We use FortiEDR for EDR on our internal environment, which includes about 2,900 endpoints.
Sales Specialist at Armata Cyber Security
It's well-priced for all the features it offers
Pros and Cons
- "I like FortiClient EMS. FortiEDR has a lot of great features like lockdown mode, remote wipes, and encryption. I can set malware outbreak policies and controls for detecting abnormalities. You can also simulate phishing attacks."
- "The EDR console should have more extensive reporting. You shouldn't need to purchase FortiAnalyzer. It should be included in the EDR part. The security adviser cloud platform could be improved with more options for exclusive or intensive rules for devices."
What is our primary use case?
What is most valuable?
I like FortiClient EMS. FortiEDR has a lot of great features like lockdown mode, remote wipes, and encryption. I can set malware outbreak policies and controls for detecting abnormalities. I can also simulate phishing attacks.
What needs improvement?
The EDR console should have more extensive reporting. You shouldn't need to purchase FortiAnalyzer. It should be included in the EDR part. The security adviser cloud platform could be improved with more options for exclusive or intensive rules for devices.
For how long have I used the solution?
I have used FortiEDR for about 10 years.
Buyer's Guide
Fortinet FortiEDR
March 2026
Learn what your peers think about Fortinet FortiEDR. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
884,976 professionals have used our research since 2012.
What do I think about the stability of the solution?
I rate FortiEDR a 10 out of 10 for stability.
What do I think about the scalability of the solution?
I rate FortiEDR a six out of ten for scalability. It's scalable if you add on more product sets, but it isn't scalable by itself. You can add Fortinet solutions like FortiManager and FortiClient Configurator to improve the scalability. We have clients of all sizes. Around 40 percent are small businesses, 40 percent are medium-sized companies, and 20 percent are large enterprises.
How are customer service and support?
I rate Fortinet support a 10 out of 10. They have a strong team, and tickets are addressed quickly once they're logged on the portal.
How was the initial setup?
I rate FortiEDR an eight out of ten for ease of setup. The console is easy to set up, and there are ample tutorials on YouTube about how to do it. A 10-year-old could probably configure it accurately.
FortiEDR is typically deployed on-prem for top SMB clients and multinational enterprises. We may use it on the cloud for our smaller clients. The deployment process involves scoping, due diligence, configuration, and testing. We have a detailed internal process at my company. Deployment requires two staff members.
What's my experience with pricing, setup cost, and licensing?
I rate FortiEDR an eight out of ten for affordability.
What other advice do I have?
I rate FortiEDR an eight out of ten. I give FortiEDR a high mark because it's well-priced for its features. It's a better value than other tools, such as Microsoft Defender.
My advice to potential users is to understand your precise requirements and know that there are limitations around iOS and Linux. Before deploying, you should ensure that FortiEDR best fits your current environment.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Founder at Torres & Torres Tech
Valuable for remote work security and enhances endpoint protection effectively
Pros and Cons
- "It is very easy to set up. I would rate my experience with the initial setup a ten out of ten, with ten being very easy to set up."
- "It takes about two business days for initial support, which is too slow in urgent situations."
What is our primary use case?
At my last job, we used FortiEDR to secure endpoints for 8,000 employees across MacBooks and Linux machines, ensuring the protection of backups and VPN connections.
In 2020, we faced a significant challenge with remote work in Brazil, where BitLocker was utilized. FortiEDR proved invaluable as it allowed us to create a secure process for remote access.
I oversee Fortinet solutions, focusing on endpoint security and processing.
We deployed the FortiEDR solution for our remote workforce as well.
How has it helped my organization?
FortiEDR excels in first-line defense for endpoints against malware, incorporating solutions for antivirus and data loss prevention, especially for confidential documents on the user's device.
What is most valuable?
The next-generation features and the utility of threat intelligence are what I value the most.
What needs improvement?
FortiEDR could enhance cloud environment creation. My experience shows that managing FortiEDR through cloud platforms, unlike SaaS solutions, could be streamlined, especially when integrated with FortiGate firewalls.
Another area of improvement is the support. The response time could be faster.
For how long have I used the solution?
I've worked with it for three years.
What do I think about the stability of the solution?
Stability is fine; I'd rate it a seven out of ten. It works well for me.
While Fortinet consistently introduces new solutions and functions, there's always room for improvement to reach a higher standard.
What do I think about the scalability of the solution?
While scalability experiences some glitches, it's generally manageable.
However, due to these issues, I would not rate it as perfectly scalable.
How are customer service and support?
The response time could be better. It takes about two business days for initial support, which is too slow in urgent situations. My environment was too crazy.
The customer service and support were slower than expected.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I also use Cisco's solutions across various client sites, including small offices, large offices, big data centers, and commercial enterprises.
I have extensive experience with Cisco, spanning over eight years, across a variety of their offerings.
My focus has been Cisco Nexus series for network security.
How was the initial setup?
It is very easy to set up. I would rate my experience with the initial setup a ten out of ten, with ten being very easy to set up.
It is very user-friendly and easy to manage. The deployment process is quick and easy, especially in new environments.
It's very fast and straightforward.
What's my experience with pricing, setup cost, and licensing?
It's moderately priced, neither cheap nor expensive.
Which other solutions did I evaluate?
I've previously worked with solutions from Palo Alto and Check Point before switching to FortiEDR.
What other advice do I have?
Considering all factors, I would rate FortiEDR a seven out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Fortinet FortiEDR
March 2026
Learn what your peers think about Fortinet FortiEDR. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
884,976 professionals have used our research since 2012.
CISO at DSA
Helped our organization by providing reports that identify network weaknesses
Pros and Cons
- "The most valuable feature is the analysis, because of the beta structure."
- "FortiEDR can be improved by providing more detailed reporting."
What is our primary use case?
We are an incident response team, and we use Fortinet FortiEDR for our cyber protection-related activities.
How has it helped my organization?
Fortinet FortiEDR has helped our organization by providing reports that identify network weaknesses.
With the proper training, the solution is easy to use.
In some cases, the solution has freed up around three and a half hours of our staff's time so that they can work on other projects.
What is most valuable?
The most valuable feature is the analysis, because of the beta structure.
What needs improvement?
FortiEDR can be improved by providing more detailed reporting.
For how long have I used the solution?
I have been using Fortinet FortiEDR for seven years.
What do I think about the stability of the solution?
I give the stability of the solution a seven out of ten.
What do I think about the scalability of the solution?
FortiEDR is a scalable solution because it has a well-structured and manageable report that is easy to understand.
Which solution did I use previously and why did I switch?
We previously used a different solution, but I cannot recall its name.
What other advice do I have?
I give Fortinet FortiEDR an eight out of ten.
I came here to test ICS points and get some tools for VFDs. API security is becoming increasingly important, as we use a lot of APIs in our government. We need to test APIs to ensure they are secure, especially as ransomware attacks are also on the rise.
This is my fourth time coming to this RSA. I bought a new product here this time. We can see everything in one room, which makes it easy for us to understand and also make new contacts.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Director at Solution n Services
Offers dashboard accessibility and effectively manages threat detection and response
Pros and Cons
- "Having all monitoring, response, tracking, and mitigation tools in one dashboard provides our analysts and SOC team with a comprehensive view at a glance."
- "There's room for improvement in the quick response time and technical support for integration issues, especially when dealing with multiple vendors."
What is our primary use case?
I utilize Fortinet FortiEDR for endpoint protection.
How has it helped my organization?
Our security posture improved since implementing Fortinet FortiEDR in terms of our overall setup, as we've experienced significant enhancements. We now have streamlined operations, better dashboards, and improved monitoring capabilities, consolidating multiple functions into a single solution. Previously, we were managing three separate vendors alongside support from our IT arm and outsourced assistance. With FortiEDR, everything is integrated under one dashboard, making our processes more efficient.
Fortinet FortiEDR effectively manages threat detection and response in our daily operations with great robustness. Previously, we had to rely on two separate Palo Alto devices for bandwidth management, both lacking real-time capabilities. Our search engine, detection engine, and database were also disjointed. However, with FortiEDR, we've achieved parity in functionality for both functions. Consequently, our bandwidth performance has seen a significant boost, providing users with a stable stream to work with.
The implementation of automation has had a significant impact on our team's workload. As we operate shared services centers across the APAC region, having this infrastructure in place has provided us with visibility across all three sites. This visibility, facilitated by automation, is particularly beneficial for higher management and decision-makers. It's a notable advancement for our operations.
FortiEDR has played a crucial role in mitigating the impact of breaches within our healthcare IT industry. Given the vast amount of data we handle and the real-time nature of data processing via APIs and centralized databases, FortiEDR has streamlined our operations. It allows us to process data at our own pace without encountering significant obstacles or requiring extensive workarounds. Essentially, it has provided us with a seamless transition between sandbox and production environments, making our workflow smoother and more efficient.
What is most valuable?
One of the most effective features of FortiEDR for our security requirements is its dashboard accessibility. Having all monitoring, response, tracking, and mitigation tools in one dashboard provides our analysts and SOC team with a comprehensive view at a glance. This has significantly improved our response time, which is crucial given our primary focus on healthcare IT and the stringent regulations such as GDPR. The data we handle is highly sensitive, making robust agent-based active monitoring and protection, along with the mitigation setup, invaluable features that we truly appreciate.
What needs improvement?
There's room for improvement in the quick response time and technical support for integration issues, especially when dealing with multiple vendors. Delays in resolving integration challenges can impact project timelines and collaboration efforts, as experienced during our partnership with a fintech company. While the EDR's mitigation and tracking capabilities are commendable, there are concerns regarding vulnerability detection and database updates. In comparison to Trend Micro, our EDR solution seems to lag in addressing new vulnerabilities, necessitating workaround strategies to minimize risks. Therefore, enhancing real-time vulnerability detection capabilities is essential to maintain competitiveness and ensure user security.
For how long have I used the solution?
I have been using it for two years.
What do I think about the stability of the solution?
We transitioned all sites and infrastructure simultaneously without encountering any drawbacks. I would rate it nine out of ten.
What do I think about the scalability of the solution?
Scalability-wise, we encountered no issues, except for integration challenges with other vendors. I would rate it eight out of ten.
How are customer service and support?
I am extremely dissatisfied with the support and would like to see a faster response time. I would rate it four out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup was relatively straightforward. I would rate it eight out of ten.
What about the implementation team?
The deployment across the entire APAC region, encompassing two countries and seven field SSEs, with approximately eighty-nine devices per region, involved a team of around two hundred specialists from various domains such as risk assessment, compliance, network, database, and others. In total, about two hundred ten users were working on the deployment, and the process was robust and straightforward.
What's my experience with pricing, setup cost, and licensing?
The pricing is significantly high. The implementation of this solution required us to allocate additional funds beyond our initial budget. However, due to thorough testing and careful solutions, we are confident in its capabilities and scalability for the next three years. While the cost may have been high, we view it as a worthwhile investment due to Fortinet's reliability and long-term performance.
Which other solutions did I evaluate?
We didn't need to explore alternative products on the market, as we already had a partial setup in place.
What other advice do I have?
The integration of Fortinet products significantly bolstered our security environment. Among the seven layers of integration implemented, two key integrations stand out. Firstly, integrating across several SSCs globally facilitated the aggregation of information into a single BI tool, notably Microsoft BI, streamlining reporting processes. While this integration was relatively straightforward, integrating with external vendors posed challenges due to diverse systems and solutions across the industry chain. However, with the assistance of specialized experts, these challenges were effectively addressed.
In terms of my recommendation, I would certainly endorse its use. Overall, I would rate it eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
System Engineer at StockFood GmbH
Effective virus defense that looks towards the future and secure compared to other vendors
Pros and Cons
- "The main thing is that I feel safe. Because the processes that have been used to get a handle on the attackers are much better than other competitors"
- "The only minor concern is occasional interference with desired programs."
What is our primary use case?
It's a kind of virus defense that is looking to the future and not to the past.
What is most valuable?
The main thing is that I feel safe. Because the processes that have been used to get a handle on the attackers are much better than other competitors.
The solution is very secure compared to other vendors.
What needs improvement?
The only minor concern is occasional interference with desired programs, although it's a necessary trade-off. Otherwise, I have no suggestions for improvement.
Another area of improvement is support. It could be faster.
In future releases, maybe some extra features could be added to make it better, and maybe the events and history could be made a little bit clearer.
For how long have I used the solution?
We've been using it for four to five years now.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
It is a scalable solution. There are around 6o end users using this solution. It is easy to scale.
How are customer service and support?
The customer service and support are quite okay. It could be better.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have used ESET. ESET is an old-style defense that has less problems with new programs, but it's not as secure as Fortinet.
We currently use both ESET and Fortinet. We have some places, especially for developers, that can't use FortiEDR because it's too restrictive.
How was the initial setup?
Installation is straightforward.
What about the implementation team?
The initial installation on the server side takes a bit of time, but if we consider the overall process, it could take about a week.
We require two people for deployment. The maintenance is easy.
What's my experience with pricing, setup cost, and licensing?
The pricing model is okay. It's not cheap, but it's not expensive either. It's a customized price. It's a yearly license. There are no extra costs.
What other advice do I have?
I would definitely recommend the solution.
Overall, I would rate the solution a nine out of ten because but the only concerns I have are that it can sometimes have problems with new programs, and the support could be a bit faster.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Assistant Director at a university with 1,001-5,000 employees
The rule creation, monitoring, and inspection profiles are great
Pros and Cons
- "Fortinet FortiEDR's firewalling, rule creation, monitoring, and inspection profiles are great."
- "Integration with Azure and SaaS provisioning tools could improve Fortinet FortiEDR."
What is our primary use case?
We use Fortinet firewalls for perimeter security at six to seven of our locations.
How has it helped my organization?
It provides extreme perimeter security, especially for VPN and application profiles, and seamless security monitoring through FortiAnalyzer.
As a firewall the solution is great, we never had any issues.
We saw time to value within three to four months of the firewall deployment.
What is most valuable?
Fortinet FortiEDR's firewalling, rule creation, monitoring, and inspection profiles are great.
What needs improvement?
Integration with Azure and SaaS provisioning tools could improve Fortinet FortiEDR.
For how long have I used the solution?
I have been using Fortinet FortiEDR for almost five years.
What do I think about the stability of the solution?
The stability is generally good. We had one problem once, but otherwise, it has been good.
What do I think about the scalability of the solution?
I don't think Fortinet FortiEDR is scalable with other vendors and new cloud provisionings, such as Azure or other cloud providers. I need to evaluate it further.
How are customer service and support?
Technical support is good, but there are sometimes problems with reachability.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I used Check Point and Cisco firewalls in my previous companies. At my current company, we use Fortinet, which I find to be a good firewall.
How was the initial setup?
The initial deployment was complex, but that is expected in any firewall environment.
What about the implementation team?
We use a migrator for the implementation and they were good.
What was our ROI?
We have seen a return on investment over the past four years. We can be assured of the perimeter security system's stability and ability to sustain itself in good conditions.
What's my experience with pricing, setup cost, and licensing?
I'm not familiar with pricing, but it looks a bit costly compared to other vendors.
Which other solutions did I evaluate?
Fortinet FortiEDR was installed before I joined my organization but it was a good choice.
What other advice do I have?
I give Fortinet FortiEDR an eight out of ten.
We are looking for max solutions from vendors. We may look at VPN solutions as well.
Attending RSA is an opportunity to network and compare products from vendors around the world which are interesting.
Attending RSA gives us the opportunity to compare products and understand the latest technology. This is something that is really valuable.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Security Analyst at a tech vendor with 10,001+ employees
We saw time to value within two weeks of implementing the solution, which strengthened our use cases
Pros and Cons
- "Fortinet has helped free up around 20 percent of our staff's time to help us out."
- "ZTNA can improve latency."
What is our primary use case?
We use FortiAI, FortiSIEM, and FortiEDR.
How has it helped my organization?
Fortinet helped us scale large-scale deals with clients because of its strong offerings.
Fortinet is very straightforward to use. I have access to a lot of technical resources, and I have been able to use them effectively.
Fortinet has helped free up around 20 percent of our staff's time to help us out.
We saw time to value within two weeks of implementing the solution, which strengthened our use cases.
What is most valuable?
I would say FortiSIEM, is a good alternative to Splunk.
The focus area for analytics is to tie it into the firewall components within SD-WAN.
What needs improvement?
ZTNA can improve latency. I believe that a lot of the focus is on SD-WAN.
For how long have I used the solution?
I have been using Fortinet FortiEDR for four years.
What do I think about the stability of the solution?
I rate Fortinet's stability a ten out of ten.
What do I think about the scalability of the solution?
I rate Fortinet's scalability a nine out of ten.
How are customer service and support?
Fortinet's technical support is top-notch. They have a partner manager, technical account reps, and a lot of ongoing community activities to ensure that people stay up-to-date on the latest information.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup requires a lot of communication with the business to gather and clarify requirements.
What about the implementation team?
We worked with Fortinet to implement the solution, and then our team of technical staff deployed it.
What was our ROI?
We have seen a return on investment. Teams are being hired and staffed to meet the demand of having Fortinet implemented on our client projects.
What's my experience with pricing, setup cost, and licensing?
The pricing is typical for enterprises and fairly priced. Deals are negotiated with an account manager.
Which other solutions did I evaluate?
We evaluated Palo Alto Networks. However, we felt that they did not have the entire suite of analytics that I was looking for. Fortinet, on the other hand, seems to have a more diversified offering in this area.
What other advice do I have?
I give Fortinet FortiEDR a nine out of ten.
The RSA conference helps me stay up-to-date on technology. It also helps me think differently about my use cases. Sometimes, a feature is supported, but other times, vendors may not have it. There may be a reason why they're not doing things the way they say they will.
Attending RSA has an impact on our organization's cybersecurity purchases. In fact, some of the vendors I spoke to told me that a group had already scheduled a meeting with us, which I was unaware of.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Assistant IT Manager - Infrastructure & Operation at Hong Kong Aircraft Engineering Co Ltd
Good detection and response capabilities with decent performance
Pros and Cons
- "The setup is pretty simple."
- "We find the solution to be a bit expensive."
What is our primary use case?
We are primarily using the solution for endpoint detection response. It's endpoint security.
We do POCs for people who wish to purchase the product.
What is most valuable?
The performance has been fine.
It's good for the detection and response to threats.
The setup is pretty simple.
Technical support has been decent in the past.
We have seen an ROI. It is worth the cost.
What needs improvement?
The stability could be better.
The scalability could be improved a bit.
We find the solution to be a bit expensive.
For how long have I used the solution?
I've been using the solution for approximately one year. I haven't used it for that long just yet.
What do I think about the stability of the solution?
The solution is mostly stable and the performance is okay. It could be better, however.
What do I think about the scalability of the solution?
The scalability is fine. I'd rate it eight out of ten, although it could always be better.
We have around 2,000 users. At this time, we do not have plans to increase the number of users.
How are customer service and support?
We've used technical support several times. They were fine. I do not have any complaints about the level of service.
Which solution did I use previously and why did I switch?
We did not previously use a different EDR solution. This is the first product of this nature that we have used.
How was the initial setup?
The setup is pretty simple. The deployment takes less than one month. For the most part, the setup process is pretty reasonable and not complex.
We have a few people that are able to handle the deployment and maintenance.
What was our ROI?
We have witnessed ROI. It is worth the money.
What's my experience with pricing, setup cost, and licensing?
The pricing is a bit expensive. I'd rate it eight out of ten, with ten being very expensive.
What other advice do I have?
We're using the latest version of the solution.
I'd rate the solution eight out of ten overall. I'd recommend the solution to others.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Fortinet FortiEDR Report and get advice and tips from experienced pros
sharing their opinions.
Updated: March 2026
Product Categories
Endpoint Detection and Response (EDR)Popular Comparisons
CrowdStrike Falcon
Microsoft Defender for Endpoint
Cortex XDR by Palo Alto Networks
SentinelOne Singularity Complete
IBM Security QRadar
HP Wolf Security
Huntress Managed EDR
Elastic Security
Microsoft Defender XDR
Trellix Endpoint Security Platform
WatchGuard Firebox
TrendAI Vision One
Check Point Harmony Endpoint
Kaspersky Endpoint Security for Business
Buyer's Guide
Download our free Fortinet FortiEDR Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are pros and cons of CrowdStrike Falcon vs Fortinet FortiEDR?
- What's the difference between Fortinet's FortiEDR and FortiClient?
- What is the biggest difference between EPP and EDR products?
- What is the difference between EDR and traditional antivirus?
- What is your recommendation for a 5-star EDR with low resource consumption for a financial services company?
- Which is the best EDR for a logistics company with 500-1000 employees?
- What is the best EDR or XDR product for a company with 9000 employees?
- What to choose: an endpoint antivirus, an EDR solution or both?
- Do we need to use both EDR and Antivirus (AV) solutions for better protection of IT assets?
- How does EternalBlue work?



















