Skip to main content
TrustRadius
FireMon

FireMon

Overview

What is FireMon?

FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to…

Read more
Recent Reviews

FireMon Firewall Analyzer Review

9 out of 10
March 01, 2022
We used FireMon as a firewall analyzer of internal and external perimeters. We were able to gather relevant tcpdumps instead of looking …
Continue reading

Solid and reliable

9 out of 10
December 07, 2021
Incentivized
FireMon is a great product that compiles information for security and networking issues and is easy to use. Support is some of the best in …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is FireMon?

FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the…

Entry-level set up fee?

  • Setup fee optional
For the latest information on pricing, visithttps://www.firemon.com/request-a…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

24 people also want pricing

Alternatives Pricing

What is ManageEngine ADAudit Plus?

ADAudit Plus offers real-time monitoring, user and entity behaviour analytics, and change audit reports that helps users keep AD and IT infrastructure secure and compliant.Track all changes to Windows AD objects including users, groups, computers, GPOs, and OUs.Achieve hybrid AD monitoring with a…

What is Speedify VPN?

Speedify is a new kind of bonding VPN designed from the ground up for speed, security, and reliability. The vendor says Speedify's bonding protocol lets it do things no other VPN can: switching between Wi-Fi and Cellular without breaking sockets, and bonding connections together for speed…

Return to navigation

Product Details

What is FireMon?

FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments.

Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to automate policy changes, meet compliance standards, to minimize policy-related risk.

Since creating their policy management solution in 2004, FireMon states they've helped more than 1,700 enterprises in nearly 70 countries secure their networks.

FireMon provides solutions that extend and integrate policy management with today’s latest technologies including SD-WAN, SASE, XDR, and SOAR.

The vendor states FireMon customers experience up to 90% improvements in network security policy efficiency while eliminating common misconfigurations which lead to breaches and compliance violations.

FireMon Features

  • Supported: KPI Dashboards: See the network at a glance with analysis, trending and key performance indicator widgets on a customizable dashboard.
  • Supported: Traffic Flow Analysis: Monitor network traffic behavior – down to the application level – to isolate overly permissive configurations.
  • Supported: Access Path Analysis: Trace every available access path across the network and visualize relationships between network devices to identify risk access points.
  • Supported: Network Mapping: Visualize and interact with highly complex network security environments or segmentations.
  • Supported: Change Detection & Reporting: Isolate, document and alert on every ongoing change implemented throughout an existing firewall policies.
  • Supported: Assessments & Controls: Define and employ unique security controls for customized, repeatable analysis and reporting on firewall policies.

FireMon Videos

Improve Security Operations. Improve Security Outcomes.
FireMon: Enforce Compliance
FireMon: Manage Change

FireMon Integrations

FireMon Technical Details

Deployment TypesOn-premise, Software as a Service (SaaS), Cloud, or Web-Based
Operating SystemsWeb based browser UI
Mobile ApplicationNo
Supported CountriesAll countries except North Korea, Iran, Sudan, Syria and Cuba
Supported LanguagesEnglish

Frequently Asked Questions

Tufin Orchestration Suite, AlgoSec, and RedSeal are common alternatives for FireMon.

Reviewers rate Support Rating highest, with a score of 7.7.

The most common users of FireMon are from Enterprises (1,001+ employees).

FireMon Customer Size Distribution

Consumers0%
Small Businesses (1-50 employees)8%
Mid-Size Companies (51-500 employees)15%
Enterprises (more than 500 employees)77%
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(113)

Attribute Ratings

Reviews

(1-14 of 14)
Companies can't remove reviews or game the system. Here's why
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use firemon to real time reporting when a change occurs in addition to using it for a biannual clean of any rules that have not been used for 90 days.
  • Give good real time reporting for anyone making a change to any of our firewalls
  • Provides good reporting tools that are out of box
  • Provide good customization tools that is specific to our needs
  • Upgrades are a simple process and support does relatively well with assisting us.
  • There support could be better in terms of having more SME's for their product.
  • FireMon should have a video repository to make it easier on how to use their product
  • customizing reports should be made simpler. If we are looking for a specific date range (e.g., 90 day report on what rules have been used, then it should be able to give us this information) however in our past experience this hasn't always been the case
Firemon product is overall good a product. It gives us a summary of who made what change, when it occurred and at what time, in real time. Their Out of box tools do satisfy the common requests for reporting and there options to create customized report allows us for more options as every environment is different. That is why I gave it an 8 rating.
Score 6 out of 10
Vetted Review
Verified User
Incentivized
FireMon is being used to provide detailed historical records of every change/revision made on every network appliance enterprise-wide. It provides instant visibility on what changed when issues arise. Considering outages and time to restoration are measured by duration, having a single pane of glass showing which firewall rule or ACL was updated is priceless. Without FireMon, we would go into every outage--both small and large--blind, trying to figure out where to start.
  • Tracking firewall rule changes.
  • Normalizing data so that it's easily understandable across different vendors and technologies.
  • Providing detailed or summary reports for the data you actually want.
  • It seems like their licensing model is constantly evolving.
  • Often, support will have to escalate cases to engineering.
  • Certifications are always geared to a particular version.
Better suited for: Compiling a historical record of changes/revisions of network appliances. Understanding rule set complexity in terms of overlapping rules and redundancy. Understanding and viewing rule usage. Understanding network flow--how packets will traverse from this hop to the next. What compliance risks are present due to failed controls.
February 25, 2023

Work in progress

Score 7 out of 10
Vetted Review
Verified User
Incentivized
We use FireMon to validate rules, test traffic pathing and to do TFAs for minimizing overly permissive rules.
  • TFA and TFA output is fantastic
  • Finding misconfigured rules is very easy
  • We arent leveraging very much from FireMon
  • The support site isnt the best
The ability to find an overly permissive rule and then leverage TFA to monitor the rule's traffic with the output being easily consumable is incredibly valuable.
Score 6 out of 10
Vetted Review
Verified User
Incentivized
We use it to get an analysis of our firewall policies and get some recommendations on what policies have not been used for a long time and can be removed, policy re-ordering, optimization, and risks over risky protocols being allowed in policies like telnet or FTP. We use it to push policy automation changes, This enables a zero-touch framework to implement policy changes.
  • Policy overview and optimisation suggestions
  • Risk analysis over wide open policies, risky ports open on policies
  • Zero-touch automation for policies
  • Using with in house ticketing solution to make a framework for policy change approval.
  • The firemon had have some issues after almost every update. They need to improve on that.
  • Cisco is one of the products that has best support, The scope of other products can be improved.
  • Automation of policie implementation breaks very often
Firemon is a more budget option one can look up if they are looking to manage something like cisco, Paloalto, checkpoint or FortiGate. It is not that great with another brand of firewalls like NSX or other ones that are not that much out there.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
FireMon is being used to monitor changes to our existing firewalls. Our firewalls consist of various Palo Alto models.
  • Easy to create custom controls.
  • Good dashboards for visibility.
  • Easy to use interface.
  • Out of the box reporting for compliance needs.
  • Navigation can be daunting for new users.
  • Not enough granularity with regards to documentation.
FireMon is best suited for change control monitoring and compliance in our organization.
FireMon has enabled us to monitor firewalls from one console, and has support for new models from Palo Alto which we currently use.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
FireMon is deployed by the Corporate Security Team, the network team will check in all of their firewalls and use the tool for audit purposes. The Security Team also aligns witth each Business Unit security leader, if that BU is audited they use the data produced from FireMon as evidence.
  • Firewall Auditing
  • Reporting
  • Ease of use
  • Resources, to much minimun hardware requirements to run
  • Architecture is to big, to many endpoints to deploy
  • Hosted Cloud solution could help in place of System deployments
FireMon is a great tool, but it is very expensive to run. Also the last sale rep we had was very aggresive and didnt respect the fact we told them that we were not interested at the time to upgrade or add any additional licensing.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use FireMon Security Manager, not only for our internal FW administration but also as part of our Managed Services. More specifically, it's part of our offer for managed firewalls service. This allows us to include more task to offer in the service like periodically cleaning firewall policies and other complains repots, i.e PCI reports.
  • TFA reports - show very detailed information that allows the admin to replace a wide-open FW policy to one or several accurate and narrow FW policies.
  • Change reports - In a very simple way, shows clearly who made what change and when. Also, it's able to highlight changes made between not consecutive configurations.
  • Dashboards - Allows us to drill-down in a simple and intuitive way, find the information needed in an investigation or any other search.
  • For TFA logging if we can have more options to run to choose, not only 1 day, 1 week, 1 month.
Well suited in firewalls with legacy configurations, for companies that are PCI compliant and need specific reports for internal/external audits, or for companies with co-administration.
Less appropriate for new network and security implementations.
Daniel James | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized

FireMon is actively being used by our security team to enforce oversight and compliance standards for our firewall environment. Additional business units are also leveraging the solution to help with reporting. Change management will use the tool to identify rogue changes or changes that may have been implemented outside of our internal change management guidelines. Firewall admins will use the solution to improve the quality of the rules that they generate and to assist with the review and approval workflow. Compliance leverages the solution to help prioritize which devices may need more assistance or a greater amount of overhead needed to remediate.

The main benefit at this time is that it helps us help ourselves and reduce the amount of calories we burn each month or quarter in identifying what issues we need to address in our environment. Getting ready for audit, or quarterly reviews of devices is exponentially easier. Having the ability to automate many of our controls into our workflow on an ongoing basis also reduces the amount of time spent in each of those scheduled reviews/clean up efforts.

  • BU Reporting - Concerned about role segmentation? Want other business units to peek into how things are going on your devices but without having to give everyone under the sun admin credentials for those devices? FireMon accomplishes that for us. I'm able to take this solution to various business units and shop it around...and increase its ROI by getting additional processes or procedures built around its functionality.
  • Remediation Reporting - A flexible interface allows for very granular information to be generated, exported, and manipulated. Want to export a list of expired rules, done. Rules that allow traffic but don't have logging enabled, done. Find a change that took place outside of your change window and identify who's manager to speak to - done.
  • Support - Although this isn't a "Security Manager" specific example its worth emphasizing that with such a flexible and vestal tool there are multiple ways of doing things. Usually there is the way that I can find to fit my needs right now - but the support staff have been amazing as offering improvement suggestions for the way that I use the tool to accomplish the tasks I have to complete. Quick turnaround on tickets, and no micro-managing of prerequisites before offering a to schedule a webex or best guess first step.
  • More granular documentation - A flexible tool is great, but with flexibility comes gaps in documentation. Nothing serious, but I have found myself asking questions to support on more than one occasion because I couldn't independently find the solution in the default documentation. "How can I generate a query that uses this argument rather than this one..." kinda stuff.
  • More granular ability to "whitelist" specific rules - If security teams had perfect security, the business wouldn't be allowed to operate. That being the case there will always be compromises. Although I may care about a specific control as far as my environment is concerned, I will find myself with a laundry list of rules that will take an extended effort to clean up, or there is no good way around. Being able to acknowledge these and then circle back to them at regular intervals for review would be good - as opposed to having to make sure I filter those specific rules out of larger exports that I may dump into a ticket for remediation.

Very well suited for reporting, and identifying control failures. I can single-handedly do the analysis work of an entire remediation team - validate my findings, export the information in a format that is friendly to pass along to my admins, track remediation efforts, and update documentation - in one interface.

There are some areas in the reporting that could be tweaked a bit to provide more nimble output. FireMon has a wide variety of pre-generated reports that have a lot of value over the query based reporting. Many of those reports you can run against your entire enterprise, but some you can't....meaning you might have to duplicate the report for a handful of devices depending on your need.

Score 7 out of 10
Vetted Review
Verified User
Incentivized
FireMon Policy Planner (version 7) is currently being used as our firewall request system across the IT organization. This allows us to have a central location for managing and tracking all firewall change requests. The workflow allows tickets to proceed through various levels of approval prior to implementation. Maintaining audit records of firewall changes is a business requirement, FireMon Security Manager (versions 7 and 8) is currently being used by our security team to satisfy audit requirements through compliance assessments and reports.
  • Version 8 addressed some shortcomings of the previous version regarding response time and administration capabilities. Reports are generated quickly and there are more customization options for administrators.
  • New dashboards provide a quick overview that is much more informative than the previous version.
  • The enterprise view is a nice way to view devices across the organization at a glance.
  • The search functionality is much improved in version 8 and allows you to search across all devices if you so choose. It is quick and has a query syntax builder that is a vast improvement over searching capabilities in version 7.
  • Creating custom controls is much better in the newer version. The syntax helper will build the correct query for you.
  • When they moved from version 7 to version 8 there were some areas that seemed neglected. The generated reports did not always render properly when viewed as a PDF, though they looked fine in HTML. Another lost function was reporting usage on NAT rules in firewalls.
  • The scheduling function for reports/assessments is not the easiest thing to find or administer. It would be nice to be able to schedule reports directly from the Security Manager without having to go to Administration.
  • I would like to see customizable reports. Right now you must create custom controls and add them to custom assessments.
  • The GUI does not always maintain your filters or settings if you drill down into an object and then return.
  • There are not always enough search filter options and they are sometimes hard to view.
  • Some reports are not very useful. It would be nice to see those re-evaluated or re-worked into a usable report.
I have found FireMon very useful for auditing, reporting, and compliance purposes. It has become a quick resource for firewall policy information across the organizational footprint. Some of the reports, particularly those with recommendations, ought to be taken with a grain of salt as the recommendations do not account for rule/object utilization or business requirements.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
FireMon is a global tool that has been purchased to get a centralized view of our firewalls. This enables us to review our security posture and implement a compliance strategy with our customers.
  • Customization of reporting is a nice feature. This is not available with other similar tools in the industry.
  • Traffic Flow Analysis is widely used for looking at overly permissive rules.
  • The dashboards are simple and enable us to do a presentation for non-technical audiences.
  • The integration of firewalls is quite easy.
  • Support is fast to respond and generally knowledgeable.
  • The main area where FireMon will need improvement is a true knowledge base for customers and users. There is a lack of documentation and known facts. This means that as a user, the need for opening tickets for simple tasks is sometimes frustrating.
Connecting with individual Cisco ASA devices is a charm. It is very easy and gives all the level of data. It would be nice to have the same features with Palo Alto.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
FireMon is being leveraged across several IT Departments, including IT Security, Risk Management, Engineering, and Architecture teams. For us, it helps across many of our business models. We are in a highly regulated industry, SOX, MICS (gaming), and PCI, to name a few. For security best practices, we leverage integrated reports to help identify unused rules and objects. From an engineering and architectural approach, we leverage anything from policy creation and optimization, to ping path analysts to make sure the correct firewalls and policies are submitted the first time. With close to 100 firewalls, this helps streamline the process.
  • Built-in compliance and security reporting - By scheduling reports, we automate the information gathered and get it to the correct department for remediation, freeing up resources for other tasks.
  • Ping Path Analysts - this plays a big help in our environment. With over 300 IT personnel, communication is sometimes lost. Changes to architecture happen frequently with our dynamic and worldwide presence, including cloud. It is important to get it right the first time, in a secure and efficient manner.
  • Security Manager - Organization, optimization, and metrics that can easily be tracked and help make future decisions on the appropriate coarse of action. For example, I've taken multiple firewalls which had high CPU and memory utilization, reprioritized the policies, and cut those metrics in half.
  • Licensing is a nightmare - Depending on the 'size' of your firewall, there are different scu's. There are also costs associated with adding router/switches, as well as centralized management.
  • System status and health - while there are ways to display the metrics, you have to go to a different URL and to each appliance. It would be nice if the manager had a health check for all of the collectors associated with it on it dashboard.
  • MFA / SSO /SAML2.0 integration - It would be valuable to integrate the before mentioned integrations for secure access and flexibility.
I think the product is well suited for an environment with multiple, complex firewall deployments. Environments that are highly regulated and a have need for automation and reporting, would gain value. However, if you are a small company, or the deployment/environment is cookie cutter, then I don't think you would be able to justify the cost.... it's not cheap!
January 08, 2018

FireMon - Worth it.

Score 10 out of 10
Vetted Review
Verified User
Incentivized
FireMon is used by firewall administrators and security analysts on a regular basis. Administrators analyze proposed changes and existing rules base. Security analysts use it to audit.
  • Fast analysis of flaws in the rules set
  • Dynamic mapping
  • Normalize varied platforms into a standard appearance
  • Quickly find unused rules and objects
  • Useful canned reports
  • While you can evaluate potential changes to firewall rules, you can not implement the rules from FireMon.
  • The GUI is easy to navigate, but learning where to go for the useful features takes a little practice.
  • While the base product has reports for analyzing vulnerabilities, a separate license is required to get the full benefit.

Our primary use case for FireMon was to aid audits of firewall changes and finding weak rules. The base product meets this need 100%. Implementation is easy. Compatibility for all major vendors is present. Support is great. No regrets.

Regular audits are simple. Changing report criteria is possible, but the built-in reports were effective enough.

Score 9 out of 10
Vetted Review
Verified User
Incentivized
The IT Perimeter Security Team uses FireMon to clean up unused Rules and ports not being used by the Firewalls along with running compliance checks against the firewalls to insure they are in line with best practices.
  • Tracks Firewall rule usage.
  • Tracks and documents all Firewall changes.
  • Holds all Firewall ACLs in one centralized location.
  • Compatibility to see VPN tunnel ACLs.
  • Reports could be easier to customize.
  • Single licensing Enterprise option. Added other firewalls and needed another license - cumbersome.
FireMon Security Manager allows for a centralized point to understand all rules and ACLs for multiple different Vendors. Many different Departments within and outside of IT can take advantage of the different functions of FireMon, and access can be limited per user. Reports can be scheduled to be forwarded to each area where needed for a quick reference of the items needed.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
FireMon Security Manager is being used by the security operations team to audit firewall configurations and determine access for firewall change requests. The network team uses it for configuration and reporting.
  • Auditing of configurations
  • Policy planning for firewall change requests
  • Reporting
  • AD authentication setup is somewhat challenging
  • Licensing model is confusing
Firewall and router/switch configuration reporting and auditing
Return to navigation