Fig leads Security Operations Resilience - keeping detection and response working through constant change. Fig finds and fixes broken security flows across your entire SecOps stack and lets you quickly simulate and deploy planned changes. With Fig, change powers the SOC instead of breaking it.
Change is the constant pressure on every SOC. Unplanned Drift quietly breaks detections, while intentional improvements slow to a crawl out of fear of disrupting production. Fig addresses both with Security Operations Resilience - the only approach that keeps detection and response working through any kind of change. Drift is surfaced the moment it occurs, revealing impact and root cause with safe remediation before damage spreads. Planned initiatives can be designed, simulated, and deployed with full control and rollback. The result is operational resilience: a SOC that runs at full capacity as everything around it changes. Teams ship faster without risk, design and deploy from one place across any infrastructure, eliminate endless data plumbing, stay motivated by focusing on real security work, and expand coverage without Drift quietly eroding it. With Security Operations Resilience, Fig is creating a future where change powers the SOC instead of breaking it.
Highlights
For Drift - connect instantly with zero friction. Fig immediately reveals your entire infrastructure end to end for the first time through continuous observability of security data lineage. You see the health of every detection flow at a glance. You are alerted the moment anything threatens your ability to detect or respond. You see the impact and root cause instantly. Then you review the recommended fix, test-drive it safely, and remediate - risk free.
For Planned Change - turn your plans into complete, accurate, safe changes at full speed. You work with the full context of whats in your environment, and you know nothing is going to break. You say what you want to do, and Fig shows you the exact set of changes, simulates them so you know they will behave exactly as expected, and lets you push them to production in one click with full version control and instant rollback.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This contract charges by the number of active data sources you connect. Fig integrates with your existing security operations stack through a single read-only integration. Each data source you map into the platform counts as one billable unit. Your cost scales directly with how many data sources you keep active. Add more sources and your total rises; keep fewer and it stays lower. This is a single usage dimension, not a set of tiers or plans. You choose the quantity to match your environment.
Top-of-mind questions for buyers
What counts as one active data source for billing?
A data source is any part of your security operations stack that Fig maps through its read-only integration. Each connected system Fig actively tracks counts as one billable unit. This includes the tools that feed and process your detection and response data. Only sources you keep active are counted.
What happens to my cost if I add or remove data sources during the contract?
Your cost tracks the number of active data sources. Adding a source raises the count and your total. Disconnecting a source lowers the active count. Because Fig connects through a single read-only integration, you can adjust which parts of your stack it maps to match your environment.
Does the type of security tooling I connect change what I pay per data source?
No. Fig prices by the count of active data sources, not by tool type. It integrates with your existing infrastructure regardless of which platforms you run. Each active source counts the same way toward your total, so the mix of tools you connect does not affect the per-unit charge.
www.fig.security
Helpful?
Vendor refund policy
All sales of Fig on the AWS Marketplace are final, and no refunds will be issued once a subscription period has begun. We encourage customers to review all product information before purchase. If you believe there has been a billing error, please contact our support team immediately.
For any billing inquiries or to report a potential error, please contact billing@fig.security
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Our team is available to assist with all technical questions and platform support inquiries. We provide 24x7 support for critical (P1) issues affecting your production environment and standard business hour support (9 AM - 5 PM ET, Mon-Fri) for all other requests. All customers also receive full access to our online knowledge base and product documentation.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Accelerate legacy application refactoring by 40%+ with our AI-powered delivery model. We combine expert engineering with vFunction, AWS Transform and AWS Kiro to decompose monoliths and port .NET and Java workloads to AWS Containers and Managed Databases.
Ten‑day engagement that analyses your monolithic apps, scores cloud‑readiness and delivers a phased AWS modernisation roadmap—covering refactor, re‑platform or strangler‑fig microservices patterns
Teamvoy modernizes legacy applications and platforms into cloud-native AWS architectures for mid-market fintech, healthcare, and manufacturing companies. We decompose monoliths into microservices, adopt serverless and containerized compute, and embed AI and LLM capabilities via Amazon Bedrock — transforming workloads rather than simply moving them.
Transform legacy monolithic applications into scalable, cloud-native architectures on AWS. Applying Consulting delivers two levels of modernization: managed services optimization (Level 1) and microservices/serverless decoupling (Level 2), with zero big-bang disruptions.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.