Overview
Prowler Overview Dashboard 1/3
Prowler Overview Dashboard 1/3
Prowler Overview Dashboard 2/3
Prowler Overview Dashboard 3/3
Prowler Compliance Dashboard

Product video
Prowler Cloud makes AWS Security easy and enables your team to build trusted applications. With Prowler Cloud, you will get the benefits of Prowler Open Source and you will get continuous monitoring, faster execution, personalized support, and visualization of your data with customizable dashboards.
READ THIS TO COMPLETE YOUR ONBOARDING PROCESS
After you have subscribed to the Prowler Cloud product, you will need to set up your Prowler Cloud account. Please refer to the following guide to complete the registration process: https://docs.prowler.com/cloud/aws-marketplace/
Highlights
- Get results in minutes: Prowler gives you continuous monitoring and parallel scans per account which means you get data faster.
- Get the best of Prowler Open Source plus enterprise-grade support and dashboards for compliance and security: By going with Prowler Cloud, you can visualize your data in a variety of easy-to-read, customizable dashboards and receive personalized support and training.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Trust Center
Financing for AWS Marketplace purchases
Security credentials achieved
(1)

Pricing
Free trial
Dimension | Description | Cost/unit |
|---|---|---|
Only for legacy Prowler SaaS. | Legacy customers only | $0.01 |
Number of resources monitored monthly by Prowler Cloud (legacy only). | Legacy customers only | $0.30 |
Number of resources scanned monthly by Prowler Cloud (legacy only). | Legacy customers only | $0.03 |
Cloud accounts monitored monthly by Prowler Cloud. | For all new subscriptions. Upto 50K resources per subscription. | $99.00 |
Resources greater than 50K per subscription. | For all new subscriptions | $0.30 |
Vendor refund policy
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
FedRAMP
GDPR
HIPAA
ISO/IEC 27001
PCI DSS
SOC 2 Type 2
Standard contract
Customer reviews
Automated checks have cut audit effort and ensure our cloud stays compliant and misconfigurations visible
What is our primary use case?
We are currently building a SaaS platform, and in production, we have integrated Prowler. When a CISO audit came for that SaaS platform, we downloaded the report from Prowler and sent it to that CISO. Through this approach, we have achieved compliance without logging into cloud accounts. At one time, we discovered that our public S3 buckets were publicly open; using Prowler, we found out that our public buckets were open, and after that, we disabled them to secure our cloud environment.
We are not using Prowler day-to-day, but we use it when creating a new cloud account or a new environment. After that, we integrate Prowler, check the configuration, and any time an audit comes, we go to Prowler, download any compliance report we need, and send it to the auditors.
What is most valuable?
The agent setup is very smooth; you don't have to do anything complicated. We got CloudFront and CloudStack script; we just have to deploy that and create the policies and roles by itself. After creating that, we just give the external ID for Prowler to access our cloud environment. It is very smooth and easy to set up. After checking all the configurations, Prowler builds the attack map, which shows how hackers might attack our resources using that map, making it very useful for us.
Before using Prowler, we were spending hours of our engineers' efforts on compliance and misconfiguration checks, saving that configuration in Excel sheets. After switching to Prowler, these processes are super smooth and easy, and we are currently saving our engineers' time. We can also do audits on time, ensuring we don't miss deadlines on audits.
Prowler definitely results in faster audits and eliminates human errors, with our engineers saving fifty to sixty percent of the time they previously spent on misconfiguration checks.
What needs improvement?
One feature Prowler can improve is providing PDFs for all the compliances, which would be very useful for users. Also, after identifying misconfigurations, Prowler should have a remediate button so that when using Prowler, we can apply those fixes automatically without going to the cloud and fixing them manually.
What other advice do I have?
The output from Prowler's AI is eighty to ninety percent accurate, and I find it to be ninety-five percent reliable.
My advice for those looking into using Prowler is that small teams or big teams dealing with compliance, or even teams spending hours of engineers' efforts or millions of dollars on compliance, can use Prowler and make their cloud compliant. Everyone can benefit from Prowler, whether you are a small team or a big team, especially if you are investing significant effort and resources in compliance. Prowler is a super useful open-source product to have. I rate this product a nine out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Continuous security scans have reduced vulnerabilities and improved compliance in our cloud workloads
What is our primary use case?
My main use case for Prowler is identifying the vulnerabilities in an infrastructure hosted on AWS .
A quick specific example of how I used Prowler to identify vulnerabilities is that in our code build hosted on AWS , we had secrets in plain text that should have been in secrets manager, so it helped us identify the vulnerability that could have caused major problems.
What is most valuable?
The best features Prowler offers include its ability to help us identify vulnerabilities first, which in turn helps us fix them frequently.
When it comes to identifying vulnerabilities, the specific scanning capabilities and reporting features in Prowler that stand out for me are that the findings are presented in a well-documented report.
Prowler has positively impacted my organization by helping us on the security front by improving compliance.
What needs improvement?
Some of the findings in Prowler are not that critical but come in the critical category, so that could be improved. The categorization of vulnerabilities could be improved.
For how long have I used the solution?
I have used Prowler for an extended period.
What do I think about the stability of the solution?
Prowler is stable.
What do I think about the scalability of the solution?
Prowler's scalability is good.
How are customer service and support?
Prowler's customer support is good.
What was our ROI?
I have seen a return on investment as compliance has been improved.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing is positive.
What other advice do I have?
Prowler is a good software; I recommend it. It helps reduce vulnerabilities. On a scale of one to ten, I would rate Prowler an eight because of the features and limitations mentioned above. I give it this rating because it is a good software that helps reduce vulnerabilities.