Listing Thumbnail

    Dragos Platform - Industrial Cybersecurity for OT Environments

     Info
    Sold by: Dragos 
    Deployed on AWS
    Built by practitioners for practitioners, the Dragos Platform ensures your cybersecurity team is armed with the most up-to-date defensive tools to combat industrial adversaries, codified by our experts on the front lines every day hunting, combatting, and responding to the world's most advanced ICS threats. OT Asset Visibility, Threat Detection, Vulnerability Management, and Investigation & Response combined for the most advanced platform available for ICS/OT environments.

    Overview

    Play video

    The Dragos Platform is operational technology (OT) cybersecurity technology that delivers unmatched visibility of your industrial control system (ICS) assets and communications. It rapidly pinpoints threats through ICS network monitoring and intelligence-driven analytics, identifies and provides risk-based prioritization of vulnerabilities, and provides best-practice playbooks to guide teams as they investigate and respond to threats.

    Codified with the expertise of the industry's largest, most experienced team of ICS/OT practitioners, the Dragos Platform ensures your security team is armed with the most up-to-date technology and intelligence to combat the world's most sophisticated industrial adversaries.

    Where many vendors use IT-focused tools to tackle OT, Dragos is rooted in OT. The expertise from our WorldView Intelligence team and Professional Services consultants - translate into key Platform differences:

    • Behavior-based threat detection to better identify real threats and avoid alert fatigue common to anomaly engines.

    • Risk-weighted vulnerability scoring with prioritization and practical recommendations for industrial environments.

    • Expert authored response playbooks tailored to threat scenarios for rapid event investigation.

    • Managed threat hunting as an option with OT Watch, to provide advanced expertise through staff extension.

    • Dragos Neighborhood Keeper collective intelligence network, an opt-in anonymized service to share aggregated threat information and request community assistance.

    • Available to deploy virtually and manage in the cloud; or on-premises.

    For private offers or custom pricing, please reach out to us at awsmarketplace@dragos.com 

    Highlights

    • Enabling and accelerating digital transformation: The Dragos Platform is designed to support digital transformation initiatives by monitoring connectivity between OT and IT or external networks. It provides centralized monitoring and threat management capabilities for all connected assets, helping organizations ensure the security and integrity of their critical systems.
    • Managing risk to protect the core business: The Dragos Platform helps organizations identify and prioritize risks to their OT environment through comprehensive asset visibility, vulnerability management, and threat detection capabilities. It provides machine speed visibility into network activity and baseline deviations, allowing security teams to quickly identify and respond to potential threats.
    • Compliance with industry regulations and organizational standards: The Dragos Platform helps organizations adhere to audit and compliance programs by providing comprehensive monitoring and reporting capabilities. It generates detailed reports on asset inventory, vulnerabilities, security events, and timeline based auditing of network communications that can assist teams with providing evidence needed for compliance programs.

    Details

    Sold by

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Dragos Platform - Industrial Cybersecurity for OT Environments

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (1)

     Info
    Dimension
    Description
    Cost/12 months
    Dragos CentralStore
    Dragos CentralStore Cloud Subscription, up to 50 Connected SiteStores
    $240,000.00

    Vendor refund policy

    Please refer to the Dragos Terms and Conditions.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    Support is available through the Dragos Customer Portal. To open a support ticket or find documentation visit

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    50
    In Device Security
    Top
    50
    In Device Management, Device Security
    Top
    50
    In Device Security

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    1 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    7 reviews
    Insufficient data
    Insufficient data
    1 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Asset Discovery and Visibility
    Advanced OT network monitoring and comprehensive asset identification for industrial control systems
    Threat Detection Mechanism
    Behavior-based threat detection engine with intelligence-driven analytics to identify real industrial cybersecurity threats
    Vulnerability Management
    Risk-weighted vulnerability scoring with prioritization and practical recommendations specific to industrial environments
    Incident Response
    Expert-authored response playbooks tailored to specific threat scenarios for rapid event investigation and mitigation
    Threat Intelligence Network
    Opt-in anonymized collective intelligence network for sharing aggregated threat information and community-based threat insights
    Asset Discovery
    Comprehensive discovery and identification of all asset types including IT, IoT, cloud, virtual, managed and unmanaged assets
    AI-Powered Threat Intelligence
    Leverages artificial intelligence for early warning threat detection, anticipating potential security risks and enabling preemptive action
    Cyber Exposure Management
    Real-time monitoring and management of cyber asset risks with continuous vulnerability assessment and prioritization
    Multi-Domain Security Coverage
    Integrated security capabilities across OT, IoT, ICS, medical devices, and enterprise networks with comprehensive visibility
    Adaptive Threat Neutralization
    Dynamic threat detection and mitigation using advanced intelligence techniques including dark web monitoring, dynamic honeypots, and attack surface modeling
    Asset Discovery and Tracking
    Automated real-time asset inventory tracking with network visualization for OT and IoT environments
    Threat Detection Mechanism
    Advanced anomaly detection and threat intelligence analysis using specialized OT and IoT protocol monitoring
    AI-Powered Security Analytics
    Machine learning and AI-based security engine designed specifically for operational technology network environments
    Vulnerability Assessment
    Automated continuous vulnerability identification and assessment across distributed network infrastructure
    Security Integration Capabilities
    Native integration with security tools and platforms including AWS IoT Security Hub for incident response

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    3.5
    1 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    100%
    0%
    0%
    1 AWS reviews
    |
    1 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Jehin Nadar

    Offers strong incident response features but requires more asset visibility and flexibility

    Reviewed on Jun 04, 2025
    Review from a verified AWS customer

    What is our primary use case?

    I am an engineer in a service provider company where we help clients choose and implement security solutions, and I'm still looking for a new solution.

    I am certified in Dragos , but I have not deployed it in client sites.

    I used Nozomi a few years ago for two years, and now I'm getting trained in it so that I can help clients implement the tool. My customers are still using it.

    What is most valuable?

    Dragos ' best features are that they are more focused towards Incident Response , so they have a dedicated playbook in their platform, making it easier for anyone investigating any incidents to investigate the alerts. One of the main features of Dragos is that they have a dedicated Incident Response  team, so if clients need any help, they are there to help.

    Dragos does real-time monitoring as well, collecting mirror traffic from the span port of the switch, and as soon as it gets the traffic, it analyzes it in real time and shows what's going on in the networks, which relates to the real-time visibility feature for ICS networks.

    What needs improvement?

    I think Dragos could be improved, as I have worked in Nozomi and compared it to Nozomi. Nozomi offers a lot of flexibility in what I am able to learn and unlearn, and I have more visibility towards the nodes, links, and process variables, which I think is missing in Dragos.

    I think Dragos can offer more flexibility similar to Nozomi and more visibility into the assets, nodes, and links, which would make it more competitive in the future.

    For how long have I used the solution?

    I have used Clarity for two years, and it has been one year since I last used Clarity. That is how long I have been dealing with the Clarity platform.

    What other advice do I have?

    I have experience managing the tools Clarity, Nozomi, Dragos, Sangfor, and I am familiar with these products.

    My customers are already working with Devo , Dragos, Nozomi, Clarity, and these are locally deployed in the client sites, not bought on the AWS Marketplace .

    I have not used Devo , but I have used Nozomi and Dragos, so I do have experience with those products.

    I completed my certification in Dragos and recommend it to my customers already, and I have been dealing with Dragos for a while now.

    Dragos offers a threat intelligence subscription called worldview, so if a customer subscribes to that, they will get regular threat intelligence.

    I have not used much of the detailed analytics and reporting functionalities of Dragos.

    Dragos is a good option to choose, as it performs well in the market.

    Dragos is a big name, and there is room for Dragos in the India market, and they should promote it more.

    The company that I'm working for is a partner with Dragos. I also have partnerships with other vendors including Clarity, Nozomi, and Fortinet.

    I was learning FortiSIEM  three months back, but I am not certified in it, so I have been dealing with Fortinet products in a somewhat limited manner. FortiGate  is what I mostly deal with from Fortinet.

    On a scale of 1-10, I would rate this solution a 6 or 6.5.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    MarkLopez

    Centralized management and cybersecurity features enhance IoT device oversight

    Reviewed on Apr 25, 2025
    Review provided by PeerSpot

    What is our primary use case?

    We use Dragos  specifically for managing IoT devices in the industrial sector within our manufacturing ecosystem. It provides a platform to manage, update, and keep track of all network information related to IoT devices. It allows centralized management of industrial IoT devices.

    What is most valuable?

    Dragos  offers several valuable features, including the capability to manage IoT devices on a centralized platform. It allows for updates to devices and uniform management counsel, enabling updates to all devices. Another key feature is its ability to manage cybersecurity aspects of devices, such as updating or isolating devices found to have vulnerabilities. It includes features for automatic discovery of devices and inventory management of devices, and it facilitates incident response by allowing for isolation or shutdown of devices in case of critical vulnerabilities.

    What needs improvement?

    Dragos could improve its asset visibility and discovery tools, as the competitor Claroty has better options in this area. Additionally, integrating out-of-the-box with major ERPs like SAP would be beneficial. Claroty performs slightly better in native cloud environments.

    For how long have I used the solution?

    I have used Dragos for about two years.

    How are customer service and support?

    Customer service and support have been generally good. Support requests typically do not exceed twenty-four hours for resolution, and the cybersecurity support has been helpful. The platform's ease of use and device discovery ease are notable.

    How would you rate customer service and support?

    Positive

    What was our ROI?

    Security does not provide direct ROI as it is not related to our products but is critical for maintaining operations. It is more of an insurance policy.

    What's my experience with pricing, setup cost, and licensing?

    Dragos is more expensive than other vendors, probably about fifteen to twenty percent more, but it is generally worth the investment.

    Which other solutions did I evaluate?

    Competitor Claroty was mentioned as an alternative solution.

    What other advice do I have?

    Overall, I would rate Dragos around nine. It is crucial to use anonymous information in reviews to avoid internal distractions.
    View all reviews