Overview
Sublime's agentic platform stops more email attacks with less work. It's team of AI agents work like a digital SOC team in your environment, triaging and blocking advanced threats while adapting protections at adversary speed. It provides full transparency and automation by default, with control on demand for advanced teams, eliminating vendor bottlenecks or one-size-fits-all limits.
Get an AWS Private Offer and speak with the team at sales@sublimesecurity.com
Highlights
- By stopping more attacks and reducing false positives, Sublime delivers a superior autonomous AI experience that requires less work. For advanced teams, the platform is fully extensible, allowing you to author your own detections and hunt for threats with a level of precision that one-size-fits-all solutions can't.
- Block sophisticated threats (BEC, novel phishing, QR-based phishing) and reduce the false positives that waste time and disrupt workflows. Sublime's tailored protections deliver a demonstrably higher catch rate, validated by the world's most demanding security teams.
- Protect Microsoft 365 and Google Workspace accounts with no MX changes. Deploy in Sublime Cloud or self-host on AWS.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
Price per Mailbox | Annual price per mailbox starting at | $76.20 |
Vendor refund policy
We do not currently support refunds.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Sublime Security Support Policy can be found at
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
Customer reviews
AI assistant has boosted coding productivity and has streamlined context-aware documentation
What is our primary use case?
I use Sublime Security dictionary for synonyms and the assistant for code comments, documentation, and writing tasks.
The best features of Sublime Security that I appreciate the most are the hover mode, the configurable settings, and the UTF-8 support.
My thoughts on the AI agents, the autonomous security analyst, and the detection engineer in Sublime Security are that it is a semi-autonomous assistant that I can use to perform coding tasks beyond simple auto-complete. Context-aware chat, snippet management, and autonomous tasks are also available. In a window, LLM conversion that understands the full concept of the open files and project repository is also present.
What is most valuable?
Sublime Security has improved my organization and helped my business because of the optimizations and all the optimization techniques I use, including enabling long-term memory (LTM) and selective context sections and file folder context. Using commands such as right-clicking on folder files and adding them to the clip slot context has been beneficial.
Sublime Security helps save my business time and money by reducing 40% of the manual work and increasing IO operations.
What needs improvement?
In Sublime Security, areas with room for improvement include optimizations. I would like to improve the local memory and specific context selection. For volume, the system should stop reading every email to reduce volume. Thread summarization and intent-based sorting are available. One of my colleagues is working on that, but I know some of these improvements include privacy-first approaches and minimal attack surface considerations.
For how long have I used the solution?
I have been using Sublime Security for two years.
What do I think about the stability of the solution?
I find Sublime Security to be very stable. I rate it a seven to eight for stability, and I would rate it nine out of ten or ten out of ten for stability because of zero-crash performance, large file handling, startup speed, and a mature ecosystem.
What do I think about the scalability of the solution?
Sublime Security is very scalable. I use it and it handles massive file handling, low resource footprint, and parallel processing. I give it a rating of nine out of ten.
How are customer service and support?
I rate the technical support for Sublime Security a seven and a half out of ten.
Which solution did I use previously and why did I switch?
When I compare Sublime Security with other solutions or vendors, I think it is best for context-aware chat and long-term memory, as well as official GitHub integration and high-privacy local code completion. I have not tried another solution to compare.
What other advice do I have?
My thoughts on pricing for Sublime Security are that it is affordable and not cost-prohibitive.
I believe over 1,000 users across various institutions use Sublime Security, with thousands of people using it overall, though I do not have complete numbers.
Advanced phishing detection has improved inbox visibility but needs more customization options
What is our primary use case?
Sublime Security is used because one of my clients uses FortiMail for email security, and sometimes malicious emails pass through FortiMail . I was looking on the market for a third-party automation to analyze the emails after they arrive in my inbox. Sublime Security is easy to implement; it is simply an integration with the API, and then I can see what is happening after the message arrives in my inbox. I have two lines of defense with this approach: FortiMail before the message comes to my inbox, and Sublime Security after the message gets inside my inbox.
What is most valuable?
The best features of Sublime Security that I appreciate the most are advanced phishing detection, as the zero-day phishing attack detection is very powerful, along with deep email analysis and the examination of headers and language patterns.
Sublime Security has helped my organization by making the visibility of emails much clearer with real-time response after the email arrives in the inbox. It is easy to integrate, I can use it with Microsoft Defender for Endpoint , and the customization is very good.
What needs improvement?
In terms of areas where Sublime Security has room for improvement, I think the product is good overall. To make this product a ten out of ten, I think it needs more customization options.
For how long have I used the solution?
I have been using Sublime Security for four months as it is newly deployed for one of my customers.
What do I think about the stability of the solution?
I rate stability and confirm that Sublime Security is a stable product, giving it an eight out of ten.
What do I think about the scalability of the solution?
Regarding scalability, it is not yet scalable; however, in the next few years, as it is not a traditional email security solution, I think it will be over time, as it is a perfect solution.
How are customer service and support?
I rate technical support from one to ten, though I have not needed them, so I cannot provide a reliable rating based on personal experience. However, some of my colleagues say they respond very quickly.
How was the initial setup?
The deployment is not complex, but it is also not easy; I would say it is at a medium level. Sublime Security has materials available on the internet where I can find documentation for the product.
Which other solutions did I evaluate?
I compare Sublime Security with other vendors and I think it has more features than other vendors. I think Sublime Security is the only one in the market that integrates with the API so easily, offering visibility for all emails, all detections, and all responses, covering everything that happened in my email.
What other advice do I have?
My thoughts on the AI Agents for detection are that I am currently trying to review all of its engines. I have put all the engines in the default mode or learning mode to understand how they interact with the messages.
Regarding the AI, I do not use it, but I have opened the ODL, the detection engine, and while I am not using it, I am trying to understand what can be added to the email security.
I think Sublime Security currently blocks approximately seventeen to eighteen percent of malicious emails. There are no issues with the email system as FortiMail blocks much before Sublime Security does.
In my company, three specialists work with Sublime Security.
My clients are medium-sized businesses and medium enterprises.
So far, the solution does not require maintenance.
I give this review an overall rating of seven point five out of ten. I recommend Sublime Security to others looking to implement this product.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Advanced email protection has enabled us to safeguard partners and reduce costly phishing risks
What is our primary use case?
Our main use case is two-fold. Primarily, as a channel partner, our core focus is channel enablement. We actively pitch, demonstrate, and distribute Sublime Security to our partner network, who then deploy it for end-user organizations. Secondarily, we 'drink our own champagne' by running it internally to protect our own business communications.
When we position it to our partners, we frame it as an advanced email security platform. It goes far beyond traditional junk filtering by actively hunting the sophisticated threats that bypass native defenses—specifically Business Email Compromise (BEC), CEO fraud, invoice scams, fake login pages, and malware attachments.
How has it helped my organization?
As a distributor, the positive impact for us is measured by how well the product performs for our partners and their end-users. Sublime Security has been a major positive because it perfectly fits our criteria for 'best-in-breed' solutions. Specifically, it delivers strong ROI, saves employee time, and significantly reduces risk exposure by preventing expensive breaches. Because it checks all these boxes, we've been able to successfully enable our partners across all our regions to confidently take it to market.
Another major positive is its deployment model. In today's cybersecurity landscape, 'rip-and-replace' is a massive hurdle for buyers. Sublime works flawlessly with existing tools, enhancing a customer's current stack rather than forcing them to rebuild it.
What is most valuable?
The standout features of Sublime Security revolve around its ability to catch advanced threats that bypass native defenses. Specifically, it excels at blocking malware attachments and stopping Business Email Compromise (BEC), such as CEO fraud and invoice scams.
A major advantage is its fast time-to-value because it isn't a rip-and-replace solution. Instead, it acts as a 'smarter layer' that enhances existing protections like Microsoft 365 or Google Workspace. While native security catches the obvious junk, Sublime uses flexible, customizable detection logic to catch the highly sophisticated attacks that easily slip through standard filters.
Finally, the platform gives you deep visibility and fast search capabilities across all email activity. Without a tool like this, investigations take far too long, and teams lack visibility into what actually breached the inbox. Sublime solves this by offering rapid detection, automated response actions, and the ability to quickly remove malicious emails in bulk.
What needs improvement?
Based on the feedback we receive from our partners and their end-users, there are two main areas for improvement: the learning curve and pricing for smaller organizations. First, while the platform is incredibly powerful, it isn't simply 'plug-and-play.' Security teams need to invest time into learning the product to extract its full value.
Second, the cost can feel a bit steep for small-to-medium-sized businesses (SMBs). However, we always caveat this by looking at the ROI: a single breach could put a small company completely out of business. While the upfront cost might seem high to them, preventing just one catastrophic breach means the tool instantly pays for itself.
For how long have I used the solution?
I have been using the solution for eighteen months.
What other advice do I have?
On a scale of one to ten, I rate Sublime Security a nine out of ten because I believe there are a couple of negatives regarding scalability for catering to enterprise and small to medium enterprises. Additionally, the product requires a learning phase, and it is not readily usable right away.
Sublime Security merits this rating because of a couple of changes that need to be addressed. If it catered to both small and enterprise businesses on a pricing scale, it would receive a ten, but it is not far away.