Listing Thumbnail

    Sysdig Cloud Security and Observability

     Info
    Sold by: Sysdig 
    Deployed on AWS
    In the cloud, every second counts. Sysdig's cloud-native application protection platform (CNAPP) stops cloud threats in real time and prioritizes the risks that matter most. Our CNAPP correlates signals across cloud workloads, identities, and services to uncover hidden attack paths. Sysdig secures your AWS cloud and workload with top-rated support for services including Amazon ECS, Amazon EKS, and AWS Fargate, and integrations with AWS security solutions including AWS Security Hub, Amazon GuardDuty, and Amazon Security Lake.

    Overview

    Play video

    Sysdig secures cloud innovation on AWS with the power of runtime insights. From shift left to shield right, you can prevent, detect, and respond at cloud speed. For businesses innovating in the cloud, every second counts. Sysdig stops cloud attacks in real time, instantly detecting changes in risk with runtime insights, a unique AI architecture, and open source Falco. Sysdig strengthens cyber resilience, reducing your attack surface and accelerating incident response. Our platform correlates signals across cloud workloads, identities, and services to enable teams to prioritize risks and act decisively.

    Sysdig's Cloud Native Application Protection Platform (CNAPP) unifies the capabilities of Cloud Workload Protection (CWP), Cloud Detection and Response (CDR), Cloud Security Posture Management (CSPM), and Cloud Infrastructure Entitlement Management (CIEM). We help cloud teams monitor user, cloud, container, and Kubernetes activity and apply runtime insights to prioritize vulnerabilities and cloud security risks.

    • Secure AWS cloud and container services
    • Detect threats in real-time with visibility built on open source Falco
    • Prioritize risk, fix misconfigurations, measure compliance, and reduce alert noise
    • Mitigate active Generative AI risk with AI workload security
    • Consolidate vulnerability scanning, posture management, and runtime security

    Sysdig Monitor is also available, providing Prometheus-compatible observability for your AWS cloud workloads. Real-time granular insights, cloud-native context, and remediation tips help you troubleshoot and resolve issues in rapidly changing cloud environments. Drive cost savings and right-size your environment with usage-based recommendations.

    For custom pricing, EULA, or private contract, please contact salesops@sysdig.com  for a private offer.

    Highlights

    • STOP ATTACKS IN REAL-TIME: Leverage real-time behavioral insights and threat intelligence to continuously monitor for threats.
    • PRIORITIZE AND FIX VULNERABILITIES FAST: Prioritize in-use vulnerabilities to address risk and reduce noise up to 95%.
    • VISUALIZE CLOUD RISK: Correlate signals across cloud workloads, identities, and services to understand attack paths and real risk.

    Details

    Sold by

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Sysdig Cloud Security and Observability

     Info
    Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    1-month contract (2)

     Info
    Dimension
    Description
    Cost/month
    CNAPP Enterprise
    Public purchases require a minimum purchase of 20 units
    $72.00
    Monitor Enterprise Host
    Public purchases require a minimum purchase of 20 units
    $36.00

    Additional usage costs (8)

     Info

    The following dimensions are not included in the contract terms, which will be charged based on your usage.

    Dimension
    Cost/unit
    Additional usage fee for CNAPP Enterprise per Host Hr
    $0.13
    Additional usage fee for Cloud Logs Events per Event
    $2.50
    Additional usage fee for CNAPP CaaS per Serverless Host Hr
    $0.03
    Additional usage fee for Secure D&R - CaaS per Serverless Host Hr
    $0.02
    Additional usage fee for Monitor Enterprise Host per Host Hr
    $0.06
    Additional usage fee for Monitor Enterprise Time Series per TS Metric
    $7.00
    Additional usage fee for Monitor Enterprise Cost Advisor per hr
    $0.02
    Additional usage fee
    $0.19

    Vendor refund policy

    N/A

    Custom pricing options

    Request a private offer to receive a custom quote.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    Have an issue? We'll make sure Sysdig is working just the way you want it to. https://sysdig.com/support/ 

    Our documentation provides a deep dive into the core of our cloud-native security, visibility, and compliance platform:

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Generative AI
    Top
    10
    In Healthcare & Life Sciences
    Top
    25
    In Security

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Runtime Security Detection
    Real-time threat detection using behavioral insights and open source Falco runtime security engine
    Cloud Workload Protection
    Unified security capabilities across Cloud Workload Protection (CWP), Cloud Detection and Response (CDR), Cloud Security Posture Management (CSPM), and Cloud Infrastructure Entitlement Management (CIEM)
    Multi-Cloud Service Integration
    Native support for container services including Amazon ECS, Amazon EKS, and AWS Fargate with integrations to AWS security solutions
    AI-Powered Risk Correlation
    Unique AI architecture for correlating security signals across cloud workloads, identities, and services to identify potential attack paths
    Vulnerability Management
    Comprehensive vulnerability scanning with runtime insights and prioritization of in-use security risks across cloud infrastructure
    Cloud Security Posture Management
    Continuous scanning of cloud environments to identify assets, assess security and compliance settings, and detect potential malicious activities with integration to AWS GuardDuty and SecurityHub
    Endpoint Protection
    Advanced agent-based protection against malware, fileless threats, and ransomware for Windows and Linux hosts in cloud environments
    Threat Detection and Response
    24/7 managed detection and response service leveraging telemetry from multiple security solutions including endpoint, firewall, network, email, and identity platforms
    Cloud Workload Protection
    Security agents designed to protect cloud-based Windows and Linux hosts against modern cyber threats including ransomware
    Network Security
    Cloud edge firewall solution providing network visibility, protection, and response across public, private, and hybrid cloud environments using cloud native, virtual, and physical appliances
    Cloud Security Posture Management
    Unified cloud security management across AWS, Azure, and GCP with continuous monitoring and configuration assessment
    Threat Detection and Response
    Advanced threat intelligence and detection capabilities with real-time monitoring and response mechanisms for cloud environments
    Container and Kubernetes Protection
    Comprehensive security for containerized applications and Kubernetes environments with runtime protection and image security
    Multi-Cloud Workload Security
    End-to-end protection for cloud workloads across on-premises, hybrid, and multi-cloud infrastructure with a single lightweight agent
    Event-Driven Security Automation
    Dynamic cloud resource protection through integration with cloud service provider event and management services

    Contract

     Info
    Standard contract
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    8 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    KS10

    Focus on cloud-native protection and robust detection capabilities improves monitoring

    Reviewed on Mar 19, 2025
    Review provided by PeerSpot

    What is our primary use case?

    Sysdig Secure  is used for cloud-native infrastructure, application monitoring, and detection response.

    What is most valuable?

    A valuable feature of Sysdig Secure  is that it is a pure-play vendor focusing on cloud-native protection. The product benefits from the Falco platform, developed by one of the founding members, which contributes to in-depth monitoring of cloud-native applications. It has strong detection and response capabilities that are more robust than other players, starting from posture management.

    What needs improvement?

    Sysdig Secure could improve in terms of scalability and expanding services to other areas like database monitoring and support. There is also room for improvement in enhancing their platform speed. Additionally, increasing support coverage, especially in the Asia Pacific region, could enhance customer support.

    For how long have I used the solution?

    I have been reselling Sysdig Secure for just a year.

    What was my experience with deployment of the solution?

    The deployment of Sysdig Secure is straightforward and not complex. Typically, one person is enough for the installation, but collaboration with relevant administrators for the cloud environment and application is required.

    What do I think about the stability of the solution?

    I have not seen any stability issues so far.

    What do I think about the scalability of the solution?

    Sysdig Secure needs to scale more for complete cloud-native coverage.

    How are customer service and support?

    Customer support for Sysdig Secure could improve, especially in hiring more staff to cover different time zones and provide better coverage in the Asia Pacific region.

    How would you rate customer service and support?

    Neutral

    How was the initial setup?

    The initial setup of Sysdig Secure is quite straightforward and usually does not require much maintenance.

    What's my experience with pricing, setup cost, and licensing?

    The pricing of Sysdig Secure is straightforward compared to other vendors whose pricing mechanisms are quite complicated. Licensing can be either monthly or yearly.

    What other advice do I have?

    Overall, I rate my experience with Sysdig Secure at 8.5 out of 10, closer to nine. Improvements could be made in support, scalability, and posture management.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Other
    Peter Du

    Gives real-time visibility and helps to articulate constantly-changing landscape

    Reviewed on May 01, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We use Sysdig Secure to gain visibility into our runtime workloads. We use a whole bunch of security tools to scan our images before they get deployed into our production clusters. We needed a tool to give us runtime visibility and threat detection.

    By implementing Sysdig Secure, we were trying to see any gaps. When an image is running, we wanted to see if any high or medium-scale vulnerabilities were picked up during the scanning and were running in a live workflow. We understood that we had a gap there. If there was a threat for us, we wanted to make sure that we knew and that we could scan our environment for any zero-day threats or vulnerabilities in general.

    How has it helped my organization?

    The main benefit for me personally is being able to articulate the ever-growing, dynamic, and constantly changing landscape. Just today, in a management leadership call, I was able to demonstrate that although we are solving a lot of these vulnerabilities, we are picking up new vulnerabilities each and every day. It allows me to articulate the importance of information security with actual real-time data.

    Sysdig's runtime insights help us detect and respond to threats that are happening in real-time. We can look at Sysdig dashboards or run reports to see precisely what happens in our runtime environment. A good use case of this was that when zero-day vulnerabilities came out, we could scan our environment to see if the vulnerabilities apply to any of our production workloads.

    Sysdig Secure helps us prioritize issues and distribute work. We are a small company, so we do not have multiple security or dev teams. We have two or three guys on my team. Having the ability to focus on critical vulnerabilities is crucial. It does not make sense to prioritize low-level threats when we have limited time.

    We do not use live threat investigation features as much as we would like because of different priorities, but it is something that we do use. Over time, it shows us whether we are putting the right effort into resolving issues. For example, when we look at the dashboard scene over a 30-day period, we can see whether the critical vulnerabilities are increasing or decreasing. It lets us know whether we are on the right track.

    We are currently using agentless scanning. Deploying it onto our cluster has enabled us to get full visibility into what is running on our cluster.

    Sysdig provides us with the contextual awareness we need to create an immediate incident response strategy. It provides links to the threat and explains the threat and the resolution possible. It equips us with the right information to make a decision on whether to address the threat immediately or take a risk in terms of deploying remediation.

    Sysdig has not enabled us to reduce the number of security tools we use. We were not using anything before Sysdig, and after choosing Sysdig, we did not have a need to look at anything else.

    Sysdig has not helped reduce external SOC costs. We are a very small business, so we do not have the budget for an external SOC. However, it has definitely alleviated the pressure to look for one and to source an external SOC. We have a project history to look at a virtual SOC and leverage tools that we do have, and Sysdig is a part of that. There is definitely a saving there because we have not had the need to go out and look for an external SOC.

    Sysdig has helped reduce the percentage of workloads that have security exposures that put the organization at risk. It has reduced the workload, mainly from an understanding of where we can assign work to cover the most ground in terms of resolving vulnerabilities.

    What is most valuable?

    The most valuable feature is the level of support that we get. Our solutions or customer success representative is very valuable. I see them as an extension of our security team. In terms of the product itself, it is able to very clearly give us where we are in terms of security and threats in the environment.

    What needs improvement?

    Reporting can definitely be better. Live dashboards should be configurable for a longer period of time rather than 30 days. Being able to go back in time to compare six months ago to today would be valuable.

    For how long have I used the solution?

    We have used Sysdig Secure for a few years. We have probably gone through two renewals.

    What do I think about the stability of the solution?

    It has been extremely stable. We have never had any issues with it. I would rate it a ten out of ten for stability.

    What do I think about the scalability of the solution?

    I would rate it a ten out of ten for scalability. We have not had any issues. It has not been slow or anything like that.

    We have approximately 25 people using this solution. They are from the engineering team and the DevOps team.

    How are customer service and support?

    I would rate their customer service an eight out of ten purely because I have it in a proactive manner. I meet our solutions engineer every fortnight, so I usually do not require support at all.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We were not using any similar solution previously.

    How was the initial setup?

    It was extremely straightforward. We just installed the agent, and then we could see the dashboard light up. It took a few hours.

    It is deployed on the cloud. The cloud deployment is at one location, but the agent is installed at multiple locations.

    What about the implementation team?

    One person was involved in its deployment.

    What was our ROI?

    We have definitely seen an ROI time-wise and resource-wise. I feel that I have an extension to our security team with this service. It gives us a lot of visibility that we would not have otherwise. It has saved 50% of an information security professional.

    What's my experience with pricing, setup cost, and licensing?

    I am always going to say that it could be a little bit cheaper. I do feel that it is a little bit on the expensive side.

    What other advice do I have?

    If you have the right approach to resolving vulnerabilities, it is an extremely useful tool. It is not useful if you plan to just have it deployed and not take action on any of the vulnerabilities.

    I would rate Sysdig Secure a nine out of ten. If it has better reporting capabilities to visualize trends over time, it will be a more complete product.

    Dan185638

    The solution gives us visibility into our configurations, so we can compare them to best practices

    Reviewed on Mar 26, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We use Sysdig for cloud and Kubernetes  posture management, including Kubernetes  workload security, image vulnerabilities, and pipeline vulnerabilities. We use it across 2 of our cloud vendors: AWS  and GCP.

    How has it helped my organization?

    Sysdig helps us improve the maturity of our cloud and Kubernetes posture. Before implementing Sysdig, we did not have alot of visibility into what our developers were doing. We had lots of observability tools, but we didn't have any security observability tools. We wanted to ensure we could see what was being done from a configuration standpoint and compare that to best practices. We also wanted to detect and respond to any threats that might appear on the Kubernetes side of things.

    It allows us to fill any gaps within our configuration. We don't have regulatory compliance requirements within our business, but we still want to adopt the best practices, and Sysdig enables us to identify gaps efficiently. Sysdig has its own ranking to push the critical priorities to the top. We can apply these standards, like ISO, CIS, NIST, etc., to improve the security posture in our cloud or Kubernetes environment.

    What is most valuable?

    Sysdig is user-friendly. Many other vendors we seriously considered had vast, complicated interfaces. Sysdig makes it quick and easy to do what you need to do. That's one thing I like about the platform, It takes you seconds to find what you want. There are not a lot of submenus or complex UI components. 

    The other valuable feature is runtime detection. The enhanced visibility they have within Kubernetes is longer than the workload. The visibility and the depth of information make a security professional's job a lot easier. It helps us sleep at night because we know that can get information about threats that we need when we need it. 

    What needs improvement?

    Sysdig's biggest weakness is dashboarding and reporting. You already have access to the data and can get everything you need, but we also need the ability to summarize the information quickly in a format that senior leaders can understand. We report to the executive level and global board. I need to roll all that in-depth information into a quick summary, and their maturity level isn't there. I'm seeing that on the future road map, but it isn't there now. 

    For how long have I used the solution?

    We have used Sysdig for about 8 months.

    What do I think about the stability of the solution?

    We haven't faced any performance problems or downtime, which is one reason we selected Sysdig. The competitors are so slow. It takes 3 or 4 times longer to open their platforms than it would open Sysdig.

    What do I think about the scalability of the solution?

    Sysdig is incredibly scalable from the perspective of adding accounts and clusters. We do everything in code, so that makes it easy for us. We add it to the right repo, and it just pushes it out. We haven't had many scalability problems.

    We don't have hundreds of thousands of accounts or clusters. We're relatively small—around 150 clusters. Because our guys have done everything in code, it's quite easy for us to scale up and down when required.

    How are customer service and support?

    I rate Sysdig support 8 out of 10. We have an assigned Sysdig Solutions Architect who we meet with every 2 weeks. He goes above and beyond. He's extremely attentive to our tenancy and requirements. I get messages from him saying, "Oh, I've been working on this. Here's a solution to that thing you're talking about." or 'I've just checked these reports for you and found this." 

    The proactiveness of the support has been fantastic. Every time we mention something in a meeting that we're trying to do, he proactively takes that as an investigation topic and looks into it. He'll provide the solution even though we might not have asked him to investigate it. He's my main source of product support, but we also go through the service desk for more BAU requests and problems. 

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    The deployment is straightforward on the Sysdig side, but internal politics always make things difficult. The instructions to deploy are simple. It took less than an hour to deploy it across our entire environment. We have two cloud engineers responsible for deploying and maintaining it. 

    Like everything, Sysdig requires maintenance after deployment. I've been in tech for more than a decade, and we're always hoping for a product that we don't need to worry about after deployment. No matter what product it is, there's always maintenance to some degree, but it isn't a headache. 

    It comes down to proactive account management. Sysdig contacts us directly when they roll out updates. I'm happy to sit on the call and run through what needs to be done or any concerns. There is obviously some type of maintenance we need to do on the product over time. It isn't too difficult. 

    What's my experience with pricing, setup cost, and licensing?

    Sysdig is competitive. The quality matches the pricing. Obviously, everyone wants things to be cheaper, but if you're realistic, you acknowledge that quality service comes with a price. Sysdig is the gold standard for Kubernetes, and I wouldn't choose anything else. We live in Kubernetes. Everything is containerized, so that means a lot to us, and we're willing to make an investment.  

    Other businesses I know are only getting started with Kubernetes, so cost might hold them back, but Sysdig's rules engine is open source, so you can try some of their core features for free.

    Which other solutions did I evaluate?

    In addition to Sysdig, we looked at Aqua Security, Palo Alto, Check Point, and Wiz . Check Point and Palo Alto had complicated interfaces like they had acquired and smashed other products into one interface. One of them was using Sysdigs open-source engine that they had implemented incorrectly, so we decided if others are using Sysdig's engine we might as well go to Sysdig to get the best experience. 

    We decided not to go with Wiz  because it was more compliance-focused and didn't have much to offer in the container security space. We're more focused on container security than posture management and compliance. That was more like an add-on for us. Aqua was ridiculously expensive, and we didn't feel like we were getting more value than we would from Sysdig.

    What other advice do I have?

    I rate Sysdig 8 out of 10. If you're looking for a Kubernetes security platform, Sysdig is the market leader. 

    Which deployment model are you using for this solution?

    Public Cloud
    Burak AKCAGUN

    Provides many strong features like security, network access management, and vulnerability management

    Reviewed on Jan 03, 2024
    Review provided by PeerSpot

    What is most valuable?

    Sysdig Secure has many strong foundational features like compliance and benchmark, security, network access management, and vulnerability management.

    What needs improvement?

    Banks and financial institutions cannot use Sysdig Secure because it doesn't sell SaaS-hosted versions for under two hundred working nodes.

    For how long have I used the solution?

    I have been using Sysdig Secure for one month.

    What do I think about the stability of the solution?

    I have not faced any stability issues with the solution.

    I rate Sysdig Secure an eight or nine out of ten for stability.

    What do I think about the scalability of the solution?

    It is very easy to scale Sysdig Secure. Around ten users are using the solution in our organization.

    I rate Sysdig Secure a nine out of ten for scalability.

    Which solution did I use previously and why did I switch?

    I have experience with Aqua. Sysdig Secure has features like network monitoring and an open-source threat detection engine, which Aqua does not have.

    How was the initial setup?

    The solution's deployment is very easy and can be done in ten minutes.

    What about the implementation team?

    Sysdig Secure has two agents: one for network monitoring and the other for security sites. You can install one agent if you would like to see network monitoring. You can deploy two agents if you would like to see network asset management and the security site.

    What other advice do I have?

    I compared Sysdig Secure with other solutions like Aqua by opening a demo trial account and examining its features and benefits for one month.

    Overall, I rate Sysdig Secure a nine out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Miguel Angel Cuesta Bravo

    A cloud solution for monitoring K8s clusters with AWS

    Reviewed on Dec 29, 2023
    Review provided by PeerSpot

    What is our primary use case?

    We use the solution for monitoring clusters on the AWS  account. We also do some proofs of concept. They have implemented a way to view the logs.

    What is most valuable?

    The solution has connection with cloud providers with the development abilities.

    What needs improvement?

    The solution could allow us to see the wireless Internet cluster and select the data inside it.

    For how long have I used the solution?

    I have been using Sysdig Secure  as a partner for two months.

    What do I think about the scalability of the solution?

    There was an error. In the beginning, we couldn't connect with some other AWS  account, we have to open a case to the support.

    I rate the solution’s scalability a seven out of ten.

    How are customer service and support?

    We have a direct contact with the support.

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    The initial setup is not easy. We have to connect the AWS account to Sysdig Secure .

    What other advice do I have?

    Sysdig Secure is a good tool for understanding and monitoring the security cluster.

    Overall, I rate the solution an eight-point five out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    View all reviews