at a healthcare company with 1,001-5,000 employees
Vendor
Dec 1, 2016
Recently we’ve decided to utilize the policy review capabilities to automate our periodic firewall rule review process.

What is most valuable?

FireMon has served as a change monitoring and notification tool for a number of years, but recently we’ve decided to utilize the policy review capabilities to automate our periodic firewall rule review process.

Our primary use case for Firemon initially was to perform change notification for our ASA firewalls. This was the case for about 5 years.

With the introduction of version 8, we decided to reconsider other capabilities of Firemon – specifically the policy review reports that show unused or duplicative policy rules. We intend to use these features to automate our firewall policy review process.


How has it helped my organization?

Instead of having to utilize a manual review process, we can automate most of the process. Change notifications for our ASA firewalls that do not have built in change notification is also automated for us.

For how long have I used the solution?

7 years.

What do I think about the stability of the solution?

Yes, after an upgrade to version 8 from version 7, we experienced several issues with the Data Collector component. They were all resolved pretty quickly by FireMon support.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

FireMon’s technical support is capable and responsive. I’ve had no issues with getting the right resources engaged when I need them.

Which solution did I use previously and why did I switch?

No.

How was the initial setup?

The upgrade from version 7 to version 8 seemed to be unnecessarily complicated, so we opted to to a clean install on version 8, and have had no issues with using this approach. In fact, it helped us clean up our installation.

What's my experience with pricing, setup cost, and licensing?

Understand that the licensing exercise, is intended to right size the costs to your actual firewall models, but that Firemon v8 does not make a distinction between firewall models in the tool itself.

Which other solutions did I evaluate?

No other solutions were considered.

What other advice do I have?

Perform the installation and utilize FireMon support to optimize the installation. Perform a post installation review of the configuration a couple of months after it’s implemented and running so that you can decide what features to use, which are useful. There are a lot of built in features that aren’t apparent until you get the whole system set up, all of your devices discovered, and the system collects information for a few weeks.

Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
it_user631122 - PeerSpot reviewer
it_user631122Customer Success Manager at a tech vendor with 201-500 employees
Real User

NetworkSecArch418,

Thank you for taking the time to write a review of FireMon. I am glad to see you are finding overall satisfaction with the product.

Version 8 is being the greatest improvement adding a high scalability, modifying the OS structure for a better performance, UI user friendly for beginners engineers and experts as well.

In FireMon we are committed to make our customers successful when using our products, providing the best solutions to keep enterprise networks secure.

Buyer's Guide
FireMon Security Manager
February 2026
Learn what your peers think about FireMon Security Manager. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
881,733 professionals have used our research since 2012.
it_user494874 - PeerSpot reviewer
Network Security Sr. Advisor at a tech services company with 1,001-5,000 employees
Consultant
Aug 31, 2016
It’s helpful during our firewall and network devices audit.

What is most valuable?

Security Manager: It effectively manages the complexity and change associated with today’s network security infrastructure and has a good hold in the market.

How has it helped my organization?

It’s very helpful during our firewall and network devices audit, and also beneficial when backup is required of network security devices.

What needs improvement?

I am desperately looking forward to seeing FireMon considered as a good backup solution for network security devices, which can store up to the last 10 incremental backups. This way, the business can grow with multiple solutions to customer.

For how long have I used the solution?

I have been using it for five years.

What was my experience with deployment of the solution?

I have not really encountered any deployment, stability or scalability issues. Installation and upgrade are quite simple and easy.

How are customer service and technical support?

Technical support is satisfactory.

Which solution did I use previously and why did I switch?

Previously we were using AlgoSec, but it requires to be updated from time to time. Also, it wasn’t found to be a fruitful solution and has a lot of room for improvement.

How was the initial setup?

We recently installed FireMon on VMware architecture and it was very smooth and without issues.

What about the implementation team?

Implementation was easy and documents are available in FireMon Center, so the in-house support team implemented it without any issues.

What's my experience with pricing, setup cost, and licensing?

Per-device license is little costly, but with such good features it’s understandable.

What other advice do I have?

It is a good solution for audit trails and end-user visibility.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user494046 - PeerSpot reviewer
Information Security Engineer at a energy/utilities company with 51-200 employees
Vendor
Aug 31, 2016
It helped us identify unused rules, reducing the load on the firewalls.

What is most valuable?

The Configuration Change Management feature was something we were interested in as it helped us to identify who made the change, when and why. Also, the workflow was easy to set up to ease operations.

The second important feature I liked was determining unused rules - rules placed incorrectly in the ACL - this helped us to reduce the load on the firewalls, thus we didn’t have to buy a new firewall due to high CPU or memory consumption. With the help of FireMon, we fine-tuned the rules and were able to save money for buying a new firewall.

How has it helped my organization?

As mentioned, we were able to ease the operations and set up a workflow that allowed the firewall and other network-related requests to go through a formal approval process. This helped to track who, when and why the request was done.

Also, removing redundant rules and placing the rules at the correct place helped lower CPU and memory consumption.

What needs improvement?

I would have preferred fewer updates, as there were quite a few updates made every now and then. Secondly, the Risk Management Module didn’t work well until you have the all of the subnets mapped. This can be improved.

For how long have I used the solution?

I used it for two years.

What was my experience with deployment of the solution?

I didn’t really encounter any deployment issues. However, sometimes the GUI used to crash when it tried to populate the device map; we had a lot of devices. At times, the map displayed fine, even though it took some time to show up; and at other times, the GUI crashed. This should be fixed.

How are customer service and technical support?

Technical support was fine; they have good technical people. However, support can be improved, if they become more responsive.

Which solution did I use previously and why did I switch?

I did not previously use a different solution.

How was the initial setup?

Initial setup was fine; you just need to map certificates between the sensor and the Application Server, which was something different. It can be sorted out through some other methods as well. I don’t exactly remember, but we faced one issue and to resolve it, we had to install the certificates again to get it working.

What about the implementation team?

Implementation was done by the vendor team.

What's my experience with pricing, setup cost, and licensing?

Although I have left the company, I heard that since the license renewal cost was too high, management decided not to renew it. The vendor should reduce the license renewal cost.

Which other solutions did I evaluate?

I personally did not test any other alternative, but I heard management evaluated Skybox as well; they eventually chose FireMon. It was a management decision, so I don’t know why others were rejected.

What other advice do I have?

Check the renewal cost, and determine whether the Risk Management Module is mature enough and whether GUI crash issues have been fixed or not. Maybe for small companies, it comes up fine, but for large environments, it might cause issues.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user630399 - PeerSpot reviewer
it_user630399FireMon Customer Success Manager at a tech vendor with 201-500 employees
Real User

Thank you for providing your detailed feedback on FireMon Security Manager. We truly appreciate the investment of your time to post a review.

In regards to your statement about issues displaying the device map; It is highly recommended to organize devices into device groups. This improves usability for organizations with a large number of devices, and reduces the amount of time taken to display the device map.

it_user501963 - PeerSpot reviewer
Systems Engineer at a tech company with 51-200 employees
Vendor
Aug 31, 2016
It provides clear visibility of our firewall, and clear auditing of each firewall rule and changes.

Valuable Features

We can check the compliance of each firewall, check the KPI of each firewall to determine the security posture of the network, monitor changes done on the firewalls and provide overview of all the rules, either unused, duplicate or risky rules.

Improvements to My Organization

We now have clear visibility of our firewall, clear auditing of each firewall rule and changes, and of course, it helps us comply with governing bodies.

Room for Improvement

They should add SMB firewall support and not only the big players.

Use of Solution

I have used it for one year.

Stability Issues

I did not encounter any stability issues.

Scalability Issues

I did not encounter any scalability issues.

Customer Service and Technical Support

Technical support is 9/10.

Initial Setup

Initial setup was straightforward and it was easy to follow the installation steps.

Pricing, Setup Cost and Licensing

It has great pricing with big discounts.

Other Advice

Prepare the necessary details and make sure you configure the needed firewall according to their guide for a smooth implementation.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user631122 - PeerSpot reviewer
it_user631122Customer Success Manager at a tech vendor with 201-500 employees
Real User

Giancarlo,

Thank you for taking the time to write a review of FireMon. I am glad to see you are finding overall satisfaction with the product. We look forward to working with your team more in the future.

it_user489861 - PeerSpot reviewer
Regional Manager Enterprise Data Infrastructure and Information Security at a comms service provider with 51-200 employees
Vendor
Aug 15, 2016
RA excels at identifying risk exposure areas.

Valuable Features

Security Manager (SM) and Risk Analyzer (RA) are the most valuable features to me. SM assesses a network's security posture in terms of deployed policies, redundant policies, duplicate policies, etc. RA takes a snapshot of everything connected to and within the network down to the end points. It recommends security policies that would improve and further secure the network from potential threats etc.

Improvements to My Organization

The product is extremely helpful in policy analysis and improvement. RA was exceptional is identifying risk exposure areas.

Room for Improvement

Although there is nothing 'wrong' in FireMon's support for other vendors, with the advent of SDN, NGFW, etc., I think FireMon will have to cover more layer 3 devices from different vendors. Again, their current database covers almost all of the major vendors: Cisco, Juniper, Fortinet, etc. However, there is always room for growth in this particular area.

Use of Solution

I have used this solution since 2012.

Stability Issues

We have not encountered any issues with stability so far.

Scalability Issues

We have not encountered any issues with scalability so far.

Customer Service and Technical Support

Their technical support is superior.

Pricing, Setup Cost and Licensing

Pricing and licensing is structured well and FireMon was very helpful in meeting the target budget for this project.

Other Solutions Considered

We looked at AlgoSec before choosing FireMon.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user456099 - PeerSpot reviewer
Information Security Engineer at a insurance company with 1,001-5,000 employees
Vendor
Jun 8, 2016
It allows us to monitor and assess our network and provides proactive security intelligence.

What is most valuable?

It’s provided us with proactive security intelligence so we can act before we have a security breach.

How has it helped my organization?

FireMon allows us to monitor and assess our network, giving continuous visibility into and control over firewall infrastructure, network security policies and underlying IT risk.

What needs improvement?

The reporting needs some improvement to ensure that we are provided with consistent data accross each firewall device on the network.

For how long have I used the solution?

I’ve been using it for two years.

What was my experience with deployment of the solution?

There were no issues with the deployment.

What do I think about the stability of the solution?

We had no issues with the performance.

What do I think about the scalability of the solution?

It's been able to scale for our needs.

How are customer service and technical support?

8/10

Which solution did I use previously and why did I switch?

This is my first time using a solution like this.

How was the initial setup?

It’s quite straightforward.

What about the implementation team?

We had it implemented by a vendor team.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user633837 - PeerSpot reviewer
it_user633837Technical Account Manager at a tech vendor with 201-500 employees
Real User

Thank you for taking the time to review our product. I am pleased to hear that Security Manager is bringing you increased visibility into your environment. At FireMon we take pride in our solution and the value that it brings to your environment and look forward to continuing to work with you and your team in the future.

it_user448857 - PeerSpot reviewer
Security Consultant at a tech services company with 501-1,000 employees
Consultant
Jun 7, 2016
Rule comparison and filters are an easy way to check if you policy is concise and clean.

Valuable Features

The instant and complete network graphical view it provides is amazing. Alerts give you complete control of firewall changes, its amazing for compliance and security policy validation. Rule comparison and filters are an easy way to check if you policy is concise and clean, giving your firewall the best performance and readability.

Improvements to My Organization

We managed around 70 different firewalls in more than 25 countries all over the world. The firewalls were from different vendors such as Palo Alto, Checkpoint, Cisco, Juniper, etc. FireMon helped to decrease the workload on risk analysis and also firewall rulebase review time by 50%, at least due to its very elaborate and easy to use filters.

Room for Improvement

It’s been a constant need not only to analyze firewall rules and configurations but also implement them, for which FireMon has no support. Also some of the firewall analysis involve weak password policy, FireMon could implement a way to send firewall hashes, when they exist, to third party cracking softwares.

Use of Solution

I used this solution for about three years in my previous job. I primarily used the Policy Planner and Policy Optimizer modules.

Deployment Issues

The deployment was already easy for v7.0, the upgrade to v8.0 is even easier.

Stability Issues

We had no issues with the performance.

Scalability Issues

It's been able to scale for our needs.

Customer Service and Technical Support

I would rate it 8/10. The only reason I don’t rate it 10/10 is because of the response time which, for us, sometimes took a little bit longer then expected. Customer service and technical support is very good.

Initial Setup

The initial setup was very easy and straightforward and we had no problems implementing it.

Implementation Team

It was initially implemented by a vendor team, but the implementation could easily be done in house.

Pricing, Setup Cost and Licensing

FireMon is not a cheap solution but its price is well balance for what it has to offer.

Other Solutions Considered

We have evaluated FireMon’s competitors like AlgoSec and others, but found FireMon to be the best solution for our needs due to having a complete set of tools.

Other Advice

Be sure you read all the specs, and test the application as deeply as you can to ensure it meets all your requirements.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user586950 - PeerSpot reviewer
it_user586950Customer Success Manager at a tech vendor with 201-500 employees
Real User

Felipe, thank you for taking the time to write a review of FireMon. I am glad to see you are finding overall satisfaction with the product. Please feel free to drop us a note at customersuccess@firemon.com with any future questions or concerns.

Buyer's Guide
Download our free FireMon Security Manager Report and get advice and tips from experienced pros sharing their opinions.
Updated: February 2026
Buyer's Guide
Download our free FireMon Security Manager Report and get advice and tips from experienced pros sharing their opinions.