Listing Thumbnail

    Cyber Security Cloud Managed Rules for AWS WAF Classic -OWASP Set-

     Info
    Cyber Security Cloud Managed Rules are designed to mitigate and minimize vulnerabilities, including all those on OWASP Top 10 Threats list. With the OWASP Set, you can start protecting your web applications right away with a low false-positive rate and a higher defense capability.
    4.1

    Overview

    This product is for AWS WAF Classic only. Cyber Security Cloud Managed Rules provide rulesets that are regularly updated to include the latest threat alerts by using Cyber Threat Intelligence. These rulesets are designed to mitigate and minimize vulnerabilities, including all those on OWASP Top 10 Web Application Threats list. By using our rulesets, you can satisfy the security requirements for web applications in order to comply with security standards such as PCI-DSS. Included are a lot of managed rules targeting common vulnerabilities such as code injection techniques (SQLi, NoSQLi, OScommandi, etc), XSS, directory traversal and known exploits involving web-applications using technologies such as Apache Struts2/ Apache Tomcat/ Oracle WebLogic/ WordPress/ Drupal/ Joomla! and Malicious Bots rulesets.

    Cyber Security Cloud Managed Rules are designed to mitigate and minimize vulnerabilities, including all those on OWASP Top 10 Web Application Threats list. With the OWASP Set, you can start protecting your web applications right away with a low false-positive rate and a higher defense capability.

    Highlights

    • Can build a more secure environment immediately
    • Designed to have the defense capability needed to protect your web applications, with a low false-positive rate
    • Minimizes OWASP Top 10 Web Application threats

    Details

    Categories

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Cyber Security Cloud Managed Rules for AWS WAF Classic -OWASP Set-

     Info
    Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    Usage costs (2)

     Info
    Dimension
    Cost/unit
    Charge per month in each available region (pro-rated by the hour)
    $25.00
    Charge per million requests in each available region
    $1.20

    AI Insights

     Info

    Dimensions summary

    You pay for this OWASP ruleset through two usage-based charges that combine on your bill. The first is a monthly charge that applies in each AWS region where you deploy the rules. It is pro-rated by the hour, so partial months cost less. The second is a per-request charge, billed per million requests in each region the rules run in. Together, your cost scales with the number of regions you protect and the traffic volume your web applications receive. There is no upfront commitment or fixed term.

    Top-of-mind questions for buyers

    Each HTTP request that reaches AWS WAF and passes through this ruleset counts toward the total. The charge applies per million requests in each region where the rules run. Note that the rules inspect only the first 8KB of a request body, but the full request still counts as one.
    Both charges apply at the same time and appear together. The monthly regional fee is fixed per region and pro-rated by the hour. The per-request charge grows with traffic volume. For high-traffic web applications, the request charge tends to dominate. For low-traffic sites, the monthly regional fee weighs more.
    Yes. Both charges apply separately in each region where you deploy the rules. The monthly fee is billed per region, and requests are counted per million per region. Protecting applications in more regions raises both charges. Deploying in a single region keeps you on one set of charges.
    www.wafcharm.com
    Helpful?

    Vendor refund policy

    Non-Refundable

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    For issues related specifically to Cyber Security Cloud Managed Rules, you can contact support offered by Cyber Security Cloud by email.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Threat Intelligence Integration
    Rulesets regularly updated with latest threat alerts using Cyber Threat Intelligence
    OWASP Top 10 Coverage
    Managed rules designed to mitigate and minimize all vulnerabilities on OWASP Top 10 Web Application Threats list
    Code Injection Prevention
    Targeted rules for common vulnerabilities including SQLi, NoSQLi, OS command injection, XSS, and directory traversal attacks
    Technology-Specific Protection
    Managed rules targeting known exploits for Apache Struts2, Apache Tomcat, Oracle WebLogic, WordPress, Drupal, Joomla, and malicious bots
    False Positive Optimization
    Designed with low false-positive rate while maintaining higher defense capability for web application protection
    OWASP Top 10 Protection Coverage
    Comprehensive ruleset protecting against all OWASP Top 10 web application threats including SQL Injection, Cross Site Scripting, General and Known Exploits, Malicious Bots, and Common Vulnerabilities and Exposures (CVE)
    Threat Intelligence Updates
    Regular updates from FortiGuard Labs to include latest threat information and security signatures
    Configurable Response Actions
    Rules can be configured to log, alert, and/or block detected threats
    FortiWeb Security Signatures
    Rulesets based on FortiWeb web application firewall security service signatures
    AWS WAF Integration
    Managed rule group compatible with AWS WAF for web application firewall deployment across multiple web ACLs and regions
    OWASP Top 10 Attack Protection
    Provides protection against web attacks including SQL injection, cross-site scripting (XSS), command injection, NoSQL injection, path traversal, and predictable resource exploitation.
    Managed Rule Updates
    Rules are written, managed and regularly updated by F5's security specialists to ensure protection against evolving threats without requiring manual intervention.
    AWS WAF Integration
    Rules can be attached to AWS WAF instances for immediate deployment and protection enhancement.
    Automated Threat Detection
    Utilizes security expertise to identify and mitigate vulnerabilities that are part of the OWASP Top 10 attack vectors.
    Pay-as-You-Go Licensing Model
    Rules are licensed on a consumption-based pricing structure where usage determines costs.

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.1
    9 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    44%
    56%
    0%
    0%
    0%
    7 AWS reviews
    |
    2 external reviews
    External reviews are from PeerSpot .
    reviewer2892600

    Strengthened cyber defenses have protected patient data and support continuous hospital care

    Reviewed on Aug 26, 2026
    Review provided by PeerSpot

    What is our primary use case?

    Cyber Security Cloud Managed Rules protects digital systems, networks, devices, applications, and data from unauthorized access. The key purposes include data protection by preventing theft and leakage of sensitive information, and preventing cyber attacks such as malware, ransomware, phishing, and hacking.

    How has it helped my organization?

    In a specific situation, Cyber Security Cloud Managed Rules helped protect our systems from a threat when a phishing email appeared to come from the hospital's IT department. When staff clicked a malicious link, they unknowingly installed ransomware, which encrypted the hospital computers and patient records. This incident had great impact because doctors could not access patient files, which delayed treatment. Our cybersecurity response involved disconnecting the affected systems, identifying the attack, and restoring data from secure backups while strengthening email security. This experience demonstrated that cybersecurity helped prevent unauthorized access and ensured critical systems and data remained available for the hospital's daily activities.

    What is most valuable?

    Cyber Security Cloud Managed Rules offers many important features, including confidentiality, which ensures information is only accessed by authorized people. It provides integrity by preventing unauthorized alteration or destruction of data, and availability by ensuring systems and information are available when needed.

    Authentication verifies users, and authorization controls what each user is allowed to access since not everyone has access to all information. Non-repudiation ensures actions or transactions can be traced to the person who performed them, which helps protect information. Threat detection identifies suspicious activities and attacks early to prevent further data loss. Incident response enables quick action to contain cyber attacks. Recovery involves restoring information after data loss occurs, as demonstrated in the hospital example where we quickly intervened to restore their information.

    User awareness training helps staff recognize phishing scams and other threats. These features can be summarized as the CIA triad: confidentiality, integrity, and availability. I also learned that cybersecurity requires continuous monitoring and regular software updates, along with strong passwords, multi-factor authentication, and educating users about cyber threats. Prevention is better than attempting recovery, which is key to keeping systems secure.

    What other advice do I have?

    Human error is one of the biggest security risks. Simple actions such as clicking a suspicious link or using a weak password can expose sensitive information. Cybersecurity is not only about protecting computers; it also involves protecting data, people, networks, and organizations from cyber threats.

    AmitRathod

    Automated cloud security has protected web apps and APIs while enforcing least privilege access

    Reviewed on May 20, 2026
    Review from a verified AWS customer

    What is our primary use case?

    I work in the IAM domain, and we combine Cyber Security Cloud Managed Rules with IAM, which allows us to enforce least privilege security posture and automate response to cyber threats. Cyber Security Cloud Managed Rules relate to IAM controls who can access cloud resources, while Cyber Security Cloud Managed Rules dictate how those resources are protected against network level and application level attacks. They eliminate the need for manual firewall creation by automatically blocking web application vulnerabilities and attacks.

    I occasionally use the real-time monitoring feature of Cyber Security Cloud Managed Rules because we do not have a regular deployment schedule. Whenever we conduct a major change in production deployment, I use this system to track vulnerabilities, API exploits, and any malware activity. This usage is occasional and depends on the deployment in production.

    What is most valuable?

    The best features of Cyber Security Cloud Managed Rules include core features that extend protection specific to CMS platforms such as WordPress and Joomla or framework exploits. These rules are regularly updated against the latest CVEs, botnets, and malware without requiring human intervention. I can specify the range in the system and it will update against the latest botnets or malware without requiring any human intervention. It also includes a specialized rule set which mitigates threats targeting web applications, APIs, and serverless environments.

    Cyber Security Cloud Managed Rules help in managing vulnerabilities such as SQL injections and XSS by modeling user and device behavior across the entire cloud estate. If an admin suddenly logs in from a suspicious location or a script makes unusual API calls, Cyber Security Cloud Managed Rules instantly isolates the resource or flags it for review. When a particular threat is recognized, Cyber Security Cloud Managed Rules bypasses the need for human intervention to execute defensive actions such as changing firewall modes, blocking malicious IP addresses, or revoking compromised credentials. I have CI/CD deployment pipelines which are assigned strict scoping to IAM roles, so these roles have the precise permissions required to push updates to Cyber Security Cloud Managed Rules via infrastructure as code. This ensures that every deployment is pre-validated and consistent with the organization's security policies.

    I assess the impact of continuous updates provided by threat intelligence as significant because I have set a particular number of alerts. Whenever I see that this alert is triggered, I conduct monitoring. Based on the manage rules defined in AWS and whatever protocol enforcement exists, my model detects and blocks unauthorized access which deviates from standard HTTPS or other standard protocols, and it mitigates sophisticated bot and malware attacks. API gateway or serverless stage is specifically tuned to block API security and serverless threats. These rules can be natively deployed in front of CloudFront or application load balancer and API gateway. For enhanced operational control, these managed rules are commonly paired with WAF-Champ or automated WAF operation service which helps to manage exception and false positive rates.

    The detailed logs and analytics from Cyber Security Cloud Managed Rules help when it comes to making informed security decisions, and it totally depends on the decisions and what logs are needed. As long as I have defined all logs related to sign-in logs and audit logs, based on the logs, I decide whether to go with those alerts or whether to minimize that security risk and where to focus.

    What needs improvement?

    Cyber Security Cloud Managed Rules has a very high rate of false positives. The pre-packaged rules are often broad, and this can misidentify legitimate or complex user inputs. The false positive rate should be minimized. Additionally, it lacks customization. Cyber Security Cloud Managed Rules does not provide real customization, but it acts as a black box. When false positives occur, security teams often have limited ability to tweak the internal mechanics of the rule. The only option is usually to disable the entire rule or to switch it to count mode, which simply lowers security posture.

    For how long have I used the solution?

    I have been using Cyber Security Cloud Managed Rules for the last nine months.

    What do I think about the stability of the solution?

    I would rate the stability at ten out of ten as it has good stability.

    What do I think about the scalability of the solution?

    I would give scalability a rating of nine out of ten.

    How are customer service and support?

    I would rate the technical support of Cyber Security Cloud Managed Rules at nine out of ten.

    How was the initial setup?

    Deploying Cyber Security Cloud Managed Rules is moderate in complexity. I encountered no challenges deploying Cyber Security Cloud Managed Rules. It takes almost two weeks to deploy Cyber Security Cloud Managed Rules.

    What about the implementation team?

    Approximately, I have a particular number of teams that consist of 30 users per team, so the round figure I can state is 150 users.

    What was our ROI?

    Regarding return on investment, I estimate around 25%.

    What's my experience with pricing, setup cost, and licensing?

    Cyber Security Cloud Managed Rules does not require any maintenance explicitly, but if clients want some additional information or additional features, then they can purchase them through Amazon service. I find Cyber Security Cloud Managed Rules to be cost-efficient.

    What other advice do I have?

    When I compare Cyber Security Cloud Managed Rules with FortiNets, I see that FortiNets is used for both on-premises as well as for cloud, but mostly on-premises; FortiNet is mainly focused on on-premises. Cyber Security Cloud Managed Rules is a natively cloud platform that provides website performance and edge security. Most WAF is related to only cloud-based solutions.

    I would advise others looking to implement Cyber Security Cloud Managed Rules that it depends on their requirement. If they want an on-premises solution, then they should go for Fortinet, and if they want a cloud solution, then they should go for WAF Cloudflare.

    I would rate this product overall at a nine out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Sasikiran Sakalabattina

    Automation has improved how I protect AWS APIs and web apps from evolving attacks

    Reviewed on May 15, 2026
    Review from a verified AWS customer

    What is our primary use case?

    In day-to-day security operations, I primarily focus on protecting web applications, APIs, and cloud workloads. From my experience, this product is the most stable option available. It significantly manages applications during cyber-attacks and addresses threats in AWS environments, including traffic patterns from malicious bots and SQL injections. The product is very helpful for managing these scenarios.

    What is most valuable?

    The best feature of Cyber Security Cloud Managed Rules is the combination of two capabilities that I appreciate most. The first is automated threat intelligence and rule updates. This solution automatically updates the security signatures to protect against the latest cyber threats, including OWASP attacks, bots, and vulnerabilities without requiring any heavy manual interventions. Automated threat intelligence significantly reduces the operational workload for security teams and improves the overall response time against emerging threats. It also helps organizations maintain stronger security compliance.

    The second feature I appreciate most is strong AWS, WAF, and API protection, which is a major strength of Cyber Security Cloud Managed Rules. The seamless integration with AWS and WAF in front of the ALB and API gateway environments provides strong protection against SQL injection or cross-site scripting. In cases of malicious bots and API-based attacks, this solution is highly beneficial for cloud-native and API-driven applications that require scalable and real-time protection.

    What needs improvement?

    This product requires skilled people because there is a lot of automation needed to understand all the features in the dashboard. Additionally, there is a need for increased automation in certain areas to improve the overall experience.

    What do I think about the stability of the solution?

    The product is stable and does not create major lagging or performance issues during day-to-day operations. This solution is designed to work efficiently with AWS cloud infrastructure, handling traffic interception with minimal latency. Performance is always good, although, in some cases, when multiple complex rules or deep inspection policies are required, there may be lagging when changing security policies. However, this is acceptable, and performance depends on the application architecture, traffic volume, and rule training configurations. Overall, the product performance is stable, and lagging issues are minimal when the rules are properly configured and maintained.

    What do I think about the scalability of the solution?

    I give a high rating for scalability. Compared to other products, especially for cloud-native AWS-based infrastructures, this solution easily handles increased application traffic, including API requests, and manages multiple workloads with greater performance. It supports scaling across multiple regions based on applications and internet-facing services through centralized management. Since it is a cloud-based infrastructure, the rules are automated, managed, and updates are handled efficiently, maintaining security consistency during business operations. Overall, the product is highly scalable and suitable for organizations with growing cloud workloads and dynamic traffic requirements.

    How are customer service and support?

    I engage with the technical support team regularly. The support team helps with rule tuning, false positive handling, deployment guidance, and troubleshooting during security incidents. Sometimes we are unable to handle incidents from a security perspective, and even though false alerts regularly occur, we engage with vendor support. For any issues, we need to raise a ticket via the vendor portal. Initially, we write an email, and after the ticket is created, they check the issue and arrange a call. For standard operational issues, the response time is acceptable, and the support documentation is useful. During critical incidents, for complex applications or specific issues, the response is faster, and troubleshooting support is required. Overall, the technical team is knowledgeable about this product and assists effectively in maintaining stable day-to-day operations.

    How was the initial setup?

    Initial deployment depends on the environment being used. In my case, we are using two cloud environments, and the initial deployment is not very difficult. My organization is a medium-scale organization already using AWS infrastructure. The setup process is simple because the rules can be directly subscribed and deployed with AWS Marketplace in AWS WAF. Its integration with CloudFront, application load balancer, and API gateways is straightforward and can be completed within a short time. The initial deployment is manageable, and this product also provides predefined management rules, reducing the need for writing custom security policies manually.

    After deployment, some tuning and monitoring are required to handle false positives related to application-based traffic behavior, where most organizations initially deploy the rules in count mode before switching to blocking mode to avoid impacting genuine users. Overall, compared to traditional WAF deployments, Cyber Security Cloud Managed Rules is easier, faster, and requires less operational effort for implementation.

    What's my experience with pricing, setup cost, and licensing?

    The pricing is reasonable in terms of value for the features provided. It is not too high, actually, because the features are very stable and scalable. The pricing for Cyber Security Cloud Managed Rules is generally moderate and slightly expensive, depending on the application traffic and AWS usage, mainly based on the monthly subscription cost for processing changes. For small and medium environments, the pricing is reasonable as it reduces the manual operational effort from the security management perspective. However, for larger enterprise environments with very high traffic applications and heavy workloads, the overall cost increases significantly based on the environmental and infrastructure levels. Although operational automation and threat injections reduce manual work, the pricing can be a little high.

    What other advice do I have?

    Maintaining rules is relatively low compared to traditional WAF because most security rules and threat signatures are automatically updated by the vendor. The day-to-day activities mainly include monitoring alerts, checking the server's behavior, checking disk alerts, and reviewing blocked requests while handling false positives. Regular log analysis and policy reviews are still required to ensure smooth operations based on performance and security compliance. Maintenance efforts related to rules are low compared to traditional WAF. This solution also reduces the dependency on manual patching, which usually requires logging into the server for Windows updates. The process is simple, and the product is straightforward to maintain, helping significantly reduce the operational workload through automation and centralized management where everything can be managed from one dashboard. I would rate this solution a nine out of ten overall.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    reviewer2835324

    Automated security rules have protected our web apps and freed team resources for other work

    Reviewed on May 03, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for Cyber Security Cloud Managed Rules is to protect from malware like DDoS incidents, against cross-site scripting, against SQL injections, and against geofencing. These are the areas which we majorly use cloud security and our cybersecurity managed rules.

    A recent scenario of how I use Cyber Security Cloud Managed Rules to protect against one of those threats is that we have a specific application where only Italy is in-market, which means only Italian people can access that site because our sales are only in the Italian market. However, when we get human traffic from countries like Nigeria, Iran, and Pakistan, where we do not have any sales, the traffic still comes from such countries as DDoS requests. Cyber Security Cloud Managed Rules automatically blocks those countries where we do not have sales.

    What is most valuable?

    The best features Cyber Security Cloud Managed Rules offers is that we do not need any manual validation. When it comes to managed rules, it is always tested in my organization and always trusted and authorized in my current infrastructure.

    Automatic validation occurs in my organization because we do not need any manual review in my infrastructure. Whenever there is an issue or a particular application we onboard on our web application firewall, we do not need any manual testing when these managed rules are placed as a major role. Whatever rules we apply, the monitoring is always in good health status with good user agents, and we are always getting traffic from reliable sources. We do not need any manual validation on each and every traffic.

    Cyber Security Cloud Managed Rules has positively impacted my organization as we have been using it for two years. It has saved us considerable time. We do not need people at that particular time to validate those things. It has been a time-saving solution and we do not need any manual deployment anymore.

    Since implementing these managed rules, we have saved time and resources. We have three members working on that, and after implementing Cyber Security Cloud Managed Rules, we have already freed up one more resource from my team. We are now working with two members.

    What needs improvement?

    Cyber Security Cloud Managed Rules needs improvement in such a way that whenever the application team or development team is doing any kind of deployments, they need to regularly enable or disable their maintenance page or holding page, as well as internal whitelisting will be required. Cyber Security Cloud Managed Rules should provide or adjust these features for developers or the application team to fulfill those needs.

    Currently, it is already performing very well in our infrastructure, and we do not have any additional needs for improvements at this time.

    For how long have I used the solution?

    I have been working in cybersecurity and network security for almost five years.

    What do I think about the stability of the solution?

    Cyber Security Cloud Managed Rules is fully stable.

    What do I think about the scalability of the solution?

    Cyber Security Cloud Managed Rules's scalability is good as we always have an active-passive setup from the cloud vendor, making it much more scalable and reliable.

    How are customer service and support?

    The customer support for Cyber Security Cloud Managed Rules is excellent. Whenever we raise a request, whether it is high critical or small to medium critical cases, the customer support responds quickly. Within just a few minutes, we receive a response from them.

    Which solution did I use previously and why did I switch?

    Before choosing Cyber Security Cloud Managed Rules, we did not evaluate other options, though we had some plans to move to Akamai. However, we are satisfied with our current application.

    How was the initial setup?

    Cyber Security Cloud Managed Rules was acquired as part of Imperva Web Application Firewall.

    What about the implementation team?

    We use two types of rules. One is manual rules which we use in our day-to-day operations, and Cyber Security Cloud Managed Rules is the other major component.

    What was our ROI?

    I have seen a return on investment as we have experienced significant time-saving, which is very good for us. Regarding money saved or return, we have a separate team for that and I am not involved in those calculations.

    What's my experience with pricing, setup cost, and licensing?

    Regarding my experience with pricing, setup costs, and licensing, this was not handled by my team because we have a separate team for cost factors, setup costs, and licensing. I am not involved in that.

    Which other solutions did I evaluate?

    We are only using Cyber Security Cloud Managed Rules for almost two years since I joined this organization.

    What other advice do I have?

    I would rate Cyber Security Cloud Managed Rules around nine out of ten. I chose nine out of ten because even if it is perfect, I would not give a ten because there is no world called perfection in this world. We are humans, and maximum nine is sufficient for each and every field. I would not rate anything ten out of ten. I would advise others looking into using Cyber Security Cloud Managed Rules to go for this because the world is changing in technology, and for security, there should be no compromise. I always recommend them and advise them to go for Cyber Security Cloud Managed Rules. My overall review rating for this product is nine out of ten.

    reviewer2817840

    Managed rules have protected our ecommerce site and have reduced botnet and sql injection attacks

    Reviewed on Apr 17, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for Cyber Security Cloud Managed Rules is to protect against malicious attacks like SQL injection attacks and cyber attacks.

    Recently, I discovered malicious IPs which I believed were operating as a botnet and attacking my e-commerce website. Because WAF is for web application security, I used WAF managed rules related to IP and IP injection attacks. There are additional rules available for IP rate limiting based attacks, which allow me to implement a maximum number of attempts from a particular IP within a specific time period. This rate-limiting rule helps prevent unknown IPs from accessing my website.

    The general security vulnerabilities provided by AWS WAF through managed rules or custom rules that I can implement will protect my application and enhance the security of my application through these security rules. This is the main use case of implementing WAF rules.

    What is most valuable?

    The best features of Cyber Security Cloud Managed Rules are that there are managed rules available for free that I can implement. I can stop SQL injection attacks, which is one significant vulnerable attack that can be stopped by WAF. Bitcoin mining attacks can also be stopped by implementing WAF. Additionally, there are specific rules related to bot control, which are especially helpful when a bot attacks my website. I implemented a framework known as OWASP Top 10, so these ten security critical vulnerabilities can be mitigated by implementing them.

    I implemented free managed rules by AWS, which include Cyber Security Cloud Managed Rules. These managed rules control SQL injection attacks and other attacks that are managed by WAF to prevent them from affecting my systems.

    Cyber Security Cloud Managed Rules have impacted my organization very positively because my company is security-focused. We are focusing mainly on security-based setups and implementing everything that can enhance security. This is one of the key applications or services I can implement in my company to stop mitigation attacks, which is why I implemented WAF and attached it to CloudFront, API Gateway, and sometimes to a load balancer to stop and mitigate these attacks.

    I noticed specific outcomes or metrics from Cyber Security Cloud Managed Rules in the form of reduced attacks. I discovered that there was no system through which I could conclusively determine what happened, but I noticed some IPs in the logs that were attacking my website and trying to exploit Bitcoin through our platform. This activity was reduced by implementing WAF, and this is what I verified from the logs, which were very helpful.

    What needs improvement?

    I believe that Cyber Security Cloud Managed Rules can be improved by reducing false positives with traffic-aware tuning. Out-of-the-box managed rules are generic, and sometimes they block legitimate traffic. Improvements can be achieved by running rules in count monitor mode first, reviewing blocked requests using logs, adding custom rules on top of managed rules, and enabling request inspection depth layer seven hardening. These are techniques I can use to improve these rules.

    For how long have I used the solution?

    I have been using Cyber Security Cloud Managed Rules for the past one year.

    What do I think about the stability of the solution?

    Cyber Security Cloud Managed Rules are stable in the sense that I do not experience issues with availability or performance.

    What do I think about the scalability of the solution?

    Regarding scalability, I can easily implement them.

    Which solution did I use previously and why did I switch?

    I have not previously used a different solution because we are AWS native and implemented this solution only.

    How was the initial setup?

    Regarding pricing, setup cost, and licensing, I find it a bit more expensive.

    What about the implementation team?

    Regarding scalability, I can easily implement them.

    What was our ROI?

    I have seen a return on investment.

    What's my experience with pricing, setup cost, and licensing?

    Regarding pricing, setup cost, and licensing, I find it a bit more expensive.

    Which other solutions did I evaluate?

    Before deciding on Cyber Security Cloud Managed Rules, we went straight to using these rules. Everything is deployed on AWS, and we want to use AWS. This is the only sole provider for our company, so we are bound to use it.

    What other advice do I have?

    I would advise others looking into Cyber Security Cloud Managed Rules to use WAF if they want to eliminate security attacks, especially if they are using AWS. I would rate this product 8 out of 10.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    View all reviews