
Overview
Radware Cloud WAF is a fully managed Cloud Application Protection Service providing the industry's most comprehensive web application security solution. The service integrates Radware's Cloud WAF, API Protection, Bot management, client-side and application layer DDoS protection in a single portal that provides security analytics, threat detection and real-time security feeds to protect applications against hacking, malicious bots, API exposure, Web DDoS attacks, supply chain attacks and other vulnerabilities. Radware's combination of negative and positive security models provides a complete level of protection against OWASP Top 10 threats and zero-day attacks. API Discovery and Protection - End-to-end API solution from Discovery to protection at a click of a button. Radware auto API discovery maps all of your applications documented and undocumented third-party APIs, automatically generates Open API schema files, generates tailored security policies to detect and block API-focused attacks in real time and enforce protection across all your APIs. Radware's advanced API protection eliminates your documenting and protecting APIs overheads and keeps your organization protected across the board. Bot Management - Integrated Bot Manager provides comprehensive mitigation options, such as Blockchain-based Crypto challenges to counter attacks. It ensures precise bot management for web, mobile, and API traffic by employing behavioral modeling, collective bot intelligence, and fingerprinting. This defense guards against all OWASP 21 automated threats, including account takeover, credential stuffing, DDoS, fraud, and web scraping, fortifying online operations. Web DDoS Protection - Industry leading application-layer L7 protection against DDoS attacks, based on Radware's unique machine-learning-based behavioral detection that distinguishes between legitimate and malicious traffic, and automatically generates granular signatures in real-time to protect against zero-day attacks. Best-in-class security against a wide variety of threats, including HTTP Floods, HTTP bombs, low-and-slow assaults, Brute Force attacks, and disruptive web DDoS Tsunamis. Client-side Protection - Easily block requests to suspicious third-party services in your supply chain and adhere to data security compliance standards. Protect against client-side attacks coming from third party JS services - Formjacking, Skimming,Magecart, automatically and continuously discover all third-party services in your supply chain with detailed activity tracking, as well as get alerts & threat level assessment according to multiple indicators, including script source and destination domain. Pricing We have 3 different pricing packages - Standard, Advanced and Complete. The Standard and Advanced packages come with some of the features while Complete provides full coverage.
Highlights
- Fully Managed Web Application Protection Service - 24x7 Fully managed security service by Radware's expert Emergency Response Team(ERT). Protect Against OWASP Vulnerabilities - Stay protected against 150+ known attack vectors, including the OWASP Top 10 Web Application Security Risks, Top 10 API Security Vulnerabilities, Top 21 Automated Threats To Web Applications, and Top 10 Client-side vulnerabilities
- Detect, Manage and Mitigate Bots - Detect and distinguish between good and bad bots to protect websites, mobile apps and APIs. Easily optimize and customize your bot management policies to provide a better user experience and drive more ROI from your application traffic. End-to-end API Protection - From discovery to enforcement at a click of a button, Radware combines behavioral analysis and policy automation to protect from increasingly sophisticated API assaults.
- Mitigate Application-Level DDoS Assaults - Radware's DDoS protection technologies provide the shortest time to detection and mitigation of most advanced and high volume HTTP-based DDoS assaults by utilizing patented behavioral analysis, machine learning-based engines. Protect Client-Side From Supply Chain Attacks - This solution offers advanced client side protection that ensures the protection of end users data when interacting with any third-party services in the application supply chain.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/Mbps |
|---|---|---|
Cloud Application Protection Standard,10 Mbps,1 Application - Monthly | Cloud Application Protection Standard,10 Mbps,1 Application - Monthly | $638.00 |
Cloud Application Protection Standard,50 Mbps,1 Application - Monthly | Cloud Application Protection Standard,50 Mbps,1 Application - Monthly | $1,940.00 |
Cloud Application Protection Standard,100 Mbps,1 Application - Monthly | Cloud Application Protection Standard,100 Mbps,1 Application - Monthly | $3,069.00 |
Advanced_10 | Cloud Application Protection Advanced,10 Mbps,1 Application - Monthly | $1,276.00 |
Advanced_Addon | Cloud Application Protection Advanced,1 Application Add-On - Monthly | $127.00 |
Complete_10 | Cloud Application Protection Complete,10 Mbps,1 Application - Montly | $2,233.00 |
Complete_Addon | Cloud Application Protection Complete,1 Application Add-On - Monthly | $193.00 |
CDN_Add_on | Cloud Application Protection CDN Service Enablement - Monthly | $287.00 |
CDDOS_OnDemand | On-Demand Cloud DDoS Protection Service - Legitimate 10Mbps - Monthly | $2,750.00 |
CDDOS_AlwaysOn | Always-On Cloud DDoS Protection Service - Legitimate 10Mbps - Monthly | $4,950.00 |
Vendor refund policy
No refund offered
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Online Support Service Portal -Appropriate for non-critical issues, such as general inquiries, requests for technical documentation/ information, schedule support during an upcoming maintenance window, view installed base and manage support cases.24x7, where Internet service is available
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products


Customer reviews
Cloud security has strengthened API protection and now reduces downtime for critical transactions
What is our primary use case?
Radware Cloud WAF Service protects the web applications that are the APIs and transactional systems. In the WAF , all the protection is configured for the website and internal ticket sales system. In addition to everything related to the tickets, all APIs are protected, which is very useful for the microservices architecture and all the integrations with the different providers.
What is most valuable?
The best features offered by Radware Cloud WAF Service are the ease of integration, in addition to all the security it offers, the high availability it has, and the automatic updating of the solutions.
Radware Cloud WAF Service has had a positive impact with improvements in security. All issues related to incidents have been reduced, and it informs and gives control over any latency or any misuse that someone might try with an API.
Denial-of-service issues and the downtime of those APIs have been mitigated by approximately 30%, since previously, over a period of time, there were quite a few outages. With this integration of the tool to mitigate all those issues, it has improved in that sense.
What needs improvement?
Something that could be added to Radware Cloud WAF Service would be a bit more training and not having to depend so much on the vendor, because sometimes when you have to configure advanced policies it requires a lot of experience and dependence on the vendor to provide support throughout the implementation of those advanced policies.
The interface is quite intuitive, and there are no other improvements needed.
For how long have I used the solution?
Radware Cloud WAF Service has been used for approximately two years.
What do I think about the stability of the solution?
Radware Cloud WAF Service is quite stable.
What do I think about the scalability of the solution?
Radware Cloud WAF Service has been able to adapt as the organization has grown a lot in applications and APIs, and the tool has worked without any issues.
How are customer service and support?
The experience with Radware Cloud WAF Service's customer support has been quite positive. They have always assisted quickly and without any issues whenever assistance has been needed.
Which solution did I use previously and why did I switch?
No other solution was used before implementing Radware Cloud WAF Service.
How was the initial setup?
The process of integrating Radware Cloud WAF Service into the environment was very quick. Everything really was very fast, and with the documentation provided, it was possible to do it easily and achieve the objective, which was to integrate the platform.
What about the implementation team?
The organization is only a customer of the vendor.
What was our ROI?
All the benefits obtained have been in security, in prestige, and from using this type of tool for the operation.
What's my experience with pricing, setup cost, and licensing?
The cost of Radware Cloud WAF Service is actually a bit high, but given all these benefits, the investment makes sense.
Which other solutions did I evaluate?
Other options in the market were evaluated, looking at different alternatives from different vendors. Palo Alto and Check Point were evaluated before deciding on Radware Cloud WAF Service.
What other advice do I have?
Radware Cloud WAF Service is deployed in public cloud, directly on Radware's cloud in the public cloud. Being in the cloud is quite a strong point for Radware Cloud WAF Service.
Other companies considering using Radware Cloud WAF Service will find a very robust tool that has different types of applications for managing all the APIs, all the applications, and controlling the security of all the entities.
Everything important about Radware Cloud WAF Service has been covered in this interview. This interview is considered very complete and appropriate for the moment and for the product. This review has been given a rating of 9.
Protection for web apps has improved and monitoring now provides clear attack visibility
What is our primary use case?
The main use case for which I use Radware Cloud WAF Service is the protection of web applications. I protect a web application from denial-of-service attacks using Radware Cloud WAF Service .
What is most valuable?
The best features that Radware Cloud WAF Service offers include the deployment, as it is very easy to implement, and the platform management is efficient.
The specific aspects that make the implementation process simple in my experience are the integration and the redirection to the web applications.
Radware Cloud WAF Service has enabled me to save time by viewing and monitoring the traffic that my applications receive, since it isolates the attacks or threats that my web applications face.
What needs improvement?
To make Radware Cloud WAF Service even more useful for my organization, I believe there should be greater integration with other tools, such as log tools.
I would rate it a 9 and not a 10 because the dashboard is sometimes not as intuitive as it could be for displaying the necessary information. You have to take a few extra steps in order to view the information you need.
For how long have I used the solution?
I have been using Radware Cloud WAF Service for approximately 3 years.
What do I think about the stability of the solution?
I consider Radware Cloud WAF Service to be quite stable in its daily operation.
What do I think about the scalability of the solution?
I would rate the scalability of Radware Cloud WAF Service as good, as it adapts well to the growth of my needs.
How are customer service and support?
My experience with Radware Cloud WAF Service's customer support has been excellent, as the partner we have responds to us on time and as diligently as possible.
Which solution did I use previously and why did I switch?
Before using Radware Cloud WAF Service, we did not have any solution previously.
What was our ROI?
I have seen time savings due to the visualization and monitoring of the attacks on the applications since I started using Radware Cloud WAF Service.
What's my experience with pricing, setup cost, and licensing?
My experience with the pricing, implementation cost, and licensing of Radware Cloud WAF Service is that it costs what it is worth for what you receive.
Which other solutions did I evaluate?
Before choosing Radware Cloud WAF Service, I evaluated alternatives such as Barracuda and Cloudflare WAF .
What other advice do I have?
The advice I would give to other companies considering implementing Radware Cloud WAF Service is to take into account that it is an excellent tool for protecting their applications. I would rate this solution a 9.
Security has provided robust visibility into cloud traffic and centralizes monitoring
What is our primary use case?
Radware Cloud WAF Service serves as a Web Application Firewall for the applications my organization has exposed on the internet that are hosted in the Azure cloud. I use Radware Cloud WAF Service as a WAF for applications that are exposed on the internet, and it provides us broad visibility and monitoring of all the traffic that goes to them.
How has it helped my organization?
Radware Cloud WAF Service has positively impacted my organization by providing broad visibility into the traffic and the requests from our third parties to our exposed services.
A specific example of how these features have benefited my organization is that we currently have our core system hosted in the Azure cloud and exposed, and many third parties consume our service. With Radware Cloud WAF Service, we have visibility and can see all the traffic and the requests that are generated to our services.
What is most valuable?
The best features that Radware Cloud WAF Service offers are the robustness and the visibility I have of my applications exposed on the internet.
What needs improvement?
Regarding aspects that Radware Cloud WAF Service could improve, I would suggest that at the start, on the home interface, having dashboards that help us summarize and extract metrics would be beneficial.
For how long have I used the solution?
I have been using Radware Cloud WAF Service for approximately two years.
What do I think about the stability of the solution?
I consider Radware Cloud WAF Service to be a very stable solution.
What do I think about the scalability of the solution?
I would rate the scalability of Radware Cloud WAF Service as excellent.
How are customer service and support?
My experience with the technical support of Radware Cloud WAF Service has been very good. When we have requested support, they have provided solutions to our questions almost immediately.
Which solution did I use previously and why did I switch?
Before implementing Radware Cloud WAF Service, I did not use any other solution. It is the first WAF solution my organization has implemented.
How was the initial setup?
My experience with the costs, initial configuration, and licensing of Radware Cloud WAF Service is that the tool is somewhat expensive and not inexpensive. However, it is worth every peso I pay.
What was our ROI?
I have seen a return on investment since I started using Radware Cloud WAF Service through time savings. We now have all the traffic and visibility centralized for what goes to our exposed applications, allowing us to save time when reviewing all the traffic.
Which other solutions did I evaluate?
Before choosing Radware Cloud WAF Service, I evaluated other options such as F5 and Fortinet.
Factors that influenced my choice of Radware Cloud WAF Service instead of F5 or Fortinet include robustness and the way it is implemented.
What other advice do I have?
Radware Cloud WAF Service meets all my organization's expectations.
My advice to other companies that are considering implementing Radware Cloud WAF Service is that it is a good tool. It is not inexpensive, but it is a good and very robust tool for cloud environments.
Radware Cloud WAF Service is an excellent tool and very robust for companies that have core systems and services hosted in the cloud. I would rate this product ten out of ten.
Web protection has improved and service now blocks attacks to keep public sites secure
What is our primary use case?
My main use case for Radware Cloud WAF Service is blocking the IPs of hackers, SQL injections, and others for protecting the domains of Gran Melia Resort.
What is most valuable?
In my experience, the best feature of Radware Cloud WAF Service is its strong protection for public-facing domains and web applications. Its ability to block common web attacks and the visibility it gives into suspicious traffic and threats improves the security posture of our online services without adding too much operational complexity.
Radware Cloud WAF Service has positively impacted our organization by giving us peace of mind with suspicious traffic, fewer web security concerns on public services, and more confidence in the protection of our applications. It has helped us maintain service availability more effectively during suspicious traffic situations.
What needs improvement?
Radware Cloud WAF Service could be improved with a simpler management interface, more detailed reporting, and easier policy tuning for day-to-day administration. The service is strong, but improving its usability, reporting clarity, and day-to-day policy management would make it even better. A more streamlined administrative experience would be very valuable.
For how long have I used the solution?
I have been working in my current field for three years.
What do I think about the stability of the solution?
Radware Cloud WAF Service has been very stable in our experience, and we have not had any problems with the service.
What do I think about the scalability of the solution?
Radware Cloud WAF Service has shown good scalability in our experience. It has been able to support our needs reliably as requirements grow without causing issues in daily operations.
How are customer service and support?
The customer support for Radware Cloud WAF Service has been very good. We are happy with the support provided and the overall responsiveness of the team.
Which solution did I use previously and why did I switch?
We did not use a different solution before Radware Cloud WAF Service.
How was the initial setup?
I would recommend clearly defining our protection needs and public-facing services from the start so the setup can be aligned with our environment. If security and reliable support are important for our organization, Radware Cloud WAF Service is a strong option to consider.
What about the implementation team?
Our only relationship with the vendor is as a customer.
What was our ROI?
I have seen a return on investment with Radware Cloud WAF Service mainly in terms of time saved, lower operational risk, and better protection of our public-facing services.
Which other solutions did I evaluate?
Before choosing Radware Cloud WAF Service, we also evaluated other well-known options such as Cloudflare , Akamai , and Imperva.
What other advice do I have?
Radware Cloud WAF Service is deployed in a public cloud environment. I would rate this review as a ten out of ten.
Security has strengthened banking applications and provides clear insight into bot and API threats
What is our primary use case?
Radware Cloud WAF Service is used in my organization to protect critical services, including banking applications, all of which are protected as critical services with Radware Cloud WAF Service.
A specific example of how Radware Cloud WAF Service has protected one of these applications involves incidents where I detected different alerts related to bot attacks, and thanks to the tool, we were able to identify them and prevent those attacks from being effective.
Traffic control and filtering are very useful for protecting the applications, and I would like to add that these capabilities are important to our use case.
What is most valuable?
Radware Cloud WAF Service's best features are the simplified management, which is quite intuitive, and the reporting that provides us with relevant information.
The reporting allows us to obtain values and data on the amount of traffic entering the application, helping us determine parameters while considering a line of attacks that we might face. This reporting is important to present to a steering committee to justify the application's security.
I consider the Anti-Bot and API Protection modules to be extremely important, and by having these additional functionalities configured, we have been able to reinforce and strengthen our applications in a much better way.
Radware Cloud WAF Service has positively impacted my organization by providing peace of mind for the team and ensuring regulatory compliance. Radware Cloud WAF Service has been very useful in guaranteeing the integrity of the information and secure access to the applications, which are necessary in the banking field.
What needs improvement?
I chose a rating of nine and not another number because Radware Cloud WAF Service is a very intuitive tool with the necessary controls to guarantee the integrity of the information, but those improvement aspects keep me from giving it a perfect score.
For how long have I used the solution?
I have been using Radware Cloud WAF Service in my organization for three years.
What do I think about the stability of the solution?
Throughout the time we have used Radware Cloud WAF Service, it has been quite stable.
What do I think about the scalability of the solution?
Radware Cloud WAF Service's scalability has been good, as it has adapted quite well to my organization's growth.
How are customer service and support?
My experience with the technical support of Radware Cloud WAF Service has been positive, as the response has been quick.
When an incident occurs, a ticket is opened for Radware's technical support, and generally when it is urgent, it is done through a call. The response is usually immediate to create the case and from there carry out the corresponding review.
Which solution did I use previously and why did I switch?
I did not have the opportunity to manage another similar tool before using Radware Cloud WAF Service, as we have always had Radware Cloud WAF Service since I have been here.
How was the initial setup?
The technical side of the configuration has been simple, though I do not have the exact figure for costs.
What was our ROI?
I have seen a clear return on investment with Radware Cloud WAF Service in terms of saving time and resources because being a very solid tool, it does not require much attention, only during incidents.
What other advice do I have?
My advice to someone considering implementing Radware Cloud WAF Service in their organization is that it is a very good, robust tool, and they should take into consideration the support that I mentioned earlier. I would rate this solution nine out of ten.