Try our new research platform with insights from 80,000+ expert users

AWS Control Tower vs Rapid7 InsightCloudSec comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 17, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.8
AWS Control Tower simplifies multicloud management, enhances security, centralizes governance, though ROI may require full implementation and strategic planning.
Sentiment score
6.0
Rapid7 InsightCloudSec saves costs, reduces risks, automates tasks, and streamlines compliance, enhancing security and operational efficiency.
By catching issues early, Rapid7 InsightCloudSec helps us prevent costly breaches or regulatory fines; for example, automating patching and misconfiguration audits can save thousands in operational overhead.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
It provides a good security posture and helps handle misconfigurations and day-to-day remediations.
Senior Cloud Security Engineer at a educational organization with 10,001+ employees
I can confirm money and time savings with Rapid7 InsightCloudSec, as we can scan the entire IP range simultaneously instead of manually checking each asset for vulnerabilities.
Junior systems engineer at a tech services company with 11-50 employees
 

Customer Service

Sentiment score
6.7
AWS Control Tower receives high praise for support but faces delays at higher levels, with mixed user experiences.
Sentiment score
4.9
Rapid7 InsightCloudSec customer service receives mixed reviews, excelling in responsiveness but needing improvement in communication and local presence.
On a scale of 1 to 10, the customer support would be rated a 10, as responses are typically received within about half an hour to an hour when creating a ticket.
Senior Platform Engineer Lead at a tech services company with 1,001-5,000 employees
They have excellent support with internal Slack channels and are directly reachable through Teams.
Senior Cloud Security Engineer at a educational organization with 10,001+ employees
I interacted with customer support after an endpoint compromise incident, and they responded quickly and provided clear insights that were essential for resolving the situation.
Platform Engineer at Cedar Gate Technologies, LLC
 

Scalability Issues

Sentiment score
7.9
AWS Control Tower offers scalable, cost-effective management, integrating seamlessly into infrastructures despite some account handling and pricing limitations.
Sentiment score
5.8
Rapid7 InsightCloudSec is a scalable, adaptable SaaS tool providing reliable cloud visibility but may require specific configurations.
It is beneficial because it is totally managed by AWS, meaning I do not have to worry about scalability or durability.
Senior DevOps Engineer at Alibaba Group
The solution is scalable enough; it just has limitations in terms of commercial pricing.
Head of Platform Engineering at Ascend Group Co., Ltd.
I have not experienced performance issues as I add more assets, and everything operates smoothly within one console.
Junior systems engineer at a tech services company with 11-50 employees
 

Stability Issues

Sentiment score
7.5
AWS Control Tower offers generally stable performance, with occasional disruptions and challenges, particularly in configurations and non-integrated accounts.
Sentiment score
8.0
Users are pleased with Rapid7 InsightCloudSec's stability, though some experience slight slowness due to its SaaS platform.
It is a stable solution managed by AWS.
Senior DevOps Engineer at Alibaba Group
Rapid7 InsightCloudSec works without any stability issues so far.
Junior Security Analyst at a financial services firm with 51-200 employees
 

Room For Improvement

AWS Control Tower could improve integration, security, customization, setup ease, UI consistency, pricing, and regional deployment management.
Rapid7 InsightCloudSec needs UI/UX improvements, better third-party integration, enhanced reporting, and refined risk prioritization and detection capabilities.
It is important that the system syncs automatically instead of requiring me to manually choose sync options.
Senior DevOps Engineer at Alibaba Group
If Rapid7 InsightCloudSec could support more third-party tools or modern CI/CD pipelines, integrating it into my developer workflow would reduce time to fix and foster a shift-left security mindset.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
Rapid7 InsightCloudSec already provides us real-time feedback loops, but if it also provides real-time feedback to the developers, then it would help the application shift left, meaning the security will shift left as well.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
Rapid7 InsightCloudSec needs improvements such as AI-driven risk prioritization, proactive cloud risk modeling, advanced IAM privilege analysis, multi-cloud attack path mapping, pre-built automated hardening, defining stronger policy as code support, better container and serverless coverage, and cost optimization insight along with safe auto-remediation with rollback improvements.
Cybersecurity analyst at Cornerstone OnDemand
 

Setup Cost

AWS Control Tower provides centralized management; costs vary with complexity, beneficial for enterprises but potentially costly for small businesses.
Rapid7 InsightCloudSec offers competitive, cost-efficient cloud security management with reasonable pricing, seamless licensing, and straightforward setup.
It is free and does not incur additional charges.
Senior DevOps Engineer at Alibaba Group
It is cheaper.
Senior Cloud Security Engineer at a educational organization with 10,001+ employees
The more numbers you have, the less costly the product becomes, as licensing operates on volume.
Junior systems engineer at a tech services company with 11-50 employees
While it was not overly expensive, I do wish for more discounts for bulk purchases since we have implemented it widely across our cloud security posture.
Platform Engineer at Cedar Gate Technologies, LLC
 

Valuable Features

AWS Control Tower streamlines account management with automation, security, compliance, and centralized solutions, enhancing ease of use and governance.
Rapid7 InsightCloudSec enhances security with frameworks, threat detection, automation, and AI log searches, boosting efficiency and response speed.
The unified security management is a crucial aspect, and whenever an AWS organization is used, Control Tower is typically included to ensure comprehensive compliance fulfillment.
Senior DevOps Engineer at Alibaba Group
It has reduced the number of security incidents that used to happen by 40%, and the log management time has been reduced by 20 to 30%.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
Using Rapid7 InsightCloudSec alongside our ManageEngine patch management module positively impacts my organization by scanning assets deeply and providing all identified vulnerabilities, from zero-day to any vulnerabilities on an asset, addressing those that ManageEngine might not identify.
Junior systems engineer at a tech services company with 11-50 employees
Rapid7 InsightCloudSec has helped us save thirty percent time in our log retrievals, and it completely changed log searching, making it really fast when we search for logs, with no prior knowledge required.
Site Reliability Engineer at a comms service provider with 501-1,000 employees
 

Categories and Ranking

AWS Control Tower
Ranking in Cloud Management
18th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
18
Ranking in other categories
No ranking in other categories
Rapid7 InsightCloudSec
Ranking in Cloud Management
13th
Average Rating
7.8
Reviews Sentiment
6.3
Number of Reviews
14
Ranking in other categories
Cloud Security Posture Management (CSPM) (14th), Cloud-Native Application Protection Platforms (CNAPP) (10th), AI Observability (6th)
 

Mindshare comparison

As of January 2026, in the Cloud Management category, the mindshare of AWS Control Tower is 1.5%, down from 1.8% compared to the previous year. The mindshare of Rapid7 InsightCloudSec is 0.7%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Management Market Share Distribution
ProductMarket Share (%)
Rapid7 InsightCloudSec0.7%
AWS Control Tower1.5%
Other97.8%
Cloud Management
 

Featured Reviews

SI
Head of Platform Engineering at Ascend Group Co., Ltd.
Streamlines governance and security management but requires effort in managing hidden costs
I believe AWS Control Tower could be improved. I compare it with Huawei Cloud's enterprise project, which is a similar concept but different implementation. In Huawei Cloud, you partition in one single account, but in AWS, you have to separate many accounts. You end up with maybe 20 or 30 accounts if you try to separate. It has limitations; you pay a fixed amount for 15 accounts, but if you exceed that, you have to pay more. It could be useful for implementing a Cloud Center of Excellence (CCOE) for multiple organizations, but for one organization, I would advise against it; it is too much overhead and adds hidden costs. There are limitations on the Landing Zone feature as well. If we implement AWS Control Tower, we need to implement Landing Zone and the security policy, guardrails, and Account Factory; it is not one single product. Using another cloud's enterprise project, you can just create the project and manage it already. It requires some learning curve to get hands-on. For pricing and licensing of AWS Control Tower, it has hidden costs. The Control Tower itself does not cost much, but the child accounts created from AWS Control Tower add costs for checking all configurations, logging, and metrics.
Arun Babu - PeerSpot reviewer
SOC analyst at a media company with 1,001-5,000 employees
Daily endpoint monitoring has improved investigations and saved time but detection rules still need tuning
It is important to note that Rapid7 InsightCloudSec's features are not 100% precise, but I find about 70% of the time it is satisfactory. I would like to suggest that you improve it to be more precise, ideally making it 100% if possible. Some cases in Rapid7 InsightCloudSec indicate that the log is not enough, as they mostly just generate alerts, and the synchronization between data connectors is often problematic, particularly in terms of not being in sync always, especially between the AD and Rapid7 alerts, which generates numerous false positives. Additionally, the traditional rules should be updated, as this is a main point worth mentioning since we spend a lot of time fine-tuning these traditional rules. I suggest improving the legacy detection rules. If there are any authentication cases, such as impossible travel activity where a user has their SharePoint hosted in a different location, Rapid7 can often trigger alerts, creating confusion as we cannot fine-tune it properly. Another issue is with honeypot access. We sometimes lack necessary logs because Defender's advanced threat protection scanning gets detected as honeypot activity by Rapid7, leading to annoying and noisy alerts that we need to constantly close. If you can improve the traditional detection rules to reflect current detection rules, it would make it significantly easier for us to manage, as we constantly need to check legacy rules to update or possibly turn them off. Updating the legacy rules should be a priority.
report
Use our free recommendation engine to learn which Cloud Management solutions are best for your needs.
879,672 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Financial Services Firm
11%
Manufacturing Company
9%
Insurance Company
9%
Insurance Company
10%
Manufacturing Company
9%
Computer Software Company
9%
Financial Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise2
Large Enterprise7
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise5
Large Enterprise8
 

Questions from the Community

What do you like most about AWS Control Tower?
The most intriguing feature is the automatic generation of user accounts. Leveraging Active Directory and global company settings, AWS Cloud Tower enables the creation of AWS user accounts based on...
What is your experience regarding pricing and costs for AWS Control Tower?
Control Tower within the AWS Organization does not have a charge. It is free and does not incur additional charges.
What needs improvement with AWS Control Tower?
I believe AWS Control Tower could be improved. I compare it with Huawei Cloud's enterprise project, which is a similar concept but different implementation. In Huawei Cloud, you partition in one si...
What do you like most about Rapid7 InsightCloudSec?
The tool provides centralized visibility through dashboards and alerts, allowing customers to receive reports on cloud vulnerabilities and security posture. Rapid7 InsightCloudSec provides customer...
What is your experience regarding pricing and costs for Rapid7 InsightCloudSec?
The pricing, setup cost, and licensing for Rapid7 InsightCloudSec are reasonable, and since our organization is growing, I have observed that the more numbers you have, the less costly the product ...
What needs improvement with Rapid7 InsightCloudSec?
I would say that because Rapid7 InsightCloudSec does not have automatic patching capabilities, it provides recommendations, but it does not execute anything from within Rapid7 InsightCloudSec. It h...
 

Also Known As

No data available
DivvyCloud
 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Fannie Mae, 3M, PizzaHut, Spotify, Autodesk, Discovery
Find out what your peers are saying about AWS Control Tower vs. Rapid7 InsightCloudSec and other solutions. Updated: December 2025.
879,672 professionals have used our research since 2012.