Listing Thumbnail

    Aqua Cloud Native Application Protection Platform

     Info
    Deployed on AWS
    Vendor Insights
    Aqua secures every cloud native application on AWS across the entire lifecycle. Protect containers, serverless, Kubernetes, and AI workloads to accelerate innovation and scale securely. Prevent attacks and reduce risk with security enforced from code to cloud to prompt

    Overview

    Play video

    Aqua secures every cloud native application everywhere, including AI. The Aqua Platform (CNAPP) delivers full lifecycle security from development to production, enabling organizations to build faster and innovate with confidence. FedRAMP High Authorized, Aqua helps enterprises meet the most rigorous security and compliance standards. By embedding security across the software development lifecycle, Aqua reduces risk and accelerates digital transformation on AWS. Get a Demo: https://www.aquasec.com/demo/ 

    Highlights

    • Unified platform to secure every cloud native application, including containers, serverless, Kubernetes, and AI workloads across AWS, on-premises, and multi-cloud environments
    • Runtime protection to detect threats, block malicious activity, and enforce compliance in production across all cloud native workloads
    • Purpose-built AI workload security to govern LLMs and generative AI applications, detect model abuse, and enforce policy

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (4)

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Aqua Cloud Native Application Protection Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (3)

     Info
    Dimension
    Description
    Cost/12 months
    Aqua Platform Shift Left
    Standard Plan
    $50,000.00
    Aqua Platform Protect
    Advanced Plan
    $100,000.00
    Aqua Platform Ultimate
    Ultimate Plan
    $150,000.00

    Vendor refund policy

    All software, maintenance and support are provided subject to the terms and conditions of the Aqua Security Inc. License Agreement.

    Custom pricing options

    Request a private offer to receive a custom quote.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Container Workloads
    Top
    10
    In Monitoring, Application Development
    Top
    25
    In Observability, Software Development

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Cloud Native Security
    Comprehensive protection for containers, serverless, Kubernetes, and AI workloads across multiple cloud environments
    Runtime Protection Mechanism
    Advanced threat detection and blocking of malicious activities in production cloud native environments
    AI Workload Governance
    Security controls for large language models and generative AI applications with policy enforcement and abuse detection
    Lifecycle Security Integration
    Embedded security across software development lifecycle from code creation to production deployment
    Compliance Framework
    FedRAMP High Authorized platform meeting rigorous enterprise security and compliance standards
    Cloud Asset Discovery
    Agentless scanning technology providing comprehensive visibility across cloud infrastructure and platform assets
    Risk Prioritization
    Advanced risk scoring mechanism that identifies and correlates potential attack paths and security vulnerabilities
    Security Integration
    Seamless integration into CI/CD processes for continuous security assessment throughout software development lifecycle
    Generative AI Analysis
    AI-powered investigation and remediation capabilities for enhanced security threat detection and response
    Multi-Domain Security Coverage
    Unified platform integrating multiple cloud security domains including CSPM, CWPP, CIEM, DSPM, container and API security
    Cloud Native Security Engine
    Agentless Cloud Native Application Protection Platform (CNAPP) with a unique offensive security engine for comprehensive cloud security
    Multi-Cloud Asset Management
    Includes asset inventory, graph explorer, and security posture management across public and private cloud environments
    Advanced Threat Detection
    Real-time AI-powered detection and prevention of runtime threats including ransomware, zero-days, and fileless attacks
    Infrastructure Security Scanning
    Comprehensive scanning capabilities including Infrastructure as Code (IaC), secrets scanning, and vulnerability assessment
    Cloud Object Storage Protection
    AI-powered malware detection for cloud object storage with millisecond scanning and automated quarantine capabilities

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    -
    -
    No security profile

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    3 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Burak AKCAGUN

    A robust and cost-effective solution, excelling in scalability, on-premises support, and responsive technical support, making it well-suited for enterprises navigating stringent regulatory environment

    Reviewed on Dec 22, 2023
    Review provided by PeerSpot

    What is our primary use case?

    I have been testing various solutions to ensure which one is the best fit to protect data, applications, and infrastructure in cloud environments. We are distributors in Turkey, focusing on promoting cost-effective security solutions in the market. When engaging with enterprise clients, particularly in the financial sector such as banks, I emphasize the importance of robust security measures. During customer visits, they express a keen interest in technical support and want demonstrations of software source code management, security support for software chains, and workflow protection.

    What is most valuable?

    The most crucial aspect is runtime protection, specifically image scanning before preproduction and deployment. Customers find it invaluable to have the ability to check for vulnerabilities in an image before deployment, similar to a sandbox environment. This feature ensures that customers can identify any potential issues with the image, such as misconfigurations or vulnerabilities, before integrating it into their workloads and infrastructure. In their source pipeline, companies can identify issues before deploying changes. This is crucial because customers prefer resolving any problems or misconfigurations before the deployment process. Software change security, including GSPM Cloud, is a key feature customers seek in their infrastructure.

    What needs improvement?

    There's room for improvement, particularly in management capabilities as it may not be comprehensive enough for all customers, and it has been lacking in the realm of cloud security posture management. Another challenge lies in the difficulty and complexity of the installation process. Deploying core components is not straightforward; it poses challenges that need to be addressed.

    For how long have I used the solution?

    I have been using it for eight months.

    What do I think about the stability of the solution?

    I would rate its stability capabilities seven out of ten. Upon opening the dashboards and navigating to VM, there are instances where I can't see the information.

    What do I think about the scalability of the solution?

    It excels in scalability, and it stands out as a particularly flexible and complex solution. This flexibility contributes to its superior scalability compared to other solutions like Prisma Cloud, which is notably less scalable. I would rate it eight out of ten.

    How are customer service and support?

    The technical support is highly responsive and exceptionally helpful. When I report an issue, they address it promptly and efficiently. I would rate it ten out of ten.

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    The initial setup is complex.

    What about the implementation team?

    The deployment time is quite lengthy. For instance, if you're integrating into the supply chain, the process demands more time, potentially spanning several days. Installing components like source code management and workflow protection is particularly challenging. This difficulty is intertwined with the infrastructure, determining how many workloads can be accommodated. In a smaller environment, installation might be feasible, say, between two to three hosts. However, challenges persist, such as the inability to install GitHub  due to the absence of a connector. Despite efforts, connecting with other platforms like Scenic proves troublesome, unlike the seamless connection experience with NetApp.

    What's my experience with pricing, setup cost, and licensing?

    It comes at a reasonable cost. When compared to Prisma Cloud, it is more budget-friendly.

    What other advice do I have?

    This is an excellent solution, particularly for countries with stringent regulations like Turkey, Vietnam, and Russia. In these regions, high-level enterprise customers, driven by regulatory constraints, often refrain from using cloud accounts such as AWS  and Google Cloud . Aqua provides a fulfilling on-premises solution, which is highly valuable. Overall, I would rate it nine out of ten.

    Which deployment model are you using for this solution?

    On-premises
    reviewer1699062

    Provides workload protection and helps identify security misconfigurations, vulnerabilities, and risks

    Reviewed on Aug 02, 2023
    Review provided by PeerSpot

    What is our primary use case?

    I'm using it for workload protection. So, in most cases, for protecting containers, verifying Kubernetes configurations, cloud configurations, and identifying security misconfigurations, vulnerabilities, and risks.

    How has it helped my organization?

    I use it to demonstrate to customers because I'm a sales engineer. Many customers want to protect their workloads and applications. 

    For example, when I am using a Docker image with multiple vulnerabilities, I need to know which vulnerabilities are inside. Then I create security policies to allow or deny the deployment of containers from this image and also create a security policy for runtime. This way, when the application is running in the wild, we can guarantee that the security blocks any kind of exploitation.

    What is most valuable?

    There are many features that I really like. For example, the runtime policies are very easy to configure, and they are scalable across all environments. The DTA, which stands for Dynamic Threat Analysis, allows me to analyze Docker images in a sandbox environment before deployment, helping me anticipate risks.

    What needs improvement?

    The user interface could be improved, especially in terms of organization and clarity. Additionally, more comprehensive examples for deployments and feature usage would be helpful.

    Maybe more plugins or something that makes it easier to integrate with CICD pipelines or interact with APIs.

    For how long have I used the solution?

    I've been using it for about three years. I'm using the SaaS version.

    What do I think about the stability of the solution?

    I would rate the stability an eight out of ten.

    What do I think about the scalability of the solution?

    It is a scalable solution. I would rate the scalability a ten out of ten. 

    How are customer service and support?

    The customer service and support are good. 

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    The initial setup was very straightforward.

    What's my experience with pricing, setup cost, and licensing?

    For me, it's a fair price.

    What other advice do I have?

    I would definitely recommend using the solution. It's a very scalable solution with multiple features that help us protect our cloud environment effectively.

    Overall, I would rate the solution a nine out of ten. 

    Which deployment model are you using for this solution?

    Public Cloud
    Higher Education

    Container management made simple

    Reviewed on May 17, 2018
    Review provided by G2
    What do you like best about the product?
    This is an easy to use and well supported solution to container management.
    What do you dislike about the product?
    There is not much to dislike for this software.
    What problems is the product solving and how is that benefiting you?
    Supporting a number of applications.
    View all reviews