Overview
IBM Security Guardium Multi-Cloud Data Protection: Safeguard critical, sensitive, or regulated data wherever it resides.
A Guardium Collector can be run as a standalone instance or as part of scaled, multi-tier architecture utilizing both an Aggregator and Central Manager. An Aggregator allows for data to be consolidated and/or purged from Collectors while a Central Manager enables central administration of all Guardium instances.
Current Guardium customers can use their existing licenses.
New to Guardium? View our interactive demo: https://www.ibm.com/security/resources/guardium-data-protection-demo
We recommend using IBM Security Guardium version 11.2 plus any new fix bundles from Fix Central. Older versions are made available for archival purposes and may contain bugs and/or security vulnerabilities. Security bulletins contain instructions for the security vulnerability addressed therein, and may require upgrading to a newer version. Fix bundles to update this version can be found on IBM Support Fix Central (https://www.ibm.com/support/fixcentral/ ). Link to IBM PSIRT Blog: https://www.ibm.com/blogs/psirt/
Highlights
- Discover sensitive data, harden the environment against vulnerabilities
- Monitor user activity for data and files, providing real-time visibility and threat analytics
- Protect sensitive data using real-time alerting, dynamic masking, blocking, and quarantining
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
We do not offer refunds but you can terminate the instance at any time.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
- Login into the CLI a. Use the access key pair associated with the instance i. In Linux run ssh -i <PEM key> cli@<instance IP> ii. In Window/Putty you will need to convert the .pem key to .ppk See https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/putty.html
Resources
Vendor resources
Support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
Customer reviews
Strong Monitoring, Needs UI Improvements
The Guardian Behind The Scenes: IBM Guardium Real-Time Database Protection
The biggest challenge is the incident metadata. With certain SIEM solutions, the LEEF messages need to be fully customised so the relevant incident details are parsed correctly and displayed properly in the SIEM environment. Without this customisation, important contextual information may be missing, which reduces the effectiveness of monitoring, correlation, and incident response.
Guardium offers a comprehensive inline database protection solution designed to detect and prevent malicious activity before sensitive data is compromised. Beyond advanced threat protection, it also supports organizations in implementing and maintaining compliance with major regulatory and security frameworks, including DORA, GDPR, PCI DSS, and others, through built-in policy enforcement, monitoring, auditing, and reporting capabilities.