

Imperva Application Security Platform and Azure Web Application Firewall compete in the web application security category. Imperva is favored for complex security needs, while Azure holds an advantage in pricing and integration with its services.
Features: Imperva features comprehensive threat defense focusing on correlated attack validation, threat radar, and DDoS protection. Azure provides a seamless integration within its ecosystem, effective web security, and detailed analytics options.
Room for Improvement: Imperva could simplify its user interface and caching rules, and improve real-time reporting. Support inconsistencies also need addressing. Azure's documentation and knowledge base could be clearer, and its pricing plans could be more accommodating for small to mid-sized companies.
Ease of Deployment and Customer Service: Imperva offers versatile deployment across multiple environments but lacks localized support. Azure excels in a public cloud setting with highly rated customer service and straightforward technical support.
Pricing and ROI: Imperva is seen as expensive, justified by its comprehensive feature set and robust protection, providing a strong ROI for enterprises. Azure's pricing is flexible and competitive, appealing with its integration capabilities, though additional features can be costly.
AI-based recommendations save on time and money.
Recently, they have been under serious attack with major exploits, such as Log4j, affecting Fortinet and Palo Alto, and even Cisco and VMware.
They know how much money they are losing while the system is down, so by increasing the possibility of not having a down website or web application, return on investment can be calculated easily.
I hardly use Microsoft's paid subscription or maintenance services, however, whenever I send them a note, they have been responsive.
I would rate the technical support that Azure provides from Microsoft a seven.
I reached out to their support, and they helped me resolve the issue effectively.
I would rate the technical support of Imperva DDoS as ten.
Beyond a certain SKU, I can install and use these services.
For our company, Azure Web Application Firewall works effectively for scalability.
99% of customers are using the cloud version of Imperva DDoS protection, so they just purchase the new license and scale as needed.
Very rarely do I see any latency issues.
The stability of Imperva DDoS is very good, as it seems they have a lot of servers around the world.
Upgrading the platform regularly is necessary for security, however, frequent updates every six months or year from Azure can be a maintenance overhead.
The pricing needs improvement, and I think for beginners it will be a little bit complicated, so the ease of use could be enhanced.
Maybe Imperva DDoS could use endpoints to get information about the attacks before they commence from the endpoint level or establish cooperation with endpoint vendors to share this information.
It is even a lower cost compared to AWS and GCP.
Sometimes, when opting for a higher SKU, it's not the WAF itself that's costly but the additional requirements.
I would place Azure Web Application Firewall at an eight on a scale from one to 10, with one being cheap and 10 being expensive.
I would rate the pricing of Imperva DDoS as five, where one is very cheap and ten is very expensive.
With Microsoft, everything is within a single suite, making it easier to configure and plan.
It integrates effectively with things such as Sentinel and Defender for Cloud, so mostly it's the analytics and now the AI capabilities that have been introduced with Co-pilot.
It is almost impossible to access these assets from outside, requiring a very skilled attacker to obtain asset tokens of a customer using Azure.
I have utilized Imperva's Intelligent Traffic Filtering feature. This feature helps me understand how the attack is progressing and what is happening inside the requests to our website.
| Product | Market Share (%) |
|---|---|
| Imperva Application Security Platform | 7.6% |
| Azure Web Application Firewall | 3.1% |
| Other | 89.3% |

| Company Size | Count |
|---|---|
| Small Business | 6 |
| Large Enterprise | 12 |
| Company Size | Count |
|---|---|
| Small Business | 83 |
| Midsize Enterprise | 25 |
| Large Enterprise | 61 |
Azure Web Application Firewall (WAF) provides centralized protection of your web applications from common exploits and vulnerabilities. Web applications are increasingly targeted by malicious attacks that exploit commonly known vulnerabilities. SQL injection and cross-site scripting are among the most common attacks.
To learn more about our solution, ask questions, and share feedback, join our Microsoft Security, Compliance and Identity Community.
Imperva Application Security Platform delivers comprehensive and continuous web threat protection. Renowned for its ease of use, it shields web applications and databases from various cyber threats while integrating seamlessly with cloud and on-premises environments.
Imperva Application Security Platform protects web environments by offering advanced security measures against threats like DDoS attacks, SQL injections, and cross-site scripting. As a robust web application firewall, it provides extensive monitoring and bot management capabilities. The platform integrates content delivery networks for enhanced performance and scalability, while real-time traffic analysis ensures consistent protection. Despite its strengths, improvements can be made in policy management and customization options. Users seek better integration with third-party tools and more competitive pricing models. The inclusion of AI for enhanced analytics is also anticipated.
What are the key features of Imperva Application Security Platform?Imperva Application Security Platform is implemented in industries needing strong database and application protection. Companies use it to enforce geolocation restrictions and manage bots, benefiting sectors like finance and e-commerce where data security and threat monitoring are critical. Its ability to protect and ensure data accessibility makes it integral to business operations prioritizing cyber resilience.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.