Cisco Secure Web Appliance vs. Palo Alto Networks Advanced Threat Prevention

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Secure Web Appliance
Score 8.0 out of 10
N/A
Cisco Secure Web Appliance (formerly Cisco Web Security Appliance [WSA]), powered by Cisco Talos, protects by automatically blocking risky sites and testing unknown sites before allowing users to link to them, helping with compliance. It is available models S690, S390, and S190.N/A
Palo Alto Networks Advanced Threat Prevention
Score 8.5 out of 10
N/A
Palo Alto Networks Advanced Threat Prevention is an intrusion prevention system (IPS) used to stop zero-day attacks inline in real-time. In addition to the prevention of known threats, the solution helps to stop never-before-seen exploit attempts and command and control with its inline deep learning engines that aims to provide prevention of zero-day injection attacks and evasive command and control.N/A
Pricing
Cisco Secure Web AppliancePalo Alto Networks Advanced Threat Prevention
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco Secure Web AppliancePalo Alto Networks Advanced Threat Prevention
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco Secure Web AppliancePalo Alto Networks Advanced Threat Prevention
Considered Both Products
Cisco Secure Web Appliance
Chose Cisco Secure Web Appliance
Cisco IronPort was the most flexible and easy to deploy. The use of a central manager even simplifies the process even further. Maintenance is seemeless and upgrades go well without having to install constant hotfixes.
Palo Alto Networks Advanced Threat Prevention

No answer on this topic

Best Alternatives
Cisco Secure Web AppliancePalo Alto Networks Advanced Threat Prevention
Small Businesses

No answers on this topic

LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.5 out of 10
Medium-sized Companies
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.2 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
Enterprises
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.2 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco Secure Web AppliancePalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
6.8
(9 ratings)
8.5
(6 ratings)
Usability
9.0
(1 ratings)
8.5
(2 ratings)
Support Rating
6.4
(2 ratings)
-
(0 ratings)
User Testimonials
Cisco Secure Web AppliancePalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
Cisco
We have both scenarios where we can describe that. For example, in the HQ, where we have about 3,000 users, Cisco IronPort Web Security Appliance is the ideal solution, because we can consolidate all the Internet access, policies, rules, etc. in the same box. However, if you have small offices with a few users, it's hard to justify one big and expensive box that could cost more than the whole office infrastructure.
Read full review
Palo Alto Networks
Palo Alto NTP is an appropriate suite of protection for any enterprise environment or anyone that truly needs some serious perimeter protection in a one-stop, all-in-one unit. There are no modules or add-ons or clunky interfaces to deal with it; everything works out of one management plane, licensing, implementation, monitoring. updating, etc. As a network admin, that is immensely valuable to me. Additionally, I get real-time reporting on all the stuff NTP is catching, and it is nothing to shirk at. The real value in NTP comes in only after you begin doing SSL-decryption, however, to truly inspect the traffic. Short of that, you are just seeing a bunch of encrypted data and the NTP suite of tools isn't going to avail you. NTP plus decryption, though, is invaluable!
Read full review
Pros
Cisco
  • SMA gave us central control over multiple servers, simplifying management.
  • Performance of the Appliance VM exceeded that of our old physical appliance-based solution.
  • Convenient licensing for virtualized environments that allows easy scaling.
Read full review
Palo Alto Networks
  • The threat engine has constant updates for important threats.
  • Wildfire helps supplement the Threat engine to help protect against 0 day threats.
  • The way the threat engine can be added at different levels to different zones and policies helps to ensure business essential traffic can have policies that are tuned to ensure traffic will flow.
Read full review
Cons
Cisco
  • I think that the interface could need updates to adapt it to a much more current system, achieve quick access to necessary tools and adapt the platform to a much more customizable and comfortable system to work with.
  • It is undoubtedly a platform that is worth having, however, the license costs could be better adjusted to small businesses so that it can be accessed more easily.
  • It could be a bit complex to use, the use of codes is quite extensive, it could be adjusted to something much more practical but just as efficient.
Read full review
Palo Alto Networks
  • Cost is high, but it is a premium product
  • Endpoints are still vulnerable.
  • TAC engineers aren't always equipped with ATP knowledge
Read full review
Usability
Cisco
Because it's one of those products you almost don't realize it exists from the end user. From the administrator perspective, you can do everything on its web interface and it's very intuitive to manage, once you know the concepts behind identities, acls, etc. Also, once you build the control structure, I mean, you link 'local' groups with your own Active Directory groups, as we did here, you don't need to be managing those things on the appliance itself.
Read full review
Palo Alto Networks
The reason to give ATP this rating is it specialises in detecting command control traffic whose primary role is to identify unusual outbound traffic patterns which blocks the command control communication and notifies to different security team to take necessary actions. ATP Global protect holds the responsibility of inspecting all the inbound and outbound traffic going to and from corporate system regardless of the network they are on. ATP plays a major role to identify the threats that blocks threats that could lead to data breach also it identifies any malicious file enter the system will be blocked proactively
Read full review
Support Rating
Cisco
Our experience with Cisco's support was terrible. Other than the fact that they don't respond to service-related emails with urgency, they also keep on changing the policies that affected us. Recently, they came up with a new look for the same software, which was insanely slow. Renewal of keys for the old interface took months. Overall, the support was not very friendly from the users' point of view.
Read full review
Palo Alto Networks
No answers on this topic
Alternatives Considered
Cisco
At home I have a McAfee service that does similar tasks and helps manage the users of my internet. McAfee seems more user friendly and easier to set exceptions.
Read full review
Palo Alto Networks
Having used Palo Alto Firewalls for years, implementing threat protection was the next step in perimeter security. Works much better than the few competitors I have personally used. Frequent content updates occur which may impact some policy rules, but that is normal across most vendors.
Read full review
Return on Investment
Cisco
  • Security! Security! Security! We are financial company that work with very sensitive information. A lot of unsafe traffic was blocked on the Cisco IronPort WSA over years of using it. We did not earn on it but absolutely sure that we did not lose 'gazillion' of dollars being infected or scammed.
  • Easy to configure and use, no need to teach new personnel how work with this product (hopefully saving time = saving money).
  • Unfortunately the price of license subscription made financial managers push IT dept. to look for something cheaper.
Read full review
Palo Alto Networks
  • After adding PA Threat Protection, we are now getting our network traffic completely inspected.
  • We are now applying security checks and scans like AV scan and Anti Spyware checks.
  • This is also giving visibility into threat and attack vectors that are using vulnerabilities and exploits to enter our environment.
Read full review
ScreenShots