Listing Thumbnail

    Aqua Security Cloud Native Application Protection Platform

     Info
    Vendor Insights
    Aqua Security enables AWS customers to innovate, accelerate, and scale their application modernization goals securely. Protect all AWS Workloads and the entire application lifecycle by automating image scans and enforcing security standards across development and runtime environments, reducing vulnerabilities, preventing, and stopping attacks, and identifying and mitigate unsafe LLM use through AI-Guided Remediation.
    Listing Thumbnail

    Aqua Security Cloud Native Application Protection Platform

     Info

    Overview

    Play video

    Aqua Security is a Cloud Native Application Protection Platform (CNAPP) solution that secures your AWS Workloads and applications from day one and protects them in real time. With its fully integrated security and compliance capabilities, you can discover, assess, prioritize, and reduce risk within minutes across the entire software development lifecycle, while automating prevention, detection, and response with AI-Guided remediation: Aqua Security helps AWS customers Accelerate Customer Application Modernization Securely.

    *Monitor and mitigate threats throughout every phase of your software development lifecycle (SDLC), secure every link in your software supply chain to maintain code integrity, and achieve complete visibility across your AWS environments in minutes.

    *Detect, prioritize, and remediate misconfigurations and other security risks in your AWS cloud accounts while contextualizing risks with a unified view across your AWS infrastructure and running workloads.

    *Protect all AWS workloads (EKS, ECS, Fargate, Lambda, Graviton) in real-time with granular controls that prevent attacks while ensuring business continuity, and seamlessly secure your AWS workloads using a single platform.

    *Ensure secure application development and runtime protection by addressing OWASP Top 10 vulnerabilities for LLM applications. Identify and mitigate unsafe LLM use, runtime protection to detect and remediate LLM-related issues, GenAI assurance policies to ensure safe usage of LLM-powered applications.

    See the Aqua platform in action? Book a demo here: https://www.aquasec.com/demo/ 

    Highlights

    • End-to-End Software Supply Chain Security: Protect your AWS build and artifact pipelines from risks associated with third-party artifacts, open-source dependencies, and malicious actors targeting developer tools and environments. Gen-AI advanced code scanning technology to identify and mitigate unsafe use of LLM in application code.
    • Robust Runtime Protection: Prevent configuration drift, ensure immutability, and precisely block attacks across virtual machines (VMs), containers, and serverless workloads running on Amazon ECS, Amazon EKS, AWS Lambda, AWS Fargate, and AWS Graviton using real-time behavioral detection. Runtime protection capabilities actively monitor LLM-powered application workloads and prevent unauthorized actions that LLMs might attempt.
    • Unified Platform for Full Lifecycle Security: The most comprehensive, fully integrated CNAPP to monitor, prioritize, and mitigate security risks across the entire SDLC, stopping critical threats and attacks in real time.

    Details

    Delivery method

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (4)

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Aqua Security Cloud Native Application Protection Platform

     Info
    Pricing is based on contract duration. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.

    12-month contract (3)

     Info
    Dimension
    Description
    Cost/12 months
    Aqua Platform Shift Left
    Standard Plan
    $50,000.00
    Aqua Platform Protect
    Advanced Plan
    $100,000.00
    Aqua Platform Ultimate
    Ultimate Plan
    $150,000.00

    Vendor refund policy

    All software, maintenance and support are provided subject to the terms and conditions of the Aqua Security Inc. License Agreement.

    Custom pricing options

    Find a fit for enterprise or unique needs with a private offer.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Container Workloads
    Top
    25
    In Monitoring, Application Development
    Top
    25
    In IT Business Management

    Customer reviews

     Info
    AI generated sentiment from actual customer reviews on AWS and G2
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    End-to-End Software Supply Chain Security
    Protect your AWS build and artifact pipelines from risks associated with third-party artifacts, open-source dependencies, and malicious actors targeting developer tools and environments. Gen-AI advanced code scanning technology to identify and mitigate unsafe use of LLM in application code.
    Robust Runtime Protection
    Prevent configuration drift, ensure immutability, and precisely block attacks across virtual machines (VMs), containers, and serverless workloads running on Amazon ECS, Amazon EKS, AWS Lambda, AWS Fargate, and AWS Graviton using real-time behavioral detection. Runtime protection capabilities actively monitor LLM-powered application workloads and prevent unauthorized actions that LLMs might attempt.
    Unified Platform for Full Lifecycle Security
    The most comprehensive, fully integrated CNAPP to monitor, prioritize, and mitigate security risks across the entire SDLC, stopping critical threats and attacks in real time.
    Vulnerability Scanning
    Detect, prioritize, and remediate misconfigurations and other security risks in your AWS cloud accounts while contextualizing risks with a unified view across your AWS infrastructure and running workloads.
    OWASP Top 10 Vulnerability Remediation
    Ensure secure application development and runtime protection by addressing OWASP Top 10 vulnerabilities for LLM applications. Identify and mitigate unsafe LLM use, runtime protection to detect and remediate LLM-related issues, GenAI assurance policies to ensure safe usage of LLM-powered applications.
    Agentless Cloud Security
    Provides deep and wide visibility into the cloud environment without requiring agents using patented SideScanning™ technology
    Risk Prioritization
    Applies a granular risk score to each alert and recognizes when seemingly unrelated issues can be combined to create dangerous attack paths
    Full SDLC Security
    Seamlessly integrates into the CI/CD process to secure applications from code to cloud and back
    AI-Powered
    Leverages Generative AI for simplified investigations and accelerated remediation, reducing required skill levels and saving time and effort
    Unified CNAPP Platform
    Unifies various security solutions including CSPM, CWPP, CIEM, DSPM, Container security, API security, AI-SPM in a single platform
    Automated Evidence Collection
    Automated collection of audit evidence through more than 100+ integrations with core services such as AWS, Asana, Azure, G Suite, Google Cloud, Github, Gusto, JAMF, Okta and Slack
    Customizable Security Policies
    Prebuilt security policy templates that can be edited to meet the organization's specific needs and ensure they meet the high standards of an auditor or regulatory framework
    Scalable Platform
    Ability to support unique setups with multiple cloud service providers and hundreds of instances, scaling with the business
    Machine Learning-powered Questionnaires
    Secureframe's machine learning-powered solution that makes it fast and easy to respond to RFPs and security questionnaires by pulling the best answer for each question based on approved past responses
    Dedicated Compliance Expert
    Every customer is assigned a dedicated compliance expert, an ex-auditor who can help answer complicated and specific questions that come up, especially during the audit process

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    -
    -
    No security profile

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    57 external reviews
    External reviews are sourced from G2  and are not included in the star rating for this product.
    Nir H.

    Software Engineer Manager

    Reviewed on Nov 15, 2024
    Review provided by G2
    What do you like best about the product?
    It helps to detect security issues in our code that need to be handle before it will be too late.
    I like the insight it gives.
    What do you dislike about the product?
    Nothing really . Love this product. Great product
    What problems is the product solving and how is that benefiting you?
    It helps protecting our apps from different bot attacks
    Computer Software

    Aqua goes above and beyond

    Reviewed on Nov 15, 2024
    Review provided by G2
    What do you like best about the product?
    The breadth and depth of features along with the research provided by their world class research org has helped me tremendously in securing the products I support both internally and in external production.
    What do you dislike about the product?
    I wish the API documentation was a bit more thorough.
    What problems is the product solving and how is that benefiting you?
    Finding critical, high, and medium CVEs and help us get into regulatory compliance, finding vulnerabilities that our other scanning tools weren't able to.
    Toshal K.

    Excellent tool

    Reviewed on Nov 14, 2024
    Review provided by G2
    What do you like best about the product?
    It's has good set of features and good for .y container security needs
    What do you dislike about the product?
    I have Not really observed much of issues
    What problems is the product solving and how is that benefiting you?
    Security needs for my container application
    jesse g.

    DevOps engineer

    Reviewed on Nov 14, 2024
    Review provided by G2
    What do you like best about the product?
    Very performant. We throw so much load at the scanners and rarely see issues
    What do you dislike about the product?
    API is lacking to search for images. It should be easier
    What problems is the product solving and how is that benefiting you?
    Our compliance
    Financial Services

    Full deployment

    Reviewed on Nov 13, 2024
    Review provided by G2
    What do you like best about the product?
    The ease of deployment and the capability to look and protect the entire attack for code to runtime.
    What do you dislike about the product?
    Documentation can be little clearer. Have to search and perform trial and error.
    What problems is the product solving and how is that benefiting you?
    Detection of risk in images as welll as full runtime protection.
    View all reviews