AWS WAF vs Rapid7 AppSpider comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

AWS WAF
Average Rating
8.0
Number of Reviews
52
Ranking in other categories
Web Application Firewall (WAF) (1st)
Rapid7 AppSpider
Average Rating
7.8
Number of Reviews
13
Ranking in other categories
Static Application Security Testing (SAST) (26th)
 

Mindshare comparison

As of June 2024, in the Web Application Firewall (WAF) category, the mindshare of AWS WAF is 18.1%, up from 16.0% compared to the previous year. The mindshare of Rapid7 AppSpider is 0.2%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Web Application Firewall (WAF)
Unique Categories:
No other categories found
Static Application Security Testing (SAST)
0.4%
 

Featured Reviews

KO
Aug 9, 2023
Easy to configure and stable solution
There is room for improvement in pricing. The pricing for each rule group is a bit too high. It's a monthly subscription, and it can get quite expensive for rules that I won't use for my application. For example, I might create a rule group that costs $10, and I only use one of the rules in the group. That's $10 for a rule that I'm not even using! So, the pricing could be more flexible, or there could be a way to get discounts for unused rules. So, AWS WAF should have a pay-as-you-go pricing model, where I can only pay for the rules that I use.
Andrei Bigdan - PeerSpot reviewer
May 4, 2023
Useful vulnerability reporting data, flexible, and simple implementation
I am using Rapid7 AppSpider for vulnerability assessment The most valuable feature of Rapid7 AppSpider is the vulnerability reporting data. Additionally, the data is reported in a convenient way rather than seeing them as a PDF. We are able to generate all the reports exactly what we want in a…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution is stable."
"If hackers try to insert bugs, the tool blocks it."
"AWS WAF is a stable solution. The performance of the solution is very good."
"The most valuable feature of AWS WAF is the extra layer of security that I have when connecting to my web applications."
"The ability to take multiple data sets and match those data sets together is the solution's most valuable feature. The data lake that comes with it is very useful because that allows us to match data sets with different configurations that we wouldn't normally be able to match."
"The most valuable feature of the solution is the ability to integrate central sets. It protects from intrusion attacks such as scripting and SQL injections."
"The most valuable feature of AWS WAF is its highly configurable rules system."
"The ease of deployment of the product is valuable to me."
"The initial deployment is very straightforward and simple. The product is stable if configured properly."
"What I like most about AppSpider is that it's easy to use and its automated scan gives me all the details I need to know when it comes to vulnerabilities and their solutions."
"The most valuable feature of Rapid7 AppSpider is the vulnerability reporting data. Additionally, the data is reported in a convenient way rather than seeing them as a PDF. We are able to generate all the reports exactly what we want in a flexible way."
"The entire solution is interactive and has a point-and-click user experience, which makes it easy to find items or drill down on information. You don't need specialized skills to use the product."
"It scans all the components developed within a web application."
"The most valuable feature is the reporting, which is compliant with international standards."
"When it is set up properly, it can do scanning on web apps with multiple engines automatically."
"AppSpider's most valuable feature is reporting - everything is stored in the local database so it can be sent to other machines."
 

Cons

"The default content policy available in the tool is not very strong compared to the competitors."
"I would like to see the addition of more advanced rate-limiting features in the next release. It would be beneficial to extend rate limiting beyond just web servers to the main node level."
"The price could be improved."
"The solution should identify why it blocks particular websites."
"The solution could be more reliable."
"The solution's pricing could be improved."
"The setup is complicated."
"The serverless product from AWS WAF could be improved. For example, they have only one serverless series, Lambda, but they should extend and improve it. Additionally, the firewall rules are not very easy to configure."
"Integration could be better."
"The tech support is responsive but issues remain unresolved."
"The performance of the solution could improve. When I compare the speed it is slower than others on the market. There are some tricks we use to help speed up the solution."
"It needs better integration with mobile applications."
"This price of this solution is a little bit expensive."
"The product needs to be able to scale for large companies, like ours. We have millions of IP addresses that need to be scanned, and the scalability is not great."
"Support response times are slow and can be improved."
"Implementing Rapid7 AppSpider requires scanning and self-identification mechanisms. You can add different types of authentication to each scan."
 

Pricing and Cost Advice

"The product is moderately priced."
"Its price is fair. There is a very fair amount that they charge. It has a pay-as-you-go model, so it pretty much depends on how much a user uses it. As per the cloud norms, the more you use, the more you pay. I would rate it a five out of ten in terms of pricing."
"The product’s pricing is reasonable."
"The price of AWS WAF is expensive if you do not know how to manage your software up or down. I price of the solution is average amongst the other competitors but it would be better if it was less expensive."
"There are no costs in addition to the standard licensing fees."
"There are no separate licensing costs we pay for since it is included in the plan we purchase."
"There are different scale options available for WAF."
"It's quite affordable. It's in the middle."
"The price of Rapid7 AppSpider cost 9,000 annually but there is limited usage. Large companies are able to negotiate a better price or a better deal for the usage with the vendor."
"AppSpider is closed-source software and you need to acquire a license in order to use it."
"The licensing cost depends on the number of users."
"The price is pretty fair."
"It is expensive if you want to buy the Enterprise version that is able to scan multiple applications at once."
report
Use our free recommendation engine to learn which Web Application Firewall (WAF) solutions are best for your needs.
787,779 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
18%
Financial Services Firm
13%
Manufacturing Company
7%
Insurance Company
6%
Computer Software Company
17%
Financial Services Firm
15%
Government
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What are the limitations of AWS WAF vs alternative WAFs?
Hi Varun, I have had experienced with several WAF deployments and deep technical assessments of the following: 1. Imperva WAF 2. F5 WAF 3. Polarisec Cloud WAF Typical limitations on cloud WAF is t...
How does AWS WAF compare to Microsoft Azure Application Gateway?
Our organization ran comparison tests to determine whether Amazon’s Web Service Web Application Firewall or Microsoft Azure Application Gateway web application firewall software was the better fit ...
What do you like most about AWS WAF?
The most valuable feature of AWS WAF is its highly configurable rules system.
What do you like most about Rapid7 AppSpider?
The most valuable feature of Rapid7 AppSpider is the vulnerability reporting data. Additionally, the data is reported in a convenient way rather than seeing them as a PDF. We are able to generate a...
What is your experience regarding pricing and costs for Rapid7 AppSpider?
The price of Rapid7 AppSpider cost 9,000 annually but there is limited usage. Large companies are able to negotiate a better price or a better deal for the usage with the vendor. The price of the s...
What needs improvement with Rapid7 AppSpider?
The performance of the solution could improve. When I compare the speed it is slower than others on the market. There are some tricks we use to help speed up the solution.
 

Also Known As

AWS Web Application Firewall
AppSpider
 

Overview

 

Sample Customers

eVitamins, 9Splay, Senao International
Microsoft
Find out what your peers are saying about Amazon Web Services (AWS), F5, Microsoft and others in Web Application Firewall (WAF). Updated: May 2024.
787,779 professionals have used our research since 2012.