DataSunrise Security secures databases and data in real-time. DataSunrise includes Database Activity Monitoring (DAM), Dynamic Data Masking, Static Data Masking, Sensitive Data Discovery, Compliance Automation and Vulnerability Assessment. DataSunrise secures all major SQL and NoSQL databases, data-warehouses and data lakes on AWS: all RDS database engines(PostgreSQL, MySQL, MariaDB, Oracle, MSSQL), Amazon Aurora, DynamoDB, Redshift, Athena, Elasticsearch, S3. DataSunrise secures other databases such as SAP HANA,Oracle, Cassandra, Impala, Heroku, DB2, Greenplum, MongoDB, Netezza, Hive, Vertica. DataSunrise enables PII and PHI data protection, auditing, discovery, compliance with privacy law,SOX, HIPAA, ISO27001, PCI or GDPR. DataSunrise gives customers full and granular control over security of sensitive data, access to data and databases and automated compliance policies.
DataSunrise empowers organizations when moving their databases workload to db managed services, preserves same level of data security and data auditing. DataSunrise High-Availability, Autoscaling and Failover for AWS, all available DataSunrise instances monitored and configured from a single console. Authentication proxy, Active Directory and LDAP support. Integration with CloudWatch and IAM and SIEM.
Highlights
Why Take Chances with Database Security. Ultimate Database Security isn't optional
Secure and mask data, and control of all activity and DAM in RDS, Redshift or other databases
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
This listing uses one usage-based pricing dimension. You pay by the hour for each protected database instance. Billing scales with two factors: how many database instances you protect and how many hours they run. There are no tiers or fixed commitments. Costs rise or fall as you add or remove protected instances over time. The software deploys on ECS as a proxy, so hourly charges track your actual protection footprint rather than a set subscription. This keeps pricing directly tied to your usage.
Top-of-mind questions for buyers
What counts as one protected database instance for hourly billing?
One protected database instance is a single database that DataSunrise monitors through its proxy. Each database you connect and protect counts separately. The count reflects how many databases the software actively guards, not the number of ECS containers or physical hosts they run on.
Am I charged when a protected database instance is stopped or not receiving traffic?
Charges apply per protected database instance per hour while it is configured and running under DataSunrise protection. If you remove an instance from protection, its hourly charge stops. Costs track the number of instances actively protected and the hours they run, not query volume through the proxy.
How does my bill change as I add or remove protected databases over time?
Your bill scales directly with two factors: how many database instances you protect and how many hours each runs. Adding an instance raises the hourly rate applied to your account. Removing one lowers it. There are no tiers or commitments, so cost follows your protection footprint.
www.datasunrise.com
Helpful?
Vendor refund policy
30 days trial
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Rule-based monitoring has strengthened real-time protection against SQL injection attacks
Reviewed on Jul 14, 2026
Review provided by PeerSpot
What is our primary use case?
I use DataSunrise Database Security mainly for rule-based blocking of SQL injection, which provides a profound level of data security when it comes to securing the database.
For example, I was using a microservices architecture with my back-end database on Azure SQL. I implemented a rule stating that only respective IPs are whitelisted for members of the database security admins, meaning that only some of the security admins can directly launch DataSunrise. Additionally, I created rules to inspect SQL injections based on the pattern of the SQL data.
I was only using DataSunrise Database Security on the database fronting layer to detect and block SQL injection and some other rules. Most of my configuration has focused on the SQL injection part and rules related to database admins logging in.
What is most valuable?
One of the best features DataSunrise Database Security offers is real-time blocking. It also monitors database health very precisely, meaning all queries in my scenario function like a proxy where a database monitoring tool exists. This monitoring has handled any suspicious queries being injected by the application very smoothly.
The real-time blocking and database health monitoring have helped my team on a day-to-day basis, as it was a requirement from my organization to have a database activity monitoring tool. I reviewed Imperva and DataSunrise, and since Imperva does not have the proxy layer feature for microservices, I chose DataSunrise to act as a proxy.
Feature-wise, DataSunrise Database Security is a base monitoring tool, and it has all other features including metrics monitoring. Most crucially, it is used to track the queries initiated by the application, and based on the rules I set, it will either block, allow, or log what kind of database query has been run from the application side.
DataSunrise Database Security has positively impacted my organization, as it acts as a proxy. I was looking for a device or tool for proxy use, and although I gathered information for Imperva, it unfortunately did not work. So far, it has had a very positive impact where my databases are purely monitored via DataSunrise.
What needs improvement?
I believe the product features are good so far, but I experienced some issues. When I upgraded to a newer version, there were some bugs found that were not resolved. Therefore, I would assume that DataSunrise can improve their quality checks before releasing a new version.
I would like to see improvements mainly in support and documentation, as whenever I contact DataSunrise support, the support team is not fully aware of the new features or version revision histories. The documentation has been vague and not well done. I think DataSunrise as a product is still in the initial stage where there are many improvements that can be made regarding documentation and support.
For how long have I used the solution?
I have been using DataSunrise Database Security for more than two years.
What do I think about the stability of the solution?
Since using DataSunrise Database Security, the only query-based inspection outcome I have seen so far is more focused. There was nothing related to any time saved or measurable improvements. As this tool is specifically a security tool designed to analyze all database activity, it has helped a lot in that scenario.
What other advice do I have?
I would advise others looking into using DataSunrise Database Security to consider it a good product. I rated this review an eight out of ten.
Kongkham Singh
Unified masking and discovery have protected sensitive data across hybrid production copies
Reviewed on Feb 23, 2026
Review provided by PeerSpot
What is our primary use case?
I use DataSunrise Database Security for data masking purposes in my environment. I manage a lot of production systems for different applications, and whenever teams need to copy production databases including sensitive information such as PII, PHI, or PCI to non-production environments, I apply masking to those sensitive fields and protect the data from unauthorized users.
I leverage DataSunrise Database Security for data discovery, which is another method I use to find sensitive data.
What is most valuable?
I appreciate many features, including real-time database activity monitoring and auditing.
In my environment, I manage numerous production systems for different applications. When teams need to copy production databases containing sensitive information such as PII, PHI, or PCI to non-production environments, I apply masking to those sensitive fields and protect the data from unauthorized users.
DataSunrise Database Security's data discovery capability is another valuable tool I use to identify sensitive data.
For how long have I used the solution?
I have been using DataSunrise Database Security for approximately two and a half years.
What other advice do I have?
My advice to others considering DataSunrise Database Security is that it is a good and unified tool. Overall, it is a very good.
reviewer2335380
Useful for monitoring database activities but improvement is needed in distributor networks
Reviewed on Feb 23, 2024
Review provided by PeerSpot
What is our primary use case?
Most of our users, including customers, use it primarily as a Database Activity Monitor. They utilize it to track who is logging into which database and monitor their activities. This includes tasks such as restricting certain SQL commands and understanding environmental limits related to database access.
What is most valuable?
We have a law in Turkey similar to the GDPR in the European Union. It's almost like a replica. Complying with this law is crucial, and the service plays a significant role. Many customer inquiries revolve around not retaining their data. The service addresses this by providing functionality for masking data within the databases. So, if a user requests data deletion, we can remove any information we have on them within the database, ensuring compliance with the law.
The discovery and masking features, encompassing both static and dynamic database masking, are incredibly useful for ensuring compliance. Most of the time, not everyone accessing the database is a developer or a database admin. Developers might need to see everything, but database admins, even though they manage the database, don't necessarily need to see all the data, especially customer data. So, using masking for database admins and not displaying data in clear text is quite helpful for compliance.
What needs improvement?
I believe there's room for improvement in their distributor network, especially in Turkey. This is why I was exploring alternatives to DataSunrise Database Security. However, the product itself is quite good. One suggestion for enhancement could be adding an encryption module on top of the masking features, perhaps a more permanent form of preservative encryption.
It functions as a proxy for database access. However, this could be an area for improvement. Currently, it doesn't use agents to integrate with databases; instead, all database instances must connect through DataSunrise Database Security as a proxy. While this setup is mostly done on our Windows server, using an agent approach might sometimes be more convenient for companies compared to a proxy approach.
What do I think about the stability of the solution?
I rate the tool's stability a ten out of ten. I haven't encountered any issues.
What do I think about the scalability of the solution?
I rate the tool's scalability an eight out of ten. I find it quite agile, and it can scale up. However, the agentless and proxy approach does pose limitations on scalability. Adapting existing infrastructure to work with the proxy setup requires modifications. The largest implementation we've done involved around 150 database admins, developers, and similar roles.
How are customer service and support?
The distributor network in Turkey handles the support, and unfortunately, we are quite dissatisfied with them. While I believe the support team from DataSunrise Database Security itself is likely good, we don't have direct contact with them, making it challenging for me to provide an accurate judgment. However, based on our experience with the distributor, I would rate it a minus one.
How was the initial setup?
The tool's deployment is easy. The deployment duration depends on the size of the infrastructure we're dealing with. For a smaller setup with just a couple of database instances, it usually takes about a week at most, perhaps even a couple of days depending on the specific requirements and the process of setting up the service.
What's my experience with pricing, setup cost, and licensing?