Listing Thumbnail

    InsightCloudSec - Cloud Risk and Compliance Management

     Info
    Sold by: Rapid7 
    Deployed on AWS
    Vendor Insights
    InsightCloudSec helps teams secure even the most complex cloud environments by surfacing and applying context to risk signals to understand and prioritize them based on potential impact. The solution utilizes real-time detections and native automation to detect and remediate misconfigurations, vulnerabilities, policy violations, and overly-permissive roles in real-time to significantly reduce mean time to respond (MTTR).

    Overview

    InsightCloudSec is a cloud risk and compliance management platform that enables organizations to securely accelerate cloud adoption with continuous security and compliance throughout the entire software development lifecycle.

    • Detect Cloud Risk in Real-time - Get agentless, real-time visibility into every resource and service running across your cloud environment

    • Prioritize Cloud Risk with Complete Coverage and Context - Simplify cloud risk assessment with rich contextual insight into every layer of your environment to help prioritize risk based on potential impact and likelihood of exploitation.

    • Automate Cloud Compliance - Establish and continuously measure compliance against organizational policies, whether they are based on common industry frameworks or customized to specific business needs. Enforce organizational standards without human intervention with native, no-code automation.

    Highlights

    • Real-Time Visibility - Event-driven harvesting provides up-to-the-minute visibility into every resource running across your AWS environment.
    • Context-Driven Risk Prioritization - Layered Context helps security teams understand and prioritize risk in real-time based on potential impact and exploitability.
    • Automated Cloud Compliance - Broadest support for compliance standards and best practice and ability to customize packs. Native automation allows you to automatically enforce policies and take action as soon as compliance drift is detected.

    Details

    Sold by

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (1)

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    InsightCloudSec - Cloud Risk and Compliance Management

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (1)

     Info
    Dimension
    Description
    Cost/12 months
    Billable Instances
    InsightCloudSec is priced based on the average number of billable inst
    $69,000.00

    Vendor refund policy

    Please see the seller website for refund details.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Support

    Vendor support

    Rapid7 Customer Support services provide rapid resolution of issues. We include Customer Portal Support, 24 hour vulnerability service level agreement, 24 hour incident response time, and a reliable testing guarantee.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    100
    In Infrastructure as Code, Continuous Integration and Continuous Delivery
    Top
    25
    In Continuous Integration and Continuous Delivery
    Top
    25
    In Log Analysis

    Overview

     Info
    AI generated from product descriptions
    Cloud Resource Monitoring
    Agentless, real-time visibility into cloud resources and services across multi-cloud environments
    Risk Prioritization Engine
    Context-driven risk assessment utilizing layered insights to evaluate potential impact and exploitability of security signals
    Compliance Automation
    Native, no-code automation for continuous measurement and enforcement of organizational security policies and industry standards
    Event-Driven Detection
    Event-driven harvesting mechanism for immediate identification of configuration changes and potential security risks
    Security Policy Management
    Customizable compliance framework supporting multiple industry standards with automated policy enforcement capabilities
    Application Security Scanning
    Continuous end-to-end security scanning across source control, CI/CD, registry, and cloud environments with real-time monitoring
    Vulnerability Prioritization
    Advanced threat assessment using contextual analysis of vulnerability exploitability, reachability, and business impact
    Pipeline Security Tracking
    Proprietary Pipeline Bill of Materials (PBOM) framework for tracking complete software lineage and ensuring build integrity
    Automated Remediation
    No-code workflow capabilities for automatically blocking vulnerabilities, risky code, and configuration changes
    Software Supply Chain Protection
    Comprehensive security coverage across software development lifecycle with integrated risk prevention mechanisms
    Log Management
    Centralized log collection, analysis, and correlation across IT and OT systems with advanced data processing capabilities
    Threat Intelligence
    AI-driven threat management with generative AI integration for context-aware security insights and automated response
    Security Posture Assessment
    Real-time continuous evaluation of organizational security vulnerabilities, critical settings, and comprehensive security scoring
    Security Fabric Integration
    Unified framework for consolidating security configurations, events, and alerts with intuitive threat visualization dashboards
    Operational Scalability
    Flexible instance sizing and configuration supporting variable logging rates from 2GB/DAY to 100GB/Day with dynamic resource allocation

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    No security profile
    No security profile

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4
    1 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    100%
    0%
    0%
    0%
    1 AWS reviews
    |
    4 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    ChennaRao Vemula

    Enhances security posture with cost efficiency and powerful APIs

    Reviewed on Nov 11, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We have been using it for almost four years. We are one of the top first customers who implemented it. It's a cloud security solution.

    How has it helped my organization?

    With this tool, we have a neat security posture at least in terms of securing our environment. It helps us handle all the misconfigurations, and we do day-to-day remediations.

    What is most valuable?

    ICSE is cheaper compared to other tools and has a pleasant user experience with good support. It has powerful API calls for collecting data from the cloud, which stands out when compared to other solutions.

    What needs improvement?

    A couple of modules are missing when compared to other providers, specifically related to some IAM , and the login piece needs improvement.

    For how long have I used the solution?

    We have been using it for almost four years.

    How are customer service and support?

    They have excellent support with internal Slack  channels and are directly reachable through Teams. Their assistance is really good for us.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We did a POC with Prisma Cloud in my previous organization, and that's where it was implemented on a large scale.

    How was the initial setup?

    The initial setup is easy and not complex. It initially required fine-tuning access and other settings, but it has matured over time.

    What about the implementation team?

    It was a mix of different teams, including the security team and the cloud team, working together to implement it with around ten people engaged.

    What was our ROI?

    Security is one of those things where you cannot always value the return on investment unless there is a breach or some ransomware. However, it provides a good security posture and helps handle misconfigurations and day-to-day remediations.

    What's my experience with pricing, setup cost, and licensing?

    The pricing is good when compared to other leaders. It is cheaper.

    Which other solutions did I evaluate?

    We compare it with Palo Alto Prisma Cloud and something came up recently with Wiz . I don't know if we can compare Wiz  with Insight. Wiz is still new.

    What other advice do I have?

    It depends on the use case. If someone is looking at CSPM within budget, this ICS would be a good choice. If needing more features, then Prisma is good.

    I'd rate the solution eight out of ten.

    Which deployment model are you using for this solution?

    Hybrid Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Roy Jones

    Easy to patch, except for the toleration issue and good dashboard

    Reviewed on Jul 09, 2024
    Review provided by PeerSpot

    What is our primary use case?

    The organization I'm currently contracting for uses it for their estate. They're using Kubernetes and moving their entire estate into it, so I'm getting Rapid7 running in Kubernetes.

    How has it helped my organization?

    It seems pretty good so far. I have a meeting with the security team to review the results we're getting from it. 

    I'm still early in the journey; I need feedback from the security team. I'm just the engineer deploying it.

    We have multiple Kubernetes clusters in different environments: Dev, QA, UAT, etc., and we go through to production.

    I've been getting it running on our Kubernetes clusters. I have a review with the security team who are the main users. Compared to Microsoft Defender for Containers and Sentinel, it seems comparable. I'm considering using Defender for Containers on the AKS cluster and feeding that into Rapid7 since it's used across our entire estate.

    What is most valuable?

     

    What needs improvement?

    I had to patch a problem with taints on our nodes in our AKS cluster. I had to write a custom patch to get Rapid7 to run on those nodes. I emailed Rapid7 support, but they didn't have any documentation on how to patch it. I was disappointed as I thought this would be a common issue.

    For how long have I used the solution?

    I've been working with it for a few days, actually—not very long. I've been evaluating it.

    What do I think about the stability of the solution?

    It seems to be running fine. It runs every hour and has been reliable since I started it last week. 

    How are customer service and support?

    It wasn't good, but the response was fast. 

    The response was "we don't know, and we'll put this to the development team." That was about three or four days ago. I haven't received further communication. The last reply was on July 5th, 2024.

    But, the fast reply alone deserves some credit. They replied in about three or four hours. But the reply itself wasn't very helpful. It was just "we don't know." At least they replied and let me continue with my own solution.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    My current organization has been using Rapid7 for some time. They chose it for RISO compliance, and because the sales team was good, I guess. They have it in place now, so I have to work with it. They're moving their workloads to Kubernetes, and that's why they hired me. I can work with anything, and Rapid7 wasn't too hard to patch, except for the toleration issue. 

    I got it running last week, and I'm waiting for a meeting soon to see if they're happy with it. If so, we'll move it through the various environments and get it running everywhere.

    How was the initial setup?

    It took me a couple of days. I had to patch a problem with taints on our nodes in our AKS cluster. I had to write a custom patch to get Rapid7 to run on those nodes. I emailed Rapid7 support, but they didn't have any documentation on how to patch it. I was disappointed as I thought this would be a common issue.

    I resolved it myself. It wasn't difficult, but I assumed they would have already solved it. Using taints to allocate or deny access to workloads is common in production Kubernetes clusters for security. 

    Overall, it seems pretty good. The dashboard and information from Rapid7 are useful and interesting. It compares well with Sentinel and Defender for Containers. I haven't done a feature comparison yet.

    What about the implementation team?

    I'm the engineer deploying it and got it running properly.

    What other advice do I have?

    I'm not the end-user, just the deployer. 

    From the deployment aspect, I'd give it a five out of ten. The support was good, and it was easy to deploy myself.

    reviewer2239107

    Provides centralized visibility through dashboards and alerts, allowing customers to receive reports on cloud vulnerabilities and security posture

    Reviewed on Mar 14, 2024
    Review provided by PeerSpot

    What is our primary use case?

    In India, most customers currently focus on cloud security solutions. Particularly, they are concerned about data security for their workloads on AWS and Azure platforms. These are the things we encounter from customers.

    What is most valuable?

    The tool provides centralized visibility through dashboards and alerts, allowing customers to receive reports on cloud vulnerabilities and security posture. Rapid7 InsightCloudSec provides customers with a robust understanding of cloud security.

    As many customers are transitioning from on-premises to cloud environments, it is crucial to enhance security posture. It offers insights into data location, vulnerabilities, and overall security measures for cloud-based workloads.

    The solution's most valuable features include its intelligence platform and ability to provide a holistic view of organizational threats. It offers visibility across various environments, including cloud and on-premises, as well as applications and external sources.

    The real-time threat detection capability operates more near real-time rather than instantaneously. However, the tool proactively identifies vulnerabilities before they become known to the respective vendors. The solution offers a vast database of vulnerabilities and international threat exposure to recognize attack signatures.

    Customers have successfully addressed compliance issues using the policy engine. For example, they utilize a comprehensive database with 150 attack scenarios. Additionally, it offers tools for endpoint reduction, encryption, and response, as well as to capture vulnerabilities and facilitate vulnerability disclosure.

    The tool's integration capabilities are extensive and widely utilized by many customers. Technically, partners are fully capable of integrating it. Additionally, it has a team in India that can support customers with integration. Overall, their strong partner channel network ensures effective integration of the product into existing networks.

    What needs improvement?

    Rapid7 InsightCloudSec could be better at showing dashboards for virtual firewalls and appliances. Compared to other solutions like Palo Alto, this area is not as good. So, they should work on improving this for virtual devices.

    For how long have I used the solution?

    I have been working with the product for more than a year. 

    What do I think about the stability of the solution?

    Rapid7 InsightCloudSec is stable. 

    What do I think about the scalability of the solution?

    The tool is scalable. 

    How are customer service and support?

    The solution does offer support across other regions, but they currently lack a local support center in India. Improving this aspect would certainly be beneficial. 

    How would you rate customer service and support?

    Neutral

    How was the initial setup?

    We have been comfortable with the tool's deployment process. Maintaining it isn't too difficult. The retention rate for renewals has been pretty high, indicating customer satisfaction. The solution seems to be maintaining performance well. The attention data is high compared to other vendors, suggesting clients use it. They're also investing in more customer success managers to improve retention and usage. Overall, maintenance seems to be well-managed.

    What other advice do I have?

    I rate the overall product an eight out of ten. 

    Priynk Pathak

    Offers workload protection for Kubernetes and container security

    Reviewed on Nov 10, 2023
    Review from a verified AWS customer

    What is our primary use case?

    We use Rapid7 InsightCloudSec as a CSPM tool. 

    What is most valuable?

    The tool's most valuable feature is workload protection for Kubernetes and container security. It has agents that identify bugs or lack of security on runtime containers. 

    What needs improvement?

    The tool needs to improve its documentation.

    For how long have I used the solution?

    I have been using the product for eight to nine years. 

    What do I think about the stability of the solution?

    The product's on-prem version had many challenges. The SaaS version is working fine. 

    What do I think about the scalability of the solution?

    Rapid7 InsightCloudSec is scalable. 

    How was the initial setup?

    Rapid7 InsightCloudSec's deployment is straightforward. 

    What other advice do I have?

    I rate Rapid7 InsightCloudSec an eight out of ten. 

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    reviewer2244411

    Agentless scanning helps monitor workloads, but the solution needs a better UI and should include CNAPP features

    Reviewed on Aug 03, 2023
    Review provided by PeerSpot

    What is our primary use case?

    We initially wanted to implement CSPM a couple of years back. We did the market research, performed analysis, understood the strengths, and so on. Then we implemented this tool within our environment as a part of CSPM.

    What is most valuable?

    Agentless scanning is a possible use with Rapid7 InsightCloudSec. You do not deploy the agents within your workload or to the cloud resources, which is an advantage. I also think there's an automation feature available within Rapid7 ICS, which is good.

    What needs improvement?

    Overall, Rapid7 ICS is good. There are no major drawbacks. However, there are a lot of other solutions in the market, not only providing the features of a CSPM, but also CNAPP. When it comes to CNAPP, if you have deployed many containerized-based applications within your environment, plus the containers, managing all those things becomes complex. It can't be easy to keep an eye on those resources because sometimes doing so requires an additional agent that one needs to deploy so that they can perform the scans on those workloads. However, there are a lot of tools in the market that provide these scans at the API level. One could connect Rapid7 with an API at the workload or cluster level, and you'll get all that information. However, the challenge is how easily you can implement those things within the environment. Sometimes, you'll encounter some complexity while implementing APIs. Some customers won't be happy getting complex things implemented. At the end of the day, they would prefer that things be simpler. That is something Rapid7 could improve on. Besides, the UI is a bit complex and not user-friendly, but they're working on that.

    For how long have I used the solution?

    I have been working with this tool for more than 12 months.

    What do I think about the scalability of the solution?

    As far as scalability is concerned, since it's a SaaS-based application, you just need to integrate it. Rapid7 only provides a platform, like with AWS, Azure, and G Suite, so you must integrate Rapid7's platform. Most of the resources within it will get replicated or harvested, so there aren't any immediate challenges regarding scalability.

    There are a lot of other things to consider, though. When providing deep information about the cloud, the Rapid7 team needs to work on those areas. Let's say you have a Kubernetes cluster. Once you integrate your platform, you must do additional configurations to monitor the Kubernetes cluster deployed on a specific platform, such as AWS or Azure. Those additional configurations are not as straightforward as they would seem. Those are areas that require some modification from the Rapid7 team.

    I rate Rapid7 ICS' scalability a six and a half out of ten since I haven't seen any issues with stability. Rapid7 ICS is just a tool that acts as a platform to expand your visibility to the cloud resources. ICS does not explicitly do something from Rapid7's end apart from just performing the scan. It's not a cloud platform like AWS or Azure.

    How are customer service and support?

    The Rapid7 team has sync-up calls to help users understand the solution. When you have any issues, you can contact the team, who will help you.

    How was the initial setup?

    Rapid7's deployment was not that complex. There are a lot of requirements, and the requirements vary as time passes. But once you deploy the solution and start using it, you'll discover which features are good and which could be improved. I rate the deployment a three out of five.

    What's my experience with pricing, setup cost, and licensing?

    Companies generally buy this tool because the pricing is not that high. ICS's pricing is still per the market standard, but there are a lot of other solutions that are more expensive than Rapid7 ICs. Rapid7 ICS is good, considering the number of features they provide.

    What other advice do I have?

    We need to stand parallel to our competition, meeting the market and user demands. We should ensure the tools we leverage within our environment are up to the market.

    Apart from Rapid7 ICS, there are a lot of other tools available in the market which are also agentless. Most other solutions work on the API level, where you use the API to integrate them and perform the scans.

    As for privileged access in Rapid7, you sometimes require privileged access to perform automatic remediations, which could be something that most customers are not comfortable with since they would not want someone outside their company to grant privileged access.

    Considering Rapid7 ICS' shortcomings, Rapid7 is working on the same. But there are a lot of other competitors in the market providing better features. When it comes to keeping an eye on PII data, which is very sensitive, Rapid7 ICS does not detect if it is in the cloud resources. But other vendors' products could detect that. That feature is based on which one can compare Rapid7 with other tools.

    People are still in the phase of developing most of the features. They might have Rapid7's documentation with them, but those require some prerequisites if you want to understand them. If you're a vendor and do not know anything, you must learn some things without directly jumping to the documentation part.

    Rapid7 ICS is good, considering the number of features they provide. But that depends on your and the company's requirements. If the company just wants a tool that acts as a CSPM, Rapid7 ICS can be helpful. But if the company wants to not only buy a CSPM tool but wants a CSPM-cum-CNAPP, Rapid7 ICS is lacking in those areas.

    There are a lot of pros and cons, but Rapid7 ICS is doing well as of now.

    I rate the solution a six out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    View all reviews