Try our new research platform with insights from 80,000+ expert users
Akhilesh Mishra - PeerSpot reviewer
Technical Lead at M.Tech
Reseller
Good reporting and monitoring capabilities, easy integration with different firewalls, and good stability and scalability
Pros and Cons
  • "It provides very good reports. It can easily integrate with multiple firewalls, such as Cisco, Juniper, Palo Alto, and Checkpoint. We can push a policy from Tufin to a firewall, which is a very good feature. We can monitor all access rules and the operating system of a firewall."
  • "Currently, we are able to monitor access rules and the operating system of a firewall. It would be great if we can also monitor the configuration of the firewall through Tufin."

What is our primary use case?

Our customers use Tufin to manage multiple firewall access rules through a single console. We have done on-prem, public, and private deployments of this solution.

What is most valuable?

It provides very good reports. It can easily integrate with multiple firewalls, such as Cisco, Juniper, Palo Alto, and Checkpoint. 

We can push a policy from Tufin to a firewall, which is a very good feature. We can monitor all access rules and the operating system of a firewall.

What needs improvement?

Currently, we are able to monitor access rules and the operating system of a firewall. It would be great if we can also monitor the configuration of the firewall through Tufin.

For how long have I used the solution?

I have been using this solution for the last three years.

Buyer's Guide
Tufin Orchestration Suite
September 2025
Learn what your peers think about Tufin Orchestration Suite. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.

What do I think about the stability of the solution?

It is very stable. It has good stability.

What do I think about the scalability of the solution?

It has very good scalability.

How are customer service and support?

Their technical support is good.

How was the initial setup?

Its initial deployment is not very easy. It is a little bit complex. After the deployment, it is easy to work with it in the GUI. Its deployment takes at least two or three days.

Which other solutions did I evaluate?

Customers usually evaluate AlgoSec. 

What other advice do I have?

I would advise others to go for it to manage firewalls from multiple brands in a single console.

I would rate Tufin a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Distributor
PeerSpot user
reviewer1554918 - PeerSpot reviewer
Network Operations Engineer at a computer software company with 10,001+ employees
Real User
Very straightforward to use with excellent scalability and reliable stability
Pros and Cons
  • "The solution is quite scalable."
  • "The older version that we have doesn't support some newer firewall vendors."

What is our primary use case?

We have a lot of ASA firewalls. We primarily use the product in order to lay down the rules and try to find out if there are any duplicate rules that need to be cleaned up, et cetera. It is mostly tasks like that.

What is most valuable?

The solution is very straightforward to use. It makes doing our work easy. The product is very good at helping us clean up rules.

We've found the stability to be quite good.

The solution is quite scalable.

What needs improvement?

The older version that we have doesn't support some newer firewall vendors. I'm not sure what the status of integration is right now on the latest version, however, it would be nice if they updated the older versions to allow for better integrations with firewalls. 

Sometimes the solution does take a bit of time to load. That said, it is a pretty old version, and that may be the main reason this is the case. It's possible that if we just upgraded to the latest version everything would go faster. 

Everybody wants to implement some kind of standard rules, however, it's difficult to standardize everything due to the fact that each company is unique. That said, if there was some sort of universal guide to ensuring firewall rules were compliant, that would be helpful. 

For how long have I used the solution?

I've been using the solution for a year and a half to two years at this point. It's been a while. I've definitely used it over the last 12 months or so.

What do I think about the stability of the solution?

The stability has been good. I haven't experienced any bugs or glitches. It doesn't crash or freeze. The stability has been reliable in terms of performance.

What do I think about the scalability of the solution?

I find the product to be easy to scale. Adding new firewalls is pretty straightforward and it handles the process well. If a company needs to expand and add more firewalls it shouldn't be a problem at all.

I would say six or seven people are using it and they're network operation people who have to deal with day-to-day firewall management, putting in new firewall rules, et cetera.

How are customer service and technical support?

I've never had an opportunity to reach out to technical support. I can't speak to how knowledgeable or responsive they are. I have no experience.

How was the initial setup?

The initial setup happened before my tenure with the company. I was not present when it was set up, and therefore I can't directly speak to my experiences with any implementation. I do not have a sense of if it was difficult or straightforward, and I can't say how long the deployment took. 

There is a bit of maintenance required, in terms of adding new rules, et cetera. We have individuals on staff that can handle that.

What's my experience with pricing, setup cost, and licensing?

I don't have any issue with the pricing, however, I was not the purchaser. I can't speak to the exact cost for our company.

Which other solutions did I evaluate?

While I was using Tuffin, I did want to evaluate AlgoSec. I wanted to compare the two to see which was better. In the end, I've decided I would stick with this product.

What other advice do I have?

We are just a customer and an end-user.

We are not using the most up-to-date version of the product. We are using one of the previous versions. I cannot at this time remember the version number, however, it was pretty old. We had a plan to upgrade, and then unfortunately ended up not doing that.

I'd rate the solution at a nine out of ten as it helps us do our work. We're mostly quite happy with its capabilities.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Tufin Orchestration Suite
September 2025
Learn what your peers think about Tufin Orchestration Suite. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
868,787 professionals have used our research since 2012.
reviewer1006845 - PeerSpot reviewer
Presales Network & Security Engineer at a tech services company with 51-200 employees
Reseller
User-friendly, intuitive, easy to set up, with good monitoring and support
Pros and Cons
  • "It allows administrators to visualize the traffic flow, and troubleshoot when necessary."
  • "They need to offer more support to vendors, such as Cisco, Checkpoint, Fortinet, and Forcepoint."

What is our primary use case?

The primary use case of this solution is for monitoring, automation, policy orchestration, and security.

What is most valuable?

The most valuable feature is the monitoring. I quite enjoy the monitoring this solution provides. It allows administrators to visualize the traffic flow, and troubleshoot when necessary. It's a useful tool.

The interface is quite user-friendly and intuitive.

What needs improvement?

The cost of this solution should be improved.

They need to offer more support to vendors, such as Cisco, Checkpoint, Fortinet, and Forcepoint.

They have an API, but it needs more service on this.

While technical support is good, they could still improve.

For how long have I used the solution?

I have been working with Tufin for one year.

What do I think about the stability of the solution?

It's a stable solution. There are some bugs that they are working on but that is common with any vendor.

They do mention that they don't support specific features from Nexus for some automation but it does actually work, although it is not listed as working.

How are customer service and technical support?

Technical support is relatively good. They are not the best but they are good.

They could improve but they do respond with accurate responses.

How was the initial setup?

The initial setup was straightforward. It was deployed in less than an hour.

The first time without training, it took an hour or so, but it was quite easy.

What's my experience with pricing, setup cost, and licensing?

It's quite an expensive solution.

What other advice do I have?

I would recommend this solution to others who are interested in using it.
I have not worked with any other vendors with this type of solution, for example, FireMon. I haven't worked with it. 

I would recommend it specifically to start with a secure track, which is a monitoring tool. Once the customer sees it, they want the solution. Afterward, for automation and secure change.

I would rate Tufin an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Distributor
PeerSpot user
reviewer1288842 - PeerSpot reviewer
Security Operations Engineer at a security firm with 201-500 employees
Real User
Quantifies and reduces many risks and eliminates traffic between different zones
Pros and Cons
  • "I like the deployment and management of this solution."
  • "In the next release I would like to see better migration in the Cloud because that will allow more visibility in the network."

What is our primary use case?

Our primary use case is fo the security of our medical facility. We have a lot of holes in the firewall and we wanted to see the details. For example, we see a lot of traffic between the different zones that we needed to reduce. So we use the solution to eliminate this traffic. It also allows us to have a lot of optimization rules for a good switching policy in the firewall. 

It can quantify and reduce a lot of risks.

What is most valuable?

I like the deployment and management of this solution. I don't have much experience in that kind of security solution, but I have three years of experience in similar solutions, like AlgoSec. I do some scripts to optimize the solution, such as configuring the API.

Additionally, when we export the report, you can see a lot of logs of all the equipment in the company and we can identify some of the machines or some log station in the network. Also, the user can create some requests to implement the flow and push the rules in the firewall. You can analyze the log and the traffic, you can have a lot of API's, and do some reporting.

What needs improvement?

In the next release I would like to see better migration in the Cloud because that will allow more visibility in the network.

For how long have I used the solution?

I have been working with Tufin Orca for one year.

This solution was already deployed and we just manage it.

What do I think about the stability of the solution?

It is a stable solution.

What do I think about the scalability of the solution?

This solution is scalable.

How are customer service and technical support?

I have tons of contact with support. If you have some problems or issues you can contact support and manage the problem together. I did that with a lot of competitors, like Palo Alto on our network. If we have an issue in production, my production team will try to solve it or you can contact support to manage the issue.

I am satisfied with the support.

How was the initial setup?

The initial setup is not complex. It's easy for me because I have some experience and training on it. Now I can do a whole production on the application.

What about the implementation team?

We used an integrator for implementation because I have a colleague who has a lot more experience than me and we worked together to manage that solution.

What other advice do I have?

I would recommend this solution. I think it's a good solution to have. It is good to know what this solution does in the network. You can have a lot of training on it and see a lot of questions from different users in the company.

On a scale of one to ten, I would rate it an eight.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Network Infrastructure Engineer at Ropes & Gray
Real User
Easy to set up and use with helpful alerting on rule changes
Pros and Cons
  • "The most valuable feature is alerting, which lets me know when someone has made a change."
  • "I would like to see visibility into the FW features like IPS/Content Filter policies, the same way it does for FW rules/policies."

What is our primary use case?

We use this solution for Firewall audit, compliance, and some automation.

How has it helped my organization?

Using Tufin makes it easy to visualize when investigating or auditing configs.

What is most valuable?

The most valuable feature is alerting, which lets me know when someone has made a change. When something stops working I can see what has been done and by whom.

This solution is easy to set up and use.

It is very easy to see what has changed when comparing two different revisions.

What needs improvement?

I would like to see visibility into the FW features like IPS/Content Filter policies, the same way it does for FW rules/policies.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Real User
Improves visibility, saves time, and assists with compliance
Pros and Cons
  • "The filtering of lots of criteria is very valuable."
  • "I would like to see more configuration options on next-generation firewalls, defining possible standards for devices."

What is our primary use case?

We use this solution for recertifying connections, application-based automation, and compliance with regulations.

How has it helped my organization?

The workflows save time and speed up the authorization processes for applications. For network operators, it enhanced visibility. For application operators, it increased knowledge of dependencies and also provided them with impact awareness.

What is most valuable?

Before this solution, we used Excel sheets. This approach did not provide ways to filter the options for implementing changes. The filtering of lots of criteria is very valuable.

What needs improvement?

I would like to see more configuration options on next-generation firewalls, defining possible standards for devices.

For how long have I used the solution?

We have been using this solution for more than three years.

What do I think about the stability of the solution?

The tool is highly reliable.

What do I think about the scalability of the solution?

We have not run into limitations around scalability. Depending on the devices, it is better to have a sizing discussion with the sales engineer.

How are customer service and technical support?

In the beginning, we did not have a dedicated support handler and it caused some issues because the service requests were interrelated. When we later obtained a central contact in support, it improved the handling.

Which solution did I use previously and why did I switch?

Prior to this solution, we used Excel and firewall vendor consoles.

How was the initial setup?

The initial setup was fairly complex because of the agreement with the network provider.

What about the implementation team?

We implemented this solution in-house with the support of Tufin Professional Services.

What's my experience with pricing, setup cost, and licensing?

I suggest talking with Tufin about the flexibility of the pricing structure.

Which other solutions did I evaluate?

We did not perform our own evaluation. However, one of the daughter companies evaluated multiple products (Tufin, FireMon, and AlgoSec) and selected Tufin. We relied on their research.

What other advice do I have?

Implementing the tool is easy, but introducing the changes within the company can be challenging.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1185804 - PeerSpot reviewer
Works at a insurance company with 10,001+ employees
Real User
APG saves us enorm time providing a new policy from millions rows of logs
Pros and Cons
  • "The Automatic Policy Generator saves time because we are able to identify the required policy when a client doesn't know what he needs."
  • "I would like to see better report integration in this solution."

What is our primary use case?

We use SecureTrack for troubleshooting, APG (Automatic Policy Generator), implementation of new requests, change monitoring, rule and object usage reports.

This solution provides an unified display of rules across vendors.

We use this solution e.g. for cleanup and processing of shadowed rules.

How has it helped my organization?

Using this solution saves us time and money. The Automatic Policy Generator saves time because we are able to identify the required policy when a client doesn't know what he needs.

We are able to perform an inventory analysis for colleagues.

What is most valuable?

The most valuable feature of this solution is APG, the Automatic Policy Generator. Further there are very good capabilities for policy browsing and reporting implemented.

What needs improvement?

I would like to see better report integration in this solution.

For how long have I used the solution?

I have been using this solution for ten years.

What do I think about the stability of the solution?

I would rate the stability of this solution a nine out of ten.

What do I think about the scalability of the solution?

The scalability of this solution is ok.

How are customer service and technical support?

The technical support team for this solution is very polite.

There was some functionality in the integration with Check Point that was initially working not in the best matter, and it was only fixed after Check Point got involved.

Which solution did I use previously and why did I switch?

We did not use another solution prior to this one.

How was the initial setup?

The initial setup of this solution was not complex. It was simple.

What about the implementation team?

Our in-house team handled the implementation and deployment of this solution.

What's my experience with pricing, setup cost, and licensing?

Tufin is expensive but it is very good.

Which other solutions did I evaluate?

We did evaluate other options. However, Tufin was the best one that we tried.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1185783 - PeerSpot reviewer
Works with 10,001+ employees
Real User
Reduces effort required for audits and automated reporting helps with compliance
Pros and Cons
  • "The automated reporting on a regular basis is helping us to be compliant with legal requirements."
  • "I would like to see the setup of the Unified Security Policy simplified."

What is our primary use case?

We are using Tufin to manage our multi-vendor firewall environment.

We are using the Secure Change workflow to request, asses, and implement Firewall requests. Secure Track is used from our Security and Audit department for regular policy reviews.

How has it helped my organization?

Due to the usage of Tufin, we reduced the manual effort during audits to a minimum. The central place to request Firewall Rule Changes supports our Operation teams in a multi-supplier environment on a daily basis.

What is most valuable?

The automated reporting on a regular basis is helping us to be compliant with legal requirements.

What needs improvement?

We would like to see granular user permissions on SecureTrack.

The topology should be made easier to configure.

I would like to see the setup of the Unified Security Policy simplified.

For how long have I used the solution?

We have been using this solution for six years.

What do I think about the stability of the solution?

We have had no outages over the last six years, so this solution is very stable.

What do I think about the scalability of the solution?

This solution is highly scalable.

How are customer service and technical support?

Customer support reacts very fast. Due to the complexity, sometimes additional support levels need to get involved.

Which solution did I use previously and why did I switch?

We did not use another solution prior to this one.

How was the initial setup?

The initial setup was complex.

What about the implementation team?

A mix of Tufin Professional Services and in-house.

Which other solutions did I evaluate?

We evaluated other options before choosing this solution.

What other advice do I have?

I recommend getting Tufin Professional Services involved when implementing automation.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Tufin Orchestration Suite Report and get advice and tips from experienced pros sharing their opinions.
Updated: September 2025
Buyer's Guide
Download our free Tufin Orchestration Suite Report and get advice and tips from experienced pros sharing their opinions.