Imperva's Application Security Platform and Prisma Cloud by Palo Alto Networks compete in the cloud security market. Based on feature set and multi-cloud capabilities, Prisma Cloud appears to have the upper hand.
Features: Imperva's Application Security Platform includes advanced DDoS protection, a Web Application Firewall (WAF), and real-time traffic analysis, which are highly valued by users for ease of configuration and IT security compliance. Prisma Cloud shines with its multi-cloud compatibility and integration capabilities, offering comprehensive visibility and CI/CD pipeline integration, enhanced by dynamic workload identity management and preventative measures.
Room for Improvement: Imperva could enhance firewall penetration resistance, customer support, and IP analytics. The mobile app's lack for dashboard access is a notable absence. Prisma Cloud needs improved API security integration, interface simplification, and better response times. Automation and detailed reporting are also areas needing reassessment.
Ease of Deployment and Customer Service: Imperva's platform supports public and hybrid cloud environments, with mostly good technical support and professional customer service scoring between 8/10 and 9.5/10. Prisma Cloud excels in hybrid cloud support, receiving an average of 8/10 for customer service. Users note efficient support but mention technical integration challenges.
Pricing and ROI: Imperva’s competitive pricing ranges from $7 to over $10,000, offering substantial savings versus in-house security teams, although costs can increase with traffic loads. Prisma Cloud offers premium pricing with detailed multi-cloud capabilities, its consumption-based licensing perceived as complex, yet cost-effective through risk mitigation and management efficiency. Both solutions deliver strong ROI by eliminating the need for extensive security personnel.
WordPress security can be tricky, and that's where Cloudflare can be absolutely helpful for small businesses.
For the small project I was working on, using the basic tier provided a huge improvement at zero cost.
They know how much money they are losing while the system is down, so by increasing the possibility of not having a down website or web application, return on investment can be calculated easily.
It eliminates the need for additional hardware, making it a financially and technically sound investment.
Reputation and data security are the two most important things to a financial institution.
We may have prevented a security breach with remediation of the findings.
This would help us address issues promptly, especially during unforeseen events like DDoS attacks.
Cloudflare does not offer hands-on technical support to fix customer problems but rather a self-service model.
The key factor is the language in which the support is offered, which, in this case, is in Thai.
I would rate the technical support of Imperva DDoS as ten.
They can respond with technical documentation or pass on the case to the next level because it requires the development of a new feature or changing a feature due to a bug.
When you begin to deal with production workloads, issues need to be resolved faster.
You do not even get a valid or contextual answer.
It is a SaaS tool, but the fact that they have workloads deployed across the world proves that it is a highly scalable tool.
The tool offers very good performance, even during high-traffic periods.
I rate the solution’s scalability an eight out of ten.
99% of customers are using the cloud version of Imperva DDoS protection, so they just purchase the new license and scale as needed.
It's very scalable and very easy to use.
It's scalable.
The scalability is also a 10 out of 10.
For DDoS protection, I would not recommend Cloudflare.
I rate the solution’s stability an eight out of ten.
The service is very stable with no impacts during high-traffic periods.
The stability of Imperva DDoS is very good, as it seems they have a lot of servers around the world.
I would rate it a ten out of ten for stability.
There were some instances when it was not as stable, particularly the Defender setup, where it did not work for three days, so my team had to escalate, and then it suddenly worked.
Prisma Cloud is a stable platform.
There's a need for improvement in areas like AI-based DDoS attacks and Layer 7 WAF features.
Despite these challenges, overall, Cloudflare remains the preferred solution compared to Azure, AWS CloudFront, and Google Cloud Armor.
The timing aspect can lead to it being considered overpriced. This is a particular concern we have with Cloudflare, as they may struggle with accurately detecting the client.
Maybe Imperva DDoS could use endpoints to get information about the attacks before they commence from the endpoint level or establish cooperation with endpoint vendors to share this information.
From a developer's perspective, especially for organizations like banks developing their applications, ensuring API security before deploying them to the cloud is crucial.
Prisma Cloud is an excellent tool.
Even though documentation was available, it took a while for a new person to understand what integration meant, what will be achieved after the integration, or how the integration needed to be done on the Azure or AWS side.
That's where Cloudflare shines for smaller businesses – it's ten times cheaper than Akamai.
I find it to be cheap.
I think they should consider reevaluating the pricing for support, as it can be quite high.
I would rate the pricing of Imperva DDoS as five, where one is very cheap and ten is very expensive.
The cost was not on the higher side.
That's why a lot of our clients are shifting from cloud-native to Prisma Cloud: because of its effectiveness and because it is budget-friendly as well.
The solution is very expensive.
The most valuable features of the solution are performance and security.
Techniques like minification and image compression reduce the size of assets, leading to better performance and faster user load times.
The solution has been able to compare it to the market, and I think the product has taken great strides in automating quite a bit of things, and they use a lot of AI.
I have utilized Imperva's Intelligent Traffic Filtering feature. This feature helps me understand how the attack is progressing and what is happening inside the requests to our website.
CSPM can audit the current cloud configuration, identify misconfigurations, and assess risk.
It provides security across AWS, GCP, Azure, Oracle, and Alibaba.
Since the agent is already installed in the container, we can protect it directly from the application side.
Company Size | Count |
---|---|
Small Business | 45 |
Midsize Enterprise | 8 |
Large Enterprise | 25 |
Company Size | Count |
---|---|
Small Business | 54 |
Midsize Enterprise | 15 |
Large Enterprise | 40 |
Company Size | Count |
---|---|
Small Business | 34 |
Midsize Enterprise | 20 |
Large Enterprise | 58 |
Cloudflare is a highly-regarded Content Delivery Network (CDN) and a Distributed Denial-of-Service (DDoS) protection solution. The robust global connectivity cloud platform that is Cloudflare ensures users are able to connect to the Internet quickly, securely, and reliably. Cloudflare is one of the world's largest networks in the marketplace today. Using Cloudflare, businesses, educational entities, NGOs, vloggers, bloggers, and anyone else with an internet presence can experience more secure, faster websites and applications.
Currently, there are millions of Internet locations on Cloudflare, and the Cloudflare network
continues to grow every day by the thousands. The solution is able to fulfill the requests for
millions of websites seamlessly and serves on average 45 million HTTP requests per second.
Cloudflare has safe, secure data centers in close to 300 cities worldwide to ensure every
client request is filled as quickly as possible. It is Cloudflare’s edge network that makes this
possible by keeping content and other services as close to each client as possible, so the
information requests are always only seconds away.
Many organizations that work in democracy, civil society, human rights, or the arts are able to
access Cloudflare's highest levels of protection for free via Project Galileo. Additionally, official
election websites can be secured from hacking and fraud through Cloudflare’s Project
Athenian, also at no additional cost.
Cloudflare can also help organizations of all sizes develop a robust zero-trust strategy to
ensure the highest levels of productivity and profitability. Employees, stakeholders, and end users have a greater level of satisfaction and overall improved user experience, which can, in
turn, result in higher revenues and overall ROI. Zero-trust and BYOD (bring your own device)
access ensure end users and employees always have the best resources and technology
available to them at all times.
Cloudflare benefits
Cloudflare has many benefits. Some of its most valuable benefits include:
- Faster load times
- Robust DNS security
- Intuitive cloud Web Application Firewall (WAF)
- Free universal SSL
- Image enhancement
- Automatic browser caching
- Next-generation cloud load balancer
- Accelerated Mobile Pages (AMP)
- Rate limiting
- Minification
- Zero-trust capabilities
- Cost-effective
- Reduced carbon footprint
Reviews from real users
“Many websites require an SSL certificate because they sell stuff and want SSL. Cloudflare
comes with an SSL certificate built in. It's automatic. You sign yourself up for Cloudflare, and
an SSL certificate automatically protects your website. If you have a connection between your
website and your host, the server, Cloudflare, and the host, you don't necessarily need a
certificate.” Spencer M., Owner at Tech Exchange
“What I like best about Cloudflare is that my company can use it to trace and manage
applications and monitor traffic. The solution tells you if there's a spike in traffic. Cloudflare
also sends you a link to check your equipment and deployment and track it through peering,
so it's a valuable tool.” Daniel P., Network Engineer at Ufinet
“The most valuable feature of Cloudflare is the GUI. You are able to control the solution very
well through the interface. There is a lot of functionality that is embedded in the service.” PeerSpot user, Competence Center Manager at a tech services company
Imperva Application Security Platform offers robust protection with features like DDoS defense, WAF configuration, and CDN support. It's designed for real-time traffic analysis and compliance assurance, fostering enhanced security and performance for enterprises.
Imperva Application Security Platform is known for its comprehensive security measures, such as SQL injection prevention and bot management, effectively mitigating harmful traffic and providing detailed analytics. The platform supports content caching, load balancing, and bot protection, addressing performance and security needs efficiently. While the platform demonstrates strong capabilities, there's room for enhancement in areas like support response times and interface intuitiveness. Customers also express interest in improved report integration, firewall scripting, and SSL management. Additional Points of Presence could address latency issues in specific regions. Imperva can increase value with advanced AI features and more effective monitoring tools without extra cost.
What are the main features of Imperva Application Security Platform?In industries like finance, Imperva Application Security Platform is instrumental for securing transactions and maintaining operational continuity. It provides consistent protection by directing web traffic through its cloud-based infrastructure, keeping websites, applications, and APIs safe from attacks, critical for entities that handle sensitive data and require 24/7 reliability.
Prisma Cloud by Palo Alto Networks provides comprehensive cloud-native security solutions. It covers dynamic workload identity, automated forensics, and multi-cloud protection, ensuring robust security across diverse cloud platforms.
Prisma Cloud delivers advanced capabilities for managing cloud security across AWS, Azure, and GCP platforms. It offers dynamic workload identity creation, real-time monitoring, and seamless integration into CI/CD pipelines. With automation, centralized dashboards, and enhanced visibility, users effectively manage security misconfigurations and vulnerabilities. While optimizing cloud environments through runtime protection and compliance, Prisma Cloud faces challenges with its navigation, pricing, and limited automation capabilities. Users seek improvements in API security, role-based access controls, and documentation quality, emphasizing the need for enhanced customization and reporting features.
What are the important features of Prisma Cloud?
What benefits or ROI should users consider in reviews?
Industries like finance and telecom rely on Prisma Cloud for managing cloud security posture and container security. Teams utilize its capabilities across hybrid and multi-cloud settings to ensure compliance and robust threat protection. Features like misconfiguration detection and runtime monitoring are critical in promoting security objectives in these sectors.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.