ARMO Platform is a runtime-powered, open-source-first Cloud Runtime Security Platform.
It continuously reduces your cloud attack surface using real-time runtime insights, while actively detecting and responding to threats with true risk context
It is the enterprise version of Kubescape, a leading Cloud security open-source project, (a CNCF sandbox project).
ARMO Platform is the first solution to provide a holistic runtime view of cloud threats, from the exact line of code being exploited to the cloud API where sensitive data resides. It connects high-level cloud activity with suspicious application behaviors, offering deep visibility into compromised functions and APIs. It builds a complete, explainable, and traceable attack story across the entire cloud stack, enabling rapid, informed responses without overwhelming your team with noise. With automated, context-aware response and visibility throughout the cloud technology stack, ARMO helps security teams detect, investigate, and stop threats in real time without disrupting operations. ARMO open source project, Kubescape, is the fastest growing CNCF security tool, used by over 25,000 companies in over 100,000 cloud environments worldwide.
Highlights
Comprehensive view of active threats, from the exploited line of the application code to the cloud API where data resides
Eliminate the security noise in your clusters from thousands of alerts to high-priority threat vectors
Remediate security issues without breaking applications
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You choose from three contract options, each priced by units. ARMO Platform Basic covers Kubernetes security posture management as a hosted service. ARMO Platform Advanced adds runtime threat detection and response for end-to-end cloud security, also hosted. ARMO Platform On Premise delivers Kubernetes and container security plus threat detection for on-premise and air-gapped environments you host yourself. Basic and Advanced differ by scope, moving from posture management to added runtime protection. On Premise separates by where you host and run the software rather than by feature scope alone.
Top-of-mind questions for buyers
What counts as one unit for billing on these plans?
Pricing depends on your cloud environment size, such as the number of vCPUs, worker nodes, or virtual machines you run. Each option meters by units tied to these resources. For exact unit counting in your setup, contact the vendor to size your deployment.
What distinguishes the ARMO Platform On Premise option from the hosted plans?
The On Premise option runs in your own cloud, data center, or air-gapped environment, so you host and control the data yourself. It uses a local repository for updates and threat data while staying offline. The hosted Basic and Advanced plans run as SaaS managed by the vendor.
What extra capability does ARMO Platform Advanced add over ARMO Platform Basic?
ARMO Platform Basic covers Kubernetes security posture management, focused on misconfigurations, compliance, and access control. ARMO Platform Advanced adds runtime threat detection and response, including anomaly-based detection and automatic response actions. Advanced gives end-to-end cloud security rather than posture management alone.
armosec.io+1
Helpful?
Vendor refund policy
Prices above are the Minimum Deal Size for 1 year - Actual prices are calculated based on number of vCPU and Support Tier
On-Premise and air-gapped installations include additional setup and integration fees
ARMO reserves the right to revise prices, without advance notice.
Refunds according to company policies.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
ARMO guarantees 99% uptime across two delivery regions and provides support with a response time of 8 hours (Sunday - Friday, 9:00am -5:00pm). You will have access to a technical account manager through in-product chat and email.
https://www.armosec.io/contact-us/
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
ARMO platform is a runtime-powered, open-source-first Cloud Runtime Security Platform.
It continuously reduces your cloud attack surface using real-time runtime insights, while actively detecting and responding to threats with true risk context
It is the enterprise version of Kubescape, a leading Cloud security open-source project, (a CNCF sandbox project).
Game-Changer for Application Cluster Security & Visibility
Reviewed on Aug 27, 2025
Review provided by G2
What do you like best about the product?
ARMO Platform has truly transformed the security posture of our Kubernetes application clusters. As a cybersecurity professional integrating new solutions for mission-critical environments, I’ve found ARMO’s detection and remediation capabilities for vulnerabilities and misconfigurations far superior to traditional tools. Its real-time compliance monitoring, user-friendly dashboards, and broad compatibility with existing CI/CD pipelines let us quickly identify issues and automate fixes—saving hours on manual security checks. The visualization of risk posture, along with actionable recommendations, is invaluable for both technical teams and executive reporting.
What do you dislike about the product?
Like any robust security solution, ARMO Platform’s breadth of features means there’s an initial learning curve—especially for less-experienced Kubernetes users. Some advanced features require additional configuration to get the most value, and deeper integration with third-party ticketing or SIEM systems would further streamline incident response.
What problems is the product solving and how is that benefiting you?
If you’re serious about Kubernetes security, ARMO should be on your short list. The platform gives peace of mind by proactively hardening clusters and providing continuous, actionable insights.
Information Technology and Services
My review
Reviewed on Jun 09, 2025
Review provided by G2
What do you like best about the product?
Versatile, user-friendly and has multiple functions that are beneficial for work related to my field.
What do you dislike about the product?
The cost, some minor glitches with the system
What problems is the product solving and how is that benefiting you?
It is good for helping to uncover different vulnerabilities in scans
Abhineet S.
Streamlined Kubernetes Security with Actionable Remediations
Reviewed on May 16, 2025
Review provided by G2
What do you like best about the product?
I recently integrated ArmoSec with one of our staging Kubernetes clusters using their SaaS-based portal. The onboarding was very smooth — I was able to connect the cluster and start getting real-time security insights within 20–30 minutes. What stood out the most was the RBAC misconfiguration detection, which gave us a clear view of over-permissioned service accounts.
The attack path visualization helped us understand potential lateral movement risks. The UI is intuitive, and their remediation suggestions are practical — they don’t just show you what’s wrong, but guide you to fix it step-by-step. For someone working in DevSecOps, this is a really handy dashboard.
What do you dislike about the product?
One area that could be improved is the alerting system — I’d love to see more customizable alerts or Slack integration to monitor specific risk thresholds. Also, the scan reports are comprehensive but export options (PDF, CSV) felt a bit limited during our testing phase. It’s not a blocker, but something that could enhance usability.
What problems is the product solving and how is that benefiting you?
One of the biggest benefits is that it provides clear remediation steps, which saves time and helps even developers with limited security experience understand how to fix issues. The visual representation of attack paths and role bindings also improves team collaboration when assessing cluster risks. Overall, ARMO helps us shift security left without adding too much overhead.
Kogileru H.
review of kubescape
Reviewed on Apr 23, 2025
Review provided by G2
What do you like best about the product?
It is very good at finding the kubernetes related issues and best remediation solution and user interface
What do you dislike about the product?
Nothing to dislike --except one report generation thing
What problems is the product solving and how is that benefiting you?
to maintain the healthy Container setup
Insurance
Great Cloud Security Platform
Reviewed on Apr 22, 2025
Review provided by G2
What do you like best about the product?
Runtime real time security + correlation to vulnerabilities and missconfigs, its easy to deploy and based on open source kubescape
What do you dislike about the product?
integrations are not up to the standards but its a work in progress
What problems is the product solving and how is that benefiting you?
is solving some compliance checks as well as making us more confortable and safe in terms of deployments and missconfigs