Overview

Product video
Enterprise customers and MSP partners: please reach out to info@umbrellacost.com to receive custom Private Offers tailored to your needs! Try Umbrella FREE for 30 days!
Umbrella's Cloud Financial Management platform delivers real-time visibility, automated workflows, and accurate cost forecasting across cloud and SaaS environments. Organizations using Umbrella reduce cloud spend by up to 40% with actionable recommendations across AWS, Azure, and GCP. Customers like Amdocs, and Monday use Umbrella to manage and optimize costs with over 60 types of intelligent savings opportunities-such as right-sizing and next-gen migration for EC2 (including Graviton), RDS, EBS, S3, and Lambda.
Connect your cloud accounts to Umbrella in minutes Get unified, accurate cost data within 24 hours Track costs across all cloud providers in one platform Create custom reports and dashboards Easily export and share insights with your teams Instantly identify your potential savings Umbrella enhances native tools like AWS CUR, Budgets, Cost Anomaly Detection, and Cloud Intelligence Dashboards
Gain deep EKS cost visibility: Umbrella correlates Kubernetes metrics with AWS CUR and pricing data to reveal pod and node utilization, application-level costs, and waste. FinOps teams can accurately allocate EKS spend-including shared and idle resources-and track usage by cost center, across both EKS and traditional workloads.
Highlights
- 5 click integration with minimal permissions required. Full EKS K8s Kubernetes governance via granular cost breakdown. Unprecedented visibility to align finance and operations. Up-to-date billing data . More than 80 recommendation types. Accurate demand forecasts. White label capabilities - for managed service providers (MSPs) to offer a branded reporting portal including pricing manipulations, billing rules, and credit management to their customers.
- "Anomaly Detection for Comprehensive Cost Reports Umbrella continuously monitors your cloud and SaaS spend in real time, using AI-powered anomaly detection to surface unexpected cost spikes before they become costly issues. Unlike manual BI tools, Umbrella empowers FinOps teams with a self-service platform for full visibility and control. It ingests CUR files and automatically builds a comprehensive, actionable cost dashboard."
- Forecast future costs. Umbrella will run forecast models on historical CUR files to generate demand forecasts for future AWS demand.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Description | Cost/12 months |
|---|---|---|
30 Day Trial | Unlimited access and support for 30 days | $1.00 |
SaaS | Minimum Flat Fee for up to $1M in annual AWS spend | $45,000.00 |
Vendor refund policy
No refunds
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Learn more about AWS Cost Monitoring and create tickets at http://support.umbrellacost.io Contact Anodot support at support@umbrellacost.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
Layered DNS security has protected users and simplifies URL whitelisting and blacklisting
What is our primary use case?
My main use case for Umbrella involves whitelisting and blacklisting of URLs. I want to provide feedback on Umbrella as it functions. Umbrella provides strong DNS layer security and blocks malicious domains before connections are established. We would like to whitelist or blacklist the URLs that we want to utilize on our client side. The dashboard is relatively easy to use and provides good visibility into DNS requests and security events. Integration with other Cisco security products is beneficial, and reporting and analytics could be more customizable. Policy management can become complex in larger environments with multiple user groups. Troubleshooting blocked domains sometimes requires a very deep investigation. More granular reporting and easier policy inheritance would improve administration. Roaming client protection is valuable for remote customers, and threat intelligence backed by Cisco Talos is a strong advantage.
I can provide a quick specific example of how I have used Umbrella for whitelisting or blacklisting URLs by checking in VirusTotal as well as a few of the McAfee sites, and based on that, we will blacklist or whitelist the URLs.
What is most valuable?
The best features Umbrella offers include content filtering, protection for remote users, and DNS security, malware, and phishing protection.
Out of those features, I find myself relying on DNS security the most because it is essential for my needs.
Umbrella has positively impacted my organization by ensuring that if anyone wants to access any of the URLs, the URL will be blocked. If they want to access that particular URL, it needs to be whitelisted. Umbrella will help us to block or whitelist the URL based on malicious activity.
A specific outcome that shows how Umbrella has benefited my organization is that it saved a lot of time, and before security events occur, it filters all the URLs. Whether they are malicious or phishing URLs, it will blacklist those and will not approve that.
What needs improvement?
While Umbrella provides good visibility, reporting and dashboard customization could be improved by being more flexible, especially for management and compliance reporting. When a domain is blocked, administrators sometimes need to navigate multiple logs and dashboards to identify the exact policy or rule responsible. Simplified troubleshooting would improve this experience.
More customizable reporting, simplified policy management for large environments, and enhanced troubleshooting capabilities could be included.
Regarding Umbrella's AI capabilities, its governance and security can use threat intelligence from Cisco Talos to identify malicious domains, phishing sites, and emerging threats. Machine learning and predictive analysis can be leveraged to detect newly registered or suspicious domains before they are widely known threats. For example, AI-powered investigation summarizes and explains why a domain was blocked.
Its accuracy and reliability of output are notable since it provides reliable threat detection using Cisco Talos threat intelligence, machine learning, and domain reputation analysis. In my experience, the accuracy is generally good with effective identification of malicious and phishing domains. However, there can occasionally be false positives where legitimate sites are blocked and require review or whitelisting. The platform is highly reliable for DNS layer protection, but providing more transparency into AI-driven decisions and improving the explanation of why a domain is flagged would further enhance administrative confidence.
For how long have I used the solution?
I have been using Umbrella for eight plus years.
What do I think about the stability of the solution?
Umbrella is stable.
What do I think about the scalability of the solution?
Regarding Umbrella's scalability, it is highly scalable and well-suited for organizations of different sizes from small businesses to large enterprises. Since it is a cloud-delivered service, it can support a growing number of users, devices, and locations without requiring significant on-premises infrastructure. In my experience, scaling protection to remote users and multiple sites is relatively straightforward through centralized policy management.
How are customer service and support?
The customer support was great, as they would solve the issue immediately based on the priority after we raise a request.
Which solution did I use previously and why did I switch?
I have not used any other solution; Umbrella is the only one I am using.
Before choosing Umbrella, we did not evaluate other options. Our client chose only Umbrella, and it has been the best option so far.
What other advice do I have?
My advice for others looking into using Umbrella is to consider that it would be helpful for all clients to better whitelist and blacklist the URLs that are malicious and phishing ones, as it will add more security or a layer of security to the companies. I would rate this product a nine out of ten.
DNS security has protected endpoints and servers and provides compliant, low‑overhead protection
What is our primary use case?
My main use case for Umbrella is DNS security, by securing end users to utilize a security DNS. I have deployed Umbrella in proxy mode, and we have two appliances in our environment. Our Active Directory gets all the DNS queries from the Umbrella appliances, and the Umbrella appliances reach DNS and Cisco Security Cloud . Our end users utilize it from the Active Directory.
What is most valuable?
The best features Umbrella offers secure the DNS queries for our environment, including servers and endpoints. What makes the security feature stand out for our servers and endpoints is that most of the DNS queries come from trusted sources. Umbrella has positively impacted my organization by providing a layer of security on the DNS level. I can share specific outcomes including improved compliance with NCA regulation that resulted from using Umbrella.
What needs improvement?
Umbrella can be improved by adding DHCP services to be a full DDI solution, as most customers today are looking for a full DDI solution. Exporting reports for all the DNS queries, including how much reached and what has been blocked, can give full visibility for the protection. Additionally, adding DDoS protection services to the DNS cloud would provide more layers of security.
For how long have I used the solution?
I have been using Umbrella for three years.
What do I think about the stability of the solution?
Umbrella is stable.
What do I think about the scalability of the solution?
Umbrella's scalability is great.
How are customer service and support?
Cisco Customer Support always answers on time, which is very helpful. I would rate the customer support a nine on a scale of one to ten.
Which solution did I use previously and why did I switch?
I previously used Infoblox as a different solution before switching to Umbrella.
Which other solutions did I evaluate?
Before using Umbrella, I did not evaluate any other options.
What other advice do I have?
I would rate Umbrella an eight on a scale of one to ten. I chose that number because of the ease of deployment of Umbrella, as well as its easy use and low operational headache. My advice for others looking into using Umbrella is to make sure to deploy Umbrella appliances on-premises to utilize the proxy services. The interview was great, and I have no changes to suggest for the future.
Improved threat protection has reduced incidents and now needs better user browsing performance
What is our primary use case?
The main use case for Umbrella is that I am using it for SASE . I am using Umbrella for blocking malicious domains before connection happens, then protecting remote and hybrid users also without forcing full VPN. I am using it for web content filtering as well. Visibility into internet traffic, lightweight client protection, and the cloud delivered secure web gateway are part of my workflow. These include HTTP inspection, file inspection, URL filtering, SaaS control, and CASB .
What is most valuable?
The speed feature of Umbrella is the most useful feature and the one I find most valuable. For BYOD users, I am using the speed feature which stands out for me.
Mostly from SWG, HTTP inspection is an advantage, file inspection is an advantage, and URL filtering is also an advantage regarding the features of Umbrella.
Umbrella has positively impacted my organization as I am getting fewer phishing and malware incidents. Users are very happy with Umbrella.
I measure those improvements by getting lower incident response, fewer endpoint cleanup, less time to investigate commodity phishing, and fewer repetitive user tickets. I am able to achieve almost net zero incidents.
What needs improvement?
User experience of Umbrella can be improved, with less backhauling traffic, better browsing performance, and fewer VPN dependency complaints.
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
Which solution did I use previously and why did I switch?
Before Umbrella, I used a Firewall VPN which was not a full-fledged Umbrella SASE . I am seeing Umbrella for the first time. I was evaluating Palo Alto before choosing Umbrella.
What was our ROI?
I have mostly seen time saved as a return on investment. I am not investing more than 30 minutes of time every day, so you can analyze how much time we are saving.
Which other solutions did I evaluate?
We were evaluating Palo Alto as well for SASE, but finally , we decided to go with Cisco SASE and Cisco Umbrella because of the relationship we have.
What other advice do I have?
My advice is to go ahead with Umbrella. It is a very nice product with good customer support plus a return on investment. You are investing $1 and you are getting a value of $10. People should go ahead with Umbrella. It is a very good product. Please go ahead, buy the product, and contact your Cisco account manager. They will help you, and the customer support team will assist you as well. Please try the demo. I am providing this review with an overall rating of 7.5 out of 10.
Secure access for remote users has protected our infrastructure and supports smooth VPN connections
What is our primary use case?
Umbrella was used on the security side to ensure that we had a secure connection for people and end users authorized to access the company infrastructure.
I used Umbrella for users in the company to help them make a connection through the VPN.
The main purpose was to provide the VPN with security to end users. The job was done properly without getting into specific or complex situations, and it replied to our expectations.
What is most valuable?
It was easy to use with no issues or specific problems. It was a good technology feature.
The security was well done. We did not encounter any specific issues with that use, and the users were not confused by using that feature or technology.
When we were upgrading the version of that technology, we did not face many difficulties. It remains easy to use, configure, and administrate.
What needs improvement?
I think eight is a good score. A ten would be the case where we would never encounter any issues, or the proactive work would be really well done without any problems. However, I think we always have problems with any technologies.
For how long have I used the solution?
I have used Umbrella on different missions for two years.
What do I think about the stability of the solution?
I did not encounter any specific issues with that technology, no more than another. I was working on a support team and administration team. If I had to provide the rights for people to use Umbrella, it was my job, and I was on the support team to help people make the connection properly using it.
To my knowledge, everything went well when I was using that technology.
What do I think about the scalability of the solution?
It handles increased demand well.
How are customer service and support?
It was appreciated by my colleagues and there were no complaints from end users.
It was good as I was part of the team.
Which solution did I use previously and why did I switch?
I use many different solutions. I cannot provide a complete list. Regarding VPN, we use VPNs such as GlobalProtect and different VPNs on different positions.
How was the initial setup?
I cannot remember clearly because it is not very recent, but I think we had to provide licenses to users. Basically, we were using a security group to ensure that end users were allowed and had a license assigned to them.
What about the implementation team?
That is not my role in the positions that I work.
What was our ROI?
The return on investment was positive.
What's my experience with pricing, setup cost, and licensing?
I would rate the setup cost as eight because we can always improve anything, but eight would be fine.
Which other solutions did I evaluate?
The VPN would be an alternate solution.
What other advice do I have?
The good advice would be to ensure not to share the credentials with anyone and to ensure that it is properly used. I would rate this review as an eight.
DNS threat protection has safeguarded roaming and on‑premises users from phishing and malware
What is our primary use case?
We have been using Umbrella for two years now. We are using Umbrella for providing DNS threat protection to our on-premises clients as well as our roaming clients. We have the same use case as we have DNS security firewall policies which have a number of feeds built into those policies that evaluate any public DNS queries initiated by an end client to determine if the query is legitimate or not. If there is a threat to that query, it will instantly block that query and safeguard the user from even reaching that website. We are using Umbrella to protect our on-premises as well as our roaming clients, as it has agent-based monitoring which can be installed on roaming clients that are not sitting in the office and can provide DNS security to users who are part of the company assets but are not in the office.
What is most valuable?
Umbrella offers superior threat intelligence that uses Cisco Talos , which is one of the largest commercial threat intelligence teams out there in public forums, and it helps to block domains associated with malware, phishing, and ransomware before a connection is even established.
The threat protection from Umbrella works very well and really stands out because they have a very deep knowledge of the cyber world and keep their database updated for the domains tagged as malicious or bad on the internet. It is about which vendor provides the more accurate database of the bad domains over the internet to protect their customers.
Umbrella offers a unified security stack that has an ITL package and integrates multiple security functions along with a secure web gateway and cloud access security broker as well, which are SaaS and all embedded in a single platform.
Umbrella has a positive impact in terms of our security layer, which prevents a user from even establishing a connection to a bad or malicious website before it can even resolve the DNS. If the query a user generates is not legitimate, Umbrella checks that query in its built-in firewall policy and blocks the traffic immediately, safeguarding the user.
After implementing Umbrella, we see a great impact on phishing emails where users are sometimes unaware that emails sent to them are from phishing websites and non-legitimate users that may look like known websites to them. We call them look-alike domains. Umbrella looks at the DNS query as soon as a user attempts to click on a ransomware or malicious website and blocks the DNS query before the user establishes a connection to that website.
What needs improvement?
Umbrella has a tier-restricted feature in the base package that lacks advanced features such as URL-level filtering or inspection and requires more expensive subscriptions. We feel that if someone has a lower budget for investing in their tool, they may be exposed to bad actors on the DNS layer, which can be highly impacting for any enterprise.
Umbrella has complexity and the cost for a small IT team could be more. Though we were not involved in the initial licensing and pricing models, it was handled directly by the customer.
What do I think about the stability of the solution?
Umbrella is highly stable and available with 100% availability.
What do I think about the scalability of the solution?
Umbrella is a highly scalable product, as you can deploy as many agents as you want, and it will provide protection for all the users who are on-premises via their local DNS resolvers.
How are customer service and support?
The customer support of Cisco is awesome. I can reach them anytime for any problem I am having in my environment, and they provide great support with minimum downtime for any problem I may have. I rate the customer support a ten out of ten.
Which solution did I use previously and why did I switch?
We have not used any different solution before. Umbrella was the first and foremost solution that we performed a proof of concept on and implemented.
What was our ROI?
We see a great return on investment using Umbrella. We have seen an approximate ROI of around 231% over three years.
What's my experience with pricing, setup cost, and licensing?
Umbrella is a high-enterprise cost product, so one should look at their budget before implementing this solution. It has tier-restricted features that users should be aware of regarding the kind of protection they would need in their environment, and it also has some remote reporting limitations that can be clarified before making a purchase decision.
Which other solutions did I evaluate?
We evaluated Cloudflare and OpenDNS solutions before choosing Umbrella.
What other advice do I have?
Overall, Umbrella is a great product, and I have not seen any room for improvement. Whatever features I have used in Umbrella so far are outstanding, and I fully support what Umbrella offers today. Umbrella is overall a great product, and they are one of the market leaders in providing DNS security to an enterprise solution. They are doing a great job in managing their feeds and maintaining the transparency of why a domain is legitimate versus not legitimate, providing great detail to the user and administrator about whether the domain should be blocked or not. I would rate this product a ten out of ten.
