TrustRadius: an HG Insights company

Cisco Firepower 1000 Series

Score8 out of 10

83 Reviews and Ratings

What is Cisco Firepower 1000 Series?

The Cisco Firepower® 1000 Series for small to medium-size businesses and branch offices is a family of four threat-focused Next-Generation Firewall (NGFW) security platforms designed to deliver business resiliency through superior threat defense. The vendor provides that they offers exceptional sustained performance when advanced threat functions are enabled. The 1000 Series’ throughput range addresses use cases from the small office, home office, remote branch office to the Internet edge. The 1000 Series platforms run Cisco Firepower Threat Defense (FTD) and Cisco® Adaptive Security Appliance (ASA) software.

Categories & Use Cases

Top Performing Features

  • High Availability

    Built-in capacity to prevent exposure if primary firewall stops working

    Category average: 9.2

  • VPN

    VPN's implement encryption and anonymize IP addresses

    Category average: 9.1

  • Stateful Inspection

    Stateful inspection analyzes packet headers and contents of packets

    Category average: 8.8

Areas for Improvement

  • Identification Technologies

    Policy-based visibility and control over applications, users and content

    Category average: 8.3

  • Visualization Tools

    Visualization tools present administrators with data on applications traversing the network, who is using them, and the potential security impact.

    Category average: 8.1

  • Firewall Management Console

    Either command-line or web-based interface for centralized control and management

    Category average: 8.1

Evaluating Cisco Firepower 1000 for mid-sized business

Use Cases and Deployment Scope

These are the main business problems...

1. Implement policies for Internet navigation: restrict sites directly from the firewall, eliminate our proxy

2. Protection against cyber attacks hacking, viruses, and malware.

3. Control of network traffic

4. Protection of confidential information:protect sensitive or confidential information from being accessed by unauthorized users or external threats.

Pros

  • Advanced threat protection
  • Network visibility
  • provides a robust and flexible set of security capabilities
  • Security automation

Cons

  • Price: The Cisco Firepower 1000 Series comes with a significant price tag
  • User interface: The Firepower Management Center (FMC) interface can be complex and overwhelming for some users
  • Performance impact especially when running multiple security modules

Return on Investment

  • Better security
  • optimization of network
  • Better network performance

Alternatives Considered

Cisco Meraki MX

Other Software Used

Cisco Meraki MX, Cisco Meraki MR

Stores protection

Use Cases and Deployment Scope

It implements the firewall cluster in a customer of ours' stores. It implements the perimeter-based security and VPN

Pros

  • VPN
  • Perimeter-based security
  • L7 application visibility

Cons

  • Configuration tools and portability
  • Capacity
  • ACL configuration

Return on Investment

  • Acceptable initial investment
  • Good for service costs in opex
  • Multi site management allows costs reduction

Alternatives Considered

Fortinet FortiGate and Cisco Meraki MX

Other Software Used

Fortinet FortiGate, Cisco Meraki MX, Check Point DDoS Protector

Cisco Firepower Threat defense is a great firewall for Small to medium business.

Use Cases and Deployment Scope

Migration of current ASA 5505, ASA5540 firewall fleet. The migration steps are to migrate to an new platform recommending Firepower Threat Defense.

Pros

  • Simplicity of functionality
  • Throughput of traffic
  • Ease of implimentation

Cons

  • Real time logging to FMC
  • Option for web interface for real time logging even if you are FMC controlled

Return on Investment

  • I would see it is neutral because the option for migration is only Firepower

Alternatives Considered

Palo Alto Networks Next-Generation Firewalls - PA Series

Other Software Used

Cisco Defense Orchestrator

Usability

Cisco Firepower 1000 Series || My Review

Pros

  • IPSEC site to site VPN
  • Advanced malware protection
  • Intrusion Prevention Systems
  • SSL Cisco AnyConnect remote VPN
  • URL filtering
  • Sandbox
  • Email security
  • Anti-spam
  • Phishing control

Cons

  • ASDM is not user friendly

Return on Investment

  • Easy to configure and manage
  • Easy to export report
  • Low cost
  • High security
  • Lots of Cisco docs available on [the] Cisco website

Other Software Used

Cisco 3504 WLAN Controller, Cisco 5520 Wireless Controller

Spectacular product to protect you at home or office! Ease of use and support too!

Pros

  • Easy of use and training
  • Support is readily available
  • Deployment is quick
  • Lightweight with big power behind it

Cons

  • When searching through some menus there are times where a search bar could be implemented to assist.
  • VPN log files are cumbersome. Streamlining those when getting into details of 1 site to site is difficult but overall not a deal-breaker.

Return on Investment

  • This product has kept hackers, malware, and viruses at bay for large hospitals and small alike. Very valuable data can reside behind this so long as it is set up correctly.
  • The value is great with SnortV3. Very versatile if you need a hybrid scenario with Multi-Cloud support.

Alternatives Considered

Cisco Firepower 4100 Series

Other Software Used

Goliath Performance Monitor, VMware Horizon (formerly VMware View), Citrix ADC (formerly NetScaler ADC)