No more typing reviews! Try our Samantha, our new voice AI agent.

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

AWS GuardDuty offers centralized data collection and alert mechanisms, allowing monitoring across AWS accounts without additional cost.
GuardDuty effectively monitors for malicious activity and provides timely notifications for proactive action.
It integrates seamlessly with third-party tools and enhances security through intelligent threat detection and remediation features.
AWS GuardDuty facilitates compliance with security standards and its AI/ML-powered algorithms enhance threat detection capabilities.
The tool supports complex security scenarios, including zero-day vulnerability detection and automated threat responses, serving as a SOAR for AWS platforms.

CONS

AWS GuardDuty could benefit from enhancements such as a mobile version, consolidated dashboard analytics, and integrations with other AWS services like QuickSight or Managed Airflow.
Costs can be high and unpredictable when turning on all features, making it more expensive than some commercial vendors.
GuardDuty sometimes shows false positives and could improve its detection accuracy, especially in container environments like AWS Container Service or EKS.
It lacks automatic patching and mapping of alerts sent via email, requiring manual intervention from users.
AWS GuardDuty needs to provide better cost efficiency and more insights into projected costs upon implementing features, aiding in decision-making regarding usage.
 

AWS GuardDuty Pros review quotes

SK
Senior IT Auditor at Ernst & Young
Oct 22, 2025
We generally use AWS GuardDuty for detection of zero-day vulnerabilities and automatic threat responses; it serves as a SOAR, an orchestrated and automated response solution for us in the AWS platform.
AS
Senior Security Analyst (AppSec) at ELETROBRAS
May 23, 2025
AWS GuardDuty is a great solution; I appreciate it because it's native for the Cloud provider, and I don't need to acquire other tools from another vendor.
Terence Dube - PeerSpot reviewer
Aws Cloud Engineer at Standard Telephones and Cables
Nov 21, 2024
GuardDuty's comprehensive threat detection does not only monitor data - it also detects a wide range of security threats.
Learn what your peers think about AWS GuardDuty. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,244 professionals have used our research since 2012.
Syeda Masarath Zaidi - PeerSpot reviewer
DevOps Engineer at a consultancy with 10,001+ employees
Nov 19, 2024
GuardDuty is extensive in terms of configuration and security compliance.
Betika Brandon - PeerSpot reviewer
Cloud Engineer at Epsilon
May 21, 2024
AWS GuardDuty helps by providing continuous threat detection and signaling potential threats. Its most valuable feature is continuous monitoring. The tool's integration with other AWS services has improved security. It provides continuous monitoring and intelligent threat detection, quickly signaling any issues. I would rate this improvement a seven out of ten.
Pratik_Savla - PeerSpot reviewer
Security and Compliance Architect at a manufacturing company with 1,001-5,000 employees
Jul 12, 2023
The way it monitors accounts is definitely a very important feature.
GM
Solutions architect at University of Helsinki
Jul 13, 2025
One of the advantages of cloud services is the ability to use them on demand. There's minimal installation involved; you can check the latest offerings and make new deployments while dismantling the previous ones. This approach keeps you ahead of potential services, showcasing the agility of AWS.
reviewer2279184 - PeerSpot reviewer
Vice President at a financial services firm with 10,001+ employees
Jan 25, 2024
The solution provides AWS GuardDuty S3 protection, EKS runtime protection, and malware protection.
Pratik_Savla - PeerSpot reviewer
Security and Compliance Architect at a manufacturing company with 1,001-5,000 employees
Jul 8, 2022
What we found most valuable in Amazon GuardDuty is its threat detection feature, especially because we were monitoring a huge number of AWS accounts, so we needed a solution that would monitor for any kind of malicious activity. The monitoring aspect of the solution was great because it gave us timely notifications if and when anything happened, and Amazon GuardDuty helped keep us on our toes to make sure we took action right away.
Saurabh Khan - PeerSpot reviewer
Cloud Engineer at Unicloud
Mar 13, 2024
The product has automated protection powered by AI/ML, which is now far more powerful than before. It uses AI/ML in its detection algorithm, providing fast and quick results.
 

AWS GuardDuty Cons review quotes

SK
Senior IT Auditor at Ernst & Young
Oct 22, 2025
Comparing AWS GuardDuty to similar products from Microsoft, Microsoft has a product called Sentinel, which is a completely integrated solution that basically does everything from vulnerability management to managing log analytics. This is something which AWS GuardDuty doesn't have since it's a separate service.
AS
Senior Security Analyst (AppSec) at ELETROBRAS
May 23, 2025
I think that some detections in container environments such as container runtime, and on services such as AWS container service, Fargate service or EKS service could be improved.
Terence Dube - PeerSpot reviewer
Aws Cloud Engineer at Standard Telephones and Cables
Nov 21, 2024
GuardDuty is limited to AWS environments.
Learn what your peers think about AWS GuardDuty. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
893,244 professionals have used our research since 2012.
Syeda Masarath Zaidi - PeerSpot reviewer
DevOps Engineer at a consultancy with 10,001+ employees
Nov 19, 2024
I would like to see more integration with other AWS provided services.
Betika Brandon - PeerSpot reviewer
Cloud Engineer at Epsilon
May 21, 2024
The product needs to improve its cost-efficiency since it is expensive.
Pratik_Savla - PeerSpot reviewer
Security and Compliance Architect at a manufacturing company with 1,001-5,000 employees
Jul 12, 2023
Because it's a threat detection service, they need to keep up with the various threat factors because new threat factors and attack factors come up all the time.
GM
Solutions architect at University of Helsinki
Jul 13, 2025
It is evolving, and at the moment, I will just need it on a larger scale. Then, it will satisfy my demand, initially.
reviewer2279184 - PeerSpot reviewer
Vice President at a financial services firm with 10,001+ employees
Jan 25, 2024
AWS GuardDuty sometimes shows false positives and should have better detection accuracy.
Pratik_Savla - PeerSpot reviewer
Security and Compliance Architect at a manufacturing company with 1,001-5,000 employees
Jul 8, 2022
Some of the pain points in Amazon GuardDuty was the cost. When compared to some of the other services, depending on how many we had to monitor, if we had a huge range of accounts, as our accounts increased, we had a cost factor that came into play. Sometimes there were issues, for example, with findings that came up, we wanted to add notes and there were issues back then where notes couldn't be entered properly. If we wanted to leave a note such as "Okay, we have assessed this and this is how we feel", or "This is a false positive", Amazon GuardDuty wasn't allowing us to do that. Even with the suppression of certain findings, there was some issue that we had faced at one time. Those were some of the pain points of the solution.
Saurabh Khan - PeerSpot reviewer
Cloud Engineer at Unicloud
Mar 13, 2024
There is currently no consolidated dashboard for AWS GuardDuty. It would be helpful if they could provide a dashboard based on severity levels (high, medium, low) and offer insights account-wise, especially for users utilizing automation structures.