Try our new research platform with insights from 80,000+ expert users
DejanBlagojevic - PeerSpot reviewer
Presales Engineer at a tech services company with 11-50 employees
Reseller
Dec 1, 2022
Mitigates breaches and attacks; eliminates human error
Pros and Cons
  • "The good news is that FortiSOAR is not hard to maintain. If you prepared well and deployed strong initially, then maintenance will take half an hour every other week, not more than that. A single person can do it."
  • "Fortinet's tech support overall is not great when they are at their best."

What is our primary use case?

The primary use case for our clients is deploying automatization component of FortiSOAR to help mitigate breaches or attacks without human error. The solution automates everything using the playbooks and pre-deployed response mitigation scenarios. Companies that can use this product may have an infrastructure team but may not be able to attract IT security talent. FortiSOAR helps them minimize human errors. I would say that this is most important and beautiful thing you can have in cybersecurity right now.

What is most valuable?

FortiSOAR's most valuable feature is its ability to correlate the products and vendors that do not have a native interconnection between them.

What needs improvement?

There is quite a bit of room for improvement with FortiSOAR's tech support. 

For how long have I used the solution?

I have been using FortiSOAR for the last year. It's brand new product. The product was published globally only about a year and a half ago. I got my first FortiSOAR project about a year ago.

Buyer's Guide
Fortinet FortiSOAR
January 2026
Learn what your peers think about Fortinet FortiSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.

What do I think about the stability of the solution?

On a scale of one to five, with one being not stable at all and five being very stable, I give FortiSOAR a five for stability. 

What do I think about the scalability of the solution?

FortiSOAR is really easy to scale up or scale down.

How are customer service and support?

Fortinet's tech support overall is not great when they are at their best.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup is really difficult. To deploy, you need to have a huge amount of knowledge between multiple different technologies. You also need knowledge of domain controllers, data center architecture, network security, classic network components, cloud services, and more. You need to know pretty much whole system. Only then can you provide nice and useful playbooks that will automatically mitigate accounts being compromised or ongoing attacks between different technologies. It is not user friendly and it is not really easy to configure.

Deployment would typically begin with the enumeration of whole system. We visualize all the elements of the system and ask questions like: How many identity providers are there? How many network components are there? Do these components have APIs enabled or not? How can the solution reach towards all these components and make adjustments and execute commands? It is important to deeply understand how the IT system is constructed. 

After that enumeration period, we will start making connectors and then sending some commands towards them in specific cases. The second and third stages entail optimizing and fine tuning everything in one giant ecosystem. The last part is redefining the playbooks, which will mitigate attacks.

The process outlined above takes just over a month. In cybersecurity, time is critical. If you take too long to deploy, you are basically leaving yourself open for an attack. Companies mostly buy security solutions after they have been breached or while they are under some sort of attack. This puts a lot of stress on the person implementing because the customer will always want it done ASAP. Therefore, in normal circumstances, a month for deployment is okay when you have time for some strategical thinking. But, you don't have that kind of time if your company is currently under attack.

Most complex deployments will involve multiple teams from across the comany. You will always have one person from the network side, one person from DC side, one person from admin, and one person for external services. This will add up to seven people in most cases. 

The good news is that FortiSOAR is not hard to maintain. If you prepared well and deployed strong initially, then maintenance will take half an hour every other week, not more than that. A single person can do it. 

What was our ROI?

The product pays for itself nicely, but the issue is that you cannot sell that straight away. It is fairly new technology and people are not aware of the benefits that it gives. One a scale of one to five, with one being no ROI and five being excellent ROI, I give FortiSOAR a three.

What's my experience with pricing, setup cost, and licensing?

On a scale of one to five, with one being very affordable and five being very expensive, I would give FortiSOAR a three. 

There are no hidden fees or external trade feeds. You do not have to deal with anything besides the license itself and support. 

The licensing is flexible. You can buy a subscription-based license on a yearly basis or you can buy a perpetual license that will never expire.

What other advice do I have?

If a company already has multiple different teams covering things like networking, the data center, and SaaS services, and they are missing the one big link between, then FortiSOAR is the perfect solution for them. But, if the organization's maturity is low, I could recommend they use a solution like FortiSOAR as it requires a large amount of knowledge to run. There is not a single use case for FortiSOAR, but developed companies are best suited for a solution like this.

However, as far as FortiSOAR itself is concerned, there is not much space for improvement. You can connect it to pretty much anything, which is the most important feature of this product.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
Yashas P - PeerSpot reviewer
Cybersecurity engineer at a tech services company with 11-50 employees
Real User
Top 10
Jun 13, 2024
Helps create playbooks, but documentation needs to be improved
Pros and Cons
  • "The solution's most valuable feature is playbook creation, which allows us to integrate all data ingestion into the same platform."
  • "The solution lacks proper documentation, so we have to test and trial each playbook and integration."

What is our primary use case?

Our government clients need the solution to automate the attacks and threats they receive. The clients use the tool to integrate their security posture.

What is most valuable?

The solution's most valuable feature is playbook creation, which allows us to integrate all data ingestion into the same platform.

What needs improvement?

The solution lacks proper documentation, so we have to test and trial each playbook and integration. Because of that, we are facing many challenges. There are too many connectors that are not available on the documents.

For how long have I used the solution?

I have been using Fortinet FortiSOAR for six months.

What do I think about the stability of the solution?

We sometimes faced server issues, and the SMTP protocol got disconnected a few times. We faced many issues and had to restart the server every time. When in production, the client wouldn't let us restart the server, so we had to wait another day to restart it.

I rate the solution’s stability a five out of ten.

What do I think about the scalability of the solution?

I rate the solution a seven out of ten for scalability.

How are customer service and support?

The solution's technical support is not good. The support team provides late replies, and I think they don't have proper engineers.

How would you rate customer service and support?

Neutral

How was the initial setup?

On a scale from one to ten, where one is difficult and ten is easy, I rate the solution's initial setup a seven out of ten.

What other advice do I have?

The solution's integrated CICD pipelines and Ansible and YAML playbooks are the most effective in automating the security tasks.

The solution was pre-installed. We just needed to do the technical assistance and admin work, like creating playbooks. The solution's implementation and installation were already done. It was already integrated and connected with FortiEDR and Active Directory. We just wanted to check the data ingestion flow and whether Fortinet FortiSOAR could capture everything.

Overall, I rate the solution a six out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. msp
PeerSpot user
Buyer's Guide
Fortinet FortiSOAR
January 2026
Learn what your peers think about Fortinet FortiSOAR. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.
Cemil Altug - PeerSpot reviewer
Hybrid Cyber Security Team Lead at a security firm with 11-50 employees
Real User
Top 10
Sep 1, 2023
A security solution that needs to improve analysis
Pros and Cons
  • "We use the product for security."
  • "Fortinet FortiSOAR should improve its analysis."

What is our primary use case?

We use the product for security. 

What needs improvement?

Fortinet FortiSOAR should improve its analysis. 

For how long have I used the solution?

I have been working with the solution for three years. 

What do I think about the stability of the solution?

I rate the product's stability a nine out of ten. 

What do I think about the scalability of the solution?

I rate the tool's scalability an eight out of ten. 

How was the initial setup?

We have deployed Fortinet FortiSOAR on the cloud, and installation was easy. 

What's my experience with pricing, setup cost, and licensing?

Fortinet FortiSOAR is expensive. 

What other advice do I have?

I rate the product a nine out of ten. 

Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Shahriar Atique - PeerSpot reviewer
Director & CEO at a tech services company with 11-50 employees
Real User
Nov 27, 2022
Beautiful fabrications and built-in connectors for integrating with many products
Pros and Cons
  • "The solution is easy to implement and includes 450 built-in connectors."
  • "The technology and integrations are important so should continue to be enhanced."

What is our primary use case?

We use the solution as a middleware for orchestrations and integrations from a single console. 

What is most valuable?

The solution is easy to implement and includes 450 built-in connectors.

You can push policies without needing to access the firewall. 

It is easy to monitor an environment because alerts can be classified as low, medium, or high priority. 

The fabrication, management, and communication across a single platform is beautiful. The end-to-end format handles switching endpoints, security, and firewalls. 

What needs improvement?

The licensing model could be better. 

The technology and integrations are important so should continue to be enhanced. 

For how long have I used the solution?

Our company has been using the solution for one year in our test lab.

For the last eight years, we have been one of the big Fortinet partners in the Bangladesh region. We partner with five of the world's premium products and implement any solution of interest to our customers. 

What do I think about the stability of the solution?

The stability and security are good in Bangladesh where Fortinet and Palo Alto are the top two products in the market. Mechanisms and situations are different by geographic location. 

For example, the USA has different mechanisms than Bangladesh so their top products might differ. In the UK, maybe Sophos is the best product. It all depends on who uses it and the technologies available. 

What do I think about the scalability of the solution?

The solution is scalable. It is important to know how to size the solution and deploy it properly in the network or your client will suffer. 

How was the initial setup?

The setup is not complex. If you have familiarity with the technology, setup will be easy. 

Nothing is tough or easy for any product, but knowledge should be clear about the solution.

What about the implementation team?

We implemented the solution in-house for our test lab. 

What's my experience with pricing, setup cost, and licensing?

The solution offers both licensing and subscription models that are similar in price to other products.

Which other solutions did I evaluate?

Our company works with many products including the solution, Cisco, Palo Alto, and Juniper. We assess our customer's network and recommend the best solution. 

What other advice do I have?

I recommend the solution because of its fabrications and built-in connectors that allow it to integrate with many products. 

I rate the solution an eight out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
ZaidoonAbuhanak - PeerSpot reviewer
SALES PRODUCT MANAGER at a comms service provider with 201-500 employees
Reseller
Apr 8, 2022
Integration with FortiAnalyzer is good; unfortunately doesn't connect well with network devices
Pros and Cons
  • "It's great that the solution is integrated with FortiAnalyzer."
  • "The solution doesn't connect well with the network devices."

What is our primary use case?

The primary use case of this solution is for security and for using FortiSOAR with FortiSIEM for connecting logs and analysis. We are resellers and partners of Fortinet. 

What is most valuable?

I like that the solution is integrated with FortiAnalyzer, it's the best feature. 

What needs improvement?

The solution doesn't connect well with the network devices, with FortiNAC. It's also a very expensive product and I've found that the Fortinet engineers don't have much experience with the product and they require training, particularly when dealing with enterprise organizations. 

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

The solution is scalable.

What's my experience with pricing, setup cost, and licensing?

In general, this product is expensive. I think maintenance requires a minimum of three people.

What other advice do I have?

I recommend this solution. If a customer is looking at FortiSIEM, it's better to take FortiSOAR to reduce the number of people or the employees working and monitoring FortiSIEM. 

I rate this solution six out of 10

Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
Vivek Balaji - PeerSpot reviewer
Technical Director - Cyber Security at a comms service provider with 1-10 employees
Real User
Feb 28, 2022
Price high, features need improvements, but good reputation
Pros and Cons
  • "The reputation of the brand is very good."
  • "I have found that Fortinet FortiSOAR needs a lot of improvement. The Orchestration needs to be improved."

What is our primary use case?

We are in the initial stages with the use of Fortinet FortiSOAR.

What needs improvement?

I have found that Fortinet FortiSOAR needs a lot of improvement. The Orchestration needs to be improved.

Most of its functionalities are yet to be operational, I have tried to click on the icons but they do not work.

For how long have I used the solution?

I have been using Fortinet FortiSOAR for approximately one year.

What do I think about the stability of the solution?

I would rate the performance of Fortinet FortiSOAR a 4 out of five.

How was the initial setup?

The initial setup is complicated. The APIs are not able to be used easily, they claim to have integration. When it comes up to the next firmware, there are some challenges.

What's my experience with pricing, setup cost, and licensing?

The price of the product should be lower. The brand value that Fortinet has, it has the reputation of being a reasonably priced product, and they have an enormous customer base in India. Most of the SME market is covered by FortiGate firewalls. It becomes an easy way for consultants, such as us, or even system integrators, to open the door with the Fortinet product lines. 

The reputation of the brand is very good.

What other advice do I have?

You have a lot of Fortinet products. You can choose Fortinet FortiSOAR or you wait for them to improve the product a little more as it is needed.

I rate Fortinet FortiSOAR a five out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
reviewer1480533 - PeerSpot reviewer
Vice President Global Technology Infrastructure Automation at a financial services firm with 10,001+ employees
Real User
Jul 2, 2021
Accessible with good centralization and a straightforward initial setup
Pros and Cons
  • "The initial setup is straightforward."
  • "Technical support could be improved."

What is our primary use case?

Fortinet provides automation capabilities for event detection and remediation. It also provides a centralized QE where all the events are consolidated and correlated and it gives you visibility to the entire workflow of a specific threat event. It provides some remediation for the particular threats or alerts based on its profile of criticality.

What is most valuable?

The most valuable feature is its centralization as you don't want to be going to different locations to correlate items or to piece anything together to derive meaningful insights. We want to have a centralized QE for analytics, visibility, assessments, and decision-making and this solution allows for that.

The other feature that I personally appreciate is its accessibility. You can integrate it with other systems within the environment such as ticketing systems or something for sending alerts and then creating tickets for the operations or security operations team. They can get alerted when these events happen so they can be aware of events and even start troubleshooting for the investigation if it is warranted. It can be integrated seamlessly with other internal systems.

The initial setup is straightforward. 

What needs improvement?

The improvement would be to make it more user-friendly. They need to lower the learning curve. They should just make it more user-friendly, especially for non-technical people.

Technical support could be improved.

For how long have I used the solution?

I've been using the solution for around four years. It's been a while. 

How are customer service and technical support?

Fortinet is good, however, as they get into security analytics, while their support is okay, sometimes it requires some hand-holding and their response is probably not as good as Palo Alto. They've got to get there eventually to improve their support model.

Which solution did I use previously and why did I switch?

I also use Palo Alto. We have both products in our work environment. We're using Palo Alto also for firewall and sending those logs to another security monitoring tool to make decisions based on analytics that it provides us.

How was the initial setup?

The initial setup is very straightforward and simple. It's not overly complex or difficult. An organization shouldn't have any issues with the process.

What's my experience with pricing, setup cost, and licensing?

I cannot speak to the exact pricing of the solution.

What other advice do I have?

I'm not sure which version of the solution we're using currently.

I'd rate the solution at a nine out of ten. It compliments nicely with Palo Alto.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Manjeet Yadav - PeerSpot reviewer
Principal Cyber Security Technologist at a computer software company with 201-500 employees
Real User
Top 5Leaderboard
Aug 16, 2020
Quick detection and response time, with helpful playbooks used to automate our response
Pros and Cons
  • "It has a quick detection and response time."
  • "The area that needs improvement is integration with multiple third-party vendors."

What is our primary use case?

The primary use case of this solution is as a next-generation firewall. It is used to restrict the breach that will occur from any particular malicious server command or control. 

The primary focus is to save the customer's confidential data and break the connection.

What is most valuable?

The most valuable features are the playbooks that allow you to take action immediately after the approval of the analytics and anomalies.

It has a quick detection and response time.

What needs improvement?

The area that needs improvement is integration with multiple third-party vendors. For example, if you have customers who are using the CheckPoint firewall or Sophos firewall, and they are forwarding any logs to the Syslog format system, it should re-automate though the third-party firewall or any third-party proxy.

In the next release, I would like to see UEBA included. User entity behavior analytics is very important. Also, I would like to have the UEBA integrated with the cloud, making it accessible from any specified region. This would be very helpful for our customers.

For how long have I used the solution?

I have been working with FortiSOAR for five years.

What do I think about the stability of the solution?

After the new hardware and software were launched, it became more stable.

What do I think about the scalability of the solution?

It's now scalable since the new release.

How are customer service and technical support?

Technical support is good.

Depending on what hour you are calling, it may take some time. If you are calling within the same time zone then it 's fine, but if you are calling from Africa for example, it will be rerouted to another region.

How was the initial setup?

I was not a part of the initial setup. I only saw the demo and it seems that it is easy, rather than complex.

Now that I have more hands-on experience, I see that it is easy to manage and configure.

What's my experience with pricing, setup cost, and licensing?

Pricing is fine compared to other solutions.

What other advice do I have?

I am a Fortinet certified engineer.

Depending on the customer's requirements, and based on their RFP demand and budget, I would recommend this product.

I would rate this solution an eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. partner
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiSOAR Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2026
Buyer's Guide
Download our free Fortinet FortiSOAR Report and get advice and tips from experienced pros sharing their opinions.