Imperva DDoS and Azure Web Application Firewall compete in the web security solutions category. Imperva DDoS is often appreciated for its support and feature set, but Azure WAF stands out with robust features justifying its value.
Features: Imperva DDoS focuses on DDoS protection, content monitoring, and bot management, with features like IncapRules and extensive cache control. Azure Web Application Firewall provides ease of integration, strong security controls, and real-time traffic analysis.
Room for Improvement: Imperva DDoS needs to reduce false positives and improve interface and risk analytics. Azure WAF could enhance documentation, troubleshooting tools, and pricing models for small to mid-sized businesses.
Ease of Deployment and Customer Service: Imperva DDoS offers versatility across cloud environments but lacks satisfaction at the first support level. Azure WAF is praised for its quick deployment and intuitive setup, though users encounter delayed support communication.
Pricing and ROI: Imperva DDoS has higher pricing but users feel its protection justifies the cost, while Azure WAF provides flexible pricing according to service levels, although ROI quantification remains challenging for both.
AI-based recommendations save on time and money.
Recently, they have been under serious attack with major exploits, such as Log4j, affecting Fortinet and Palo Alto, and even Cisco and VMware.
They know how much money they are losing while the system is down, so by increasing the possibility of not having a down website or web application, return on investment can be calculated easily.
I hardly use Microsoft's paid subscription or maintenance services, however, whenever I send them a note, they have been responsive.
I am very satisfied with the response from Microsoft dedicated architects if it happens that I have to call for their support.
I would rate the technical support of Imperva DDoS as ten.
Some Azure applications, like the web application firewall, require a certain level of SKU for hosting setup.
99% of customers are using the cloud version of Imperva DDoS protection, so they just purchase the new license and scale as needed.
Very rarely do I see any latency issues.
The stability of Imperva DDoS is very good, as it seems they have a lot of servers around the world.
Upgrading the platform regularly is necessary for security, however, frequent updates every six months or year from Azure can be a maintenance overhead.
Maybe Imperva DDoS could use endpoints to get information about the attacks before they commence from the endpoint level or establish cooperation with endpoint vendors to share this information.
It is even a lower cost compared to AWS and GCP.
Sometimes, when opting for a higher SKU, it's not the WAF itself that's costly but the additional requirements.
I would rate the pricing of Imperva DDoS as five, where one is very cheap and ten is very expensive.
With Microsoft, everything is within a single suite, making it easier to configure and plan.
It is almost impossible to access these assets from outside, requiring a very skilled attacker to obtain asset tokens of a customer using Azure.
I have utilized Imperva's Intelligent Traffic Filtering feature. This feature helps me understand how the attack is progressing and what is happening inside the requests to our website.
Azure Web Application Firewall (WAF) provides centralized protection of your web applications from common exploits and vulnerabilities. Web applications are increasingly targeted by malicious attacks that exploit commonly known vulnerabilities. SQL injection and cross-site scripting are among the most common attacks.
To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.
Imperva DDoS is a solution that offers protection for web applications and websites and all their associated business-critical data from cyberattacks. The cloud-based application delivery service helps improve user experiences by improving their performance. Through its security platform, Imperva DDoS also provides DDoS mitigation, a web application firewall, and a global load balancer, and includes a content delivery network — all designed to maximize performance.
Imperva DDoS Features
Imperva DDoS has many valuable key features. Some of the most useful ones include:
Imperva DDoS Benefits
There are several benefits to implementing Imperva DDoS. Some of the biggest advantages the solution offers include:
Reviews from Real Users
Below are some reviews and helpful feedback written by Imperva DDoS users.
PeerSpot user, Etienne W., CDN & Cybersecurity Engineer - Web performance & security at CDN Tech / Ecritel, says, “It is a good solution that allows us to protect websites. It is stable, scalable, quick and easy to use.” He goes on to explain, “WAF protection works almost out-of-the-box. The Anti-DDoS mitigation in less than 1s, I saw it many times in production, I can say it works. CDN has high performances, and the Smart Caching mode is really "smart" (you can do some efficient caching even if you're not a specialist). Its unique interface for managing security performance and ease of use are the most valuable features of this solution."
An IT Senior Manager at an outsourcing company mentions, “The most valuable features are DDoS protection. The Incapsula [Imperva DDoS] environment helps us monitor all the web activity. All the web activity is passed through their WAF cloud services, then that can help us to monitor those activities. That can help protect against DDoS hacking.”
Another PeerSpot reviewer, Ben D., Sales Executive at EVVO LABS, comments, "Imperva Incapsula [DDoS] has many valuable features. One, it protects the top 10 OWASP vulnerability, the open web application software platform, this is standard. Secondly, it protects against broken authentication. As well, it has remote execution of code."
A Solutions Architect at a financial services firm states, “The solution's most valuable aspect is that it is easy to configure. The solution keeps itself up to date itself and there's no customization that we need to do. It makes it extremely easy and cuts back on the amount of work required, and saves us on man-hours.”
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.