


Illumio Segmentation and AWS GuardDuty compete in the network security and cloud security categories. Based on features and capabilities, AWS GuardDuty seems to have the upper hand with its comprehensive threat detection utilizing multiple log sources and integration capabilities across AWS environments.
Features: Illumio Segmentation offers powerful micro-segmentation, real-time visibility, and detailed traffic mapping to enhance security and control. It excels in policy management and scalability by using labels for policy definition. AWS GuardDuty provides comprehensive threat detection across AWS environments, leveraging multiple log sources like AWS CloudTrail and VPC Flow Logs. Its integration with other AWS services enhances threat intelligence and enables better anomaly detection.
Room for Improvement: Illumio Segmentation could improve its onboarding process, third-party tool integration, and policy management while reducing agent dependency. AWS GuardDuty could enhance threat intelligence integration and cost efficiency. Users suggest better presentation of findings and increased automation for remediation processes.
Ease of Deployment and Customer Service: Illumio Segmentation is flexible for both on-premises and cloud environments but faces challenges in integration and support responsiveness, offering dedicated support. AWS GuardDuty is primarily cloud-based, praised for its AWS integration, but its support response times could be improved. Illumio provides dedicated support, while AWS offers continuous cloud monitoring support but sometimes encounters delays.
Pricing and ROI: Illumio Segmentation is seen as cost-effective, providing significant savings through its network security features and offering higher ROI due to its comprehensive security offerings. AWS GuardDuty operates on a pay-as-you-go model, which is cost-efficient for smaller organizations but can become expensive for larger ones. Both products reflect their service scope in pricing, with Illumio focusing on holistic security and AWS on extensive cloud threat detection.
It has saved about 90% of our time.
TotalCloud has generated overall savings of 30 to 40 percent across various departments.
CallStream helps us integrate and automate tasks.
I observe extensive return on investment with Illumio.
Illumio serves as a single endpoint technology where I can implement various features, including a zero-trust network, north-to-south and east-to-west configurations, and micro-segmentation, all coming from one platform, which ultimately saves us time and money.
Illumio definitely demonstrates its value in money-saving capabilities, enhancing our lateral environment inside the organization and providing effectiveness overall once integrated.
They are helpful, respond to my queries, and can answer any question.
Qualys's tech support is highly responsive, providing multiple ways to interact with them.
Qualys' customer service provides quality answers, but the response time is long, even though it is within the SLA.
I rate technical support for AWS GuardDuty as ten out of ten; AWS has very good security support overall.
I appreciate the support for AWS; it is relatively fast, and their SLAs meet my needs.
Whenever I raise a case with their support team, regardless of the priority level—P1, P2, P3, or P4—they generally reply within an hour
Even if we raise an issue on non-working days like Saturdays or Sundays, we receive prompt responses.
The customer support is very prominent.
We started our organization about nine months back. We started with about 30 users, and we now have more than 100 users.
Our organization currently uses it to manage over 1200 web applications.
It is absolutely scalable, and I would rate its scalability as nine out of ten.
It is designed to scale based on usage, which makes it very adaptable for varying demands.
Scaling it to a large level is not an issue for us.
By employing Linux scripting or other methods, I can push the policy to all devices at once, making it easy to scale.
Illumio's scalability is very good; it is quite easy to scale.
Overall, the support provided has been excellent.
It is a stable solution, which is why we chose it.
Continuous monitoring is crucial to ensure system stability and avoid vulnerabilities or threats.
The stability of GuardDuty is extremely reliable.
It is backed by machine learning, and AWS has strong machine learning models and the capacity to support this with advanced computing power.
Illumio is a stable solution with no glitches or bugs reported, making it a reliable product for us.
Ideally, the scanner should automatically detect and scan all subdomains, even if not explicitly defined, ensuring comprehensive vulnerability assessment.
Ideally, updates should be more immediate, enabling quicker implementation of solutions.
Our goal is to integrate all these functions into Qualys, creating a single dashboard for comprehensive security monitoring and management.
A unified dashboard that aggregates findings across all regions without requiring manual aggregation could enhance convenience for users.
Further integration with services like API Gateway would be beneficial.
Comparing AWS GuardDuty to similar products from Microsoft, Microsoft has a product called Sentinel, which is a completely integrated solution that basically does everything from vulnerability management to managing log analytics.
They need to install an agent in the container world, while Akamai Guardicore does not need to install an agent, so they have native support that Illumio lacks.
There could also be more examples of how the automations can be done using Illumio.
Another improvement might be around scalability, ensuring that as organizations grow, Illumio can handle even larger, more complex environments seamlessly.
Qualys TotalCloud's pricing is currently acceptable, it is becoming increasingly expensive.
Pricing is managed by our finance team; however, Qualys TotalCloud offers cost-effective licensing flexibility.
Qualys TotalCloud is expensive, but it offers a premier solution with no headaches.
GuardDuty is very cheap and operates on a pay-as-you-go basis.
The pricing of this tool is cheaper compared to other tools from other vendors, which are more expensive.
AWS GuardDuty is an expensive feature
I know that Illumio is the cheapest solution in the security area.
But when you compare it to firewalls, then it may not be that expensive.
I think it's not very expensive if we compare it with Guardicore.
This view of risk helps reduce the work we would have to do to combine multiple sources to prioritize risk.
It will help cybersecurity professionals monitor the cloud and find vulnerabilities.
We are enjoying the new feature, FlexScan, which is valuable for Internet-facing VMs.
It notifies you immediately when something goes wrong, allowing quick response to threats.
Enabling GuardDuty with a single click allows it to start analyzing data for threats without requiring additional software deployment or updates.
The great benefits of using AWS GuardDuty are that it is connected to all ecosystems from the AWS environment, and I can detect threats faster and locate all the information in a single tool.
Illumio helps in audit purposes by saving data and showing blocked traffic, ensuring no outside traffic is allowed.
The most important feature is the traffic review analysis, where we use the draft view and the reported view that helps us understand how the application interacts with other applications in the environment, and based on that, we are able to define the policies.
Illumio is a powerful tool for micro-segmentation and zero trust security that provides strong visibility, flexible policy management, and effective threat containment, enhancing an organization's internal security posture.
| Product | Mindshare (%) |
|---|---|
| AWS GuardDuty | 10.4% |
| Qualys TotalCloud | 1.5% |
| Illumio | 3.6% |
| Other | 84.5% |

| Company Size | Count |
|---|---|
| Small Business | 10 |
| Midsize Enterprise | 3 |
| Large Enterprise | 28 |
| Company Size | Count |
|---|---|
| Small Business | 7 |
| Midsize Enterprise | 3 |
| Large Enterprise | 16 |
| Company Size | Count |
|---|---|
| Small Business | 4 |
| Midsize Enterprise | 1 |
| Large Enterprise | 12 |
Qualys TotalCloud enhances security posture across cloud environments with continuous monitoring, vulnerability management, and risk visualization, ensuring efficient threat assessment and automated remediation for improved cyber risk reduction.
Qualys TotalCloud offers a robust suite of security tools essential for organizations managing multi-cloud infrastructures. By integrating cloud accounts and automating workflows, it supports AWS, Azure, and GCP, offering comprehensive vulnerability management and zero-day detection. The platform's user-friendly design, combined with its extensive risk management and unified threat assessment capabilities, enables organizations to prioritize and remediate vulnerabilities effectively. TruRisk Insights provides clear insights on cyber risks, while the automation options streamline patch management and scanning processes. API integration across IaaS and SaaS environments further enhances resource allocation efficiency and saves time, addressing misconfigurations across cloud environments.
What are the most important features of Qualys TotalCloud?Qualys TotalCloud is deployed in sectors needing rigorous vulnerability management, such as finance and healthcare. Companies utilize it to secure multi-cloud environments like AWS, Azure, and GCP, focus on compliance, and integrate security into CI/CD pipelines to detect and remedy threats pre-deployment.
AWS GuardDuty is a security service providing threat detection and continuous monitoring, integrating seamlessly with AWS services and third-party tools. Enhanced by machine learning, it offers comprehensive protection against unauthorized access and malicious activity within AWS environments.
GuardDuty offers behavior analysis and automated responses, utilizing multiple data sources like CloudTrail and VPC Flow Logs for thorough threat analysis. Its scalability and cost-effectiveness simplify the process of identifying suspicious activities, thereby protecting AWS environments from security threats. While users appreciate these features, there's room for improvement in expanded integrations, a more intuitive dashboard, and detailed threat intelligence. Key capabilities include facilitating compliance and enhancing cloud security by monitoring accounts, services, and detecting unusual patterns in real-time.
What are the key features of AWS GuardDuty?Industries utilize AWS GuardDuty for robust security management, detecting threats and analyzing potential risks within AWS environments. This is crucial for sectors needing strict compliance and security, such as finance and healthcare, enabling these sectors to respond effectively to security events and maintain integrity.
Illumio enhances security through micro-segmentation and real-time traffic control, offering detailed network visibility and precise application communication management. It supports scalability across environments, improving security posture and reducing lateral movement.
Illumio's features include real-time traffic control, micro-segmentation, and scalable policy management, allowing organizations to establish strict security measures against threats like ransomware. Its visibility map offers granular security insights essential for creating effective policies and auditing traffic. Centralized rule distribution and comprehensive traffic mapping augment security across environments. The platform's design ensures ease of deployment and compatibility, reducing unauthorized access by focusing on threat isolation and breach containment. While Illumio excels in flexibility and visibility, it requires advancements in technical support, third-party integrations, and user-friendly policy management to better support diverse operating systems and larger environments. Improved reporting, analytics, and automation for policy creation are necessary alongside reduced dependency on agents and enhanced data security measures.
What are Illumio's most important features?
What benefits or ROI should users look for?
Illumio is frequently deployed in industries where network segmentation is critical, such as finance and healthcare, offering detailed network visibility and control over application communication. Organizations integrate it seamlessly with existing infrastructures, facilitating the deployment of VENs and effective policy management to secure hybrid cloud and on-premises environments, ensuring compliance and defending against evolving threats.
We monitor all Cloud Workload Protection Platforms (CWPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.