To FortiSIEM or Not
Pros
- Log aggregation and analytics
- CMDB
- Device inventory and remote management .
- It can be used by Managed Security Providers who have multiple customers as it offers multi organization support .
Cons
- Non-intuitive/unattractive user interface
- Too many features that will usually remain unused
- Very crowded (too many icons) portal
- The reporting feature is confusing, e.g. you have to click on the "refresh" button to get the result of your inquiry. The report generation process can be much easier, as the user interaction is not pleasant.
Return on Investment
- Other SIEM solutions were cost prohibitive at the time of purchase (2016).
- Just like any other SIEM, it helped draw a better picture of our current security posture.
Other Software Used
Palo Alto Networks Next-Generation Firewalls - PA Series, Fischer Identity as a Service, BlueCat Address Manager
