We use Lacework for cloud security.
External reviews
External reviews are not included in the AWS star rating for the product.
The best OOBE and ease of use
Best User - Friendly Security Features
- Easy to find documentation / forums to find any setting you need
- Forti has a family of features / devices / services you can integrate it with to be able to expand the capabilities
- The logs are not easy to understand at first glance
- InterVlan Routing
- DPI
- WebFilter
- AD Integrated Security Features
- DHCP
- NTP Server
- Network Policies
A cloud security platform that automates detection and alerting of misconfiguration and anomalies within or Cloud environment.
What is our primary use case?
How has it helped my organization?
The ability to collect the information, analyze it, and then correlate it against the configured policy has helped us. It is easily integrated with security frameworks such as AWS, and CIS benchmarks.
Lacework, by its nature, maintains a low level of noise. Through its intelligent backend data aggregation and correlation, it effectively minimizes less relevant alerts, and instead alert on crucial matters or authentic instances of behavioral risks and concerns. However, what stands out is that having the capability to review configurations empowers us to enact adjustments internally, possibly resulting in a reduction of alerts needing attention.
What is most valuable?
Cloud Security Management is a valuable feature. In our perspective, it delivers significant benefits. The clarity it offers, along with the ability to identify misconfigurations, is invaluable. When such issues arise, we promptly acknowledge and take action, effectively collaborating with our teams and the responsible parties for those assets. This enables us to promptly manage problems as soon as they arise.
What needs improvement?
Lacework ranks high, primarily due to its role in alerting on unexpected behavior, potential vulnerabilities, and misconfiguration against policies.
Currently, a view of all policies is available within the console. However, At some point in the past, I wanted a more tailored display of my compliance posture, focusing specifically on policies relevant to me. For instance, if I'm not subject to HIPAA regulations, I'd prefer not to see the HIPAA compliance details. It's worth noting that even with this request, there exists a filtering mechanism to control the type of compliance information visible. This flexibility provides a workaround to my preference, which is why it's challenging for me to definitively state my exact improvement request.
For how long have I used the solution?
I have been using Lacework for two years.
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
Its a matter of forwarding logs and data for ingestion. The solution can be scaled based on needs to c
How are customer service and support?
The support is quite good. We encountered an issue when attempting to integrate Alerting Channels. Specifically, we aimed to send alerts to our communication platform, but encountered an issue that hindered this process. I submitted a request, and the response was swift. The support team addressed the matter promptly, resulting in an immediate resolution.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have not seen many other similar solutions. I have a genuine appreciation for Lacework. Comparing it to other products wouldn't be equitable, as my experience with those alternatives is limited. Thus, it wouldn't be justifiable to make a definitive judgment about one product being superior to Lacework or vice versa. I can affirm, however, that Lacework is highly commendable and is delivering substantial benefits for our needs.
How was the initial setup?
It is deployed on the cloud. Regarding maintenance, certain tasks must be done, including policy maintenance and alert review. However, beyond these responsibilities, there's not much to manage, given its complete Software as a Service (SaaS) nature. There's no need for involvement in tasks like storage management or endpoint maintenance.
What was our ROI?
I believe that quantifying the tangible gains from deploying a security solution is a challenge. Especially in the realm of security, the implemented solutions work to avert potential significant losses that might be hard to measure. The return on investment is evident in the form of enhanced security and prevention of major security incidents. While the value gained isn't easily quantifiable in a monetary sense, it's clear that the expense is justified. Essentially, purchasing and implementing such solutions incurs a cost without direct monetary returns. However, if we were without such solutions, the alternative would involve hiring additional staff, particularly SOC engineers, to manage anomalies, issue investigations, and alert correlation.
What other advice do I have?
The overall solution can be rated 10 out of 10.
I would recommend that while utilizing the product, it's vital to actively engage in configuring your environment appropriately and adopting the right procedures, both technical and administrative. This approach ensures the realization of value from Lacework or any security solution.
FortiOS
Fortios (Secured OS using Linux Platform)
Robust and Powerful
Also initial setup is easy and can get you up and running pretty fast.