AWS GuardDuty vs Akamai Guardicore Segmentation comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Ranking in Cloud Workload Protection Platforms (CWPP)
6th
Average Rating
8.6
Number of Reviews
83
Ranking in other categories
Vulnerability Management (5th), Cloud and Data Center Security (7th), Container Security (6th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Compliance Management (4th)
Akamai Guardicore Segmentation
Ranking in Cloud Workload Protection Platforms (CWPP)
13th
Average Rating
8.2
Number of Reviews
17
Ranking in other categories
Cloud and Data Center Security (2nd), Breach and Attack Simulation (BAS) (4th), Microsegmentation Software (2nd)
AWS GuardDuty
Ranking in Cloud Workload Protection Platforms (CWPP)
4th
Average Rating
8.2
Number of Reviews
20
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2024, in the Cloud Workload Protection Platforms (CWPP) category, the mindshare of SentinelOne Singularity Cloud Security is 1.6%, up from 0.9% compared to the previous year. The mindshare of Akamai Guardicore Segmentation is 6.7%, up from 4.0% compared to the previous year. The mindshare of AWS GuardDuty is 11.1%, down from 11.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Workload Protection Platforms (CWPP)
Unique Categories:
Vulnerability Management
1.6%
Cloud and Data Center Security
31.7%
Breach and Attack Simulation (BAS)
0.2%
No other categories found
 

Featured Reviews

PRATHAMESH SHASHIKANT MOHITE - PeerSpot reviewer
May 13, 2024
Provides automated security responses, is effective for threat management, and saves us costs
Singularity Cloud Security was convenient and effective for threat management. In the past, we relied on daily information gathering and alerts, requiring us to manually address the findings. Now, Singularity Cloud Security provides continuous threat detection and simplifies our work, significantly improving our security posture. The automated security responses have significantly improved our overall security posture. Singularity Cloud Security is easy to use as it gives us the proper step-by-step methods to solve that vulnerability. I would rate the evidence-based reporting for helping prioritize and solve important cloud security issues nine out of ten. It is helpful that Singularity Cloud Security includes proof of exploitability in the evidence-based reporting. Although it isn't perfect, it gives us the right solution to mitigate vulnerability. Our infrastructure configuration is defined using an Infrastructure as Code template. This template allows us to scan our entire infrastructure for potential issues, including pre-production problems within templates or container configuration files. Previously, we stored infrastructure details in a format that required manual data retrieval via CSV files. Now, with IaC, we have a centralized control system that manages multiple accounts and provides vulnerability listings based on severity for each account. Our previous default AWS security tool wasn't sufficient, so we adopted Singularity Cloud Security based on a client recommendation. It's been a huge improvement. Whereas our old tool took three months to gather data, Singularity Cloud Security provides a daily updated dashboard with vulnerability information. This allows us to prioritize and address security risks based on criticality, saving us significant time and effort compared to the past. Singularity Cloud Security has helped reduce the number of false positives by 70 percent. Singularity Cloud Security streamlines manual work by providing insightful information on security vulnerabilities. It not only identifies issues we might miss but also offers in-depth analysis, including potential future costs and the severity of the threat. Additionally, it presents basic details tailored for users with less security expertise, empowering them to understand and address vulnerabilities effectively. Singularity Cloud Security has improved our risk posture by 80 percent and has reduced our mean time to detection by 85 percent. Singularity Cloud Security has reduced our mean time to remediation by 70 percent. It has streamlined collaboration between our cloud security, application developers, and AppSec teams. This tool automates manual tasks, reducing our team size from ten to five. It provides us with the information we need to effectively identify and address vulnerabilities, making our cloud environment more secure. It has been a huge time-saver for our engineering team, saving them weeks of work. We have saved around 70 percent of our overall time with Singularity Cloud Security. Singularity Cloud Security has positively impacted our operational costs. The time saved by reducing manual work and resource requirements translates directly into cost savings. Singularity Cloud Security's AI empowers us with improved security solutions. When faced with uncertainty, the tool can quickly provide insights to help us gain a clear understanding of the situation.
Uday Varma - PeerSpot reviewer
Jan 30, 2024
Offers granular control and ease of policy creation with features like telemetry and micro-segmentation but incident tagging is missing
Our customers use the solution for micro-segmentation within the data center or cloud environments. One customer uses it for their on-premises infrastructure, deployed at the code level across their massive network. Another customer uses it in a data center to monitor microsegmentation for their 500-node workload. Moreover, Akamai Guardicore Segmentation has helped our customers manage and secure traffic between different applications or workloads. Earlier, they were using VMware NSX-v, which offered good logging for distributed services on an analytical level. However, Akamai Guardicore Segmentation provides them with better overall visibility and granular control over-segmentation, even for inter-application and inter-routing traffic.
Saurabh Khan - PeerSpot reviewer
Mar 13, 2024
combines ML and integrated threat intelligence from AWS and leading third parties to help protect your AWS accounts, workloads, and data.
The product has automated protection powered by ML, which is now far more powerful than before. It uses ML in its detection algorithm, providing fast and quick results. If someone attempts to attack our tools, especially through brute force attacks, we receive notifications. This applies even if such attempts originate from within our teams, engaging in malicious activities. AWS GuardDuty's integration with other AWS services, such as email addresses and support IDs helps our team members to stay informed about the activities in the account and the necessary actions to take when it triggers an alert. It has been instrumental in identifying issues, particularly instances where EC2 instances had their ports (e.g., 22 and 3389) exposed publicly. This has helped us stay vigilant against potential attacks, and the severity classification allows us to prioritize addressing critical issues. AWS GuardDuty has introduced several new features, including malware protection and continuous monitoring.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"They're responsive to feature requests. If I suggest a feature for Prisma, I will need to wait until the next release on their roadmap. Cloud Native Security will add it right away."
"The cloud misconfiguration is the most valuable feature."
"It is pretty easy to integrate with this platform. When properly integrated, it monitors end-to-end."
"The ease of use of the platform is very nice."
"The real-time detection and response capabilities overall are great."
"PingSafe offers three key features: vulnerability management notifications, cloud configuration assistance, and security scanning."
"The solution's most valuable features are its ability to detect vulnerabilities inside AWS resources and its ability to rescan after a specific duration set by the administrator."
"The most valuable feature of the solution is its storyline, which helps trace an event back to its source, like an email or someone clicking on a link."
"I found the solution to be stable."
"The interface and dashboard are amazing."
"That is primarily because I've seen increased rules. It's kind of caught us a little off guard. With GuardiCore, I have had to deal with their technical support and engineering team in Israel. They are amazing. They are very quick to adapt."
"The most valuable features of the solution are the maps and ring fencing that help monitor events."
"This tool greatly helps in understanding the footprint of the attacks."
"Guardicore Centra offers the best coverage specifically in backward compatibility with legacy operating systems."
"The solution is very scalable, especially when connected to the cloud resources."
"Application Ring-Fencing and Deception Server, which is basically like a honeypot, are pretty useful features."
"It kinda just gives us another layer of security. So it does provide some sort of comfort that we do have something that is monitoring for abnormal behavior."
"Since our environment is cloud based and accessible from the internet, we like the ability to check where the user has logged in from and what kind of API calls that user is doing."
"The solution will detect abnormalities in the AWS workload and alert us so that we can monitor and take action."
"What I like most about Amazon GuardDuty is that you can monitor your AWS accounts across, but you don't have to pay the additional cost. You can get all your CloudTrail VPC flow logs and DNS logs all in one, and then you get the monitoring with that. A lot of times, if you had a separate tool on-premise, you would have to set up your DNS logs, so usually, Amazon GuardDuty helps with all your additional networking requirements, so I utilize it for continuous monitoring because you can't detect anything if you're not monitoring, and the solution fills that gap. If you don't do anything else first, you can deploy your firewall, and then you've got your Route 53 DNS and DNSSEC, but then Amazon GuardDuty fills that, and then you have audit requirements in AU that says, "Hey, what are your additional logs?", so you can just say, "Hey, we utilize Amazon GuardDuty." You're getting your CloudTrail, your VPC flow logs, and all your DNS logs, and those are your additional logs right there, so the solution meets a lot of requirements. Now, everything comes with a cost, but I also like that the solution also provides threat response and remediation. It's a pretty good product. I've just used it more for log analysis and that's where the value is at, the niche value. Once you do threat detection, it goes into a lot of other integrations you need to implement, so threat detection is only good as the integration, as the user that knows the tools itself, and the architecture and how it's all set up and the rules that you set within that."
"One of the advantages of cloud services is the ability to use them on demand. There's minimal installation involved; you can check the latest offerings and make new deployments while dismantling the previous ones. This approach keeps you ahead of potential services, showcasing the agility of AWS."
"The most valuable features are the single system for data collection and the alert mechanisms."
"Deployment is great, and we didn't face any big challenges."
"What we found most valuable in Amazon GuardDuty is its threat detection feature, especially because we were monitoring a huge number of AWS accounts, so we needed a solution that would monitor for any kind of malicious activity. The monitoring aspect of the solution was great because it gave us timely notifications if and when anything happened, and Amazon GuardDuty helped keep us on our toes to make sure we took action right away."
 

Cons

"The integration with Oracle has room for improvement."
"We don't get any notifications from PingSafe when the clusters are down."
"There's room for improvement in the graphic explorer."
"I export CSV. I cannot export graphs. Restricting it to the CSV format has its own disadvantages. These are all machine IP addresses and information. I cannot change it to the JSON format. The export functionality can be improved."
"There is a bit of a learning curve for new users."
"With Cloud Native Security, we can't selectively enable or disable alerts based on our specific use case."
"PingSafe takes four to five hours to detect and highlight an issue, and that time should be reduced."
"They could generally give us better comprehensive rules."
"Needs more customization of honeypots and a vaster catalog of systems able to be mimicked."
"The maps could go a bit faster. They are useful but slightly slow."
"The product needs a few features like enhanced user policies and payload-level inspection to improve the offering."
"Clients would like to see that the security policies of GuardiCore can continue to be comparable to all the major firewall players out there."
"Customers would want to see the cost improved."
"Guardicore Centra should incorporate automation so that we don't require to write custom scripts and APIs. The tool also has limitations on rules where it allows only sixty thousand rules. Our clients have also commented that there are too many manual clicks and effort to do changes. I think that the incorporation of automation can help our clients make changes with confidence and without the possibility of human error."
"It doesn't support a PAAC solution (Platforma as a service) in the cloud."
"The long-term management of the security policies could be improved with some kind of automation platform, something like Chef or Puppet or Ansible, to help you manage the policies after day-one... to then manage the policies and changes to those policies, going forward, through some type of automation process is not turning out to be really easy."
"Some of the pain points in Amazon GuardDuty was the cost. When compared to some of the other services, depending on how many we had to monitor, if we had a huge range of accounts, as our accounts increased, we had a cost factor that came into play. Sometimes there were issues, for example, with findings that came up, we wanted to add notes and there were issues back then where notes couldn't be entered properly. If we wanted to leave a note such as "Okay, we have assessed this and this is how we feel", or "This is a false positive", Amazon GuardDuty wasn't allowing us to do that. Even with the suppression of certain findings, there was some issue that we had faced at one time. Those were some of the pain points of the solution."
"It would be great if the solution had some automation capabilities."
"There is currently no consolidated dashboard for AWS GuardDuty. It would be helpful if they could provide a dashboard based on severity levels (high, medium, low) and offer insights account-wise, especially for users utilizing automation structures."
"The product needs to improve its cost-efficiency since it is expensive."
"Amazon GuardDuty could be better enriched in threat intelligence data."
"For me, I would say just the presentation of findings, like the dashboards and other stuff, could be improved a bit."
"I work in a bank, and it would be good if AWS GuardDuty could be integrated with other monitoring and detection tools we use."
"One improvement I would suggest for AWS GuardDuty is the ability to assign findings to specific users or groups, facilitating better communication and follow-up actions."
 

Pricing and Cost Advice

"PingSafe is cost-effective for the amount of infrastructure we have. It's reasonable for what they offer compared to our previous solution. It's at least 25 percent to 30 percent less."
"It is cheap."
"PingSafe falls within the typical price range for cloud security platforms."
"For pricing, it currently seems to be in line with market rates."
"Its pricing was a little less than other providers."
"PingSafe is less expensive than other options."
"Singularity Cloud Security by SentinelOne is cost-efficient."
"Singularity Cloud Workload Security's pricing is good."
"Guardicore Centra provides better value for money than NSX, was the other solution that we looked at, which was too expensive for what it does."
"The customer would complain about the cost."
"The price is the same as other products in the market. There's no price argument to choose one or the other product, it will cost the customer approximately the same."
"Akamai Guardicore Segmentation is expensive."
"This is not a cheap solution but you have to consider the bigger picture, which is what it is giving you."
"GuardiCore has made some new changes to the license now. We've seen monthly and annual licenses based on a subscription. We have a few clients that pay anywhere from $25,000 a year."
"The pricing is too high."
"Compared to the pricing we were seeing from both Illumio and Edgewise, Guardicore was very competitive."
"I have heard that the solution's price is quite high."
"The tool's licensing model is pay-as-you-go."
"GuardDuty only enables accounts in regions where you have an active workload. If there are places where you don't have an active workload, you wouldn't even enable them. That's one area where they could allow you to cut down your cost."
"The price of the solution is exactly right."
"On a scale of one to ten, where one is a high price, and ten is a low price, I rate the pricing a four or five, which is somewhere in the middle."
"We use a pay-as-you-use license, which is competitively priced in the market."
"I prefer to have something on demand for myself. That's why I haven't been paying for GuardDuty specifically. AWS provides a wide range of offerings, especially in the security area."
"The platform is inexpensive."
report
Use our free recommendation engine to learn which Cloud Workload Protection Platforms (CWPP) solutions are best for your needs.
787,779 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
21%
Financial Services Firm
15%
Manufacturing Company
10%
Insurance Company
5%
Financial Services Firm
18%
Computer Software Company
15%
Manufacturing Company
6%
Insurance Company
6%
Financial Services Firm
17%
Computer Software Company
16%
Manufacturing Company
9%
Healthcare Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What needs improvement with PingSafe?
When I joined my organization, I saw that PingSafe was already implemented. I started to use the tool's alerting feat...
What do you like most about Guardicore Centra?
Guardicore Centra offers the best coverage specifically in backward compatibility with legacy operating systems.
What is your experience regarding pricing and costs for Guardicore Centra?
The pricing is too high. Based on market standards, I'd recommend lowering the price. I would rate the pricing a five...
What needs improvement with Guardicore Centra?
Customers would want to see the cost improved.
What do you like most about Amazon GuardDuty?
With anomaly detection, active threat monitoring, and set correlation, GuardDuty alerts me to any unusual user behavi...
What needs improvement with Amazon GuardDuty?
The product needs to improve its cost-efficiency since it is expensive.
 

Also Known As

PingSafe
Guardicore Centra, GuardiCore
No data available
 

Learn More

 

Overview

 

Sample Customers

Information Not Available
Santander, Frontier Airlines, OpenLink, Intermountain Healthcare, Cellcom, BancoBASE
autodesk, mapbox, fico, webroot
Find out what your peers are saying about AWS GuardDuty vs. Akamai Guardicore Segmentation and other solutions. Updated: May 2024.
787,779 professionals have used our research since 2012.