NGINX App Protect vs Threat Stack Cloud Security Platform comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Ranking in Container Security
6th
Average Rating
8.6
Number of Reviews
83
Ranking in other categories
Vulnerability Management (5th), Cloud and Data Center Security (7th), Cloud Workload Protection Platforms (CWPP) (6th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Compliance Management (4th)
NGINX App Protect
Ranking in Container Security
16th
Average Rating
8.2
Number of Reviews
20
Ranking in other categories
Web Application Firewall (WAF) (13th), API Security (3rd)
Threat Stack Cloud Security...
Ranking in Container Security
31st
Average Rating
8.2
Number of Reviews
8
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (27th), Cloud Workload Protection Platforms (CWPP) (28th), Cloud Security Posture Management (CSPM) (32nd)
 

Mindshare comparison

As of June 2024, in the Container Security category, the mindshare of SentinelOne Singularity Cloud Security is 2.7%, up from 1.7% compared to the previous year. The mindshare of NGINX App Protect is 0.2%, down from 0.7% compared to the previous year. The mindshare of Threat Stack Cloud Security Platform is 0.1%, down from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Container Security
Unique Categories:
Vulnerability Management
1.6%
Web Application Firewall (WAF)
2.1%
API Security
2.3%
Intrusion Detection and Prevention Software (IDPS)
0.3%
Cloud Workload Protection Platforms (CWPP)
0.2%
 

Featured Reviews

AK
May 7, 2024
Is user-friendly, reduces false positives, and improves security posture
Having too many resources with platform access made misconfigurations more likely. PingSafe addressed this by helping us configure everything according to best practices, helping improve our security posture. PingSafe is easy to use. Evidence-based alerts help us mitigate the priority issues that are detected. The proof of exploitability in evidence-based reporting is helpful. The offensive security engine strengthens our organization's security posture by validating potential attacker paths and prioritizing vulnerabilities with the highest likelihood of being exploited in a breach. Infrastructure as Code facilitates the identification of pre-production issues within our Cloud Formation Templates and Terraform configurations. PingSafe has been instrumental in ensuring our strong cloud security posture, effectively helping us manage and mitigate risks. PingSafe helped our team reduce the number of false positives. PingSafe plays a key role in strengthening our risk posture. By providing alerts, it assists both our information security and security assessment teams in identifying and mitigating potential threats, ultimately improving our overall security position. It has improved our mean time to detection by 30 percent and effectively reduces our average time to resolve incidents. By providing valuable information, PingSafe empowers our team to quickly diagnose and rectify problems. It has improved the collaboration of our cloud security application developers and AppSec teams. PingSafe has helped save engineering time by 50 percent.
SR
Jul 6, 2022
Beneficial reverse proxy, effective load balancer, and helpful support
NGINX App Protect can be used as a reverse proxy, internet controller, and for caching NGINX App Protect has improved our organization by using the load balancer feature. The most valuable feature of NGINX App Protect is the reverse proxy. The price of NGINX App Protect could improve. I have…
SC
Sep 26, 2021
SecOps program for us, as a smaller company, is amazing; they know what to look for
They could give a few more insights into security groups and recommendations on how to be more effective. That's getting more into the AWS environment, specifically. I'm not sure if that's Threat Stack's plan or not, but I would like them to help us be efficient about how we're setting up security groups. They could recommend separation of VPCs and the like - really dig into our architecture. I haven't seen a whole lot of that and I think that's something that, right off the bat, could have made us smarter. Even as part of the SecOps Program, that could be helpful; a quick analysis. They're analyzing our whole infrastructure and saying, "You have one VPC and that doesn't make a lot of sense, that should be multiple VPCs and here's why." The architecture of the servers in whatever cloud-hosting provider you're on could be helpful. Other than that, they should continue to expand on their notifications and on what's a vulnerability. They do a great job of that and we want them to continue to do that. It would be cool, since the agent is already deployed and they know about the server, they know the IP address, and they know what vulnerability is there, for them to test the vulnerability and see if they can actually exploit it. Or, once we patch it, they could double-check that it can't be. I don't know how hard that would be to build. Thinking on it off the top off my head, it could be a little challenging but it could also be highly interesting. It would also be great if we could test a couple of other features like hammering a server with 100 login attempts and see what happens. Real test scenarios could be really helpful. That is probably more something close to what they do with the SOC 2 audit or the report. But more visualization of that, being able to test things out on our infrastructure to make sure we can or can't hit this box could be interesting.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The management console is the most valuable feature."
"Cloud Native Security offers attack path analysis."
"The cloud misconfiguration is the most valuable feature."
"The solution is a good alerting tool."
"The agentless vulnerability scanning is great."
"The user interface is well-designed and easy to navigate."
"Cloud Native Security has helped us with our risk posture and securing our agenda. It has been tremendous in terms of supporting growth."
"It's positively affected the communication between cloud security, application developers, and AppSec teams."
"The stability of the product is very impressive since it handles 60,000 to 70,000 requests or transactions per second."
"The most valuable feature of NGINX App Protect is its flexibility."
"The policies are flexible based on the technologies you use."
"It's very easy to deploy."
"The tool's most valuable feature is the OWASP certification. Additionally, the tool's ability to enforce strong passwords and OTP within minutes is impressive. With its analytics and recommendations, it is a very good solution."
"The most valuable feature is that I can establish different services from the firewall."
"The most valuable feature of NGINX App Protect is the reverse proxy."
"The most valuable feature of NGINX App Protect is its open source."
"With Threat Stack, we quickly identified some AWS accounts which had services that would potentially be exposed and were able to remediate them prior to release of products."
"An important feature of this solution is monitoring. Specifically, container monitoring."
"The most valuable feature is the SecOps because they have our back and they help us with the reports... It's like having an extension of your team. And then, it grows with you."
"It is scalable. It deploys easily with curl and yum."
"The rules are really great. They give us more visibility and control over what's being triggered. There's a large set of rules that come out-of-the-box. We can customize them and we can create our own rules based on the traffic patterns that we see."
"The number-one feature is the monitoring of interactive sessions on our Linux machines. We run an immutable environment, so that nothing is allowed to be changed in production... We're constantly monitoring to make sure that no one is violating that. Threat Stack is what allows us to do that."
"Every other security tool we've looked is good at containers, or at Kubernetes, is good at AWS, or at instance monitoring. But nobody is good at tying all of those things together, and that's really where Threat Stack shines."
"There has been a measurable decrease in the meantime to remediation... because we have so many different tech verticals already collated in one place, our ability to respond is drastically different than it used to be."
 

Cons

"We've found a lot of false positives."
"They need more experienced support personnel."
"We don't get any notifications from PingSafe when the clusters are down."
"One area for improvement could be the internal analysis process, specifically the guidance provided for remediation."
"There is room for improvement in the current active licensing model for PingSafe."
"A beneficial improvement for PingSafe would be integration with Jira, allowing for a more streamlined ticketing system."
"I want PingSafe to integrate additional third-party resources. For example, PingSafe is compatible with Azure and AWS, but Azure AD isn't integrated with AWS. If PingSafe had that ability, it would enrich the data because how users interact with our AWS environment is crucial. All the identity-related features require improvement."
"A vulnerability alert would appear, and we'd fix it, but then the same alert would return the next day."
"It's challenging if you need to go for a high throughput."
"Areas for improvement would be if NGINX could scan for vulnerabilities and learn and update the signatures of DoS attacks."
"As far as scalability, it takes a long time for deployment."
"I encountered issues with NGINX App Protect while trying to upgrade custom rules."
"The configuration needs to be more flexible because it is difficult to do things that are outside of the ordinary."
"The product's user interface is an area with shortcomings as it can be quite confusing for users, making it an area where improvements are required."
"Currently, the policies have to be handled manually, and you have to create from scratch, which can be a bit time-consuming, in a large environment."
"The solution needs to be improved in the e-commerce portal."
"The one thing that we know they're working on, but we don't have through the tool, is the application layer. As we move to a serverless environment, with AWS Fargate or direct Lambda, that's where Threat Stack does not have the capacity to provide feed. Those are areas that it's blind to now..."
"The solution’s ability to consume alerts and data in third-party tools (via APIs and export into S3 buckets) is moderate. They have some work to do in that area... The API does not mimic the features of the UI as far as reporting and pulling data out go. There's a big discrepancy there."
"It shoots back a lot of alerts."
"The reports aren't very good. We've automated the report generation via the API and replaced almost all the reports that they generate for us using API calls instead."
"They could give a few more insights into security groups and recommendations on how to be more effective. That's getting more into the AWS environment, specifically. I'm not sure if that's Threat Stack's plan or not, but I would like them to help us be efficient about how we're setting up security groups. They could recommend separation of VPCs and the like - really dig into our architecture. I haven't seen a whole lot of that and I think that's something that, right off the bat, could have made us smarter."
"The compliance and governance need improvement."
"The API - which has grown quite a bit, so we're still learning it and I can't say whether it still needs improvement - was an area that had been needing it."
"Some features do not work as expected."
 

Pricing and Cost Advice

"The tool is cost-effective."
"Pricing is based on modules, which was ideal for us."
"For pricing, it currently seems to be in line with market rates."
"It is cheap."
"Singularity Cloud Security by SentinelOne is cost-efficient."
"PingSafe is affordable."
"I wasn't sure what to expect from the pricing, but I was pleasantly surprised to find that it was a little less than I thought."
"PingSafe's primary advantage is its ability to consolidate multiple tools into a single user interface, but, beyond this convenience, it may not offer significant additional benefits to justify its price."
"The price of NGINX App Protect is not much different from the products that fall under the leader category of Gartner Magic Quadrant."
"There is a license needed to use NGINX App Protect."
"There are not any additional costs we had to pay to use NGINX App Protect."
"The pricing is reasonable because NGINX operates on an instance basis."
"The licensing fees for this solution are pretty expensive for what it does, but there is no alternative."
"Our licensing costs are about $40,000 a year."
"There are no additional fees."
"The price of NGINX App Protect is approximately $3,000 annually. All of our licenses are observed by a managed service partner."
"Pricing seems to be in line with the market structure. It's fine."
"What we're paying now is somewhere around $15 to $20 per agent per month, if I recall correctly. The other cost we have is SecOps."
"It came in cheaper than Trend Micro when we purchased it a few years ago."
"I'm happy with the amount that we spend for the product that we get and the overall service that we get. It's not cheap, but I'm still happy with the spend."
"It is very expensive compared to some other products. The pricing is definitely high."
"It is a cost-effective choice versus other solutions on the market."
"We find the licensing and pricing very easy to understand and a good value for the services provided."
report
Use our free recommendation engine to learn which Container Security solutions are best for your needs.
787,779 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
21%
Financial Services Firm
15%
Manufacturing Company
10%
Insurance Company
5%
Computer Software Company
19%
Financial Services Firm
11%
Comms Service Provider
7%
Healthcare Company
7%
Computer Software Company
25%
Financial Services Firm
13%
Government
7%
University
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What needs improvement with PingSafe?
When I joined my organization, I saw that PingSafe was already implemented. I started to use the tool's alerting feat...
Can we customize the dashboard in Threat Stack Cloud Security Platform? Any recommendations for an alternative solution supporting dashboards?
It is reported that an option exists to customize the dashboard in the Threat Stack Cloud Security Platform. You may ...
 

Also Known As

PingSafe
NGINX WAF, NGINX Web Application Firewall
Threat Stack, CSP,
 

Learn More

Video not available
 

Overview

 

Sample Customers

Information Not Available
Information Not Available
StatusPage.io, Walkbase, Spanning, DNAnexus, Jobcase, Nextcapital, Smartling, Veracode, 6sense
Find out what your peers are saying about NGINX App Protect vs. Threat Stack Cloud Security Platform and other solutions. Updated: May 2024.
787,779 professionals have used our research since 2012.