No more typing reviews! Try our Samantha, our new voice AI agent.
Venugopal Potumudi - PeerSpot reviewer
Senior Consultant at Tata Consultancy
Real User
Nov 19, 2022
Reliable with good container scanning and a straightforward setup
Pros and Cons
  • "From what I understand, the initial setup is simple."
  • "The container scanning is very helpful."
  • "The solution could improve user-friendliness."

What is our primary use case?

The solution is used mainly to scan public clouds or containers.

It can be used on demand. For example, when we go through the DevOps lifecycle, containers can be brought in based on demand for some use cases. We often need application onboarding and application changes. The containers do pop up based on the user story that has been defined. Therefore, we have on-demand scanning of those, and we utilize Aqua Security scan to handle that task.

What is most valuable?

The container scanning is very helpful. It's the prime use case that we have. The scanning protects against container vulnerabilities.

The solution is stable.

From what I understand, the initial setup is simple. 

The solution appears to be scaling in terms of on-demand scanning.

What needs improvement?

I have not witnessed any shortcomings in terms of the product's usability.

The solution could improve user-friendliness.

For how long have I used the solution?

I've been working with the solution for a few years. 

Buyer's Guide
Aqua Cloud Security Platform
September 2026
Learn what your peers think about Aqua Cloud Security Platform. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
914,394 professionals have used our research since 2012.

What do I think about the stability of the solution?

I've seen that it is stable and reliable. I haven't had issues with bugs or glitches. It doesn't crash or freeze. 

What do I think about the scalability of the solution?

I haven't tried to scale the solution. I'm not sure from a pricing perspective if it would be easy to scale. However, as a cloud solution, and the on-demand scanning capabilities, it is fairly scalable.

How are customer service and support?

I've never dealt with technical support.

How was the initial setup?

While the process does seem to be straightforward, I have not personally implemented the solution.

What's my experience with pricing, setup cost, and licensing?

I don't handle pricing. That is being monitored by another team.

What other advice do I have?

We've previously recommended this solution to our customers. 

We are a service company. If a customer we are servicing, has specific requirements and this solution fits with them, we would suggest it.

I'd rate the solution an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Dharmendra Kr. Chauhan - PeerSpot reviewer
Manager|Cloud Security & Solution Architect| CloudOps|AppSec | DevSecOps | DevOps | CapOps | FinOps at Wipro
Real User
Top 20
Oct 4, 2022
Excellent support, good flexibility, and works in hybrid environments
Pros and Cons
  • "Support is very helpful."
  • "It is a very good product from an environmental perspective."
  • "Sometimes I got stressed with the UI."

What is our primary use case?

Generally, we are using the product for container security, and we have several items related to containers. For example, one-time protection and zero-day attacks.

What is most valuable?

I have different kinds of products, and Aqua is not limited to containers only. It's also helping to secure operations. It's a very good product from an environmental perspective. There are actually a lot of things you can do. It's very flexible.

The solution can scale.

It is flexible.

Support is very helpful.

What needs improvement?

Sometimes I got stressed with the UI. It's not a problem, it's just the theme while using the 5.0 version is different from the current version 6.0. 

It could have more security prospects or even offer some kind of add-on for security. 

I'd like to see the IaC vulnerabilities also. We'd like to do vulnerability scans around it. 

For how long have I used the solution?

I've been using the solution for a year and a half. 

What do I think about the stability of the solution?

The solution has been stable and reliable. There aren't any bugs or glitches and it doesn't crash or freeze.

What do I think about the scalability of the solution?

You can scale up or down. Our architecture is about to upgrade. We're just waiting on the process now. While it can scale, users should also consider the billing and costs if they decide to expand. We do tend to have all of our users on it, however, for the past month and a half has not been working as we work to transfer versions and update architecture. 

How are customer service and support?

Support has been fine overall. If I have concerns, they help me one on one. Often in one call, we can have any issue sorted. They are knowledgeable and help ensure everything gets resolved nicely.

How would you rate customer service and support?

Positive

How was the initial setup?

Initially, we had some issues. There were problems with Microsoft and AI. In the latest Aqua release, we did a multi-cloud deployment, and we coordinated the cloud and the migration. 

There are a couple of components to contend with. For example, there's the Aqua gateway. It's fine to work with. However, it's hard to have control. 

It's not overly complex. It just really depends on the environment. Therefore, it could be easy, or a little more complicated. 

Mostly, my experience was pretty good. I'd rate it a 4.5 out of five in terms of ease of setup.

What's my experience with pricing, setup cost, and licensing?

The solution is competitively priced.

I'm not clear on the exact pricing, and I don't deal with that aspect directly.

Which other solutions did I evaluate?

We looked into other options. There's lots of competition out there. There is NGINX, for example, or we can do container security via AWS or GCP. However, we have a hybrid environment, and Aqua accommodates us in that sense. 

What other advice do I have?

There are other players on the market who can give customers similar options to improve security. However, Aqua is good and very competitive in the market.

I'd rate the solution eight out of ten. 

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Aqua Cloud Security Platform
September 2026
Learn what your peers think about Aqua Cloud Security Platform. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
914,394 professionals have used our research since 2012.
Head - Cybersecurity at a retailer with 1,001-5,000 employees
Real User
Sep 28, 2022
Valuable on-demand patching, but the licensing model could be better
Pros and Cons
  • "Their sandboxing service is also really good."
  • "The most valuable feature is the on-demand patching, as there are times when vulnerabilities don't have available fixes, and Aqua Security allows it to pass the vulnerability in real-time while the fix is being developed."
  • "Aqua Security lacks a lot in reporting."
  • "Aqua Security lacks a lot in reporting. It provides all the open issues, but no actionable solution is provided."

What is most valuable?

The most valuable feature is the on-demand patching. There are times when vulnerabilities don't have available fixes, and Aqua Security allows it to pass the vulnerability in real-time while the fix is being developed.

Their sandboxing service is also really good. When we download an open source tool, we can run it in a sandbox environment and see if there are any back holes or trap doors in the code. However, we don't like that their services are in the US.

What needs improvement?

Aqua Security lacks a lot in reporting. It provides all the open issues, but no actionable solution is provided. There's no intelligence behind the reporting, so that can be improved. Also, it could be a cheaper solution. However, it is costly because it's a very small market and the first of its kind.

Regarding additional features, we would like to see better log ingestion. For example, if we have an EDR or a SOC, we want the SOC, the cloud and the container security to interact better. That means the cloud should have better ingestion of logs and SOC logs and be able to give more heuristic analysis of security issues rather than just ones and zeros.

The licensing model could be better because it has a scalable container environment. If we're working in a small environment, it is fine, but if we have a large environment, we can't predict the traffic for the day. If the marketing team decides to launch a campaign with high traffic, then we won't have licenses available for all our ports. Therefore, the licensing model needs to be rethought, and we can't have per-port licenses because ports can increase.

For how long have I used the solution?

We have been using this solution for over a year. It is a managed service and deployed on cloud.

What do I think about the stability of the solution?

It is a good solution and is stable. Their services are good, and they provide good responses. If there are business-related issues, they will contact you and answer your questions on priority.

What do I think about the scalability of the solution?

Swisslog and Aqua Security work with a very similar pricing model as they have an agent deployed in a cluster that covers all the containers or namespaces in that cluster. Now, if clusters are also scalable, which is the case in containers, the number of licenses consumed increases.

Aqua Security charges per license. So we usually take their licenses in our testing and QA environment. However, we limit it in the production environment because, in QA testing, our environment expands and collapses because developers are testing. So in production, we can forecast how many licenses we may need in the future.

However, if there is no production system, we cannot account for the number of fraud and containers and we will have to pay through the roof for these solutions because they charge for containers per port for every single agent they deploy.

About 20 to 30 people use Aqua Security from the DevOps and security team. They use the solution because they handle the infrastructure and security.

How are customer service and support?

The technical support is good, and they reply on time.

How was the initial setup?

The initial setup was easy.

What's my experience with pricing, setup cost, and licensing?

I rate the price a four out of ten, with one being a high price and ten being a reasonable price. It is a costly solution.

Which other solutions did I evaluate?

Aqua Security is an on-demand service. Swisslog just launched a product, but it is not as good as Aqua Security in terms of accuracy. Swisslog is integrated with the package and with Aqua Security, you need to pay more for the first scan.

What other advice do I have?

I rate this solution a seven out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1991016 - PeerSpot reviewer
Data Scientist at a computer software company with 1,001-5,000 employees
Real User
Nov 24, 2022
Strong runtime protection but needs more open documentation, better code analysis
Pros and Cons
  • "The most helpful feature of Aqua Security is Drift Prevention, which is a feature that allows images to be immutable. In addition, one of the main reasons we went with Aqua Security is because it provides strong protection when it comes to runtime security."
  • "Aqua Security could provide more open documentation so that their learning resources can be more easily accessed and searched through online. Right now, a lot of the documentation is closed and not available to the public."

What is our primary use case?

We use Aqua Security for securing our container applications, particularly when it comes to the runtime stage.

There are about five of us from the security side of my company who directly use this solution.

What is most valuable?

The most helpful feature of Aqua Security is Drift Prevention, which is a feature that allows images to be immutable. In addition, one of the main reasons we went with Aqua Security is because it provides strong protection when it comes to runtime security.

What needs improvement?

Aqua Security could provide more open documentation so that their learning resources can be more easily accessed and searched through online. Right now, a lot of the documentation is closed and not available to the public. I would be much happier if they chose to share more documentation and resources when it comes to their knowledge base.

As for extra features that I would like to see, source code scanning is on the top of my list. To be clear, I don't mean code scanning in terms of source code composition, but rather I would like to see more in the way of code analysis that tells you whether the code you're writing adheres to the current best practices or not.

For how long have I used the solution?

I have been using Aqua Security for about a year now.

What do I think about the stability of the solution?

In terms of stability, I would give Aqua Security 4/5 stars.

What do I think about the scalability of the solution?

I would give the scalability a 5/5 stars because it basically scales by itself. It's just the licensing that restricts your usage.

How are customer service and support?

The technical support is sometimes quick and responsive, but at other times it may take a bit longer to get assistance.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

Aqua Security is one of the first solutions I have used for container security, however I have also taken a look at ACS from Red Hat, Snyk, and Prisma from Palo Alto.

We went with Aqua Security mainly because we believe they offer the strongest protection in terms of runtime security.

How was the initial setup?

The setup was a little complex but not too complicated. The difficulty level lies somewhere in the middle between easy and hard.

What about the implementation team?

We implemented Aqua Security mostly by ourselves, but we also took advice from a consultant. Our implementation strategy mainly involved the use of Java forms with manifest files, then we slowly deployed one component at a time.

In all, the basic deployment took just a few hours, but there is always more work to be done afterwards in terms of configuration, integrations, and properly getting started with it in our environment. It's hard to put a number on the hours required, but it probably took a few days to get everything configured and ready to be used.

What's my experience with pricing, setup cost, and licensing?

Dealing with licensing costs isn't my responsibility, but I know that the licenses don't depend on the number of users, but instead are priced according to your workload.

What other advice do I have?

I would rate Aqua Security a seven out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Lakshman Nimmakayala - PeerSpot reviewer
Enterprise Cloud Architect at UBS
Real User
Aug 28, 2022
A stable solution that offers good scalability but lacks overview-style visibility
Pros and Cons
  • "The container security element of this product has been very valuable to our organization."
  • "We would like to see an improvement in the overview visibility that this solution offers."

What is our primary use case?

We use this product for all of our network security.

What is most valuable?

The container security element of this product has been very valuable to our organization.

What needs improvement?

We would like to see an improvement in the overview visibility that this solution offers.

The runtime security element of this solution could also be improved, in order for it to be more universally usable.

For how long have I used the solution?

We have been using this solution for five or six years.

What do I think about the stability of the solution?

We have found this solution to be stable.

What do I think about the scalability of the solution?

Scalability isn't an issue with this solution.

Which other solutions did I evaluate?

Before choosing this solution we also evaluated Snyk.

What other advice do I have?

I would rate this solution a six out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
MohammedAsad - PeerSpot reviewer
DevSecOps Engineer at Foodhub
Real User
Aug 27, 2022
Easy to set up with robust documentation and good image scanning
Pros and Cons
  • "The solution was very user-friendly."
  • "The image security and image scanning were quite easy compared to Prisma, the solution was very user-friendly, easy to set up, stable, and the documentation was robust."
  • "It's a bit hard to use the user roles. That was a bit confusing."

What is our primary use case?

We did very little with Aqua, basically. We only used Aqua for the image scanning and document scanning and that's it. Since I was working on a DevSecOps project, I was asked to find how complicated it was comparatively, for example, which is more complicated, whether the Aqua or Prisma, and how fast these things could be churned out or integrated into an existing pipeline, or when you create a new pipeline, how fast these things work. I had to experiment with these things.

In our scenario, we were creating pipelines for Infrastructure as Code. Our pipeline would be doing the scanning for all infrastructure code. In that code, if any image is mentioned, we would pick them up, we would scan them, and that's where we'll be using Aqua or Prisma. We have created items with both of those. One of the pipelines which had Aqua would be scanning and finding the vulnerabilities inside the image.

What is most valuable?

The image security and image scanning were quite easy compared to Prisma. The solution was very user-friendly.

It is easy to set up. 

It's stable.

The documentation was robust.

It's easy to set up. 

What needs improvement?

I don't recall coming across any missing features. 

It's a bit hard to use the user roles. That was a bit confusing. That was from the interface side, the application from which we logged into Aqua. That needs a bit of improving. The admin was a bit confusing. 

For how long have I used the solution?

I've used the solution for a couple of months, maybe. 

What do I think about the stability of the solution?

The stability is good. It is reliable. There are no bugs or glitches. 

What do I think about the scalability of the solution?

I did not try to scale the solution. 

We had 20 to 30 people on the solution. 

In my team, we had five members using it - the DevSecOps team. We were on the integration side of it. There might have been two to three project teams, basically, who used to used the pipelines, which we created for them.

How are customer service and support?

We did not use support. We never came across any issues. 

Which solution did I use previously and why did I switch?

I was working for Computer Software Corporation, CSC corporation, as a contract employee. There, we were asked to do a research on various cloud security applications. That's where we came in contact with Aqua. We were trying to do apple to apple comparison of Prisma and Aqua.

We felt Aqua is good and we even recommended Aqua to be used - rather than Prisma.

How was the initial setup?

The initial setup was pretty straightforward. 

If it is deployed from scratch, the documentation is pretty straightforward. We just followed the steps and we were able to do it. There were no unexpected bugs or any other issues we faced. Everything was quite straightforward.

I'd rate the solution four out of five in terms of the initial setup. 

Maintenance was taken care. Maintenance was good there. It doesn't need any more effort. What we used was the latest one, a stable version, and since we were dealing with a corporate organization, we wanted stable versions to be always tested. 

What about the implementation team?

We did the implementation in-house.

What's my experience with pricing, setup cost, and licensing?

I'm not sure of the exact pricing. I cannot speak of the exact costs. The company already had a licensed version. 

What other advice do I have?

We were working with the latest version of the solution. 

We had a cloud dashboard to see our stuff, basically. We used it on-prem; however, once the scanning is done, the results would be posted on that platform. That's where we used to go and see the information.

It's fast to implement and straightforward. It works for all brackets. I'd recommend it to others. 

I'd rate it eight out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
SedatKandemir - PeerSpot reviewer
Enterprise Cloud Architect at a insurance company with 10,001+ employees
Real User
Jul 17, 2022
Effective scanner, scalable in our usage, and reliable
Pros and Cons
  • "The most valuable feature of Aqua Security is the scanner."
  • "We mainly used Aqua Security for container-related Kubernetes security in the CI/CD pipelines to secure the runtime of the Kubernetes clusters."
  • "Aqua Security could improve the forwarding of logging into Splunk and into other tools, it should be easier."

What is our primary use case?

We mainly used Aqua Security for container-related Kubernetes security in the CI/CD pipelines to secure the runtime of the Kubernetes clusters. 

What is most valuable?

The most valuable feature of Aqua Security is the scanner.

What needs improvement?

Aqua Security could improve the forwarding of logging into Splunk and into other tools, it should be easier.

In the future, Aqua Security should work on minimizing its footprint because it consumes a lot of resources on the cluster itself. We are receiving a lot of logs out of it, but there was some problem with receiving the events in the right order. It should also concentrate on not only collecting logs but events, traces,  and somehow into the metrics side.

For how long have I used the solution?

I have been using Aqua Security for approximately two years.

What do I think about the stability of the solution?

Aqua Security is stable.

What do I think about the scalability of the solution?

Aqua Security has been scalable in our usage.

Our setup was not very big, we had approximately 20 clusters and one central cluster. It scaled enough and we distribute it to the clusters, the enforcers on the nodes, it's a combination of centralized and distributed solution. I didn't use it over more than 20 clusters.

How are customer service and support?

I have used the technical support from Aqua Security. We had some issues we had to solve ourselves.

I rate the support from Aqua Security a three out of five.

Which solution did I use previously and why did I switch?

We previously used Red Hat and Prisma Cloud. Prisma Cloud was too expensive and Red Hat security is more similar to risk management, not risk posture management, and is not a real security tool. We decided on Aqua Security.

How was the initial setup?

The initial setup of Aqua Security is simple if you know some helm charts work.

What's my experience with pricing, setup cost, and licensing?

Aqua Security is not cheap, and it's not very expensive, such as Splunk, they are in the middle.

What other advice do I have?

I rate Aqua Security an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
reviewer1699062 - PeerSpot reviewer
Sales Engineer at a computer software company with 51-200 employees
Real User
Aug 6, 2023
Provides workload protection and helps identify security misconfigurations, vulnerabilities, and risks
Pros and Cons
  • "The DTA, which stands for Dynamic Threat Analysis, allows me to analyze Docker images in a sandbox environment before deployment, helping me anticipate risks."
  • "The user interface could be improved, especially in terms of organization and clarity."

What is our primary use case?

I'm using it for workload protection. So, in most cases, for protecting containers, verifying Kubernetes configurations, cloud configurations, and identifying security misconfigurations, vulnerabilities, and risks.

How has it helped my organization?

I use it to demonstrate to customers because I'm a sales engineer. Many customers want to protect their workloads and applications. 

For example, when I am using a Docker image with multiple vulnerabilities, I need to know which vulnerabilities are inside. Then I create security policies to allow or deny the deployment of containers from this image and also create a security policy for runtime. This way, when the application is running in the wild, we can guarantee that the security blocks any kind of exploitation.

What is most valuable?

There are many features that I really like. For example, the runtime policies are very easy to configure, and they are scalable across all environments. The DTA, which stands for Dynamic Threat Analysis, allows me to analyze Docker images in a sandbox environment before deployment, helping me anticipate risks.

What needs improvement?

The user interface could be improved, especially in terms of organization and clarity. Additionally, more comprehensive examples for deployments and feature usage would be helpful.

Maybe more plugins or something that makes it easier to integrate with CICD pipelines or interact with APIs.

For how long have I used the solution?

I've been using it for about three years. I'm using the SaaS version.

What do I think about the stability of the solution?

I would rate the stability an eight out of ten.

What do I think about the scalability of the solution?

It is a scalable solution. I would rate the scalability a ten out of ten. 

How are customer service and support?

The customer service and support are good. 

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup was very straightforward.

What's my experience with pricing, setup cost, and licensing?

For me, it's a fair price.

What other advice do I have?

I would definitely recommend using the solution. It's a very scalable solution with multiple features that help us protect our cloud environment effectively.

Overall, I would rate the solution a nine out of ten. 

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1699062 - PeerSpot reviewer
Sales Engineer at a computer software company with 51-200 employees
Real User
Dec 14, 2022
Cloud native security solution used to secure cloud media applications that offers good performance
Pros and Cons
  • "The CSPM product is great at securing our cloud accounts and I really like the runtime protection for containers and functions too."
  • "The integrations on CICD could be improved. If Aqua had more plugins or container images to integrate and automate more easily on CICD, it would be better."

What is our primary use case?

We use this solution to secure cloud media applications that are developed for containers and cloud-native services like ETS, AKS and GCP.

I am the only one using this product in our company.

What is most valuable?

The CSPM product is great at securing our cloud accounts and I really like the runtime protection for containers and functions too. This solution helps us add an extra secure layer to protect applications and the infrastructure.

What needs improvement?

The integrations on CICD could be improved. If Aqua had more plugins or container images to integrate and automate more easily on CICD, it would be better. An integration with WAF would be very good too.

For how long have I used the solution?

I have been using this solution for two years. 

What do I think about the stability of the solution?

This is a stable solution that offers good performance. 

What do I think about the scalability of the solution?

No, this is not a very scalable product. 

How are customer service and support?

In general, the support for this solution is good. It could be improved if it catered for customers in different countries to meet their specific demands. 

How was the initial setup?

The initial setup is a little bit complex for an on-premises deployment. We needed to have many specialized people on Kubernetes to maintain this deployment and keep it up to date. It is a little bit complex because of Kubernetes, not because of Aqua itself, but Aqua have some features to facilitate the deployment.

You need three or four people for the deployment. For a small environment, deployment would take two to three hours. For larger environments, it would take longer than that. 

This is an easy solution to maintain. The main thing is to maintain the databases.

What's my experience with pricing, setup cost, and licensing?

The pricing of this solution could be improved. 

What other advice do I have?

I would recommend this solution to companies have many cloud-native applications.

I would rate this solution a seven out of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Lizeth Zuluaga - PeerSpot reviewer
Cloud Security Specialist at Telstra
Real User
Jun 23, 2022
The most advanced solution in the market for container security
Pros and Cons
  • "Aqua Security helps us to check the vulnerability of image assurance and check for malware."
  • "Aqua Security is the most advanced solution in the market for container security."
  • "In the next release, Aqua Security should add the ability to automatically send reports to customers."

How has it helped my organization?

Aqua Security allows us to check for vulnerabilities in the CI/CD pipeline, so application teams can remediate issues before going into production.

What is most valuable?

Aqua Security helps us to check the vulnerability of image assurance and check for malware.

What needs improvement?

In the next release, Aqua Security should add the ability to automatically send reports to customers.

For how long have I used the solution?

I've been using Aqua Security for between two to three years.

What do I think about the stability of the solution?

Aqua Security's stability is very good.

What do I think about the scalability of the solution?

Aqua Security can be scaled up and down depending on your needs.

How are customer service and support?

Aqua Security's technical support is usually quite responsive.

How would you rate customer service and support?

Positive

How was the initial setup?

There were some challenges with the initial setup.

What about the implementation team?

We used an in-house team.

What other advice do I have?

Aqua Security is the most advanced solution in the market for container security. I would rate it as eight out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Aqua Cloud Security Platform Report and get advice and tips from experienced pros sharing their opinions.
Updated: September 2026
Buyer's Guide
Download our free Aqua Cloud Security Platform Report and get advice and tips from experienced pros sharing their opinions.