Palo Alto Networks VM-Series vs Zscaler Cloud Firewall comparison

Cancel
You must select at least 2 products to compare!
Fortinet Logo
117,316 views|85,923 comparisons
90% willing to recommend
Palo Alto Networks Logo
6,875 views|4,425 comparisons
100% willing to recommend
Zscaler Logo
2,309 views|1,656 comparisons
100% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Palo Alto Networks VM-Series and Zscaler Cloud Firewall based on real PeerSpot user reviews.

Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Palo Alto Networks VM-Series vs. Zscaler Cloud Firewall Report (Updated: May 2024).
772,649 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Fortinet FortiGate is a scalable solution.""Secure, user-friendly, stable, and scalable network security solution. Installation is straightforward.""The user interface is relatively easy. The devices are easy to deploy and figure out when you have experience with other security appliances.""All of the features of Fortinet FortiGate are useful and the security protection is good.""It has improved our security capabilities.""This solution has solid UTM features combined with a nice GUI.""FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features.""Our security improved from being able to put in rules and close off unwanted traffic."

More Fortinet FortiGate Pros →

"I have not actually called their support line, because we have a direct contact to a senior engineer in the company for any issues that we handle with them. I will say they are very responsive, and they do give you the information you need when you need it.​""The most valuable feature is the Posture Assessment.""It allows us to see all our traffic to properly secure it and only allow what is needed through the firewall.""The feature that I have found the most useful is that it meets all our requirements technically.""AWS has improved our agility to apply firewall rules. It has reduced the amount of time that it takes to apply firewall rules because everything is based in the cloud.""The Palo Alto VM-Series is nice because I can move the firewalls easily.""The VM series has an advantage over the physical version because we are able to change the sources that the machine has, such as the amount of available RAM.""The most valuable features are the User ID, URL filtering, and application filtering."

More Palo Alto Networks VM-Series Pros →

"It is a stable solution.""Once you have Zscaler running you have access to configure it however you want.""The product’s firewall and VPN package are fantastic compared to any other solution.""The solution is scalable.""Zscaler Cloud Firewall understands the applications in the current generation and adapts to the present generation cloud applications.""The visibility and log availability offered are highly valued for troubleshooting purposes, and this is a key factor driving customer interest in the firewall module.""I like the ease of deployment and its flexibility. We don't need to deal with license, quotes, procurement, delivery, and installation. Everything is software-based, and it's very easy to operate.""The initial setup is straightforward."

More Zscaler Cloud Firewall Pros →

Cons
"It claims it does DLP, but the degree and level of controls are very basic.""Its filtering is sometimes too precise or strict. We sometimes have to bypass and authorize some of the sites, but they get blocked. We know that they are trusted sites, but they are blocked, and we don't know why.""There are some cloud-based features that could be much more flexible than they currently are.""There are some tiny bugs that sometimes affect the operations. In the past revision of it, there was a bug. Because of the bug, we had to downgrade the version. It happened only with the last revision.""In some cases, its initial setup could be hard for customers.""Fortinet FortiGate could improve if it had a cloud-managed solution.""The logging details need to be improved.""The main aspect of FortiGate that could be improved is load balancing. Our management team does not want to buy another appliance for only load balancing."

More Fortinet FortiGate Cons →

"The product needs improvement in their Secure Access Service Edge.""The one issue that I didn't like is that the SNMP integration with interfaces didn't record the interface counters.""The only minor issue we've faced is with the app's ID configuration, which requires specific matching for application filtering.""The product could provide protection above Layer 3, which gets into the application layer and provides better visibility into those aspects of application security.""The interface is all Java-based. I would prefer an HTML5 interface.""People are less aware of Palo Alto.""They made only a halfhearted attempt to put in DLP (Data Loss Prevention).""In the next release, I would like to see better integration between the endpoints and the firewalls."

More Palo Alto Networks VM-Series Cons →

"We are having some issues with internet access being denied when organizational ID-based policies change. For example, a lower level employee ends up getting the same level of access as that of a higher level employee.""Instead of the standard license, they should certainly provide customers with the visibility to access and view the logs.""The issue right now is probably that Zscaler is not providing web browser isolation. Another solution, Menlo, offers this. For one customer, we had to send traffic to Menlo to do the isolation for us. It was requested by the customer so that they could integrate any iframe. Zscaler needs to add this type of feature in their next release.""When it comes to customer support, there is room for improvement in Zscaler's service.""They do not provide a few components that are fundamental to differentiate the products""Zscaler Cloud Firewall should have a better understanding of all dynamic cloud applications.""It would be better if they improved their policy, package visibility, and flexibility while we're creating rules for inspection. It could also be cheaper or more things could be included in the basic package. In the next release, I would like better coverage in the Asia Pacific region and better quality of service.""Its technical support services could be better."

More Zscaler Cloud Firewall Cons →

Pricing and Cost Advice
  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "For what you get, it does do what it says. It is a good value for an enterprise firewall.​"
  • "​The licensing is pretty much like everyone else."
  • "When you have a client compare box against box, a lot of times Palo Alto is a bit more expensive, but its network firewalls have a very rich ratio."
  • "Do not buy larges box if you do not need them. Rightsizing is a great task to do before​hand."
  • "I know Palo Alto is not cheap. They have been telling me, the members of the finance team, it is not a cheap solution. It is a solution whose target is that no matter how big your organization is, small, medium, or large, it is about the maturity of your security team or infrastructure team whom you want to work with."
  • "It is a little bit of crazy if you compare it to Vanguard, Sophos, or even Cisco. The newest version of Cisco, the Next-Generation Firewall of Cisco, is less expensive than Palo Alto. It is more comparable to Check Point."
  • "For licensing, It depends how they want to use the firewall. The firewall can be used only for IPS purposes. If you only want that firewall IPSs, you will only need a license that is called threat prevention. That license, threat prevention, includes vulnerabilities, antivirus signatures and one additional measure (that I can't remember), but it includes three measures and security updates."
  • "The box, if you do not want to buy the threat prevention license in the box, you can buy it only with the support license. It is for the support of the hardware. It works like a simple firewall. It integrates what it calls user IDs and application IDs. If you do not buy any other license, only the firewall, Palo Alto will also help you improve a lot of your security."
  • More Palo Alto Networks VM-Series Pricing and Cost Advice →

  • "The licensing is on a yearly basis. It is somewhere around 30 or 40 pounds per user for our organization."
  • "There are licensing costs, and I would not say that it's a cheap vendor."
  • "There is an annual license required for the use of the Zscaler Cloud Firewall."
  • "There are different subscription models available."
  • "Zscaler is priced too high compared to the cost of Fortinet."
  • "It is expensive for small businesses."
  • "It is not the most budget-friendly solution, but it's important to consider its overall value."
  • "It comes at a significantly reduced cost while ensuring control and effectiveness."
  • More Zscaler Cloud Firewall Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    772,649 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it… more »
    Top Answer:Both products are very stable and easily scalable The setup of Azure Firewall is easy and very user-friendly and the… more »
    Top Answer:The product’s firewall and VPN package are fantastic compared to any other solution.
    Top Answer:The product costs INR 3000 to INR 5000 annually if the users are below 500.
    Top Answer:Pricing is a challenge. Organizations with more than 1000 users get a better price. Below 1000 users, we do not get good… more »
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Learn More
    Overview

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    Palo Alto Networks VM-Series is a highly effective advanced threat protection (ATP) solution and firewall that can be hosted on cloud computing technologies designed by many different companies. It decreases the amount of time that it will take administrators to respond to threats. Users that deploy VM-series have 70% less downtime than those who use similar firewalls. Neither protection nor efficiency are concerns when this next-generation firewall is in play.

    VM-Series is being deployed to protect both public and private cloud environments. This level of flexibility empowers organizations to run the environment or environments that best meet their needs without worrying that they are going to be exposed to digital threats due to the environment that they choose.

    In the public cloud, users of Palo Alto Networks VM-Series can automate their deployment and dynamically scale up their environment while experiencing a consistent level of protection. This dynamic scalability means that they also integrate their security into their DevOps workflows so that their security can keep up with their activities and requirements. Users of private cloud environments can set up security policies that can be automated to be provisioned as the need arises. Organizations don’t need to slow down when they deploy VM-Series because it makes the task of defending them so simple that they can set their defenses and forget that they are even there.

    Users gain a deep level of visibility when they deploy Palo Alto Networks VM-Series. App-ID technology enables organizations to see their network traffic on the application level and spot threats that might be trying to sneak in through vulnerable points in their defenses. It also leverages Palo Alto Networks WildFire and advanced threat protection to block the threats before they can escalate.

      Palo Alto Networks VM-Series Features:

      • Central management system - It has a central management system that enables users to set up and control their security operations from one location. Users don’t need to search for the tools that they need. This system allows for security consistency and complete control without requiring businesses to spend large periods of time to do so.
      • Blacklisting and whitelisting - Organizations can utilize blacklisting and whitelisting tools to ensure that their network traffic only contains the type of traffic that they want to be present. These tools make it possible for them to set specific web traffic sources as being either undesirable and thus blocked from entering their network or desirable and thus allowed to enter. 
      • Automation feature - The product’s automation feature can automate many critical functions that users would otherwise have to handle manually. Security policy updates are an example of a function that users can automate.

      Reviews from Real Users:

      Palo Alto Networks VM-Series is a solution that stands out when compared to other similar solutions. Two major advantages that it offers are its ability to protect users without degrading the efficiency with which their networks perform and its centralized management system. 

      Jason H., the director of information technology at Tavoca Inc, writes, “There is no noticeable trade-off between security and network performance. In fact, so far, we've not seen any negative network performance with it. We're very impressed in that regard.”

      An information technology manager at a tech services company says, “We use Palo Alto’s Panorama centralized management system. We have an on-prem firewall where Panorama is very good for pulling logs in from the cloud so we can see what is going on. It gives us visibility into that as well as shows us what attacks are coming in. Palo Alto’s Panorama centralized management system simplifies our security posture based on our requirements. Instead of manually pulling logs, then generating them into readable formats, it gives us the console in a readable format to view.”

      Zscaler enables the world’s leading organizations to securely transform their networks and applications for a mobile and cloud first world. Its flagship services, Zscaler Internet Access and Zscaler Private Access, create fast, secure connections between users and applications, regardless of device, location, or network. Zscaler services are 100% cloud-delivered and offer the simplicity, enhanced security, and improved user experience that traditional appliances or hybrid solutions are unable to match. Used in more than 185 countries, Zscaler operates the world’s largest cloud security platform, protecting thousands of enterprises and government agencies from cyberattacks and data loss.

      Check more details: https://www.zscaler.com/produc...

      Sample Customers
      1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
      Warren Rogers Associates
      Zenith Live, Azure, Carlsberg Group
      Top Industries
      REVIEWERS
      Comms Service Provider16%
      Computer Software Company9%
      Financial Services Firm8%
      Manufacturing Company7%
      VISITORS READING REVIEWS
      Educational Organization20%
      Computer Software Company15%
      Comms Service Provider7%
      Manufacturing Company6%
      REVIEWERS
      Computer Software Company26%
      Manufacturing Company16%
      Financial Services Firm13%
      Government10%
      VISITORS READING REVIEWS
      Computer Software Company16%
      Financial Services Firm11%
      Manufacturing Company7%
      Government6%
      REVIEWERS
      Retailer25%
      Manufacturing Company25%
      Comms Service Provider13%
      Computer Software Company13%
      VISITORS READING REVIEWS
      Computer Software Company12%
      Financial Services Firm9%
      Manufacturing Company8%
      Government8%
      Company Size
      REVIEWERS
      Small Business48%
      Midsize Enterprise23%
      Large Enterprise30%
      VISITORS READING REVIEWS
      Small Business28%
      Midsize Enterprise32%
      Large Enterprise40%
      REVIEWERS
      Small Business41%
      Midsize Enterprise26%
      Large Enterprise33%
      VISITORS READING REVIEWS
      Small Business23%
      Midsize Enterprise16%
      Large Enterprise61%
      REVIEWERS
      Small Business31%
      Midsize Enterprise13%
      Large Enterprise56%
      VISITORS READING REVIEWS
      Small Business25%
      Midsize Enterprise12%
      Large Enterprise63%
      Buyer's Guide
      Palo Alto Networks VM-Series vs. Zscaler Cloud Firewall
      May 2024
      Find out what your peers are saying about Palo Alto Networks VM-Series vs. Zscaler Cloud Firewall and other solutions. Updated: May 2024.
      772,649 professionals have used our research since 2012.

      Palo Alto Networks VM-Series is ranked 10th in Firewalls with 53 reviews while Zscaler Cloud Firewall is ranked 26th in Firewalls with 15 reviews. Palo Alto Networks VM-Series is rated 8.6, while Zscaler Cloud Firewall is rated 8.4. The top reviewer of Palo Alto Networks VM-Series writes "Many features are optimized for troubleshooting real-time scenarios, saving a lot of time". On the other hand, the top reviewer of Zscaler Cloud Firewall writes "A highly stable and comprehensive cloud security and access solution". Palo Alto Networks VM-Series is most compared with Azure Firewall, Fortinet FortiGate-VM, Cisco Secure Firewall, Palo Alto Networks NG Firewalls and Juniper SRX Series Firewall, whereas Zscaler Cloud Firewall is most compared with Azure Firewall, OPNsense, Cisco Multicloud Defense, Cisco Secure Firewall and Palo Alto Networks NG Firewalls. See our Palo Alto Networks VM-Series vs. Zscaler Cloud Firewall report.

      See our list of best Firewalls vendors.

      We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.