FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to automate policy changes, meet compliance standards, to minimize policy-related risk. Since creating their policy management solution in 2004, FireMon states they've helped…
N/A
Forcepoint DLP
Score 8.1 out of 10
N/A
Forcepoint Data Loss Prevention (DLP) protects sensitive data everywhere it resides and moves, across endpoints, cloud apps, web, email, and on-premises environments. It delivers unified policy management and centralized control from a single console.
N/A
Symantec Data Loss Prevention
Score 7.1 out of 10
N/A
Symantec Data Loss Prevention (DLP) is a data loss protection option.
N/A
Pricing
FireMon
Forcepoint Data Loss Prevention
Symantec Data Loss Prevention
Editions & Modules
No answers on this topic
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
FireMon
Forcepoint DLP
Symantec Data Loss Prevention
Free Trial
Yes
No
No
Free/Freemium Version
No
No
No
Premium Consulting/Integration Services
No
No
No
Entry-level Setup Fee
Optional
No setup fee
No setup fee
Additional Details
—
—
—
More Pricing Information
Community Pulse
FireMon
Forcepoint Data Loss Prevention
Symantec Data Loss Prevention
Considered Multiple Products
FireMon
Verified User
Anonymous
Chose FireMon
FireMon gives us more flexibility when deploying the solution. Integrates with cutting-edge security solutions
I was not involved on the decision but having multiple brands in the company make sense to use a tool such as Firemon because it integrates easily with multiple vendors.
The Dell product ran on its own hardware, which failed often. The reports were not available to us in real-time, we had to request them. Many false detections of issues.
Both perform admirably with regards to providing that single pane of glass and visibility in a normalized view. They both provide great insight into where your organization stands in terms of compliance controls. In terms of upgrading and scalability, I would have to give the …
I has worked with Algosec and while they are very similar product, I find the FireMon is easier to understand and get rolling with. While both require some learning, FireMon is by far the easier one. Once you have an understanding of how things are arranged and labeled you can …
FireMon has the most supported devices. The UI is easy to use and intuitive. There is a comprehensive list of built in compliance controls that are missing in the competition.
To be blunt, at the time of purchase most of these products appeared to do the same things in the same ways. What really brought us to the table with FireMon six years ago was their willingness to earn our business, and to this day they remain just as committed to keeping our …
They are two very well done tools, FireMon is better suited for firewall rules evaluation, configuration and review, Tenable.io is better suited for CIS benchmarking. We ended up using both of them in the end, it really depends of your needs and what you are looking for, the …
We performed a head-to-head PoC between FireMon and AlgoSec several years ago. Both platforms were well developed, but FireMon had the upper hand in three areas:
Its UI was more unified and intuitive across the different components and products
AlgoSec and Tufin both have initial issues during the POC stage, and FireMon even though with the changes they have made still works better and is more user friendly.
I think Forcepoint Data Loss Prevention pales in comparison to the feature set you get with M365 (which is likely included in most corporations existing licensing!). We moved on from Forcepoint Data Loss Prevention to implement Microsoft's solution instead.
User friendly solution that makes it easy to deploy and manage. Forcepoint Data Loss Prevention very effective to protecting our valuable data on endpoints and where data lives like in the Cloud, server and on-premises disk drives and its valuable to just set policies once and …
We tested and evaluated Forcepoint Data Loss Prevention and this solution suited the best for our requirement. We optimized it to suit our requirement of 250 to 300 users in our head office. We will be adding a few more users under this solution which are having Windows and MAC …
I find Forcepoint Data Loss Prevention to be a superior product compared to the other two alternatives mentioned. It is improving, though, at a slower pace but I have seen it upgrading to its best level. There is more value associated with this tool than the other two. …
Because it allows the creation of reports and statistics, risk assessment, real-time monitoring, fingerprints, machine learning, [and] a dictionary function--so good and useful.
I have evaluated CoSoSys but the reporting part did not hit the mark. Also, a high number of false positives was a concern for me. I need a predefined report which needs to be compatible with my compliance requirement, which was missing in CoSoSys. However CoSoSys is good for …
Netskope, Digital Guardian. We've stuck with Forcepoint to limit the number of major architectural changes in a given year. If we achieved diminishing marginal returns on its ROI, then we'd change because the prevention is good, but the headache has to be less than the …
We have tried out Office 365 and Trend Micro DLP but those solutions have not worked out as we hoped. That said, when we looked at Forcepoint Data Loss Prevention, there were only minor issues we came across that did not have any negative impact and overall, the solution was …
Sorry to be the bearer of bad news but Proofpoint has proven to be a superior product. In our experience Proofpoint has fewer false positives and more out-of-the-box pattern detections requiring less customization. However, there is still a value in having more than one DLP …
We selected Forcepoint Data Loss Prevention because it meets the size of our organization's needs and the ease of implementation compared to other solutions.
We selected Forcepoint DLP as we already were using their Web and Email filtering products. The integration among their products is very strong and we did not want to introduce too many additional products into our environment. We have limited security resources so a high level …
We are currently in the evaluation phase to compare overall cost and functionality. Blue Coat runs in a very similar way that Forcepoint does. Check Point runs at the same gateway layer that the firewall does so its policy can be run on the same hardware of existing environments.
Forcepoint stacks up pretty well against its competitors. It has more functionality then Cisco and is comparable to McAfee. McAfee is one of the few I would feel at ease with replacing our currently solution with.
Overall it was the best we had, SSL decryption worked better than Bluecoat and Cisco traffic had a lot of certificate issues. Websense was the quickest to get up and running and their sales engineering team is superb.
Websense has similar features to other DLP solutions. We selected Websense based upon other organizations' experiences. I cannot compare the negatives to Websense as we did not deploy any other vendor DLP solutions in the same scale.
Websense, at the time, was the only content filtering solution to offer a hybrid option of on-prem and cloud services. We are up for renewal soon and will likely compare them to other vendors.
Websense gave us the best flexibility for our enterprise configuration and setup. It all does not take up anything on our computers when we use Websense one armed off our firewalls and routers. We found this very easy to set up and transparent to our users and network. The …
I haven't compared this product directly with others but I have seen and used the Microsoft Office 365 Compliance app(s); and there seems to be a good parity generally between the products in most capability areas for DLP.
Symantec DLP is the best. Put it in a head to head competition and it will win. However it can be a bit more expensive than other products so don't compare on price, compare on quality of product.
FireMon is best used in a large environment (for example, I have >100 firewalls in my environment). It's best used when trying to improve security posture and showing changes in firewall security over time. It might not be the best choice for smaller environments or those that aren't concerned about security management.
-Where companies need to secure their attachment, which goes outside, means from their company to outside -Where companies need to ensure their client's personal information -Where companies need DLP. They need to look for Forcepoint only, as they have the upper hand over the rest of their competitors.
Email, web browser, and data storage areas will fulfill the security of mobile devices very well. It provides multiple methods of data filtering and classification to ensure important data can be well protected. Unfortunately, it does not support you to make regex-based definitions. for this reason, you need to work on the rules a lot. Another disadvantage is that it cannot monitor Linux systems.
PCI Reporting - After identifying which firewalls and rulesets are in scope, producing a report artifact to satisfy PCI requirements on Firewall reviews is literally a two-click operation.
Storing Rule Metadata - FireMon stores metadata (prefilled fields, standard fields, and custom fields) for each rule in each policy which is valuable for context during firewall reviews in particular
API - FireMon exposes most if not all of its functionality via REST API
The Forcepoint Endpoint Data Loss Prevention Endpoint module is applied to secure data being used at endpoints, like from Microsoft Excel and other Microsoft capabilities, also other functions like email and FTP, Active Sync, etc. It secures the data in use at the endpoint.
The Forcepoint Endpoint Data Loss Prevention Network Module is applied for the traffic being used in network capabilities like email, FTP, and web. It also secures the data on the move in the network.
Forcepoint Data Discover--the capability to discover the data which is sensitive for the organization and lies across the network; with the discovery tool, we can define the data, which is important based on regulatory and compliance risk.
OCR (optical character recognition) capabilities also come with the Data Discover Module, by which we can see the embedded text inside the image and that helps to prevent sensitive data theft.
Once all the customization has been completed, the business is starting to see the return on investment. The visibility it provides into the network gear that is owned by other IT groups is immeasurable and has allowed us to apply standards across the board. The only thing I have concern with is their support documentation.
We have been fairly happy with the product and how it has worked. We have looked at other vendors for url filter and such and have not found one that meets our needs or does what we have been doing with Websense. The product has been fairly stable and we have only had a few issues in the past. We have all seen that it was one of the highest leaders from the Gartner Group Magic Quadrant for Web Gateways.
For us, Forcepoint Data Loss Prevention was difficult to administer, did not work well when it did work, was incredibly expensive for the feature set you get, and was difficult to uninstall when we moved on from the software. Once it was fully set up, it worked occasionally for us.
FireMon has been relatively stable overall. However, there have been a handful of times where we had issues with the console. For example, we couldn't update which devices to include in a security assessment. The initial suggestion from support was to just reboot it. It seems like there weren't many other options available such as to restart services before going to the extreme of a complete reboot.
I'm not sure we have the largest implementation of FireMon out there but we do have a few 1000 devices being probed by FireMon. Overall, the system's performance has been rock solid. The console refreshes quickly and reports are generated within an expected timeframe.
FireMon technical support is awesome! They respond quickly to our requests and they are well trained and very knowledgeable about the tool. Some issues have to be referred to the development team, but technical support largely provides solutions for any issues that we may have.
Support from Forcepoint has been lacking. When calling in with a high priority issue we rarely are able to work with a technician immediately. The queue waits are very long and when you get through there are no support engineers available and we need to wait for a call back for hours it seems.
Symantec DLP works good for our very simple and low complexity use cases and I would highly recommend it for them. However, I can't speak to highly complex or advanced use cases that might arise in certain industries like finance. I would recommend that if you are seeking an Enterprise DLP solution that you absolutely must explore this product as one of the leaders in the space - not doing so would be negligent in my opinion.
I has worked with AlgoSec and while they are very similar product, I find the FireMon is easier to understand and get rolling with. While both require some learning, FireMon is by far the easier one. Once you have an understanding of how things are arranged and labeled you can easily import firewalls and begin to work on them to improve them
User friendly solution that makes it easy to deploy and manage. Forcepoint Data Loss Prevention very effective to protecting our valuable data on endpoints and where data lives like in the Cloud, server and on-premises disk drives and its valuable to just set policies once and start utilizing Forcepoint Data Loss Prevention solution.
I haven't compared this product directly with others but I have seen and used the Microsoft Office 365 Compliance app(s); and there seems to be a good parity generally between the products in most capability areas for DLP.
Firemon Is easily scalable and maintainable with any size team. Although it requires some tech debt, it is well worth the time to invest to ensure compliance is visible and reports are accurate. Although our environment is very large we do not fully utilize the scalability of the Firemon product.
It helps us save us time in determining what change was made and by whom.
Real time alerting is a great convenience in helping us know if something went wrong, we can immediately review the last report to determine what has changed.
Allows us to determine what rules are not used and if said rules are still required.