My use case for Radware Cloud WAF Service is mainly for WAF bot protection.
Radware Cloud WAF Service is recognized for robust security features, offering protection against threats like DDoS attacks with a seamless deployment process and advanced bot management. API security is enhanced with real-time protection and analytics, providing effective defense against common vulnerabilities.
| Product | Mindshare (%) |
|---|---|
| Radware Cloud WAF Service | 1.6% |
| Imperva Application Security Platform | 7.3% |
| Cloudflare | 5.0% |
| Other | 86.1% |
| Company Size | Count |
|---|---|
| Small Business | 12 |
| Midsize Enterprise | 12 |
| Large Enterprise | 43 |
| Company Size | Count |
|---|---|
| Small Business | 223 |
| Midsize Enterprise | 124 |
| Large Enterprise | 311 |
Radware Cloud WAF is designed for web application protection, addressing issues like DDoS, SQL injections, and bot activity. Integration and deployment are straightforward, with features such as advanced bot detection, API protection, and geo-blocking enhancing threat prevention. The user-friendly interface and automated analytics offer centralized control for blocking unauthorized access and compliance assurance. Users benefit from the service's CDN component and its effectiveness against OWASP Top 10 threats, though improvements in reporting, API integration, and cost-efficiency are needed. Organizations value its role in monitoring, traffic analysis, and anomaly detection, securing both external websites and internal applications.
What are the key features of Radware Cloud WAF?In industries like finance, e-commerce, and healthcare, Radware Cloud WAF is crucial for protecting sensitive information and maintaining service reliability. Organizations use it for monitoring, traffic analysis, and blocking unauthorized access, ensuring compliance and reducing the risk of breaches.
| Author info | Rating | Review Summary |
|---|---|---|
| SOC Analyst at Adani Enterprises Ltd | 4.5 | I highly recommend Radware Cloud WAF for its excellent bot and zero-day protection, stability, and scalability. Despite some customization and integration challenges, its threat intelligence and efficiency are impressive, making it a valuable solution. |
| Experto de Seguridad Informática at a financial services firm with 1,001-5,000 employees | 4.5 | I use Radware Cloud WAF for critical banking applications, valuing its bot protection, simplified management, and reporting for compliance. It provides peace of mind. Support is good, but Spanish availability needs improving. I rate it 9/10. |
| Program Manager at a insurance company with 1,001-5,000 employees | 4.5 | I appreciate Radware Cloud WAF Service for robust API security, low latency, and cost savings. While API Discovery was initially challenging, its protection and learning modes are valuable. I recommend more training and KB articles for better utilization. |
| Works at Adani Enterprises Ltd | 4.0 | I use Radware Cloud WAF for real-time threat monitoring and zero-day protection, appreciating its multi-app integration and strong scalability. While customer support is good, I find the UI could be more user-friendly for new analysts. Overall, I rate it 8.8/10. |
| Senior RPA Engineer at Adani Enterprises Ltd | 4.5 | I primarily use Radware Cloud WAF for API security, incident mitigation, and compliance. Its excellent API management helped resolve threats, and it's stable and scalable. I appreciate its ease of use, though I wish it offered AI-powered report generation for stakeholders. |
| SOC Analyst at Adani Enterprises Ltd | 5.0 | I find Radware Cloud WAF excellent for geo-blocking, DDoS, and zero-day protection, significantly reducing false positives. Its stability and support are great, though faster P1 geo-fencing blocking is needed. |
| Assistant Manager (Network and Cyber Security) at a manufacturing company with 1,001-5,000 employees | 5.0 | I am highly satisfied with Radware Cloud WAF Service for its excellent protection against OWASP Top 10, zero-day threats, bots, and Layer 7 DDoS. Its API discovery and strong customer support are valuable, making it a stable and scalable solution. |
| Gerente de Tecnologia at Expreso Brasilia | 5.0 | I use Radware Cloud WAF to protect applications, appreciating its real-time response and preventive security. It significantly reduced unauthorized access and improved efficiency. Stable and scalable, I highly recommend it for its security benefits and positive impact. |
| Administrador de sistemas at a sports company with 501-1,000 employees | 4.5 | Radware Cloud WAF Service effectively blocks attacks, notably DDoS, and its dashboards offer great threat insights. It saves me time, reduces incidents, and I highly recommend it, although customer support needs improvement. |
| WAF Analyst at a manufacturing company with 10,001+ employees | 4.0 | I use Radware Cloud WAF for web app protection, valuing its custom signatures and API protection which prevent breaches. However, broken normalization, inaccurate AI, and a buggy portal hinder effectiveness despite good support. |
The best features of Radware Cloud WAF Service that I prefer most include the bot protection. Its deployment was very smooth and flexible when I started deploying it. The reporting and visibility feature of the Bot Manager are noteworthy, as the dashboard gives clear insight into the traffic, activity, and block threats. The AI threat intelligence feature is quite impressive.
In terms of blocking unknown threats and attacks, I assess Radware Cloud WAF Service as quite impressive; if I have to rate it out of 10, I would rate it eight and a half.
The automated analytics for looking at events with Radware Cloud WAF Service is generally fine, and whenever we use it, it gives almost perfect results.
In API protection with Radware Cloud WAF Service, we have multiple applications that we are using currently, and whenever there is any threat related to an API, it helps us provide detailed insight. Additionally, whenever there is unusual API traffic, it helps us monitor and detect threats.
In Radware Cloud WAF Service, the areas that have room for improvement include customization and personalized integration, as we faced multiple issues with those aspects during our deployment.
I have been using Radware Cloud WAF Service for approximately one and a half years.
Regarding stability, I can say that in the last one and a half years, I haven't seen any downtime, so I would rate that 10 out of 10.
In terms of scalability, it's also a 10 out of 10 because we are using Radware Cloud WAF Service for more than 60,000 employees in our organization, and it works perfectly fine.
I would rate Radware support nine out of 10; it's perfectly fine, and an engineer is available all the time, resolving our issues in a timely manner.
Positive
When I compare Radware Cloud WAF Service with other WAF software, we used to use different WAF software before Radware, and now we've switched to Radware. There are multiple benefits, such as cost, efficiency, threat intelligence, and multiple features, so Radware is quite impressive compared to other WAF solutions.
Regarding overhead costs, we used a different solution before Radware, so it's not quite expensive, but it is moderately expensive. Radware Cloud WAF Service does the job in a cost-effective way as.
In terms of false positives, Radware Cloud WAF Service helps reduce them to around 30 to 35%. Cloud WAF saves me time; before, there were multiple false positive incidents that used to create too much workload for an analyst, and now we can say it has improved efficiency by 10 to 12% on average.
Radware Cloud WAF Service integrates seamlessly with other applications and solutions, although we faced difficulties with two or three vendors; other than that, it was perfectly smooth.
Radware Cloud WAF Service's ability to protect against zero-day attacks is very good; the threat intelligence feature is excellent in the WAF. It helps us protect against zero-day threats significantly, and whenever a zero-day occurs, it notifies us as early as possible, helping us get it resolved.
I find the combination of negative and behavioral-based positive security models highly important, and if I were to rate it on a scale of 10, I would rate it as eight and a half to nine.
We have Radware Cloud WAF Service deployed on firewalls, such as an MSPL entire network, and even though we use the Source Blocking feature, I cannot say we fully utilize it. With the Source Blocking feature, the automated, proactive, and holistic approach based on cross-module correlation is working perfectly fine.
I use Radware Bot Manager. With Bot Manager, I haven't discovered anything new in terms of incoming bot traffic, but it helps us identify bot traffic and real traffic. Radware helps to distinguish between the two, improving things such as blocking the IPs or managing the traffic, ensuring that genuine service is available and easily accessible for real users.
Radware Bot Manager helps with compliance significantly; for instance, whenever there's a web application, it identifies bot traffic and genuine traffic, allowing us to block the bot traffic so that services for genuine users are more available. In Radware Cloud WAF Service, the real-time BLA detection and mitigation help us in a very effective way by saving time and making the solution efficient.
I use the Web DDoS for HTTP L7, and it helps us very much; it helps distinguish between malicious and genuine traffic. Approximately, there are multiple users for Cloud WAF; our organization contains a total of 60,000 to 65,000 employees who use the WAF, along with customer-facing sites that also use the service. The solution requires maintenance according to our policy, such as managing the blocking list and related tasks.
I would definitely recommend Radware Cloud WAF Service to other users because it features multiple tools that help reduce workload and manage bot traffic. Additionally, it assists in mitigating zero-day threats and notifying us further, providing numerous solutions to customer problems. Overall, I would rate the solution from 1 to 10 as eight and a half to nine.
Radware Cloud WAF Service is used in my organization to protect critical services, including banking applications, all of which are protected as critical services with Radware Cloud WAF Service.
A specific example of how Radware Cloud WAF Service has protected one of these applications involves incidents where I detected different alerts related to bot attacks, and thanks to the tool, we were able to identify them and prevent those attacks from being effective.
Traffic control and filtering are very useful for protecting the applications, and I would like to add that these capabilities are important to our use case.
Radware Cloud WAF Service's best features are the simplified management, which is quite intuitive, and the reporting that provides us with relevant information.
The reporting allows us to obtain values and data on the amount of traffic entering the application, helping us determine parameters while considering a line of attacks that we might face. This reporting is important to present to a steering committee to justify the application's security.
I consider the Anti-Bot and API Protection modules to be extremely important, and by having these additional functionalities configured, we have been able to reinforce and strengthen our applications in a much better way.
Radware Cloud WAF Service has positively impacted my organization by providing peace of mind for the team and ensuring regulatory compliance. Radware Cloud WAF Service has been very useful in guaranteeing the integrity of the information and secure access to the applications, which are necessary in the banking field.
I chose a rating of nine and not another number because Radware Cloud WAF Service is a very intuitive tool with the necessary controls to guarantee the integrity of the information, but those improvement aspects keep me from giving it a perfect score.
I have been using Radware Cloud WAF Service in my organization for three years.
Throughout the time we have used Radware Cloud WAF Service, it has been quite stable.
Radware Cloud WAF Service's scalability has been good, as it has adapted quite well to my organization's growth.
My experience with the technical support of Radware Cloud WAF Service has been positive, as the response has been quick.
When an incident occurs, a ticket is opened for Radware's technical support, and generally when it is urgent, it is done through a call. The response is usually immediate to create the case and from there carry out the corresponding review.
I did not have the opportunity to manage another similar tool before using Radware Cloud WAF Service, as we have always had Radware Cloud WAF Service since I have been here.
The technical side of the configuration has been simple, though I do not have the exact figure for costs.
I have seen a clear return on investment with Radware Cloud WAF Service in terms of saving time and resources because being a very solid tool, it does not require much attention, only during incidents.
My advice to someone considering implementing Radware Cloud WAF Service in their organization is that it is a very good, robust tool, and they should take into consideration the support that I mentioned earlier. I would rate this solution nine out of ten.
For the WAF, in the last time I discussed with the Radware team only, we are searching for the API solution and all but we are not getting the API solution required for this on-prem solution. We did some modification and testing in the Radware product only, and we are using the Radware Alteon switch as an API Gateway also, in terms of features that an API Gateway would provide. Whatever the API things are there, it will be monitored and in the learning mode through Radware Cloud WAF Service.
We are using the API Discovery feature for the particular API for our BFSI segment, for the internal calling. Through this, we are allowing only the particular connection or particular request through only our API module. So through this Alteon model, it is working smoothly, rather than one-to-one with the other solution. It is working smoothly, and we require minimum latency, such as less than 10ms. We are achieving six to seven ms latency, so we are very much happy with the performance and the solution uses.
Radware Cloud WAF Service has helped to reduce our overhead costs. We are not required to procure the API manager or API gateway, which would have been another application required or overhead for us, but this reduction has been achieved through this Radware solution.
Radware Cloud WAF Service has helped to reduce our false positives. We can block the particular request based on response time or particular connection or request basis. Through an IP address or string, we can block and we can take suggestive action. The automation action is there.
Radware Cloud WAF Service provides automated analytics, which allows us to understand the behavior of the application and whatever the threats or strings are there that we are calling. Some strings are blocking, and if the other strings are required for the application basis, we can keep them in an allowed mode or in a protection mode or in a learning mode to understand the behavior of the application. As per the risks, we can apply for the protection or detection or any learning mode as per the application behavior.
The best features in Radware Cloud WAF Service are the protection mode, detection, and the learning mode, which I value because if you are not guaranteed or sure about the behavior of the application and all, you can keep the application in learning mode for a particular period, such as days, weeks, or some months. The learning mode shows how the application behavior is on a daily basis, hourly basis, or weekly basis. After that, you can take action.
In assessing Radware Cloud WAF Service for blocking unknown threats and attacks, we can block the particular request or on the response time or particular connection or request basis. Through an IP address or string, we can block and we can take suggestive action. The automation action is there.
API Discovery has helped to reduce our overhead costs. We are not required to procure the API manager or API gateway, which would have been another application required or overhead for us.
From the integration capabilities, we first integrated in a learning mode. After the learning mode, we kept in the protection mode and all, as per the application behavior. We tested performance, requiring minimum latency, such as less than 10 seconds. We checked with other applications, such as the performance testing application. We enabled the WAF rules as per the requirement and protection requirement and then tested through the other application, checking the performance and latency. Once the latency was achieved, or if any issues were there, then we made changes or modifications to the WAF rules as per the testing result.
In assessing Radware Cloud WAF Service's ability to protect against zero-day attacks, there is AppWall, Bot Manager, API protection, and client-side protection. All the features are there, and we can trust this application.
The combination of negative and behavioral-based positive security models is important for our organization's security strategy because it is blocking the unauthorized API also, and it also validates the user, device, and applications in real-time.
My experience with it is that it is blocking unauthorized API uses. It will not pass the unauthorized API, which will reduce server utilization and provide the proper response through this existing server. It validates user, device, and application behavior, as well as unauthorized API uses.
The automated source blocking feature's proactive and holistic approach based on cross-module correlation has been effective in protecting our applications. It works properly, takes the required action, and provides detailed action of what we have taken. However, some intimation or communication will be required, such as reporting. The automation reporting is required on the dashboard so we can get detailed reports of what action is taken and at what time, allowing us to improve our application as per their action and analytics.
We are using the WAF HTTP L7 DDoS Protection.
Radware Cloud WAF Service helps in securing our business continuity by improving API security and also providing behavioral-based security. This combination enhances protection.
In the starting mode, API Discovery was a little bit challenging for us, but after utilization and after day-to-day uses, we are stable and able to tackle the solution. We understand how to operate and manage the solution. There should be a limitation of KB articles or training sessions or training videos or certification. If it will be there online or through their portal for existing clients, then it will be beneficial.
Radware Cloud WAF Service means there is no physical hardware requirement here, and it's fully managed, which brings many benefits to the table and helps improve the way our organization functions.
We are using two or three applications through the cloud, making our DC-DR application also secure. We do not have any requirement on the cloud as per the on-prem. We can manage our DC-DR application or far DR application. The only thing required is training material, education, or certification so we can understand or access KB articles.
I have been working with Radware Cloud WAF Service for the last six to seven months only.
When it comes to tech support of Radware, they support Radware Cloud WAF Service well, and I would rate them an eight. They pass calls to their authorized SI partners, and due to limitations of knowledge, they invest 24 to 48 hours for troubleshooting before it is passed to the Radware team. Once the Radware team addresses it, issues are typically resolved within one to two hours, and out of 10 issues, nine are resolved promptly. Out of 10, one may take one week or two weeks due to significant issues requiring their engineering or higher team for resolution.
Positive
We have evaluated other options and solutions, including the firewall of Fortinet, which has a solution, and Imperva and F5, which we have also evaluated. We checked Cloudflare as well, but for our requirement and usage, along with Radware Alteon switches and the LLB, we think that we will go only with Radware.
We have seen ROI with the WAF product, achieving it already in three and a half years, specifically a 3.3.
In noticing any differences in pros and cons of Radware in comparison to other competitors, Radware would rank second out of three. If another brand is on the first, we go with Radware due to trust, as we have been using it for the last 10 years. For support and price base, we think Radware is best for us as per our requirement. Other brands may have some top features, but we know that after a few months or weeks, Radware is going to introduce those features.
False positives mean we have set certain rules, so whatever the rules are there matching, they are allowing the services or whatever the transaction or request is there. Other requests are being blocked immediately. Whatever the requests allowed, the genuine requests are sent only.
We are using the automated source blocking feature in Radware Cloud Application Protection.
We are using Radware's Bot Manager, but not that much, because we are not using any automated bot in our application.
We have not discovered anything about incoming bot traffic that we were not aware of before using the Bot Manager. In the last 10 years, we have been using Radware only.
Real-time BLA detection and mitigation means we can safeguard our content, and proper visibility of traffic is there, identifying bot content or any other contents, providing visibility through Bot Manager only. We can say we are getting the proper visibility through Bot Manager regarding effective human traffic or non-human traffic.
From a features perspective, functionality-wise, most of the features are there in Radware Cloud WAF Service, such as API, Bot, or zero trust. We think we have these features, but the requirement for education or KB articles is currently essential. Radware is providing top-notch features compared to competitors, and only this feature and how to use it is required.
For advice or recommendations for other organizations considering Radware Cloud WAF Service, we suggest taking monthly or weekly sessions or webinars for new features. This way, everyone will be aware of the new features, and they can send communications about webinars or new feature introductions. Our team can join these sessions and evaluate the features.
My use cases for Radware Cloud WAF Service in my current organization, where I serve as a Cyber Security expert and SOC analyst, involve deeply investigating live network traffic from both inside and outside our organization to improve security through real-time threat monitoring and live data analysis. For example, when a new application was set up in the Adani Group, which is a very big organization, we received significant traffic that day; we used Radware Cloud WAF Service to check the indicators and investigate accordingly, based on the rules we had set. This not only helps during predefined activities but also during unexpected high traffic instances, allowing us to enhance security effectively.
While there are many features of Radware Cloud WAF Service that I appreciate, one standout feature is the integration of seven applications of Adani for analysis, which provides a separate dashboard to monitor various domains effortlessly.
The user experience is designed to be straightforward, allowing easy preferences and interactions. Radware Cloud WAF Service effectively handles zero-day attacks by rapidly identifying vulnerabilities before they can affect our organization, which enhances our proactive measures through collaboration with various teams, such as the VA team, to address vulnerabilities and apply necessary patches.
Although I don't consider it to have significant downsides, I believe the UI could be improved to be more user-friendly, especially for new joiners in SOC who might struggle to understand the traffic based on numerical data. For instance, a tree chart feature available in other platforms, such as CrowdStrike, could simplify the understanding of traffic flow and save time on analysis.
I have been using Radware Cloud WAF Service for approximately 1.5 years, as I joined the Adani Group three months ago after working at N10 TechnoSoft, which involved development and cyber security.
I have not experienced any significant downtime or crashing with Radware Cloud WAF Service, although I have noticed occasional issues with logging in through SSO that cause redirects to a 404 page, which I resolve by restarting my browser.
I find the scalability of Radware Cloud WAF Service to be very good and would rate it a 9 or a 9.5 on a scale of 1 to 10.
I have contacted the technical support and customer support multiple times due to the need for clarification on functionality in our 24/7 SOC environment, where understanding various features is crucial for analysis. They have been responsive and helpful, reaching out within a day or two. If I were to score the support on a scale from 1 to 10, I would give it an 8.5. I would round that score up to a 9.
Positive
The initial deployment of Radware Cloud WAF Service was easy; however, it required some time to understand fully. I estimate it took around two months to fully deploy Radware Cloud WAF Service for the first time, based on what I've heard from colleagues, as I recently joined the company where Radware Cloud WAF Service has been in use for more than three to four years.
Regarding current pricing, it is managed by our higher authorities, but I believe the price is reasonable for our organization. If we expand our services in the future, the current pricing doesn't pose an issue for us, especially as it opens opportunities for profitability based on the services we utilize from Radware Cloud WAF Service.
While I haven't used direct alternatives to Radware Cloud WAF Service, I can mention that we consider CSPM in our cloud segment. The company is exploring the possibility of providing services to other companies, signaling future growth and deeper integration of Radware Cloud WAF Service.
In terms of API usage, I focus on using the bot management and API security functionalities of Radware Cloud WAF Service, which protect against automated threats such as DDoS attacks created by bots.
Overall, I would rate Radware Cloud WAF Service an 8.8; while there are strong features present, there is room for improvement, particularly concerning end-user analytics, which would justify a higher score.

My use case for Radware Cloud WAF Service is that we have Radware as one of our products for security protocols that we have established at our organization. Whenever there is a cloud security alert, we check Radware services so that we can mitigate the alerts.
What I appreciate the most about Radware Cloud WAF Service is the API management. The API information that they provide is excellent. The hidden and non-discoverable APIs information available with Radware Cloud WAF Service is really great.
I cannot share some important details of the incident that we received. That said, thanks to this feature, we were able to mitigate a threat. The information they provide and the discovery they do really help us out in some incidents.
They also help us meet compliance requirements. Being a big organization, we have to meet certain compliance standards, and for the PCI DSS, this product really helps us out.
Radware Cloud WAF Service is a comprehensive tool, and my functionality with it is limited as I'm working on multiple things at a time as a security consultant. In our organization, only specific tasks are assigned to a single individual. That's why I'm primarily focused on API security and sometimes DDoS attacks.
Radware Cloud WAF Service integrates very well with other applications and services; we have Microsoft TI tool with us, and it's integrated efficiently. We receive the alerts on time.
Regarding zero-day attacks, we are fortunate that we haven't received any as of now. For API security, I have closely seen how Radware Cloud WAF Service has helped us twice this year.
We use Radware Cloud WAF Service for our security purposes. We have a symbiotic relationship with Radware Cloud WAF Service. They provide us with information and necessary security steps, and we use it for our investigation or threat hunting.
As for the downsides of Radware Cloud WAF Service, I would surely appreciate some AI integration with report management. Whenever we handle an incident, we have to generate many reports. We have to get data, information, and screenshots on multiple things. A future feature in Radware Cloud WAF Service that could give us a presentable report for our stakeholders would be a really great addition.
I have been using Radware Cloud WAF Service for about 18 months.
I have never seen any lagging, crashing, or downtime with Radware Cloud WAF Service.
The cloud engineering team has told us it's really scalable. Whenever we deploy something or integrate this, it's really flexible with the DevOps and DevSecOps teams.
I have never contacted the technical support or customer support. We have communication through emails; nothing very technical.
Positive
The learning curve for using Radware Cloud WAF Service is very easy. There is nothing too complex about it.
We have these Radware information sessions and emails coming up to tell us the latest about what's happening in the cyber environment. They provide information on basic concepts and where to find it in the emails. Even a beginner can learn it within ten days.
Radware Cloud WAF Service does not require any maintenance on my end.
I have never used any alternatives to Radware Cloud WAF Service. In my previous company and currently at our company, it has been Radware Cloud WAF Service.
The source blocking feature is not utilized here as we use a different solution for source blocking. My colleague handles the Bot Manager aspects. Everyone here has different tasks, roles, and responsibilities, and we get assigned to specific incidents.
I rate Radware Cloud WAF Service nine out of ten.

My use case for Radware Cloud WAF Service is to block all IPs and geo-locations that are not required in the organization.
Blocking based on geolocation is very helpful.
The automated analytics for analyzing events are beneficial for automation and make it easier for analysts working in the SOC. It is useful for analytical purposes as it helps us understand how we can perform various activities that Radware Cloud WAF Service belongs to.
Radware Cloud WAF Service has reduced our false positive rate by more than 50%. Regarding the blocking feature, Radware Cloud WAF Service is one of the best tools as we can easily block and reduce our alerts through IP blocking. We utilize CDN services with Radware Cloud WAF Service, and although it was initially challenging to understand, once we grasped it, it became easy for us.
I am using web DDoS protection with Radware Cloud WAF Service, and it is a very good product for protecting our businesses. The WAF protection is excellent and does not require any improvements as it is already working effectively and is executable. Radware Cloud WAF Service is really good for protecting against zero-day attacks as it protects our organization and businesses effectively. For patching purposes, once a zero-day attack has been exploited, we can block some geo-locations to prevent other attackers from targeting us.
Compared to other Cloud WAFs, Radware Cloud WAF Service is one of the best since it blocks for protection purposes within 15 to 20 minutes when we raise an incident, while it takes longer for others to implement geo-fencing and related protections.
The area that can improve with Radware Cloud WAF Service is the speed at which they block geo-fencing and IP for P1 cases, which currently takes about an hour. If they could reduce that to ten to 15 minutes, it would be easier for us.
I have been using Radware Cloud WAF Service for one and a half years.
I rate the stability of Radware Cloud WAF Service as ten out of ten, as there are no glitches, and when they occasionally happen, they notify us, making it easier than other services.
More than 500 users are using Radware Cloud WAF Service.
I would rate the technical support as ten out of ten.
Positive
I find the solution easy to deploy.
The pricing is moderate, making it affordable for any business and not overly costly.
I definitely recommend Radware Cloud WAF Service products to other users as it is comparatively good, not very costly, and the service they provide is among the best.
I rate this solution ten out of ten.
My main use case for Radware Cloud WAF Service is protection against OWASP Top 10 and zero-day attacks, API discovery and security and governance, bot mitigation and protection against automated threats, Layer 7 DDoS protection, client-side supply chain protection, and adaptive automation for high-velocity DevOps environments.
We have onboarded 35 applications on Radware Cloud, and my organization uses Radware Cloud WAF Service to protect different applications from SQL injection, cross-site scripting, and other OWASP Top 10 risks. The dual native and positive security model helps block zero-day threats without generating significant false positives.
The best features Radware Cloud WAF Service offers include multiple key features such as API discovery, which is very important, bot mitigation, which I believe is the most important feature, and Layer 7 DDoS protection, which protects Layer 7, along with adaptive and automated web services for high-velocity DevOps environments.
The API discovery and bot mitigation help my organization by providing major security and operational advantages in an environment where APIs grow and change rapidly. Radware Cloud WAF Service finds all APIs, including undocumented ones, as it automatically discovers documented and undocumented third-party APIs across our environment.
To improve Radware Cloud WAF Service, I believe it should enable full application and API coverage to ensure all web applications and APIs, including internal and legacy web services, are onboarded and, if using secure path or secure connectors, deployed across the cloud environment while fine-tuning the positive security policies.
I have been working in my current field for the past 11 years.
Radware Cloud WAF Service is very stable and useful for my organization in protecting Layer 7 applications.
Radware Cloud WAF Service's scalability is very good. Whenever required, you can enable features such as API discovery and bot protection, and it is scalable for the application, allowing you to increase the license as well.
I believe the support is fantastic, and I receive great support from Radware Cloud positively.
The customer support for Radware Cloud WAF Service is fantastic and excellent, as we receive immediate support whenever required.
I have been using Radware Cloud only and have not switched from any different solution.
I definitely feel a return on investment from using Radware Cloud WAF Service, as we find it very useful.
I have not evaluated any other cloud WAF Service options and am using only Radware Cloud WAF Service.
I am currently satisfied with Radware Cloud WAF Service because it is a great tool to protect Layer 7 applications.
I have observed that our applications are protecting against emerging threats such as DDoS attacks, and I believe all DDoS attacks are protected by Radware. I have also seen the protection against botnet attacks, which is very useful for my organization.
I have seen measurable results, such as allowing only Radware IP in our firewall, which actually reduces the attack surface in our application.
I am giving a rating of 10 out of 10 to Radware Cloud WAF Service. I chose a 10 out of 10 because I am very satisfied with our application protection provided by Radware Cloud. I would rate the customer support a 10 out of 10 as it is very strong support provided by Radware.
I advise others looking into using Radware Cloud WAF Service to definitely use it, as I am very satisfied with the results. I believe that Radware Cloud WAF Service is a very good tool, and organizations should use it to protect against emerging and evolving attacks. My overall review rating for this product is 10.

My main use case for Radware Cloud WAF Service involves four domains; three of them are applications exposed to the internet and the fourth is an internal application for exclusive use through remote access.
I use the platform to protect those applications exposed to the internet by having the domains registered in Radware Cloud Service, and from there we can monitor unauthorized access or attempts to access the platform by users from locations where they should not be logging in, or any kind of traffic that is not what we normally have. It helps us, it prevents and then blocks those attempts that fall outside the parameters we have configured.
The best features offered by Radware Cloud WAF Service, in my opinion, are the real-time response to incidents which allows us to block and to take action before the damage occurs. It allows us to identify situations in a preventive manner and to take initial restrictive actions and then corrective ones.
I believe the preventive actions it takes based on the parameters of what it finds on the networks and in the databases of weaknesses and vulnerabilities are especially useful, as it applies them and helps us so that with any attempt that goes outside the parameters, we don't have any type of incident.
Radware Cloud WAF Service has positively impacted our organization because we feel safer, we feel that we have controlled access by unauthorized third parties, and we feel that our applications that face the internet, that are published, are more secure and that we can take preventive actions before any type of event occurs.
I think Radware Cloud WAF Service could be improved by having an always up-to-date database, having full identification of vulnerabilities and gaps in tools that keep emerging, and by actively and permanently involving all the analyses and predictions that can be done through artificial intelligence.
Regarding the necessary improvements, the platform is adequate as it is, and I don't have any specific function that I have missed or any technical aspect that could be further optimized.
I have been using Radware Cloud WAF Service for two and a half years.
I consider Radware Cloud WAF Service to be stable in day-to-day use.
I would rate the scalability of Radware Cloud WAF Service as adequate, and the platform adapts to the growth of my organization. I initially stated that scalability was inadequate, but I need to correct that statement as it is actually adequate. I have used it when we started with three domains and now we are on the fourth domain.
The customer support of Radware Cloud WAF Service has been good, with very good response times and full compliance with SLAs.
We did not have any other solution before implementing Radware Cloud WAF Service.
My experience with pricing, implementation costs, and licensing is positive, as the costs were quite well adjusted, the cost-benefit ratio is very good. The implementation also had a very reasonable cost and the timelines were excellent, with no major delays or setbacks, and the results were seen almost immediately.
I have seen a return on investment because there are time savings for personnel dedicated to doing tasks that they previously had to do manually or in some other way. With the implementation of Radware Cloud Service, they were freed from those tasks and were able to balance their workloads significantly. While it does not reduce the size of the team or the number of resources, it does optimize each one's time and allows them to do more tasks that they did not previously perform.
Since I started using the platform, one specific result that has improved is the reduction in the number of unauthorized access attempts, which is good because we are in the process of ISO 27001 certification, and this has decreased considerably. Additionally, the impact on response times and process optimization has been excellent, as response times have decreased considerably and our platform has higher levels of availability.
The costs were quite well adjusted, the cost-benefit ratio is very good.
Before choosing Radware Cloud WAF Service, we evaluated other options from Cisco and we considered Cloudflare.
I chose Radware Cloud WAF Service instead of the other option after doing a pilot, and the results were much better and more convincing in terms of what we expected regarding the impact of the tool on our platform.
My advice to other people who are considering using Radware Cloud WAF Service is to implement it, as the response times are excellent, and they should take into account and fine-tune the scope of the applications and domains they want to evaluate. They should also consider the traffic and the throughput. I would rate my overall experience with Radware Cloud WAF Service a ten out of ten.
The main use case for Radware Cloud WAF Service in my organization is blocking attacks. A specific example of a type of attack that I was able to block using Radware Cloud WAF Service is blocking DDoS attacks. I am referring to DDoS-type attacks.
Radware Cloud WAF Service detects and blocks this type of threat in my environment by blocking them and then showing them to me in interactive dashboards with the source IP addresses.
The dashboards work very well to understand the focus of the threat, the origin of the attacks, and to create interactive reports to explain in dashboards where each attack comes from and to block the sources.
The best features offered by Radware Cloud WAF Service are the dashboard and the ease of blocking attacks.
On a day-to-day basis, the most useful features of the dashboard make things easier for us because it blocks the attacks, preventing them from reaching the company's environments. In the dashboards, I get the IPs, the origin, a map showing where they are located, and the specific pages that are attacked.
Radware Cloud WAF Service positively impacts my organization as it saves us headaches when we have attacks since it blocks them. I have noticed a specific change in security, a reduction of incidents, and improvements in response times since I started using the tool, as problems have decreased with fewer attacks.
Radware Cloud WAF Service could be improved by making exporting dashboards easier.
I have been working in the area of systems administration for five years.
I consider Radware Cloud WAF Service to be stable in my environment.
I rate the scalability of Radware Cloud WAF Service as it adapts very well to growth or changes in my organization.
My experience with Radware Cloud WAF Service customer support could be better.
I did not use any other solution before implementing Radware Cloud WAF Service.
Before choosing Radware Cloud WAF Service, I did not evaluate other options.
I have seen a return on investment since I started using Radware Cloud WAF Service with time savings.
That time savings translates into my day-to-day work or my team's processes by eliminating the need for us to block the sources; Radware Cloud WAF Service blocks them automatically.
My experience with the pricing, implementation cost, and licenses of Radware Cloud WAF Service has been good. The only thing is that I would lower the price, but otherwise it's great.
My advice to other companies that are considering using Radware Cloud WAF Service is that they should buy it because it makes your work life better. I give Radware Cloud WAF Service a rating of 9 out of 10.
My main use case for Radware Cloud WAF Service is protecting web application servers, as I am protecting 750 applications or more. Radware Cloud WAF Service protects the perimeter or the front end of the web applications, so I am using all the protections it comes with. I have nothing else to add about my main use case or how I am using Radware Cloud WAF Service.
The best features Radware Cloud WAF Service offers are the custom signatures and the API protection. The custom signatures and API protection have helped me because other vendors don't have API protection, so that's a significant advantage. Radware was chosen by Caterpillar because Radware is bleeding edge cybersecurity, though I was not at the company when these decisions were made.
Radware Cloud WAF Service has positively impacted my organization by keeping us from having data breaches or denial of service attacks, which is the positive outcome of using the WAF. I don't really track the positive outcomes; management tracks more of the failures than the positives, and that's not my area, so I can't really comment.
I wish I had normalization because Radware Cloud WAF Service is not normalizing inputs properly and that's causing a lot of problems. Radware Cloud WAF Service can be improved as the unified portal is still buggy and mutual TLS needs to be enhanced because it only performs server side, and it needs to be client side. I've put in an NFR for that, so Radware knows about it.
Regarding Radware Cloud WAF Service's AI capabilities, I think it needs more work as the AI makes a lot of mistakes. I've already commented on that; the governance and security is fine, but the accuracy is lacking. I assess Radware Cloud WAF Service for blocking unknown threats and attacks by saying it depends; if the signatures are up to date and its positive model is working properly, it's very good, but the problem is its normalization is broken, so Radware Cloud WAF Service can be bypassed quite a bit if you know what to look for, and this is a problem, which is why normalization needs to be fixed.
I don't know if Radware Cloud WAF Service has helped reduce my false positives; I can't answer that as it seems to have more false positives than F5 from my experience. I assess Radware Cloud WAF Service's ability to protect against zero-day attacks by saying it depends on the zero-day attack; if it's a web DDoS, it protects fine, but if it's something else, how would I know, because the definition of a zero day is you don't have any protection for it.
I have been using Radware Cloud WAF Service for about two and a half years.
Radware Cloud WAF Service seems to be stable.
The scalability of Radware Cloud WAF Service seems adequate.
The customer support is not bad. I would rate the customer support an 8 on a scale of 1 to 10.
I don't know how Radware Cloud WAF Service is deployed; I assume it's private cloud.
I haven't seen a return on investment from using Radware Cloud WAF Service, and I can share that Caterpillar is not that smart.
I have no comment on my experience with pricing, setup cost, and licensing as I have nothing to do with any of that.
I cannot comment on whether I evaluated other options before choosing Radware Cloud WAF Service, as I was not here when those evaluations took place.
I can't say whether there are any other improvements Radware Cloud WAF Service needs beyond what we've discussed. I assess Radware Cloud WAF Service for integrating with other systems and applications in my environment by saying it seems to integrate fine through the APIs, so it doesn't seem to be an issue there. I'm not using the API discovery feature at this time. I don't have any advice to give to others looking into using Radware Cloud WAF Service. I would rate this product an 8 overall.