We use Security Manager for firewall changes, monitoring, and audits.
FireMon Security Manager for AWS
FireMonExternal reviews
External reviews are not included in the AWS star rating for the product.
The solution makes it much easier for us to track changes and perform audits
What is our primary use case?
How has it helped my organization?
FireMon makes it much easier for us to track firewall changes and perform audits. It has made our compliance process more efficient. Before we implemented FireMon we had to go into each individual firewall and check the rules. Now, we pull a report, and that's it.
We can monitor and implement changes across different firewall vendors. It lets us clean up our firewall rules regularly, which we do as part of our audit. It helps us save time managing firewall policies. We don't make changes to our firewall policies through FireMon, but we use it to track changes across various firewalls. It makes our internal processes more efficient and improves our visibility.
It reduces risks. Better visibility and cross-vendor integration give us more control and context about potential changes. Having a product for monitoring critical changes is crucial for our security posture.
What is most valuable?
I like the Security Manager console where we can see any changes that have been made or pull the results of an assessment and control the policies that we implement. That's useful for regular audits and monitoring some critical events we want to know about. We can configure alerts that notify us about policy changes. This is pretty beneficial for monitoring and helps us track changes in the projects.
What needs improvement?
We've had recurring issues managing FireMon's internal backups. Sometimes, the space allocated for the backup is full, and there is no process where it deletes files that are older than I certain date. It's just waiting for the storage to get full and then it's cleaned up. It isn't something that creates serious issues for us.
For how long have I used the solution?
We have used FireMon for about two and a half years.
What do I think about the stability of the solution?
FireMon is more or less stable. We've had some issues with backups failing.
What do I think about the scalability of the solution?
I believe that FireMon is scalable.
How are customer service and support?
I rate FireMon support seven out of 10. It varies depending on who you get. We sometimes get a highly knowledgeable agent, but other times, it seems like we just go in circles. It sometimes takes them a while to understand what we want.
How was the initial setup?
FireMon professional services helped us during deployment, and it was relatively straightforward. Deployment took us around two months.
What was our ROI?
FireMon is working on our project scope. We save some labor power on our side.
What other advice do I have?
I rate FireMon Security Manager eight out of 10. It has many more features than we use, but we have a limited scope. I think we could've done more had we used that momentum when we were implementing it.
Even if you think having a firewall management solution isn't a priority, the FireMon can provide more visibility and make some tasks easier, faster, and more efficient.
Can help organizations automate firewall policy changes across large multi-vendor enterprise environments
What is our primary use case?
We use FireMon for monitoring, reporting, and logging purposes.
How has it helped my organization?
FireMon's real-time compliance management is good.
The ability to evaluate the overall security measures of our organization is beneficial. However, not essential for small to medium-sized companies like ours. These features are also provided by OEMs. For example, Palo Alto and other firewall solutions offer similar features on their devices. This includes the ability to identify unused or excessively permissive rules.
Generating compliance reports is a straightforward process. These are auto-generated reports that are produced once we forward our traffic to the SIEM devices. The devices automatically generate standard compliance reports that we can customize if necessary. This feature is advantageous because it saves time and ensures that the necessary reports are generated.
FireMon can help organizations automate firewall policy changes across large multi-vendor enterprise environments.
FireMon can impact the cleanup of firewall rules in a large enterprise environment. With FireMon, it is possible to view shared rules and assign tasks to different users within our team. Additionally, tagging is available which allows us to easily revisit and save alerts on these rules. This feature is particularly useful for large organizations.
FireMon helps save us significant time by accurately creating, approving, and deploying firewall policy rules and eliminating duplicate rules.
FireMon helps us identify errors in misconfigured policies by displaying the errors in the dashboard allowing us to remove those rules.
What is most valuable?
The most valuable feature of FireMon is its ability to configure multiple devices and consolidate them into a single desktop, which allows us to manage all of our security devices, such as Palo Alto and Zscaler, from one place.
What needs improvement?
The training for configuring new users or operators is confusing because the UI is not user-friendly and has room for improvement.
The technical support team's responsiveness needs improvement.
For how long have I used the solution?
I have been using FireMon for one year.
What do I think about the stability of the solution?
FireMon is extremely stable with zero downtime.
What do I think about the scalability of the solution?
FireMon is scalable. The scalability is based on the number of licenses.
How are customer service and support?
The technical support team is not promptly addressing any issues. As a result, it can take some time to have the tech engineers available when we require features to be enabled or configurations to be updated.
How was the initial setup?
FireMon's initial setup is straightforward. Three individuals from our team and one engineer from FireMon's team participated in the deployment.
What about the implementation team?
The implementation was completed by the professional services team.
What other advice do I have?
I give FireMon a nine out of ten.
I recommend that prospective users thoroughly familiarize themselves with all the features and capabilities of FireMon before configuring it. This will help ensure that no features are overlooked and that all features are utilized correctly.
Firewall policy rule cleanup and management should be a top priority for all organizations. Improper configuration of these rules can pose a significant security risk. It is crucial to have knowledge of the allowed traffic, necessary policies, and unnecessary policies. Additionally, it is essential to monitor web traffic and accessed web port applications within the organization, including which users are accessing them. Configuring policies correctly is crucial to gaining control over malicious activity and user access.