Radware Cloud WAF logo

    Radware Cloud WAF

    Sold by
    Radware Cloud WAF is a fully managed Cloud Application Protection Service providing the industry's most comprehensive web application security solution. It integrates Radware's cloud-delivered WAF technology, API protection, Bot management, application layer DDoS protection, client-side protection, analytics, threat detection and security feeds in a single portal.

    Ratings and reviews

    4.6
    202 ratings
    2 star
    1 star
    76%
    22%
    2%
    0%
    0%
    13 AWS reviews
    |
    189 external reviews
    External reviews are from G2  and PeerSpot .

    Filters

    Review type

    AWS Marketplace reviews
    External reviews
    Reviews (202)
    Insurance

    Fast Deployment, Customizable Per-Asset Security, and a Reliable AWS-Based CDN

    Reviewed on Aug 12, 2026
    Review provided by G2
    What do you like best about the product?
    I liked the fast deploy of the solution. The security policy are now an indipendent settings that you can costumize per-asset. The CDN, based on aws, works well
    What do you dislike about the product?
    Nothing particular at the moment, maybe in the future
    What problems is the product solving and how is that benefiting you?
    We could extend the perimter of our web protection not relying on-prem services
    Ivan R.

    Peace of mind and automation in threat protection.

    Reviewed on Aug 12, 2026
    Review provided by G2
    What do you like best about the product?
    What I value most about Radware Cloud WAF is that it combines solid protection against web threats with minimal impact on the performance of our applications. The automatic scalability is another great advantage; during traffic peaks, we haven't had to worry about making additional configurations, as the service adjusts itself. I also appreciate the integrated DDoS protection, which saves us from having to hire a separate service for it.
    What do you dislike about the product?
    The initial learning curve is somewhat steep, especially when setting up custom rules. But once you understand them, using it becomes easier.
    What problems is the product solving and how is that benefiting you?
    Automatically detect and block malicious traffic before it reaches our applications. Thanks to this, we can focus on the business and work with more peace of mind, without having to worry so much about perimeter security.
    Danilo L.

    Very secure, easy to use, very granular and flexible for online changes

    Reviewed on Aug 12, 2026
    Review provided by G2
    What do you like best about the product?
    Easy to use, very granular, and allows many changes online
    What do you dislike about the product?
    The latency included in legitimate traffic when using secure path and having to send information to the PoP on the internet.
    What problems is the product solving and how is that benefiting you?
    Identify bad practices in application development that can expose the University's data and services
    Carlos A.

    Easy to Manage and Low Effort to Implement and Maintain

    Reviewed on Aug 11, 2026
    Review provided by G2
    What do you like best about the product?
    Easy to manage, with low man-hours required to implement and maintain.
    What do you dislike about the product?
    There’s a lack of contact, which makes it hard to do better things with the platform.
    What problems is the product solving and how is that benefiting you?
    It gives visibility into what kinds of threats are trying to attack the website. It also does a better job and provides more detailed information compared with an IPS.
    Executive Office

    Adaptive security and few false positives, but with high cost and dependency on support

    Reviewed on Aug 11, 2026
    Review provided by G2
    What do you like best about the product?
    Low False Positive Rate and Adaptive Policies: By continuously analyzing traffic and mapping changes in application code, it automatically adjusts security rules in real-time without interrupting legitimate traffic. Expert Managed Services: Radware offers 24/7 support and management from its Emergency Response Team (ERT), which reduces the operational burden on internal IT and cybersecurity teams.
    What do you dislike about the product?
    High Cost: The licensing model and managed services represent a significant cost, which often deters small and medium-sized enterprises (SMEs) or startups with limited cybersecurity budgets.

    Dependence on Managed Support for Fine-Tuning: Although the 24/7 managed service is a strong point, making customizations or very specific changes sometimes requires direct interaction with Radware's support team instead of being able to self-manage immediately.
    What problems is the product solving and how is that benefiting you?
    Attacks on web applications (OWASP Top 10 and Zero Day)
    David R.

    Radware CWAF, total protection and visualization of our APIs.

    Reviewed on Aug 11, 2026
    Review provided by G2
    What do you like best about the product?
    The ease of use when creating applications and the creation of security policies. It integrates with our SIEM easily and the support we receive from Radware is excellent.
    What do you dislike about the product?
    I believe that what needs to be improved is the section on event visualization, as it can be a bit confusing at first; it's a matter of understanding it and adapting.
    What problems is the product solving and how is that benefiting you?
    It has helped us in the protection, visualization, and management of the APIs we have published, as well as the mitigation of various attacks, which benefits us by keeping our APIs protected.
    Ariel D.

    Easy Integration and seamless to Work in Cloud

    Reviewed on Aug 11, 2026
    Review provided by G2
    What do you like best about the product?
    So far, the best thing I've seen is the integration and how easy it is to work with.
    What do you dislike about the product?
    Sometimes the web version gets stuck and you have to hit F5 for it to load properly.
    What problems is the product solving and how is that benefiting you?
    Initially, the use of the tool in the Cloud, which has been a contribution to covering zero trust
    Amogh C.

    Powerful Web Security Platform with Advanced Threat Mitigation

    Reviewed on Aug 11, 2026
    Review provided by G2
    What do you like best about the product?
    Radware Cloud WAF offers an excellent balance between security, visibility, and ease of management. The platform provides comprehensive protection against OWASP Top 10 threats, DDoS attacks, and bot traffic while delivering actionable insights through an intuitive dashboard. Its flexible policy tuning helps maintain security without disrupting legitimate business traffic.
    What do you dislike about the product?
    While Radware Cloud WAF provides excellent protection and reliability, advanced policy tuning and troubleshooting can sometimes be complex for large enterprise environments. More intuitive reporting, enhanced visibility into application traffic, and simplified troubleshooting workflows would further improve the overall administration experience.
    What problems is the product solving and how is that benefiting you?
    Radware Cloud WAF helps secure our customer-facing and business-critical applications against evolving cyber threats, including OWASP Top 10 attacks, automated bots, and volumetric attacks. The solution improves application availability, enhances customer trust, and reduces operational effort through centralized cloud-based protection and monitoring.
    RaynielBadiola

    Advanced protection has mitigated ddos and zero-day threats while simplifying app security

    Reviewed on Jul 22, 2026
    Review provided by PeerSpot

    What is our primary use case?

    The use case involves protecting applications by redirecting them to Radware Cloud WAF Service. The implementation depends on the number of applications you want to protect.

    How has it helped my organization?

    There are definitely improvements to the organization.

    What is most valuable?

    The main feature is to mitigate DDoS attacks. Radware Cloud WAF Service also provides cloud WAF services for applications to be protected, especially web applications, particularly under the OWASP Top 10 vulnerabilities.

    Cloud has a behavioral-based feature that can eliminate false positives.

    Radware Cloud WAF Service has behavioral-based AI or machine learning capability that minimizes or eliminates zero-day attacks.

    It is very important because it can eliminate zero-day using the behavioral-based feature of Radware Cloud WAF Service. It also has negative and positive security models. The positive security model determines those signature-based vulnerabilities and attacks. The negative and behavioral models eliminate zero-day attacks.

    What needs improvement?

    There is no room for improvement that I can see at this time because it is very straightforward.

    I do not think it needs improvement as it already has an AI component. Radware Cloud WAF Service has agentic AI as well, which allows you to chat with them to inquire about current vulnerabilities and resolutions. The AI will eventually provide recommendations. At this time, I do not see anything to improve. They have just added these AI features.

    For how long have I used the solution?

    I have been using this solution for about 15 plus years.

    What do I think about the stability of the solution?

    In terms of stability, I rate it as nine out of 10.

    What do I think about the scalability of the solution?

    I rate it as eight.

    How are customer service and support?

    In terms of technical support, they are very responsive. The moment you open a case with them, they will respond to your case within a few minutes.

    How was the initial setup?

    The implementation actually depends on the requirements of the customers and how many applications there are to be protected. It will only take a couple of hours, or maybe an hour, to implement the initial setup. It is up to the customer to add applications that they want to protect.

    What about the implementation team?

    We assist them to do the implementation together with the Radware Cloud team.

    For our team, as we are the integrator or the distributor, we only have one who is assisting the Radware team to do the implementation. Radware has only one technical or support team that does the implementation and configuration of cloud.

    What was our ROI?

    There is probably a little cost reduction for their cloud WAF or cloud DDoS subscription.

    What other advice do I have?

    It is very simple to integrate with other third-party products, such as SIEMs, and there are no problems integrating with them.

    Radware Cloud WAF Service can immediately determine the cause of problems and easily mitigates the vulnerabilities and attacks that it sees.

    I give Radware Cloud WAF Service a support rating of nine out of 10. My overall review rating for this solution is 9 out of 10.

    Financial Services

    Strong, Easy-to-Manage Security with Radware Cloud WAF

    Reviewed on Jul 15, 2026
    Review provided by G2
    What do you like best about the product?
    What stands out most to me about Radware Cloud WAF is how it combines strong security with ease of use. It protects websites and applications from a wide range of cyber threats while keeping management simple. The automated threat detection, bot protection, and quick response to emerging attacks make it a reliable solution for organizations looking to strengthen their web security.
    What do you dislike about the product?
    If I had to point out a downside, it would be that Radware Cloud WAF can require some effort to configure and tune properly. While it's powerful, managing custom rules and reducing false alerts may take time, particularly for teams that are new to WAF solutions.
    What problems is the product solving and how is that benefiting you?
    Radware Cloud WAF is helping solve the challenge of protecting web applications from cyber threats such as SQL injection, cross-site scripting (XSS), bot attacks, and other malicious traffic. It benefits us by improving the security of our applications, reducing the risk of data breaches, and ensuring better uptime and availability for users. The automated threat detection and real-time protection also reduce the workload on our security team, allowing us to focus on other business priorities while maintaining a strong security posture.