Listing Thumbnail

    HardenedVault - Hardened SIEM/XDR server with VED

     Info
    Deployed on AWS
    HardenedVault's subscription includes charges for technical support and long-term maintenance of this solution. The solution comprises a Wazuh manager that has undergone security hardening measures such as CIS and STIG hardening for Linux, as well as the adoption of Linux kernel runtime protection VED (Vault Exploit Defense). These measures serve to safeguard the system against both known and unknown vulnerabilities and threats, and guarantee the security of sensitive data. If the user deploys the Wazuh agent, they can receive security alerts from the Linux kernel runtime.

    Overview

    Ubuntu is a well-maintained GNU/Linux distribution. This AMI product has ship a Ubuntu server with a SIEM/XDR solution based on Wazuh. The Ubuntu has been comprehensive security hardening by default. This AMI is also provide Wazuh to work with VED (Vault Exploit Defense) which extending the alert dimension of SIEM/XDR to the Linux kernel.

    • Ubuntu 22.04, x86_64
    • Security baselines including CIS and STIG, easily to integrate your business with compliance
    • Wazuh manager and WEB UI ** Vulnerability management ** Audit system with Wazuh
    • ClamAV anti-virus
    • AIDE, File system integrity management
    • Auditd for monitoring
    • VED (Vault Exploit Defense), Linux kernel runtime protection. It's able to protect your digital asset from advanced threats, e.g: 0-day Linux kernel exploit of privilege escalation, container escape and rootkits etc.
    • ETC

    Highlights

    • SIEM (Security information and event management) and XDR (Extended detection and response)
    • Vulnerability management and regular audit system
    • Security product need to be protected as well. Solve the "Who's watching the watcher" issue by hardening the system running SIEM/XDR

    Details

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    Ubuntu 22.04

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    HardenedVault - Hardened SIEM/XDR server with VED

     Info
    Pricing is based on a fixed subscription cost and actual usage of the product. You pay the same amount each billing period for access, plus an additional amount according to how much you consume. The fixed subscription cost is prorated, so you're only charged for the number of days you've been subscribed. Subscriptions have no end date and may be canceled any time.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    Fixed subscription cost

     Info
    $199.00/month

    Usage costs (98)

     Info
    • ...
    Dimension
    Cost/hour
    t3.large
    Recommended
    $0.35
    t3a.2xlarge
    $0.35
    r5dn.16xlarge
    $0.35
    r5d.2xlarge
    $0.35
    t2.large
    $0.35
    r5n.16xlarge
    $0.35
    r5.2xlarge
    $0.35
    x1e.16xlarge
    $0.35
    r5ad.2xlarge
    $0.35
    x2iedn.8xlarge
    $0.35

    Vendor refund policy

    We do not support refund but you can feel free to cancel subscription.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Version release notes
    • Bug fixes for VED-LTS
    • Upgrade wazuh manager and wazuh indexer

    Additional details

    Usage instructions

    Usage Instructions: To connect to your instance, you will need to use SSH or standard AWS methods as described: https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/AccessingInstancesLinux.html 

    Hardened Wazuh server must add agent's IP into the white list via: ./fw-add-agent.sh add IP_ADDR

    You can access the Wazuh web interface https://PUBLIC_IP

    Please note that the username and password of the Wazuh system will be displayed during SSH login. As a security precaution, we strongly recommend changing all passwords, including the Wazuh system and system accounts (such as ubuntu and root), as soon as you take control. This will help to ensure that your system remains secure and protected against unauthorized access.

    Support

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    25
    In Security Observability, Data Security and Governance
    Top
    10
    In Healthcare & Life Sciences

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Security Hardening
    Comprehensive security hardening with CIS and STIG baselines for Linux system configuration
    Kernel Runtime Protection
    VED (Vault Exploit Defense) providing advanced protection against kernel-level exploits, privilege escalation, and rootkits
    Threat Detection System
    Wazuh manager with integrated vulnerability management, audit system, and web UI for security monitoring
    Integrity Management
    AIDE file system integrity monitoring and Auditd for comprehensive system tracking and anomaly detection
    Anti-Malware Protection
    ClamAV anti-virus integrated for malware detection and prevention
    Endpoint Security
    Advanced detection capabilities with both agent-based and agentless scanning across traditional infrastructure, serverless environments, and containers
    Threat Intelligence Correlation
    Cross-domain intelligence and telemetry integration for unified investigations, detection, and response through a single console
    Identity and Access Management
    Intelligent credential security with multi-factor authentication enforcement, identity provider integration, and privileged account management
    Vulnerability Management
    Predictive CVE detection and prioritization mechanism for effective vulnerability patching and remediation
    Compliance Monitoring
    Comprehensive compliance reporting and scoring against multiple frameworks including PCI, SOC2, NIST, and HIPAA with resource compliance tracking
    Cloud Security Posture Management
    Continuous scanning of cloud environments to identify assets, assess security and compliance settings, and detect potential malicious activities with integration to AWS GuardDuty and SecurityHub
    Endpoint Protection
    Advanced agent-based protection against malware, fileless threats, and ransomware for Windows and Linux hosts in cloud environments
    Threat Detection and Response
    24/7 managed detection and response service leveraging telemetry from multiple security solutions including endpoint, firewall, network, email, and identity platforms
    Cloud Workload Protection
    Security agents designed to protect cloud-based Windows and Linux hosts against modern cyber threats including ransomware
    Network Security
    Cloud edge firewall solution providing network visibility, protection, and response across public, private, and hybrid cloud environments using cloud native, virtual, and physical appliances

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    No security profile
    No security profile
    -
    -
    -
    -
    -

    Contract

     Info
    Standard contract
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    No customer reviews yet
    Be the first to review this product . We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.