Listing Thumbnail

    Red Canary Managed Detection and Response

     Info
    Deployed on AWS
    Vendor Insights
    Red Canary detects and stops threats 24x7 across your endpoints, network, cloud, identities and SaaS applications.

    Overview

    Red Canary gives customers the confidence they need with unmatched, actionable intelligence and 24x7 expert response to stay ahead of adversarial threats. With customer-validated 99% threat detection accuracy, security teams can focus on the threats that matter instead of wasting time on noise. With a combination of actionable threat profiles, intel-driven analytics, and specific response and remediation recommendations, your team can make better decisions and prioritize resources according to the most relevant threats to your organization. Features:

    • 24/7/365 expert investigation of potential threats
    • Advanced threat detection
    • Global threat intelligence team
    • Continuous threat hunting
    • Proactive response and remediation

    Highlights

    • Unmatched threat detection accuracy, Red Canary helps protect your endpoints, network, cloud, identity and SaaS applciations.
    • Actionable threat intelligence with on-demand adversary insights and expert collaboration so you can stay ahead of threats.
    • Guided, automated or human-led 24/7 expert response so you can focus on your business objectives instead of the next cybersecurity event.

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (2)

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Red Canary Managed Detection and Response

     Info
    Pricing is based on the duration and terms of your contract with the vendor, and additional usage. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. Usage-based pricing is in effect for overages or additional usage not covered in the contract. These charges are applied on top of the contract price. If you choose not to renew or replace your contract before the contract end date, access to your entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (4)

     Info
    Dimension
    Description
    Cost/12 months
    Overage cost
    Endpoint
    Computer or instance running Windows, MacOS, or Linux
    $120.00
    Account
    User account
    $100.00
    Resource
    Cloud resource
    $250.00
    Network
    Network coverage
    $20.00

    Vendor refund policy

    No refunds

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    50
    In Security Observability, Device Security
    Top
    100
    In Security

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Threat Detection
    Advanced machine learning and behavioral analytics for comprehensive security monitoring across endpoints, network, cloud, and SaaS applications
    Continuous Monitoring
    24/7/365 expert investigation and continuous threat hunting with real-time threat detection capabilities
    Threat Intelligence
    Global threat intelligence team providing actionable threat profiles and intel-driven analytics for proactive security
    Incident Response
    Automated and human-led response with specific remediation recommendations and expert collaboration
    Multi-Vector Protection
    Comprehensive security coverage across endpoints, network, cloud, identities, and SaaS application environments
    Threat Monitoring
    Comprehensive 24x7 monitoring across networks, endpoints, and cloud environments for detecting cyber threats
    Incident Response
    Rapid detection and mitigation of critical security incidents with guided response mechanisms
    Security Team Expertise
    Dedicated security experts with specialized cloud security knowledge providing advanced threat investigation
    Multi-Environment Coverage
    Integrated security monitoring spanning network, endpoint, and cloud infrastructure platforms
    Continuous Security Analysis
    Real-time threat detection and risk assessment using advanced monitoring technologies
    Threat Detection and Response
    Advanced Managed Detection & Response (MDR) with 24x7x365 monitoring and precision threat response capabilities
    Security Operations Technology Stack
    Curated industry-leading SOC technologies integrating AWS, Splunk, and foundational security tools
    Security Posture Assessment
    Proprietary Dynamic Risk Scoring alert engine with quantitative analysis and industry benchmarking
    Endpoint Security Management
    Comprehensive Managed Endpoint Detection & Response (MEDR) with continuous monitoring
    Vulnerability Management
    Proactive vulnerability scanning and management with dedicated security expertise

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    No security profile
    No security profile

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    126 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Hospital & Health Care

    Excellent Documentation and Support, but Needs Better Automation for Re-activating Devices

    Reviewed on Oct 17, 2025
    Review provided by G2
    What do you like best about the product?
    The documentation for this tool is excellent. Whenever I have a question, I can almost always find the answer there. On the rare occasions when the documentation doesn't cover my issue, the support team is fantastic. They respond quickly and are always very helpful.
    What do you dislike about the product?
    I wish Red Canary would allow customers to create a playbook for automating the re-activation of decommissioned computers that reappear on the network, rather than having to handle each one individually. The current process is very time-consuming.
    What problems is the product solving and how is that benefiting you?
    Red Canary responds rapidly to potential issues, promptly notifying us whenever there is a concern with an account, system, or a user's login location. This helps ensure that we do not overlook anything important, even when we are monitoring things on our own.
    Insurance

    Excellent MDR, Transparent Sales Process, Minor Support and Alert Delays

    Reviewed on Oct 15, 2025
    Review provided by G2
    What do you like best about the product?
    Overall, this is a very good MDR solution. Communication about their roadmap, internal processes, and threat intelligence is clear and informative. Their blog is also excellent, providing valuable information. A few points stand out to me: The initial sales and POC process was handled very professionally, they were transparent about any issues or unknowns and never tried to hide anything. The setup and rollout were seamless and straightforward. Integrations are simple to manage. I appreciate being able to view some of the detection logic, which is extremely helpful when troubleshooting or checking if a specific detection exists. Automation is both easy to configure and highly customizable. Although we no longer use it, the Red Canary Linux agent performed very well, with minimal overhead and solid telemetry, though I do wish there had been more visibility into that telemetry.
    What do you dislike about the product?
    1. Sometimes the level 1 support has been underwhelming, but it has been rare.
    2. Sometimes the time to raise an alert takes longer than expected. Not common, but has occurred more than once.
    3. Not able to create custom detections (at least I am not aware of that functionality).
    What problems is the product solving and how is that benefiting you?
    An excellent MDR augmenting our SOC at all levels, as well as providing their own detections and threat intelligence.
    Higher Education

    Great Overall, But Monthly Check-Ins Are Too Frequent

    Reviewed on Oct 14, 2025
    Review provided by G2
    What do you like best about the product?
    Playbooks to notify or act upon certain conditions.
    What do you dislike about the product?
    Monthly touching base. Every other month would be better.
    What problems is the product solving and how is that benefiting you?
    Providing 24/7 monitoring of our EDR environment.
    Kris F.

    Easy Onboarding and Excellent Support with Red Canary

    Reviewed on Oct 14, 2025
    Review provided by G2
    What do you like best about the product?
    Getting started with Red Canary was relatively simple and straightforward. Working with the Red Canary team has been an overall positive experience and the customer service has been outstanding. Though we are still learning product, and refining our internal response processes, we are still gaining valuable insight on the alerts that are published. The information is compiled from the alerting sources is easy to access and helps us from having to traverse multiple consoles and dashboards. The new 'investigations' link, provided in the Threat portal takes us directly to the 'inner workings' of the Red Canary 'magic'. So far, we are pleased with the Red Canary team and their product. It's an improvement from the solution from which we migrated.
    What do you dislike about the product?
    Navigation does take some getting used to. We would like to see FreshDesk support, in the future.
    What problems is the product solving and how is that benefiting you?
    No ongoing issues at the moment.
    Manufacturing

    Red Canary has every one of your sides

    Reviewed on Aug 27, 2025
    Review provided by G2
    What do you like best about the product?
    Red Canary's support and threat experts are true experts in their field. They work hard and provide a deep technical analysis related to any finding and will even provide input for a non-finding if you ask. Ifs like the team really loves to chat with their customers so they can talk security shop and provide any actionable intel.

    The best thing is that they will go outside of their lane and provide guidance if you have security questions related to best practices or technical points on how to work through an event. They will also let you know if they are not able to provide clean guidance but can still provide a direction to help you.
    What do you dislike about the product?
    You may get a specific recommendation that you may not be able to perform, or their feedback is they are not able to assist because you are not subscribed to a specific service.
    What problems is the product solving and how is that benefiting you?
    Their security team is an extension of our SOC. We have a group of experts that we know we can lean into to ask anything related to the even or asking regards to other security questions. This allows our lean team to move on to other more pressing matter and projects,
    View all reviews