Fortinet FortiWeb 600F Threat Analytics Service, 1-Year (FC-10-FV60F-579-02-12)

SKU: FC-10-FV60F-579-02-12

Original price was: CAD$8,331.13.Current price is: CAD$6,647.17.

Save:20%You save CAD$1212.77
1-year Threat Analytics Service for FortiWeb 600F. ML-based correlation aggregates attack events, scores them by risk level, and surfaces prioritized incident reports to reduce analyst alert fatigue.
  In Stock   Free & Fast e-Delivery (0–1 Business Days)
Fortinet Select Partner
  Brand New
  Official Fortinet Partner Support
  100% Secure Checkout
  Licensing available worldwide — delivered electronically to any country

Product description

A busy FortiWeb 600F can generate thousands of individual attack log entries per hour. Manually triaging each event is slow and misses coordinated attack patterns that span multiple requests or sessions. This one-year Threat Analytics Service subscription applies machine learning correlation to the FortiWeb 600F event stream, grouping related events into scored incidents and surfacing the cases that represent genuine, prioritized risk.

Overview

The Threat Analytics Service collects attack log data from the FortiWeb 600F and runs it through a machine learning model that identifies relationships between events: repeated source IPs across multiple attack types, sequences suggesting reconnaissance before exploitation, and spike patterns characteristic of automated scanning. Each incident bundle receives a risk score based on attack severity, event frequency, source confidence, and behavioral context.

Analysts work from a ranked incident list rather than raw log volume, focusing investigation time on events most likely to represent real threats rather than scanner noise. The correlation engine runs in the cloud and requires no additional on-premises components beyond the subscribed FortiWeb appliance. Risk scores are updated dynamically as new events arrive, so an escalating source is re-ranked in near real time.

Who it suits

Security operations teams managing the FortiWeb 600F alongside other detection tools benefit most. When WAF logs feed into a larger incident queue, pre-scored and correlated events slot more naturally into triage workflows than unfiltered per-request alerts. Organizations with a small security team protecting multiple web applications find that ML correlation reduces the time spent separating automated scanner noise from targeted attacks.

Teams that already forward FortiWeb logs to a SIEM can treat Threat Analytics output as enriched, pre-triaged input rather than raw log lines, improving SIEM correlation accuracy without duplicating the FortiWeb-specific ML work.

Buying from DataCenter360.ca

DataCenter360.ca lists this as an electronic license available worldwide, renewed annually. Threat Analytics is one of the more specialized FortiWeb 600F add-ons; if you have questions about how it integrates with your existing SIEM or logging pipeline before committing, our team can assist. Contact us for volume pricing if you are deploying multiple FortiWeb units under the same subscription program.

Frequently asked questions

Does the Threat Analytics Service send FortiWeb log data to an external cloud?
Yes. Event data from the FortiWeb 600F is processed in Fortinet’s cloud infrastructure where the ML correlation engine runs. Review Fortinet’s data residency documentation if your organization has specific data sovereignty requirements before enabling the service.
Is this service useful if we already forward FortiWeb logs to a SIEM?
The two are complementary. Threat Analytics performs correlation specific to FortiWeb’s event model and produces scored, grouped incidents. Those enriched incidents can then flow into a SIEM as higher-quality input compared to raw per-request log lines.
How is the risk score for an incident determined?
The ML model weighs attack type and severity, source IP reputation, event frequency, and behavioral sequences across a session or time window. Scores update as new events arrive, so an attacker that escalates activity is re-ranked accordingly rather than holding a stale score from the first observed event.

Additional information

Additional information

Manufacturer

Fortinet

Model

FortiWeb-600F

Product Type

Product Group

End of Order Date (EOO)

Not published yet

Last Service Extension Date (LSED)

Not published yet

End of Support Date (EOS)

Not published yet

Product Family

FortiWeb

MPN

FC-10-FV60F-579-02-12

Customer ratings & reviews

0.0
Based on 0 reviews
5
0%
4
0%
3
0%
2
0%
1
0%
0 of 0 reviews

Sorry, no reviews match your current selections