Listing Thumbnail

    FireMon Security Manager for AWS

     Info
    Sold by: FireMon 
    Deployed on AWS
    Real-time visibility, control, and management for network security devices across Amazon AWS cloud environments.
    4.4

    Overview

    Hyper Scale Security for your Hyper Scalable Clouds Whether your data and applications are stored on premises, in the data center, or public clouds (or a combination of all three), organizations still need to meet their requirements of security, control, compliance, and governance by themselves. The on-demand nature of public clouds such as AWS naturally means that workloads move and regroup, where maintaining continuous visibility and control over the rapid changes calls for expert intervention. Common security challenges include: Centralized visibility and threat management for your hybrid environment Deploy applications and workloads securely Manage access & control privileges to cloud and on-premises workloads Secure data transfer, data migrations Accomplish all of the security deployments at the pace and scale demanded by cloud architectures

    Highlights

    • FireMon can easily create, maintain, and distribute policies in highly dynamic networks, as well as scope the impact of proposed changes to your security. By automating & orchestrating, Security Manager ensures your ability to operate at scale across cloud, virtual and hybrid environments.
    • Through traffic flow analysis, FireMon tracks behavior across your network to identify which applications are being used. You can correlate vulnerability scans with access path analysis to trace every available path across the network to reduce your attack surface with a defined remediation.
    • Automated compliance assessments help you validate your configuration requirements and alert you to violations. Security Manager out-of-the-box audit ready and customizable reports saves time and gives you the confidence to meet your regulatory and internal security demands.

    Details

    Sold by

    Delivery method

    Delivery option
    FMOS AWS CloudFormation Template
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    OtherLinux 8.1

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    FireMon Security Manager for AWS

     Info
    Pricing and entitlements for this product are managed through an external billing relationship between you and the vendor. You activate the product by supplying a license purchased outside of AWS Marketplace, while AWS provides the infrastructure required to launch the product. AWS Subscriptions have no end date and may be canceled any time. However, the cancellation won't affect the status of the external license.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    Vendor refund policy

    Please see seller website for refund details.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Additional details

    Usage instructions

    Before launch, in the AMI configuration settings, you must add additional volume to prevent launch failure.

    Add Storage tab, click Add New Volume and in the Size field enter at least 600. Do not change the Root Volume Type.

    Complete FMOS Initial Setup after launch:

    1. Open a web browser.
    2. Navigate to https://<hostname>:55555/setup, replacing <hostname> of the SIP instance running in AWS with the IP or the hostname.
    3. In the Authentication dialog box-Username is fmosadmin- Password is the EC2 Instance ID- Click Submit
    4. After authenticating, complete the required fields in the FMOS Initial Setup form. The username is read-only and cannot be changed, but you can update the password.
    5. After submitting the FMOS Initial Setup form, FMOS will begin the deployment process.Log in to SIP after deployment:
    6. Open a web browser tab.
    7. Enter the IP address of your SIP/AWS instance.
    8. Enter your username and password.
    • Username is firemon (case-sensitive)
    • Password is the MAC address for the instance
    1. Click Log in. For details, see: https://www.firemon.com/wp-content/uploads/AWS-AMI-Launch-and-FMOS-Install.pdf 

    CF template Usage Instruction: 1.Go to AWS marketplace subscription and Launch cloud formation teamplate. 2.Choose Action 'Launch Cloud formation' and click on Launch 3.Enter Stack Name. 4.Enter all mandatory fields in Parameters. VPC ID Subnet ID Instance Type Key Pair Name IP address Volume Size FMOS username 5.Specify Ecosystem in "Machine Configuration". 6.Add Organization Name. 7.Click Next. 8.Review: Review all sections entered and click Next. 9.A new stack with above Stack Name is created with status "CREATE_COMPLETE". 10.Go to EC2 Dashboard, a new instance is created. 11.After the deployment process completes, you can log in to Security Intelligence Platform to continue setting up your network, such as adding users and devices. a. Open another browser tab. b. Enter the IP address of your AWS instance, For example, https://<hostname_or_IPaddress>;. c. Enter your username and password: Username is firemon (case-sensitive) Password is the MAC address for the instance with colons removed and lowercase letters instead of uppercase letters. For example, a MAC address of 00:05:95:A1:2B:CC would be 000595a12bcc. This is a one-time password to use at first installation and will need to be reset after initial login. Click Log In

    Support

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    4.4
    45 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    62%
    36%
    2%
    0%
    0%
    1 AWS reviews
    |
    44 external reviews
    External reviews are from G2  and PeerSpot .
    Arpita Buche

    Compliance checks have improved visibility and now provide clear guidance on blocking risky rules

    Reviewed on Aug 31, 2026
    Review provided by PeerSpot

    What is our primary use case?

    I use FireMon Security Manager as a compliance tool to check rule compliance and firewall rule compliance.

    What is most valuable?

    I use FireMon Security Manager as a compliance tool to check rule compliance and firewall rule compliance. Overall, it is good and working fine. As soon as we deployed it for that purpose, we could see the benefits immediately. We could see what rules should be blocked and everything.

    What needs improvement?

    The only feedback I would like to give is that we were requesting them to move to SaaS so that the upgradation and everything would be a little more automatic or maybe just easier.

    For how long have I used the solution?

    I have been using FireMon Security Manager for around four years.

    What do I think about the stability of the solution?

    I have not observed any lagging, crashing, downtime, or instability with FireMon Security Manager recently. Previously, we used to have some issues with respect to upgrades two years back; it was failing, but now it seems pretty smooth since the last two years.

    What do I think about the scalability of the solution?

    FireMon Security Manager is good in terms of scalability. We are requesting a few things now, and we have requested new features. I have gotten an update from the TAM that the engineering team is working on that, and it may be coming soon. With respect to scalability, FireMon Security Manager is fine and good.

    How are customer service and support?

    I think FireMon Security Manager is pretty good. I have a support manager, Gary, who helps us. He is a TAM for us, and he supports us very well.

    I have contacted the technical support or customer support of FireMon Security Manager regularly. The TAM with whom I am connected supports us, and his support is really good. He gives us proper support; whenever there is a query or any issue, we send an email to him, and he gives us support whenever required. We are completely satisfied with that.

    Out of 10, I would give the support of FireMon Security Manager a score of 10. It is really good.

    Which solution did I use previously and why did I switch?

    I cannot say that MFNA, Micro Focus Network Analyzer, is exactly similar to FireMon Security Manager because as of now, we have that tool, but it is strictly for configuration. There, we check the configuration part, not the rule of the firewalls. It strictly checks the configuration, so it is not really similar. FireMon Security Manager is better. I think we are exploring to check configuration from FireMon as well, but we are not checking it yet.

    How was the initial setup?

    The initial deployment of FireMon Security Manager when I first started using the product was fine. It was easy and not so difficult.

    What was our ROI?

    Definitely, some time had to pass before I saw the benefits of FireMon Security Manager.

    What other advice do I have?

    I do not have much idea with respect to pricing of FireMon Security Manager.

    FireMon Security Manager does not really require any maintenance on my end to continue working. There are just regular updates whenever a new OS comes up, but apart from that, I do not see any maintenance that is required.

    I think FireMon Security Manager's reporting is good. In our case, we do not use the report from FireMon Security Manager. We fetch the data from the API, and we have different dashboards, so we do not use reports directly from FireMon.

    I do not have any idea about partnerships; I think I am just a customer of FireMon Security Manager.

    I would rate this review an 8 out of 10.

    Joshua X P

    Reporting has strengthened audit readiness but struggles to handle very large rule sets

    Reviewed on Aug 28, 2026
    Review provided by PeerSpot

    What is our primary use case?

    FireMon Security Manager integrates reasonably well into my security stack. We are able to onboard the devices quite easily, but some advanced features of the firewalls take time to support. Sometimes when a new feature is introduced on the firewall side, FireMon may take some time to incorporate it.

    If I were to speak to someone looking to buy FireMon Security Manager, I would say the biggest win is the reporting feature. If your environment is not very large and if you don't have a massive amount of rule sets, then you can go with FireMon Security Manager. It works well with the reporting, and you can use it for getting the reports and presenting them for audit and compliance. It can be used effectively, but if the rule count is huge, it is not very scalable. If your environment is large, then you may get some issues with getting the reports; sometimes the report won't load if the rule count is very high.

    What is most valuable?

    What I like the most about FireMon Security Manager is the reporting feature; it gives all the rules in one console, so we are able to see all those rules without logging into each firewall. Reporting allows us to fetch the rules, for example, risky rules, and other similar information very easily in one place.

    The reports from FireMon Security Manager for communicating risk reduction, compliance status, or overall security posture to my higher-ups are very good. We are actually using it to get the reports and present them to senior officers.

    What needs improvement?

    FireMon Security Manager should have tested more use cases. Sometimes organizations will have a larger number of devices and a larger number of firewall rules. Sometimes FireMon could not handle such an amount of rule sets, and it will cause some issues with normalizing flows data.

    One thing about FireMon Security Manager is that the releases are quite frequent. We need to upgrade more frequently. They release every quarter, but the frequency is comparatively high when compared to others. For FireMon Security Manager, we don't face many outages, but we need to upgrade it frequently to get the patches and the fixes for the issues.

    For how long have I used the solution?

    In my career, I have been using FireMon Security Manager for five years.

    What do I think about the stability of the solution?

    I have seen lagging, crashing, or downtime; sometimes some service crashed, and I needed to restart those services, identify those services, and restart them. It is not very frequent, but it happened.

    What do I think about the scalability of the solution?

    Regarding the overall scalability of FireMon Security Manager, I would say it is not very scalable. If the rule count goes on increasing, sometimes, for example, if we have a firewall and it's used for all the sites, the device count increases and the rule count increases massively, FireMon sometimes cannot handle it effectively.

    How are customer service and support?

    The speed of support for FireMon Security Manager depends on the severity of the issue. If it is a minor issue, then it will be faster; if it is a major issue, sometimes it will require their development team to get involved. In those cases, it will take a long time; it could sometimes take months to solve the issue.

    For the support of FireMon Security Manager, I would give a six or seven on a scale from one to ten, with ten being the highest.

    Which solution did I use previously and why did I switch?

    Previously, I used AlgoSec in my previous organization, but I didn't use it as extensively as FireMon Security Manager, so I don't have much to compare the two.

    How was the initial setup?

    When I first started using FireMon Security Manager, it was moderate. There were people from FireMon giving us the knowledge articles and how to navigate things, so it was not very hard to learn. It is moderate; someone with two to three years of experience can understand it easily.

    What other advice do I have?

    Overall, I would give FireMon Security Manager a six out of ten for everything.

    Information Technology and Services

    Real-Time Visibility That Delivers

    Reviewed on Aug 18, 2026
    Review provided by G2
    What do you like best about the product?
    It provides me the ability to get real time visibility
    What do you dislike about the product?
    I cannot think of anything I dislike about the solution.
    What problems is the product solving and how is that benefiting you?
    It is easy to review different rules on multiple devices, especially when there is large number of security devices. A major benefit is it saves time.
    Amod Pandey

    Reporting has strengthened compliance oversight and tracks every firewall change in real time

    Reviewed on Aug 13, 2026
    Review provided by PeerSpot

    What is our primary use case?

    I am a partner for FireMon Security Manager and typically perform implementations for multiple clients. I use FireMon Security Manager to deploy rules, perform cleanup of rules and firewalls, and create reports based on daily changes or firewall triggers so that administrators and higher management teams can be notified. I can generate compliance reports in a fraction of a second at my convenience. I use the reporting features of FireMon Security Manager to communicate risk reduction, compliance status, and overall security posture to my management. I have scheduled reports for perimeter firewalls that notify the admin and management team when changes occur beyond restricted times, such as during nighttime or in production environments. On a daily basis, these scheduled reports provide details about what changes have been made and which personnel made those changes, with everything delivered to the management and admin inboxes so they are aware of who made what changes on the firewall. This provides evidence for future investigations if any issues are triggered. If someone mistakenly made changes or reverted changes and then deleted the audit logs, I can still map or review what changes were made through FireMon Security Manager for investigation purposes.

    What is most valuable?

    I particularly like the SQL query feature of FireMon Security Manager that I can use for rule searches. I can search based on command, source, destination, rule name, or rule number with multiple search field parameters that give me leverage to filter rules and obtain output at my convenience. The output can be delivered via email as well as in PDF or CSV format. This is a very good feature because I have not found this many filters on any other tools to get rules filtered from security devices.

    What needs improvement?

    I dislike that as soon as I upgrade the security devices' version, it takes time to get the device pack for that compatible version. I want to highlight that FireMon Security Manager should work in parallel with the latest version of security devices, such as firewalls, and the device pack should be updated as soon as the OS is released. For example, with the device pack, we pull data from security devices and based on that analysis, FireMon Security Manager provides us with reports. As soon as the security device's OS gets upgraded, such as with Check Point, when a client is running on R81.20 and upgrades to R82 or R82.10, there is an error pulling the configuration that was working previously on R81.20. In that scenario, I have to log a case with technical support, which takes time for analysis, and it takes more than a month to get the compatible version of the device pack to pull configuration from the upgraded OS of the firewall.

    For how long have I used the solution?

    I have been working with FireMon Security Manager for more than two to three years.

    What do I think about the stability of the solution?

    Downtime in FireMon Security Manager is not significant. I can say that quarterly, once in a while, it is not accessible, but most of the time it is accessible with no crashes. I have seen improvements since I implemented FireMon Security Manager. It has improved quite a bit from previous versions. The page loading time is very minimal now, whereas previously it took more time to load the pages.

    What do I think about the scalability of the solution?

    The scalability of FireMon Security Manager is good.

    How are customer service and support?

    I have contacted the technical support and customer support of FireMon Security Manager. The quality of the support is good and the speed is also good. I receive responses within a timeframe, and as soon as I send an email, I get a response within the next day if analysis of logs is required, or the same day if it is not.

    Which solution did I use previously and why did I switch?

    Previously when I was not working on FireMon Security Manager, I used to work on AlgoSec. As per my convenience, I can say that FireMon Security Manager is better because it gives me filtering of rules at my convenience, which is not possible in AlgoSec.

    How was the initial setup?

    The initial deployment of FireMon Security Manager is easy. Everything is visible in the GUI and documentation is readily available. If someone reads the documentation, they can complete the setup. However, they should be aware of how to access the console. Basic knowledge of networking is required to complete the setup.

    Which other solutions did I evaluate?

    The pricing structure for FireMon Security Manager is good. FireMon Security Manager is much better than AlgoSec.

    What other advice do I have?

    I would give FireMon Security Manager a rating of 10 for support. For everything related to FireMon Security Manager, I would give it a 10. My overall review rating is 10.
    Bhupendra Sonney

    Centralized policy visibility has transformed how I manage compliance and firewall rule changes

    Reviewed on Aug 12, 2026
    Review provided by PeerSpot

    What is our primary use case?

    Our customers have different use cases with FireMon, and I won't disclose names. They want a tool that offers a single pane of glass for rule set visibility, understanding policy compliance, and how compliant they are with various policies such as HIPAA, PCI DSS, or NIST. Another use case involves Security Manager rather than Policy Planner and Policy Optimizer, as these are designed for change automation.

    Regarding centralized visibility of firewall rules across multiple vendors for a customer, they sometimes want to know who owns a particular rule, its function, and its deployment location. For risk and compliance, the focus is on identifying risky firewall rules and assessing them against organizational standards. Additionally, they use network path analysis to understand connections between applications, which aids network security teams in troubleshooting.

    What is most valuable?

    FireMon Security Manager acts as a network security policy management layer above core infrastructures, offering centralized policy visibility across platforms including Palo Alto, Fortinet, and Check Point. It interfaces with ITSM tools, facilitating workflow automation. However, it complements rather than replaces existing security technologies.

    Transitioning from a manual and time-consuming process to one utilizing Policy Planner and Optimizer has improved visibility and confidence in policy changes, reducing manual efforts, and enhancing governance and auditability.

    What needs improvement?

    The console GUI disappoints me because it lacks customization. I cannot remove or add widgets, similar to how iPhone locks app placements. The non-customizable dashboard annoys me as it shows unwanted information. However, Insights with AI integration offers customizable dashboard visibility once opted in, which addresses this limitation.

    For how long have I used the solution?

    I have been with the company for twenty-two years, and with FireMon Security Manager, I have been using it for around two years now.

    What do I think about the stability of the solution?

    A specific collector issue affected traffic log collection and config retrieval. It was not a total crash, but a process issue. This is the first occurrence in two years, and we are working on pinpointing the problem. Overall, I rate the stability at nine out of ten.

    What do I think about the scalability of the solution?

    FireMon Security Manager uniquely supports Strata Cloud Manager for Prisma Palo Alto devices and facilitates Azure firewall configurations and Illumio integrations. It integrates with various solutions such as ServiceNow, SIEM, or SOAR, showcasing superior integration and scalability among vendors.

    How are customer service and support?

    As a user for two years, I recently opened my first case with FireMon's technical support, which was handled promptly. Unlike other vendors with long response times, FireMon's support quickly engaged, offering screen sharing sessions to resolve issues efficiently. I have found their support exemplary.

    Which solution did I use previously and why did I switch?

    I have experience working with several network security policy management solutions, including Tufin, AlgoSec, and previously Skybox. Skybox offered a high degree of dashboard customisation, but the company subsequently went into liquidation in February 2025. Tufin and AlgoSec both have their own strengths, and my experience with FireMon has led me to favour it for my current requirements, particularly around centralised policy visibility, compliance, policy management, and integration capabilities.

    How was the initial setup?

    Initial deployment is extremely easy. If a connector issue arises, FireMon sends a device pack to address specific issues, avoiding full software upgrades. This expedites resolutions, such as with Check Point or Fortinet firewalls. Furthermore, bulk uploading capabilities streamline implementation without management stations.

    What's my experience with pricing, setup cost, and licensing?

    As a partner, I have experience working with multiple network security policy management vendors, each with different pricing, licensing, and deployment models. I have found FireMon's commercial offering to be competitive, with the overall value depending on the organisation's requirements, scale, functionality, and support needs. I would recommend evaluating the complete solution and its capabilities rather than looking at licensing cost in isolation.


    What other advice do I have?

    I regularly design, deploy, and support FireMon Security Manager instances, receiving daily reports. These reports are valuable for customers, particularly for C-level presentations, offering insights into compliance, security, and change activities. I give FireMon Security Manager a rating of ten out of ten. I have worked with many solutions, including Skybox, Tufin, AlgoSec, Check Point, and Palo Alto, but FireMon Security Manager truly stands out for its willingness to assist quickly.

    View all reviews