FireMon vs. Forcepoint Data Loss Prevention vs. Symantec Data Loss Prevention

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
FireMon
Score 7.9 out of 10
Enterprise companies (1,001+ employees)
FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to automate policy changes, meet compliance standards, to minimize policy-related risk. Since creating their policy management solution in 2004, FireMon states they've helped…N/A
Forcepoint DLP
Score 8.1 out of 10
N/A
Forcepoint Data Loss Prevention (DLP) protects sensitive data everywhere it resides and moves, across endpoints, cloud apps, web, email, and on-premises environments. It delivers unified policy management and centralized control from a single console.N/A
Symantec Data Loss Prevention
Score 7.1 out of 10
N/A
Symantec Data Loss Prevention (DLP) is a data loss protection option.N/A
Pricing
FireMonForcepoint Data Loss PreventionSymantec Data Loss Prevention
Editions & Modules
No answers on this topic
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
FireMonForcepoint DLPSymantec Data Loss Prevention
Free Trial
YesNoNo
Free/Freemium Version
NoNoNo
Premium Consulting/Integration Services
NoNoNo
Entry-level Setup FeeOptionalNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
FireMonForcepoint Data Loss PreventionSymantec Data Loss Prevention
Considered Multiple Products
FireMon
Chose FireMon
FireMon gives us more flexibility when deploying the solution. Integrates with cutting-edge security solutions
Chose FireMon
We have only used firemon and there hasn't been a need to consider other products as we are satisfied with what Firemon can do.
Chose FireMon
Firewall Rule analyzer was used before I joined the company, but I have no experience with it.
Chose FireMon
OSSEC is open source and FM is much better from GUI and supportability stand points. Tufin and FireMon are very comparable
Chose FireMon
Best Compliance and Auditing tool to to identify the traffic that is hitting this rule.
Chose FireMon
I was not involved on the decision but having multiple brands in the company make sense to use a tool such as Firemon because it integrates easily with multiple vendors.
Chose FireMon
Infoblox DDI (BloxOne), Palo Alto Networks Prisma Cloud, Palo Alto Panorama, Palo Alto Networks Threat Protection, Palo Alto Networks WildFire, Palo Alto Networks Next-Generation Firewalls - PA Series and Fortinet FortiGate
Chose FireMon
Algosec and Tufin both are good tools but the cost involved for what they offer as services led us to go with Firemon.
Chose FireMon
i was not involved in the selection however i am quite happy with FireMon as the replacement of our aging product.
Chose FireMon
We have stuck with FireMon, and there is no reason to leave.
Chose FireMon
The Dell product ran on its own hardware, which failed often. The reports were not available to us in real-time, we had to request them. Many false detections of issues.
Chose FireMon
Both perform admirably with regards to providing that single pane of glass and visibility in a normalized view. They both provide great insight into where your organization stands in terms of compliance controls. In terms of upgrading and scalability, I would have to give the …
Chose FireMon
I has worked with Algosec and while they are very similar product, I find the FireMon is easier to understand and get rolling with. While both require some learning, FireMon is by far the easier one. Once you have an understanding of how things are arranged and labeled you can …
Chose FireMon
FireMon has the most supported devices.
The UI is easy to use and intuitive.
There is a comprehensive list of built in compliance controls that are missing in the competition.
Chose FireMon
To be blunt, at the time of purchase most of these products appeared to do the same things in the same ways. What really brought us to the table with FireMon six years ago was their willingness to earn our business, and to this day they remain just as committed to keeping our …
Chose FireMon
FireMon is way more flexible and the interface is tremendously better than any existing ones.
Chose FireMon
Algosec is a great tool, lower in cost as well.

FireMon has alot of capabilites, but our organization is not ready or have a use case yet for those features.
Chose FireMon
Tufin works much better with CheckPoint.
Chose FireMon
They are two very well done tools, FireMon is better suited for firewall rules evaluation, configuration and review, Tenable.io is better suited for CIS benchmarking. We ended up using both of them in the end, it really depends of your needs and what you are looking for, the …
Chose FireMon
Nothing like FireMon. We have other tools but 99% of them are looking at specific areas and not the enterprise security on a dashboard.
Chose FireMon
We performed a head-to-head PoC between FireMon and AlgoSec several years ago. Both platforms were well developed, but FireMon had the upper hand in three areas:
  1. Its UI was more unified and intuitive across the different components and products
  2. The reporting was better suited …
Chose FireMon
AlgoSec and Tufin both have initial issues during the POC stage, and FireMon even though with the changes they have made still works better and is more user friendly.
Forcepoint DLP
Chose Forcepoint DLP
Nobody can compete with Forcepoint DLP.
Chose Forcepoint DLP
I think Forcepoint Data Loss Prevention pales in comparison to the feature set you get with M365 (which is likely included in most corporations existing licensing!). We moved on from Forcepoint Data Loss Prevention to implement Microsoft's solution instead.
Chose Forcepoint DLP
User friendly solution that makes it easy to deploy and manage. Forcepoint Data Loss Prevention very effective to protecting our valuable data on endpoints and where data lives like in the Cloud, server and on-premises disk drives and its valuable to just set policies once and …
Chose Forcepoint DLP
We tested and evaluated Forcepoint Data Loss Prevention and this solution suited the best for our requirement. We optimized it to suit our requirement of 250 to 300 users in our head office. We will be adding a few more users under this solution which are having Windows and MAC …
Chose Forcepoint DLP
I find Forcepoint Data Loss Prevention to be a superior product compared to the other two alternatives mentioned. It is improving, though, at a slower pace but I have seen it upgrading to its best level. There is more value associated with this tool than the other two. …
Chose Forcepoint DLP
Because it allows the creation of reports and statistics, risk assessment, real-time monitoring, fingerprints, machine learning, [and] a dictionary function--so good and useful.
Chose Forcepoint DLP
I have evaluated CoSoSys but the reporting part did not hit the mark. Also, a high number of false positives was a concern for me. I need a predefined report which needs to be compatible with my compliance requirement, which was missing in CoSoSys. However CoSoSys is good for …
Chose Forcepoint DLP
We have not done a ton of testing with alternatives at this point.
Chose Forcepoint DLP
Netskope, Digital Guardian. We've stuck with Forcepoint to limit the number of major architectural changes in a given year. If we achieved diminishing marginal returns on its ROI, then we'd change because the prevention is good, but the headache has to be less than the …
Chose Forcepoint DLP
We have tried out Office 365 and Trend Micro DLP but those solutions have not worked out as we hoped. That said, when we looked at Forcepoint Data Loss Prevention, there were only minor issues we came across that did not have any negative impact and overall, the solution was …
Chose Forcepoint DLP
Sorry to be the bearer of bad news but Proofpoint has proven to be a superior product. In our experience Proofpoint has fewer false positives and more out-of-the-box pattern detections requiring less customization. However, there is still a value in having more than one DLP …
Chose Forcepoint DLP
Haven't used other product.
Chose Forcepoint DLP
We didn't evaluate any other solutions at the time of purchase. Forcepoint was the leader on the Gartner report and we went with their recommendation.
Chose Forcepoint DLP
We selected Forcepoint Data Loss Prevention because it meets the size of our organization's needs and the ease of implementation compared to other solutions.
Chose Forcepoint DLP
We selected Forcepoint DLP as we already were using their Web and Email filtering products. The integration among their products is very strong and we did not want to introduce too many additional products into our environment. We have limited security resources so a high level …
Chose Forcepoint DLP
Easier to user and cheaper
Chose Forcepoint DLP
We are currently in the evaluation phase to compare overall cost and functionality. Blue Coat runs in a very similar way that Forcepoint does. Check Point runs at the same gateway layer that the firewall does so its policy can be run on the same hardware of existing environments.
Chose Forcepoint DLP
Forcepoint stacks up pretty well against its competitors. It has more functionality then Cisco and is comparable to McAfee. McAfee is one of the few I would feel at ease with replacing our currently solution with.
Chose Forcepoint DLP
Overall it was the best we had, SSL decryption worked better than Bluecoat and Cisco traffic had a lot of certificate issues. Websense was the quickest to get up and running and their sales engineering team is superb.
Chose Forcepoint DLP
Websense has similar features to other DLP solutions. We selected Websense based upon other organizations' experiences. I cannot compare the negatives to Websense as we did not deploy any other vendor DLP solutions in the same scale.
Chose Forcepoint DLP
Websense, at the time, was the only content filtering solution to offer a hybrid option of on-prem and cloud services. We are up for renewal soon and will likely compare them to other vendors.
Chose Forcepoint DLP
Websense gave us the best flexibility for our enterprise configuration and setup. It all does not take up anything on our computers when we use Websense one armed off our firewalls and routers. We found this very easy to set up and transparent to our users and network. The …
Symantec Data Loss Prevention
Chose Symantec Data Loss Prevention
I haven't compared this product directly with others but I have seen and used the Microsoft Office 365 Compliance app(s); and there seems to be a good parity generally between the products in most capability areas for DLP.
Chose Symantec Data Loss Prevention
Symantec DLP is the best. Put it in a head to head competition and it will win. However it can be a bit more expensive than other products so don't compare on price, compare on quality of product.
Features
FireMonForcepoint Data Loss PreventionSymantec Data Loss Prevention
Data Preparation
Comparison of Data Preparation features of Product A and Product B
FireMon
-
Ratings
Forcepoint Data Loss Prevention
5.9
Ratings
30% below category average
Symantec Data Loss Prevention
-
Ratings
Data Encryption00 Ratings5.90 Ratings00 Ratings
Best Alternatives
FireMonForcepoint Data Loss PreventionSymantec Data Loss Prevention
Small Businesses
NinjaOne
NinjaOne
Score 9.0 out of 10
Paubox Email Suite
Paubox Email Suite
Score 9.0 out of 10
Paubox Email Suite
Paubox Email Suite
Score 9.0 out of 10
Medium-sized Companies
Cisco Meraki MX
Cisco Meraki MX
Score 9.0 out of 10
Druva Security Cloud
Druva Security Cloud
Score 9.4 out of 10
Druva Security Cloud
Druva Security Cloud
Score 9.4 out of 10
Enterprises
Cisco Meraki MX
Cisco Meraki MX
Score 9.0 out of 10
Druva Security Cloud
Druva Security Cloud
Score 9.4 out of 10
Druva Security Cloud
Druva Security Cloud
Score 9.4 out of 10
All AlternativesView all alternativesView all alternativesView all alternatives
User Ratings
FireMonForcepoint Data Loss PreventionSymantec Data Loss Prevention
Likelihood to Recommend
7.9
(0 ratings)
7.2
(0 ratings)
9.0
(0 ratings)
Likelihood to Renew
6.8
(0 ratings)
7.6
(0 ratings)
-
(0 ratings)
Usability
7.3
(0 ratings)
7.1
(0 ratings)
-
(0 ratings)
Availability
7.3
(0 ratings)
-
(0 ratings)
-
(0 ratings)
Performance
9.1
(0 ratings)
-
(0 ratings)
-
(0 ratings)
Support Rating
7.7
(0 ratings)
5.3
(0 ratings)
7.0
(0 ratings)
Implementation Rating
9.1
(0 ratings)
-
(0 ratings)
-
(0 ratings)
Product Scalability
7.9
(0 ratings)
-
(0 ratings)
-
(0 ratings)
User Testimonials
FireMonForcepoint Data Loss PreventionSymantec Data Loss Prevention
Likelihood to Recommend
FireMon is best used in a large environment (for example, I have >100
firewalls in my environment). It's best used when trying to improve
security posture and showing changes in firewall security over time. It
might not be the best choice for smaller environments or those that aren't concerned about security management.
Read full review
-Where companies need to secure their attachment, which goes outside, means from their company to outside -Where companies need to ensure their client's personal information -Where companies need DLP. They need to look for Forcepoint only, as they have the upper hand over the rest of their competitors.
Read full review
Email, web browser, and data storage areas will fulfill the security of mobile devices very well. It provides multiple methods of data filtering and classification to ensure important data can be well protected. Unfortunately, it does not support you to make regex-based definitions. for this reason, you need to work on the rules a lot. Another disadvantage is that it cannot monitor Linux systems.
Read full review
Pros
  • PCI Reporting - After identifying which firewalls and rulesets are in scope, producing a report artifact to satisfy PCI requirements on Firewall reviews is literally a two-click operation.
  • Storing Rule Metadata - FireMon stores metadata (prefilled fields, standard fields, and custom fields) for each rule in each policy which is valuable for context during firewall reviews in particular
  • API - FireMon exposes most if not all of its functionality via REST API
Read full review
  • The Forcepoint Endpoint Data Loss Prevention Endpoint module is applied to secure data being used at endpoints, like from Microsoft Excel and other Microsoft capabilities, also other functions like email and FTP, Active Sync, etc. It secures the data in use at the endpoint.
  • The Forcepoint Endpoint Data Loss Prevention Network Module is applied for the traffic being used in network capabilities like email, FTP, and web. It also secures the data on the move in the network.
  • Forcepoint Data Discover--the capability to discover the data which is sensitive for the organization and lies across the network; with the discovery tool, we can define the data, which is important based on regulatory and compliance risk.
  • OCR (optical character recognition) capabilities also come with the Data Discover Module, by which we can see the embedded text inside the image and that helps to prevent sensitive data theft.
Read full review
  • It can monitor email, storage space, web browser activities very easily.
  • It provides full protection and security against data loss caused by human error.
Read full review
Cons
  • Some features could be added to the existing functionality which include NAT rules usage
  • Rule expiration normalization from firewalls rather than entering them in rule documentation
  • .csv exports of the files from the firewall pane only gives usage for 30 days by default and that should be increased
Read full review
  • Remote filtering is not as advanced as we would like.
  • Support time is not as quick as needed in most cases.
  • Upgrades of appliances and software is not as easy as other solutions.
  • HTTPS inspection needs to hand a valid cert and doesnt work correctly with all vendors.
Read full review
  • Policy tweaking and customizations can be very complex and take a lot of effort and time.
  • API integration is difficult and requires specialized support. Finding an experienced professional can be difficult.
Read full review
Likelihood to Renew
Once all the customization has been completed, the business is starting to see the return on investment. The visibility it provides into the network gear that is owned by other IT groups is immeasurable and has allowed us to apply standards across the board. The only thing I have concern with is their support documentation.
Read full review
We have been fairly happy with the product and how it has worked. We have looked at other vendors for url filter and such and have not found one that meets our needs or does what we have been doing with Websense. The product has been fairly stable and we have only had a few issues in the past. We have all seen that it was one of the highest leaders from the Gartner Group Magic Quadrant for Web Gateways.
Read full review
No answers on this topic
Usability
It save me time and I'm able to have the review - review the rule independently with using my time.
Read full review
For us, Forcepoint Data Loss Prevention was difficult to administer, did not work well when it did work, was incredibly expensive for the feature set you get, and was difficult to uninstall when we moved on from the software. Once it was fully set up, it worked occasionally for us.
Read full review
No answers on this topic
Reliability and Availability
FireMon has been relatively stable overall. However, there have been a handful of times where we had issues with the console. For example, we couldn't update which devices to include in a security assessment. The initial suggestion from support was to just reboot it. It seems like there weren't many other options available such as to restart services before going to the extreme of a complete reboot.
Read full review
No answers on this topic
No answers on this topic
Performance
I'm not sure we have the largest implementation of FireMon out there but we do have a few 1000 devices being probed by FireMon. Overall, the system's performance has been rock solid. The console refreshes quickly and reports are generated within an expected timeframe.
Read full review
No answers on this topic
No answers on this topic
Support Rating
FireMon technical support is awesome! They respond quickly to our requests and they are well trained and very knowledgeable about the tool. Some issues have to be referred to the development team, but technical support largely provides solutions for any issues that we may have.
Read full review
Support from Forcepoint has been lacking. When calling in with a high priority issue we rarely are able to work with a technician immediately. The queue waits are very long and when you get through there are no support engineers available and we need to wait for a call back for hours it seems.
Read full review
Symantec DLP works good for our very simple and low complexity use cases and I would highly recommend it for them. However, I can't speak to highly complex or advanced use cases that might arise in certain industries like finance. I would recommend that if you are seeking an Enterprise DLP solution that you absolutely must explore this product as one of the leaders in the space - not doing so would be negligent in my opinion.
Read full review
Implementation Rating
Implementation is fairly simple. Most issues can be resolved by referencing manuals.
Read full review
No answers on this topic
No answers on this topic
Alternatives Considered
I has worked with AlgoSec and while they are very similar product, I find the FireMon is easier to understand and get rolling with. While both require some learning, FireMon is by far the easier one. Once you have an understanding of how things are arranged and labeled you can easily import firewalls and begin to work on them to improve them
Read full review
User friendly solution that makes it easy to deploy and manage. Forcepoint Data Loss Prevention very effective to protecting our valuable data on endpoints and where data lives like in the Cloud, server and on-premises disk drives and its valuable to just set policies once and start utilizing Forcepoint Data Loss Prevention solution.
Read full review
I haven't compared this product directly with others but I have seen and used the Microsoft Office 365 Compliance app(s); and there seems to be a good parity generally between the products in most capability areas for DLP.
Read full review
Scalability
Firemon Is easily scalable and maintainable with any size team. Although it requires some tech debt, it is well worth the time to invest to ensure compliance is visible and reports are accurate. Although our environment is very large we do not fully utilize the scalability of the Firemon product.
Read full review
No answers on this topic
No answers on this topic
Return on Investment
  • It helps us save us time in determining what change was made and by whom.
  • Real time alerting is a great convenience in helping us know if something went wrong, we can immediately review the last report to determine what has changed.
  • Allows us to determine what rules are not used and if said rules are still required.
Read full review
  • The capability of this tool to update in real time has saved a lot of time and even saved a lot of energy for researching.
  • The exchange of financial information related to customers builds up an extreme risk of data loss, which can be damaging to the customer.
Read full review
  • Found data that should have been protected or moved to a different location
  • Helped us understand what type of data is leaving the environment
Read full review
ScreenShots