Listing Thumbnail

    IriusRisk Platform

     Info
    Sold by: IriusRisk 
    Deployed on AWS
    IriusRisk offers a scalable secure by Design, Threat Modeling platform that allows security and engineering teams to quickly create threat models and automatically generate security requirements for systems and applications at scale

    Overview

    IriusRisk offers a Threat Modeling platform that includes data flow diagrams, a list of threats, and both the recommended and required countermeasures to implement. This automation allows engineering teams to plan their security work before they start coding and deploying. IriusRisk uses pre-defined components and a built-in threat and countermeasure library so that teams can generate these models quickly without having to rely on security experts. Countermeasures can be pushed directly to ALM tools like Jira, TFS and Rally so that they are front and centre in the developers' workflows. IriusRisk boasts compliance with the main market standards such as PCI DSS, EU GDPR, OWASP and NIST 800-53. Full integration with most DevSecOps pipeline tools via native integration or API.

    Highlights

    • Design secure software and architectures by modeling the threats and deriving the countermeasures before writing software.
    • Two-way sync with ALM tools like Jira, TFS, Azure DevOps and Rally. Measure and view application security risk throughout the SDLC.
    • PCI DSS, EU GDPR and NIST 800-53, OWASP ASVS compliance. Manage security risks at portfolio scale across the enterprise or per business unit.

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    IriusRisk Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (1)

     Info
    Dimension
    Description
    Cost/12 months
    Platform
    Including 5 Threat models
    $35,000.00

    Vendor refund policy

    None

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Support

    Vendor support

    Customer can request support via

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly
    By IriusRisk
    By ThreatModeler
    By Prime Security

    Accolades

     Info
    Top
    100
    In Infrastructure as Code

    Overview

     Info
    AI generated from product descriptions
    Threat Modeling
    Automated platform for creating data flow diagrams with pre-defined components and comprehensive threat libraries
    DevSecOps Integration
    Native and API-based integration with application lifecycle management and development pipeline tools
    Security Standards Compliance
    Built-in compliance support for multiple security standards including PCI DSS, GDPR, OWASP, and NIST 800-53
    Automated Security Requirements
    Automatic generation of security requirements and countermeasures based on threat modeling analysis
    Architecture Risk Assessment
    Capability to model system threats and derive security countermeasures before software development begins
    Threat Modeling Automation
    Automatically build threat models for cloud environments with a single-click accelerator using process flow diagram-based methodology
    Cloud Architecture Security
    Patented Onboard Architect feature enables creation of secure cloud architectures with custom rule definition capabilities
    Compliance Framework Integration
    Native support for established regulatory standards including NIST, GDPR, and PCI DSS for comprehensive security compliance
    Continuous Integration Toolchain
    Seamless integration with existing DevOps tools like JIRA and Jenkins through bi-directional API connectivity
    Threat Chaining Mechanism
    Ability to build upon existing threat models with automatic synchronization and updates across nested model configurations
    Risk Assessment
    Continuous monitoring of planned engineering work to identify and assess potential security risks before development starts
    Integration Capability
    Native integration with development planning tools like Jira and Confluence for comprehensive security tracking
    Risk Mitigation Framework
    Generates security mitigation recommendations based on industry standards such as NIST and PCI compliance frameworks
    Security Decision Automation
    Utilizes context-based risk assessment algorithms to mimic decision-making processes of experienced security professionals
    Proactive Security Modeling
    Embeds security considerations early in the software development lifecycle through automated risk prioritization and assessment

    Contract

     Info
    Standard contract
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    2 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Gautam R.

    In need of a threat modelling tool? Iriusrisk might be your friend indeed!!

    Reviewed on Nov 18, 2022
    Review provided by G2
    What do you like best about the product?
    Iriusrisk is a great tool in creating an automated threat modelling and helps achieve any organization/s a fully fledged devsecops environment with "Shift Left" approach. Since the application security is done at the end of the development process, the tool really helps in identifying and securing any architecture by design in a very short time and at early stages of the SDLC process.
    What do you dislike about the product?
    Iriusrisk is a tool with vast capabilities for threat modelling and to find such tool with so many benefits and finally helping an organisation with saving lots of time and costs in the SDLC process, it is hard to find any cons in the tools.
    What problems is the product solving and how is that benefiting you?
    Benefits
    Automated threat modelling reports for development team to work on and securing the architecture at the very early stages. Further reducing the manual exercises of brainstorming to come up with a threat model for any new architecture.
    Ajith K.

    Good

    Reviewed on Oct 18, 2022
    Review provided by G2
    What do you like best about the product?
    Generate a threat model
    Identify threats and countermeasures
    Avoid delays to deployment and speed up time-to-production
    What do you dislike about the product?
    No dislikes in IriusRisk. I like Iriusrisk very much,
    What problems is the product solving and how is that benefiting you?
    Threats are a major problem for today's business. IriusRisk helps to reduce the risk. Vulnerability management is ver efficetive
    View all reviews