Try our new research platform with insights from 80,000+ expert users

AWS GuardDuty vs Threat Stack Cloud Security Platform [EOL] comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 16, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.2
SentinelOne Singularity Cloud Security automates operations, improving compliance, reducing costs, and boosting productivity by up to 40%.
Sentiment score
1.0
Amazon GuardDuty enhances threat detection and response times, improving security, operational efficiency, and customer trust for businesses.
Sentiment score
7.3
Threat Stack Cloud Security boosted compliance and revenue, reduced staffing needs, enhanced security, and expanded infrastructure dramatically.
The detailed information PingSafe gives about how to fix vulnerabilities reduces the time spent on remediation by about 70 to 80 percent.
Security and Compliance Manager at Bidgely
After implementing SentinelOne, it takes about five to seven minutes.
Cloud engineer at a construction company with 5,001-10,000 employees
Our ability to get in and review our vulnerability stance, whether daily, monthly, weekly, or whatever it might be, has drastically improved over our prior provider.
IT Support Specialist at a non-tech company with 201-500 employees
 

Customer Service

Sentiment score
7.8
SentinelOne's Cloud Security users praise fast, effective support with proactive assistance and efficient issue resolution across multiple channels.
Sentiment score
9.2
AWS GuardDuty support is praised for responsiveness and knowledgeability, though some variability in quality and wait times exists.
Sentiment score
7.4
Threat Stack Cloud Security Platform's support is praised for responsiveness, precise solutions, and effective communication with technical representatives.
When we send an email, they respond quickly and proactively provide solutions.
Security and Compliance Manager at Bidgely
They took direct responsibility for the system and could solve queries quickly.
Senior DevOps Engineer at a tech services company with 501-1,000 employees
Having a reliable team ready and willing to assist with any issues is essential.
Director, DevOps at Relay Network
I rate technical support for AWS GuardDuty as ten out of ten; AWS has very good security support overall.
Senior IT Auditor at Ernst & Young
I appreciate the support for AWS; it is relatively fast, and their SLAs meet my needs.
Senior Security Analyst (AppSec) at ELETROBRAS
 

Scalability Issues

Sentiment score
8.1
Users praise SentinelOne Singularity Cloud Security's scalable integration, adaptability, and high ratings, ideal for diverse organization sizes.
Sentiment score
7.8
Amazon GuardDuty excels in scalable threat management, integrating seamlessly with AWS resources to support diverse organizational needs effectively.
Sentiment score
8.2
Threat Stack Cloud Security Platform is scalable, easy to deploy, and efficient across AWS accounts, with minor configuration concerns.
I would rate it a 10 out of 10 for scalability.
IT Engineer at a venture capital & private equity firm with 1,001-5,000 employees
Scalability is no longer a concern because Cloud Native Security is a fully cloud-based resource.
CISO at a computer software company with 201-500 employees
I would rate the scalability of PingSafe 10 out of 10.
Sr DevOps Engineer at a media company with 51-200 employees
It is designed to scale based on usage, which makes it very adaptable for varying demands.
AWS Cloud Engineer at Standard Telephones and Cables
 

Stability Issues

Sentiment score
8.2
SentinelOne Singularity Cloud Security offers high stability, rare glitches, and 100% uptime, outperforming previous tools in reliability and performance.
Sentiment score
8.6
AWS GuardDuty is praised for stability, reliability, and integration, with high user ratings and effective multiple account management.
Sentiment score
7.5
Threat Stack Cloud Security Platform [EOL] is stable and efficient, with minor GUI and agent issues for some users.
SentinelOne Singularity Cloud is incredibly reliable.
Security Analyst at Intersistemi Italia s.p.a.
We contacted Cloud Native Security, and they addressed it in a day.
DevSecOps Engineer at a tech company with 1,001-5,000 employees
The only downtime we had was when switching from V1 to V2 but it was smooth.
Cloud Security Specialist at a insurance company with 10,001+ employees
The stability of GuardDuty is extremely reliable.
DevOps Engineer at a consultancy with 10,001+ employees
It is backed by machine learning, and AWS has strong machine learning models and the capacity to support this with advanced computing power.
AWS Cloud Engineer at Standard Telephones and Cables
 

Room For Improvement

SentinelOne Singularity needs better container security, integrations, and usability enhancements, addressing reporting, costs, and documentation issues.
AWS GuardDuty users seek mobile access, better integration, improved dashboards, cost clarity, and enhanced threat intelligence and detection accuracy.
Threat Stack Cloud Security Platform needs UI improvements, better API alignment, and enhanced integrations, especially for serverless and container environments.
If they can merge Kubernetes Security with other modules related to Kubernetes, that would help us to get more modules in the current subscription.
IT Engineer at a venture capital & private equity firm with 1,001-5,000 employees
As organizations move to the cloud, a cloud posture management tool that offers complete cloud visibility becomes crucial for maintaining compliance.
CISO at a computer software company with 201-500 employees
I would also like to see Cloud Native Security offer APIs that allow us to directly build dashboards within the platform.
Senior Cybersecurity Engineer at a computer software company with 11-50 employees
A unified dashboard that aggregates findings across all regions without requiring manual aggregation could enhance convenience for users.
AWS Cloud Engineer at Standard Telephones and Cables
Further integration with services like API Gateway would be beneficial.
DevOps Engineer at a consultancy with 10,001+ employees
Comparing AWS GuardDuty to similar products from Microsoft, Microsoft has a product called Sentinel, which is a completely integrated solution that basically does everything from vulnerability management to managing log analytics.
Senior IT Auditor at Ernst & Young
 

Setup Cost

SentinelOne Singularity Cloud is valued for its adaptable pricing and cost-effectiveness, notably through AWS partnerships, against competitors.
AWS GuardDuty offers flexible, scalable pay-as-you-go pricing, making it cost-effective for enterprises without upfront investments.
Threat Stack Cloud Security Platform offers value with transparent pricing, ranging $15-$20 monthly, seen as competitively priced by users.
With very little negotiation involved, we just let them know what we could pay and they were willing to meet us at slightly above what we paid with Sophos, which was still very fair for what we were looking at.
IT Support Specialist at a non-tech company with 201-500 employees
There are some tools that are double the cost of Cloud Native Security.
IT Engineer at a venture capital & private equity firm with 1,001-5,000 employees
I recall Cloud Native Security charging a slightly higher premium previously.
Senior Cybersecurity Engineer at a computer software company with 11-50 employees
GuardDuty is very cheap and operates on a pay-as-you-go basis.
AWS Cloud Engineer at Standard Telephones and Cables
The pricing of this tool is cheaper compared to other tools from other vendors, which are more expensive.
Senior Security Analyst (AppSec) at ELETROBRAS
AWS GuardDuty is an expensive feature
Senior IT Auditor at Ernst & Young
 

Valuable Features

SentinelOne Singularity Cloud Security offers real-time threat detection, automated remediation, and seamless cloud integration with advanced security features.
AWS GuardDuty provides scalable, cost-effective security through threat detection, automated response, and seamless integration with AWS and third-party tools.
Threat Stack Cloud Security platform is esteemed for its configurability, integration, monitoring capabilities, and effective alert management.
This helps visualize potential attack paths and even suggests attack paths a malicious actor might take.
Security Engineer-DevSecOps at a computer software company with 51-200 employees
The infrastructure-as-code feature is helpful for discovering open ports in some of the modules.
DevSecOps Engineer at a tech company with 1,001-5,000 employees
This tool has been helpful for us. It allows us to search for vulnerabilities and provides evidence directly on the screen.
Cloud Security Specialist at a insurance company with 10,001+ employees
It notifies you immediately when something goes wrong, allowing quick response to threats.
DevOps Engineer at a consultancy with 10,001+ employees
Enabling GuardDuty with a single click allows it to start analyzing data for threats without requiring additional software deployment or updates.
AWS Cloud Engineer at Standard Telephones and Cables
The great benefits of using AWS GuardDuty are that it is connected to all ecosystems from the AWS environment, and I can detect threats faster and locate all the information in a single tool.
Senior Security Analyst (AppSec) at ELETROBRAS
 

Categories and Ranking

SentinelOne Singularity Clo...
Sponsored
Average Rating
8.6
Reviews Sentiment
7.7
Number of Reviews
117
Ranking in other categories
Vulnerability Management (4th), Cloud and Data Center Security (3rd), Container Security (3rd), Cloud Workload Protection Platforms (CWPP) (4th), Cloud Security Posture Management (CSPM) (3rd), Cloud-Native Application Protection Platforms (CNAPP) (3rd), Compliance Management (2nd), AI Software Development (1st), AI Observability (2nd)
AWS GuardDuty
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
25
Ranking in other categories
Cloud Workload Protection Platforms (CWPP) (2nd)
Threat Stack Cloud Security...
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
8
Ranking in other categories
No ranking in other categories
 

Featured Reviews

SC
Information Security Engineer at DataVigilant Infotech
Enables us to prioritize and effectively address critical security issues
Evidence-based reporting helps us to prioritize and solve critical security issues. The new visualization feature demonstrates how an attacker can enter the system, highlighting the potential path that can be exploited and outlining all the steps the attacker could take. With that visibility, we can ensure the perimeter is strong and attackers cannot enter, thus reducing the risk. It has helped us prioritize issues. The visibility into how an attack could happen is valuable. For example, it highlights the system vulnerability and outlines where an attack could propagate. The visualization helps me to prioritize remediation, and if I don't know where to start, I can check to see the score that enables me to prioritize issues. I am using infrastructure-as-code scanning, and it's one of the useful features. In pre-production, it identifies embedded secrets and misconfigurations, including issues with Kubernetes or some privileged containers. This feature allows us to pass the audit and secure IaC code so that it isn't easily exploitable by attackers. We can more proactively work to identify and resolve vulnerabilities by using the dashboard and the alerting system that SentinelOne provides. It helps us with audits and compliance. We can show the compliance in percentage. We can confidently say that our company or infrastructure is very secure. It has improved our security posture by 30% to 35%. It has reduced our false positives by 30%. It has helped teams collaborate better. The security team manages SentinelOne Singularity Cloud Security, and when it flags vulnerabilities, they are forwarded to DevOps for remediation. Previously, we needed to identify and report the issues, but there would be lapses in communication. Now, there is a centralized dashboard that anyone can look at and see the open issues and work on them.
SK
Senior IT Auditor at Ernst & Young
Has provided automated threat detection and daily malicious activity insights while supporting seamless orchestration with existing dashboards
I would assess the integration of AWS GuardDuty with Threat Intelligence as majorly positive; no threat intelligence is 100% accurate, and there are a few false positives, but as a security engineer, this must be accepted, and overall, the response and service is good for us. We do not directly use AWS GuardDuty dashboard by itself, as we have our own integrated security dashboard; AWS GuardDuty gives the feed to that dashboard, and it's giving us a satisfactory view of how the security landscape looks. We use metrics such as zero-day threats, any malicious traffic, and any traffic which originates from OFAC countries to measure its effectiveness, as we are majorly into a financial institution, as any traffic that is from a malicious IP or a rogue device. I don't see any significant negative points regarding AWS GuardDuty; it's a good product to have if you're a cloud consumer. I rate AWS GuardDuty nine out of ten overall.
SC
Software Development Manager at Rent Dynamics
SecOps program for us, as a smaller company, is amazing; they know what to look for
They could give a few more insights into security groups and recommendations on how to be more effective. That's getting more into the AWS environment, specifically. I'm not sure if that's Threat Stack's plan or not, but I would like them to help us be efficient about how we're setting up security groups. They could recommend separation of VPCs and the like - really dig into our architecture. I haven't seen a whole lot of that and I think that's something that, right off the bat, could have made us smarter. Even as part of the SecOps Program, that could be helpful; a quick analysis. They're analyzing our whole infrastructure and saying, "You have one VPC and that doesn't make a lot of sense, that should be multiple VPCs and here's why." The architecture of the servers in whatever cloud-hosting provider you're on could be helpful. Other than that, they should continue to expand on their notifications and on what's a vulnerability. They do a great job of that and we want them to continue to do that. It would be cool, since the agent is already deployed and they know about the server, they know the IP address, and they know what vulnerability is there, for them to test the vulnerability and see if they can actually exploit it. Or, once we patch it, they could double-check that it can't be. I don't know how hard that would be to build. Thinking on it off the top off my head, it could be a little challenging but it could also be highly interesting. It would also be great if we could test a couple of other features like hammering a server with 100 login attempts and see what happens. Real test scenarios could be really helpful. That is probably more something close to what they do with the SOC 2 audit or the report. But more visualization of that, being able to test things out on our infrastructure to make sure we can or can't hit this box could be interesting.
report
Use our free recommendation engine to learn which Cloud Workload Protection Platforms (CWPP) solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
14%
Computer Software Company
12%
Manufacturing Company
10%
Government
6%
Financial Services Firm
15%
Computer Software Company
12%
Manufacturing Company
9%
Government
6%
Performing Arts
16%
Manufacturing Company
8%
Comms Service Provider
7%
Insurance Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business48
Midsize Enterprise21
Large Enterprise54
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise3
Large Enterprise15
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

What do you like most about PingSafe?
The dashboard gives me an overview of all the things happening in the product, making it one of the tool's best featu...
What is your experience regarding pricing and costs for PingSafe?
I think the pricing of SentinelOne Singularity Cloud Security is a bit high.
What needs improvement with PingSafe?
We did not try to use the threat investigations feature from SentinelOne Singularity Cloud Security.Drift detection w...
What do you like most about Amazon GuardDuty?
With anomaly detection, active threat monitoring, and set correlation, GuardDuty alerts me to any unusual user behavi...
What is your experience regarding pricing and costs for Amazon GuardDuty?
AWS GuardDuty is an expensive feature, and while you can't expect the price to be low, it can be lower because it's p...
What needs improvement with Amazon GuardDuty?
AWS GuardDuty is a good product; it's doing its job right now, and I don't see any additional improvements needed. Co...
Ask a question
Earn 20 points
 

Also Known As

PingSafe
No data available
Threat Stack, CSP,
 

Overview

 

Sample Customers

Information Not Available
autodesk, mapbox, fico, webroot
StatusPage.io, Walkbase, Spanning, DNAnexus, Jobcase, Nextcapital, Smartling, Veracode, 6sense
Find out what your peers are saying about Microsoft, Amazon Web Services (AWS), Wiz and others in Cloud Workload Protection Platforms (CWPP). Updated: January 2026.
881,082 professionals have used our research since 2012.