Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

2 AWS reviews

External reviews

222 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Anthony L. J.

Senior Cyber Threat Intelligence Analyst

  • October 07, 2025
  • Review provided by G2

What do you like best about the product?
I really appreciate the modules, such as Third Party and Threat, and how straightforward it is for a user to put them into action right away.
What do you dislike about the product?
Nothing specific comes to mind. I have been using this tool for over a year now, and it still manages to impress me.
What problems is the product solving and how is that benefiting you?
I can get a comprehensive overview of the ransomware landscape, along with detailed insights into the threat actors that are most relevant to my organization, all presented in a well-organized and easily understandable format.


    JOE M.

Great Reviews

  • October 07, 2025
  • Review provided by G2

What do you like best about the product?
The threat intelligence reports and the integration availability that is now open!
The possibilities it opens for improving security posture and the shift in defensive approaches helps improve security as a whole.
What do you dislike about the product?
The lag seen in the scoring of indicators and the lack of intel on some assets and indicators that require some flagging from the customer side.
What problems is the product solving and how is that benefiting you?
The threat intelligence of available indicators and the intel reports from RF.


    Nicolas F.

Accuracy

  • October 07, 2025
  • Review provided by G2

What do you like best about the product?
The accuracy of the intel provided is always on point. The sandbox is very modular and easy to use.
What do you dislike about the product?
Not much to dislike, but sometimes I wish I could copy paste into the sandbox.
What problems is the product solving and how is that benefiting you?
In my use it has been a great way to sandbox any IoC that comes my way.


    Computer & Network Security

A powerful tool

  • October 07, 2025
  • Review provided by G2

What do you like best about the product?
The Recorded Future platform provides us in-depth intelligence that helps drive our investigations and make connections that may not otherwise be obvious. Insikt Group research also affords us insight into specific threat actor activity that allows us to adapt and be prepared.
What do you dislike about the product?
AI summarization on some intelligence cards has been self contradictory, though we've already seen it improving.
What problems is the product solving and how is that benefiting you?
Understanding threat actor architecture and IOC/alert enrichment.


    Adrian B.

RF Review

  • October 07, 2025
  • Review provided by G2

What do you like best about the product?
The best part about RF is that it's a one stop shop for intel, whether its analysis of an IOC, or reading insight reports correlated to an event, or an IOC in general. I use this platform everyday, and probably wouldn't be able to do by job effectively as I could.

Over all integration of connectors are simple to setup. The API documentation is stellar.
What do you dislike about the product?
One thing that I don;t see in the platform, that I would like to see is some community with RF clients. It would be interesting to see notes of analysts in the platform. I know there is a community portal for RF, but it seems like no one uses it. Similar to the ex. of Virustotal comments for an indicator lookup. But that's really it.
What problems is the product solving and how is that benefiting you?
RF AI provides a convient manner to develop senior leadership reports for an incident at hand. Data sources are most important for this application, and I couldn't thank RF enough for allowing to put my time else where.


    Events Services

Fantastic Piece of Intelligence added to our Security Team

  • August 04, 2025
  • Review provided by G2

What do you like best about the product?
- Its updated most of time
- Easy to setup alerts according to our Intelligence Requirements
-Good Support to Map our Requirements
-Provides good Insights related to Threat actors targeting our organization
-Gives complete TTP's related to any threat actor which helps us focus on our detections
-Sandbox gives good results & we use it most of time
-Malware intelligence is a great new addition to this product
What do you dislike about the product?
- Sometimes the data displayed comes out to be false positive & just something meaningless
What problems is the product solving and how is that benefiting you?
- Helps us keep ahead of adversaries by keeping our detections up to date
-Vulnerability intelligence helps us to focus on patching efforts
-We monitor it for our brand abuse detection
-We have alerts setup according to our intelligence requirements, we are a bit relaxed and feel covered
- We keep a track of threat actors & techniques they are using. RF gives us a lot of intel to hunt for adversary behavior in our environment


    Umesh M.

Powerful/Resourceful Threat Intelligence Platform with Real-Time Insights

  • July 16, 2025
  • Review provided by G2

What do you like best about the product?
Recorded Future delivers real-time threat intelligence that integrates smoothly into our security workflows. I especially appreciate the Interactive Sandbox, and the ease of implementation of the Advanced Query Builder, and the platform’s ability to gather intelligence from the dark web — all of which make threat analysis faster and more insightful.

The integration with Anomaly was seamless in our case, and I use the platform daily as a core part of my work.
Also, a big shoutout to our point of contact, John Percic, who is always responsive and helpful whenever we have questions or need guidance.
What do you dislike about the product?
There are a few areas where the tool could improve. Sometimes, domain-related data is missing from Playbook alerts during ingestion, which is critical since such domains are often linked to organizational fraud. Additionally, the Identity module doesn’t always trigger alerts at the time of a breach, which delays response. In some cases, we’ve also noticed that the threat intelligence data appears slightly delayed compared to other tools we’ve used.
What problems is the product solving and how is that benefiting you?
Recorded Future helps us detect and respond to threats more effectively. It identifies impersonating domains and logo misuse, which are often used in fraud attempts, helping us take action before damage occurs. The platform also monitors for identity breaches, giving us visibility into compromised credentials. These capabilities, along with dark web intelligence and real-time alerts, significantly strengthen our organization’s threat detection and response efforts.


    Financial Services

Great Platform

  • July 15, 2025
  • Review provided by G2

What do you like best about the product?
The platform provides a well-curated list of relevant threat actors tailored to our industry and tech stack. It includes detailed TTPs, making it easier to understand attacker behavior. The various modules are well-structured, and the SecOps functionality stands out by enabling a proactive approach to threat hunting. Overall, it's a valuable tool for improving threat visibility and response.
What do you dislike about the product?
Plugin availability is still limited — for instance, there’s no integration for Qualys yet. Alert tuning needs improvement, as even casual mentions in chatter can trigger alerts. Additionally, the AI-driven reporting lacks accuracy and often falls short of providing actionable insights.
What problems is the product solving and how is that benefiting you?
The platform provides a comprehensive overview of the threat landscape, enabling TI-driven vulnerability management. It also supports proactive threat hunting through the SecOps module. Additionally, it offers detailed TTPs and YARA rules for related malware and ransomware groups, enhancing our ability to detect and respond to emerging threats.


    Ryan M.

Manager of Cyber Threat Intelligence

  • July 14, 2025
  • Review provided by G2

What do you like best about the product?
I find the Threat Module to be very helpful in giving my organization the ability to identify potential threats. Recorded Future also provides us with the tools, information, and direction on taking proactive actions against those threats to better protect the organization. As a traditional Threat Intelligence Platform, it meets or exceeds every expectation that I have.
What do you dislike about the product?
There are very few downsides to using Recorded Future. The only downside that my organization has observed is that the online portal is rather difficult to navigate and the advanced searching capabilities are hard to begin using as well. This has been mitigated by free leaning resources, certifications, and demos by Recorded Future though.
What problems is the product solving and how is that benefiting you?
Recorded Future is solving the problem that every Cyber Security team should be concerned with: who is likely to attack me. We refer to this as an Intelligence Requirement (IR) and it is one of the most important questions we can ask in order to protect our organization. Their methods of making that determination are what sets them apart from other Threat Intelligence providers.


    Oil & Energy

Most comprehensive threat intel provider in the game

  • July 14, 2025
  • Review provided by G2

What do you like best about the product?
Their data ontology, how they organize their information, is best in class. Its not just about stuffing news blogs into a platform but really breaking the data apart. Their Insikt analyst then turn that data into refined intelligence. Also, their AI Chatbot is the best we have tested as far as getting cyber relevant summaries of incidents and events.
What do you dislike about the product?
I just wish they were a full blown Threat Intel Platform, where you could import other feeds, threat actor reports, and have it be the single pane of glass for analysts.
What problems is the product solving and how is that benefiting you?
Providing quality, organized, and trusted intelligence.