Skip to main content
TrustRadius
FireMon

FireMon

Overview

What is FireMon?

FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to…

Read more
Recent Reviews

FireMon Firewall Analyzer Review

9 out of 10
March 01, 2022
We used FireMon as a firewall analyzer of internal and external perimeters. We were able to gather relevant tcpdumps instead of looking …
Continue reading

Solid and reliable

9 out of 10
December 07, 2021
Incentivized
FireMon is a great product that compiles information for security and networking issues and is easy to use. Support is some of the best in …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is FireMon?

FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the…

Entry-level set up fee?

  • Setup fee optional
For the latest information on pricing, visithttps://www.firemon.com/request-a…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

24 people also want pricing

Alternatives Pricing

What is ManageEngine ADAudit Plus?

ADAudit Plus offers real-time monitoring, user and entity behaviour analytics, and change audit reports that helps users keep AD and IT infrastructure secure and compliant.Track all changes to Windows AD objects including users, groups, computers, GPOs, and OUs.Achieve hybrid AD monitoring with a…

What is Speedify VPN?

Speedify is a new kind of bonding VPN designed from the ground up for speed, security, and reliability. The vendor says Speedify's bonding protocol lets it do things no other VPN can: switching between Wi-Fi and Cellular without breaking sockets, and bonding connections together for speed…

Return to navigation

Product Details

What is FireMon?

FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments.

Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to automate policy changes, meet compliance standards, to minimize policy-related risk.

Since creating their policy management solution in 2004, FireMon states they've helped more than 1,700 enterprises in nearly 70 countries secure their networks.

FireMon provides solutions that extend and integrate policy management with today’s latest technologies including SD-WAN, SASE, XDR, and SOAR.

The vendor states FireMon customers experience up to 90% improvements in network security policy efficiency while eliminating common misconfigurations which lead to breaches and compliance violations.

FireMon Features

  • Supported: KPI Dashboards: See the network at a glance with analysis, trending and key performance indicator widgets on a customizable dashboard.
  • Supported: Traffic Flow Analysis: Monitor network traffic behavior – down to the application level – to isolate overly permissive configurations.
  • Supported: Access Path Analysis: Trace every available access path across the network and visualize relationships between network devices to identify risk access points.
  • Supported: Network Mapping: Visualize and interact with highly complex network security environments or segmentations.
  • Supported: Change Detection & Reporting: Isolate, document and alert on every ongoing change implemented throughout an existing firewall policies.
  • Supported: Assessments & Controls: Define and employ unique security controls for customized, repeatable analysis and reporting on firewall policies.

FireMon Videos

Improve Security Operations. Improve Security Outcomes.
FireMon: Enforce Compliance
FireMon: Manage Change

FireMon Integrations

FireMon Technical Details

Deployment TypesOn-premise, Software as a Service (SaaS), Cloud, or Web-Based
Operating SystemsWeb based browser UI
Mobile ApplicationNo
Supported CountriesAll countries except North Korea, Iran, Sudan, Syria and Cuba
Supported LanguagesEnglish

Frequently Asked Questions

Tufin Orchestration Suite, AlgoSec, and RedSeal are common alternatives for FireMon.

Reviewers rate Support Rating highest, with a score of 7.7.

The most common users of FireMon are from Enterprises (1,001+ employees).

FireMon Customer Size Distribution

Consumers0%
Small Businesses (1-50 employees)8%
Mid-Size Companies (51-500 employees)15%
Enterprises (more than 500 employees)77%
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(113)

Attribute Ratings

Reviews

(1-3 of 3)
Companies can't remove reviews or game the system. Here's why
October 16, 2020

FireMon: Great Product

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We currently use FireMon for reviewing/cleaning up rules and plan to implement policy planner by the EOY. It improves and simplifies documentation.
  • Lets you know what is unused so you can lock it down
  • Improves the process of review rules
  • Open up knowledge base on Google, to make searching easier with better results
Still learning the FireMon package, but the more I learn the better I like it. We have a small shop so I tend to jump between priorities.
Works great for our two failover pairs--this question may be better for a larger organization.
  • Saves time
  • Nice documentation
None. This is the first we have used.
8
System Admins, Network Admins Approver and Compliance for the approval process of our firewall rules
1
Once it's was setup it basically runs itself except for patches and updates.
  • provide documentation and approval process for firewall rule changes
  • eliminate duplicate rules
  • allows rule owner to review and verify rules are still required for business
  • lest us know which rules are hit the most so we can move them to the top to help improve firewall performance
  • don't know off hand
It improves documentation, save time and easy to use.
SolarWinds Network Performance Monitor (npm), SolarWinds Kiwi Syslog Server
No
  • Product Features
  • Product Reputation
It was much easier the doing everything manually. Looking forward to getting the rule approval process in place.
It would be nice if we had control over creating the approval process without going through profession services.
Not Sure
no haven't contacted them in a while
  • basic reports
  • the more complex/custom reports can be challenging
It save me time and I'm able to have the review - review the rule independently with using my time.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
FireMon is used for tracking and reviewing firewall rules on a regular basis. It is used to save an old process of manually tracking all of the firewall rules.
  • It can be customized in a lot of ways because you can write your own queries and assign them to controls.
  • When the system has proper resources, FireMon is quite reliable and quick to pull new firewall rules.
  • The user interfaces has a lot of options to use like revisions. It is helpful to look at revisions before and after changes to make sure everything went as planned. It also has some pie graphs that are good for showing in reports.
  • There needs to be functionality to roll back changes to FireMon, or save copies of firewall documentation that can be reverted back. There are some manual fields you can fill in for firewall rules in FireMon (things such as notes about audits of the rules, when they were last audited, etc). If they are removed, there is no way to re-add them. There also needs to be an option to copy documentation from one firewall to another in case you have to RMA a firewall. I have been advised that the development team is adding these features sometime in the next year, but it has bit us a few times.
  • I get the impression that the development team needs to give better documentation to the support team.
  • No root access to the box. This has caused some issues such as not being able to eject a CD rom from a VM and not being able to install a backup client requiring us to code a backup script in house. There used to be sudo access, but it was removed.
I put 6 because I like the product when it is working well, and the majority of the department likes the product. I will rate higher when they resolve the issues that I mentioned.


It has been a year since I reviewed this product. I feel like I can bump the review up to a 8 because a lot of features are being added to the product that make things such as search queries easier to perform. I still feel like the system administration piece of Firemon needs improvement.
Note - I bumped this to a 9/10 when it was originally a 6/10. This is because they added "datacollector groups" which resolves the issue that I was complaining about when I put the 6/10.
  • We had a couple of outages on our rule documentation due to changes in the FMOS code that caused the appliance to be down for a while which hurt our ROI.
  • Not having to manually track all of the rules has freed up engineers for better things.
  • Better auditing of firewall rules significantly decreases security risks to our environment because we are using FireMon to ensure everything is reviewed regularly.
No
Yes
The bugs have been resolved in future releases. Sometimes it is difficult to get the developers to acknowledge the bug, and it feels like the lab testing falls onto the customer.

Note - I wrote that a while ago, and bug support seems to be improving.
FireMon helped us create a script to copy data from one firewall to another.
  • The Revisions feature makes change orchestrations easier and I use it daily.
  • Creating queries to automate and shorten tasks. For example, checking for certain applications or ports used on rules on perimeter security devices.
  • Creating reports based on rule severity scores is very helpful and feels like a vulnerability scanner for firewall rules.
  • The difficulty lies more on the administrator of FireMon itself than the user. The system can be very sensitive especially during upgrades.
  • Search queries could be easier as far as directives and options to use in the search, but I keep seeing more and more granularity added with each release so I believe FireMon is aware of it and working on it.
The usability is fantastic for the user.

The usability for the system administrator could be improved.
January 08, 2018

FireMon - Worth it.

Score 10 out of 10
Vetted Review
Verified User
Incentivized
FireMon is used by firewall administrators and security analysts on a regular basis. Administrators analyze proposed changes and existing rules base. Security analysts use it to audit.
  • Fast analysis of flaws in the rules set
  • Dynamic mapping
  • Normalize varied platforms into a standard appearance
  • Quickly find unused rules and objects
  • Useful canned reports
  • While you can evaluate potential changes to firewall rules, you can not implement the rules from FireMon.
  • The GUI is easy to navigate, but learning where to go for the useful features takes a little practice.
  • While the base product has reports for analyzing vulnerabilities, a separate license is required to get the full benefit.

Our primary use case for FireMon was to aid audits of firewall changes and finding weak rules. The base product meets this need 100%. Implementation is easy. Compatibility for all major vendors is present. Support is great. No regrets.

Regular audits are simple. Changing report criteria is possible, but the built-in reports were effective enough.

We have encountered no issues scaling or changing systems that feed the data. Upgrades are straight forward.
  • The primary benefit has been reducing the labor of analysis of rules in both audit and administration. Tasks that took hours now take minutes.
For our use case, only FireMon met our needs with the systems we use.
10
Firewall administrators and cyber security analysts are the primary users.
2
Firewall administrators on our networking team maintain FireMon. The ability to configure firewalls and routers/switches to send data is most important. The application does not require much skill to configure. FireMon technical support is also available for assistance.
  • Business control: mapping requests for change, authorization for change, and the change that was made.
  • Best Practice review: overly permissive rules, shadowed rules, use of "any", etc...
  • Change/impact analysis: changes can be review in FireMon prior to production implementation
  • The ability to add reports monitoring for specific rules that are no longer approved was unexpected, but useful.
  • We may add the module to allow pivot analysis of vulnerability data.
We use the tool frequently and it is integrated into our processes.
No
  • Product Features
  • Product Usability
  • Analyst Reports
  • Third-party Reviews
Third-party reviews breaking down the features really helped pick a product. We were more interested in analysis than management.
No changes.
  • Implemented in-house
No
Change management was minimal
  • Had to work with FireMon support and another vendor to figure out the configuration on one tool to send data.
Implementation is fairly simple. Most issues can be resolved by referencing manuals.
Not Sure
No
The local FireMon Sales Engineer who supports a different industry is always quick to help and back up support. He's the closest to us. He has just as much ownership for our problems as our assigned staff. Great team work.
  • Once configured, the pre-made reports provide immediate value.
  • The data from the reports are informative and offer insight into remediation of problems.
  • Configuring systems to send data to FireMon may take some effort and troubleshooting. At least one system required co-ordination between support from both vendors.
For the most part, using the tool is straight forward. Some of the menus could use some work on usability.
Return to navigation