Cyware Intelligence Suite delivers a turnkey CTI program with threat intelligence management, curated feeds, enrichment, sandboxing, exposure management, and automated workflows, all in one integrated platform, enabling teams to operationalize threat intelligence in days, not months.
Cyware Intelligence Suite is a unified, turnkey Cyber Threat Intelligence (CTI) platform that helps security teams collect, manage, enrich, investigate, and operationalize threat intelligence. Built on Cyware Intel Exchange, CIS brings together threat intelligence management, curated threat feeds, enrichment, malware analysis, digital risk protection, exposure management, and pre-configured workflows in one integrated solution.
Cyware Intelligence Suite helps organizations:
-- Centralize threat intelligence from commercial, open-source, internal, and sector-specific sources.
-- Enrich and investigate threats with automated analysis, correlation, and context.
-- Operationalize intelligence by connecting threat data to security tools and workflows.
-- Automate CTI processes with pre-configured workflows that reduce manual analyst effort.
-- Expand threat visibility across external threats, digital risk, malware, and organizational exposure.
With Cyware Intelligence Suite, organizations can build and operationalize a modern CTI program without the complexity of assembling and integrating multiple point solutions.
Highlights
Unified Threat Intelligence Management:
Centralize and operationalize multi-source intelligence from a single hub.
Agentic Threat Enrichment and Investigation:
Map threats to MITRE ATT&CK and reconstruct attacker timelines on a visual canvas.
Priority Intelligence Focused:
Define what you need to know in natural language, and get continuously matched, scored intelligence against it.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy this suite as a single contract dimension, billed per unit of the Cyware Hosted, Production instance. One bundle covers the whole threat intelligence platform, so there are no separate tiers to compare. The price includes set quantities: 1,000,000 orchestration node executions, credential monitoring across 3 domains, 40 monthly malware detonations, sector feeds for Ransomware, Malware, and 1 chosen sector, plus 5 admin users. Usage above these included amounts, such as extra users, feeds, or sandbox capacity, is not part of this listing. You commit to the packaged quantities shown in the table.
Top-of-mind questions for buyers
What counts as one node execution against the 1,000,000 included in this bundle?
A node execution is one action step run inside an automation playbook. Every time a playbook triggers an action across a connected tool, that step counts once. Playbooks chain multiple actions, so a single workflow can consume several node executions. The bundle includes 1,000,000 such executions.
What happens if I exceed the included amounts, like 40 monthly detonations or 3 monitored domains?
This listing covers the packaged quantities only: 1,000,000 node executions, 3 domains, 40 monthly malware detonations, and 5 admin users. Usage beyond these amounts is not part of this contract. The seller states you can expand seats, feeds, automation, and sandbox capacity over time, which you would arrange directly with the vendor.
Which sector threat feeds are included, and can I add my own intelligence feeds?
The bundle includes Ransomware, Malware, and 1 sector feed you select. Sector options span Healthcare, Finance, Energy, Government, Manufacturing, and OT. The platform also supports ingesting your own threat intelligence feeds alongside the included ones, so you can centralize all sources in a single hub.
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
CACI's DarkBlue Intelligence Suite helps you securely discover, pursue, and engage in the open, deep, dark web without revealing your identity to adversaries or exposing your equipment to malware.
An AI-Powered Threat Intelligence Platform system for ingestion, enrichment, analysis, prioritization, actioning, and bi-directional sharing of threat data across enterprise environments.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.