Best Cloud Workload Protection Platforms - Page 5

How Many Cloud Workload Protection Platforms Products Does G2 Track?

Total Products under this Category: 89

Category Stats (Sep 2026)

  • Average Rating: 4.42/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: ColorTokens Xshield (+3.71%) - Among all products in this category, ColorTokens Xshield recorded the largest rating increase compared to last month

Last updated: September 27, 2026

How Does G2 Rank Cloud Workload Protection Platforms Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 4,900+ Authentic Reviews
  • 89+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Cloud Workload Protection Platforms

G2 Grid® for Cloud Workload Protection Platforms plotting products by satisfaction and market presence

Highlighted products: Microsoft Defender for Cloud, CrowdStrike Falcon Cloud Security, Zscaler Zero Trust Cloud, Wiz, Orca Security, Check Point Cloud Firewall (formerly CloudGuard Network Security), Sysdig Secure, and SentinelOne Singularity Cloud Security.

Underlying data: [Grid® JSON](https://www.g2.com/categories/cloud-workload-protection-platforms/grids.json?focus%5B%5D=microsoft-defender-for-cloud&focus%5B%5D=crowdstrike-falcon-cloud-security&focus%5B%5D=zscaler-zero-trust-cloud&focus%5B%5D=wiz-wiz&focus%5B%5D=orca-security&focus%5B%5D=check-point-cloud-firewall-formerly-cloudguard-network-security&focus%5B%5D=sysdig-sysdig-secure&focus%5B%5D=sentinelone-singularity-cloud-security)

CheckRed

CheckRed is a complete cloud security platform (SSPM/CNAPP/CSPM/CIEM/CWPP/Compliance) covering all critical SaaS apps and cloud providers – all in a single, user-friendly, and affordable solution.

Average Rating: 4.8/5.0

Total Reviews: 4

How Do G2 Users Rate CheckRed?

  • Governance: 10.0/10 (Category avg: 8.8/10)
  • Ease of Admin: 10.0/10 (Category avg: 9.0/10)
  • API / Integrations: 10.0/10 (Category avg: 8.6/10)
  • Security Auditing: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind CheckRed?

  • Seller: CheckRed
  • Year Founded: 2021
  • HQ Location: St Petersburg, US
  • LinkedIn® Page: www.linkedin.com
    63 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 75% Medium, 25% Small

What Are Recent G2 Reviews of CheckRed?

CimTrak Integrity Suite

Cimcor is the leading provider of System Integrity Assurance with our award-winning CimTrak Integrity Suite that protects a wide range of physical, network, cloud, and virtual IT assets in real time. CimTrak provides detailed analysis, evidence, and automated workflows that enforce an unprecedented security posture, ensures operational availability, stops zero-day attacks, detects unexpected changes, and achieves and maintains continuous compliance in a simple and cost-effective manner.

Average Rating: 4.8/5.0

Total Reviews: 23

How Do G2 Users Rate CimTrak Integrity Suite?

  • Ease of Admin: 9.2/10 (Category avg: 9.0/10)

Who Is the Company Behind CimTrak Integrity Suite?

  • Seller: Cimcor
  • Company Website:
  • Year Founded: 1997
  • HQ Location: Merrillville, Indiana, United States
  • Twitter: @cimtrak
    2,203 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    28 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Large, 33% Medium

What Do G2 Reviewers Say About CimTrak Integrity Suite?

AI-generated summary from verified user reviews

Pros
  • Users find the compliance checking feature of CimTrak Integrity Suite to be very useful and easy to navigate.
  • Users appreciate the useful compliance checking feature of CimTrak Integrity Suite, enhancing PCI Compliance management effectively.
  • Users highlight the unbeatable ease of use of CimTrak Integrity Suite, making compliance tasks straightforward and efficient.
  • Users rave about the outstanding customer support from CimTrak, noting the team's knowledge and availability.
  • Users value the real-time monitoring of CimTrak, allowing immediate detection of file modifications and potential threats.
Cons
  • Users find the dashboard issues and outdated report scheduler detract from the overall user experience of CimTrak.
  • Users find the upgrade process cumbersome, wishing for a more integrated solution to simplify updates.
  • Users note compliance issues due to outdated UI and a lack of effective dashboards in the CimTrak Integrity Suite.
  • Users feel a strong need for better guidance during upgrades, preferring an integrated upgrade process for efficiency.
  • Users find the poor customer support of CimTrak Integrity Suite frustrating, impacting their overall experience and effectiveness.

What Are Recent G2 Reviews of CimTrak Integrity Suite?

ColorTokens Xtended ZeroTrust Security Platform

Secure your workloads, users and critical assets from zero-day and advanced persistent threats in minutes

Average Rating: 4.0/5.0

Total Reviews: 2

Who Is the Company Behind ColorTokens Xtended ZeroTrust Security Platform?

  • Seller: ColorTokens Inc
  • Year Founded: 2015
  • HQ Location: San Jose, California, United States
  • Twitter: @ColorTokensInc
    429 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    287 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Medium, 50% Small

What Are Recent G2 Reviews of ColorTokens Xtended ZeroTrust Security Platform?

Defensia

Defensia is a real-time server security platform for Linux. It detects and blocks brute-force attacks, port scans, web exploits, and malicious bots automatically — without complex configuration. It works through a lightweight open-source agent that installs in a single command (\~30 seconds). The agent monitors SSH authentication, web server logs, and network activity, then takes immediate action: banning malicious IPs, detecting vulnerability scanners, and blocking known attack patterns through its built-in Web Application Firewall (WAF). Everything is managed from a centralized cloud dashboard where teams can monitor all their servers in one place, review security events, configure protection policies per server, and receive real-time alerts via email. Key capabilities: * SSH brute-force protection — Detects failed login attempts and automatically bans repeat offenders with escalating durations (24h → 7 days → 30 days → permanent) * Web Application Firewall (WAF) — Blocks SQL injection, XSS, path traversal, shell injection, and 10+ other web attack categories directly at the log level * Bot management — Identifies 60+ known bots (search engines, AI crawlers, security scanners) with per-server allow/log/block policies * Threat intelligence network — Shares anonymized attack data across all Defensia-protected servers, so a threat detected on one server is blocked everywhere * Monitor mode — New servers start in observation-only mode so teams can review detections before enabling active blocking * Security scanning — On-demand hardening audits (SSH config, file permissions, web server settings) with one-click remediation for common issues * Real-time alerts — Instant email notifications for bans, critical events, server disconnections, and WAF attacks Who uses Defensia? Developers, sysadmins, and small DevOps teams running 1–50 Linux servers on any cloud provider (DigitalOcean, Hetzner, OVH, AWS, Linode) or bare metal. It's built for people who need production-grade server security without dedicating time to configure and maintain complex firewall rules. Deployment: One command installs the agent on any Ubuntu, Debian, CentOS, AlmaLinux, Rocky Linux, or CloudLinux server. No dependencies, no kernel modules, no Docker required on the server side. Available as a DigitalOcean 1-Click Droplet for instant deployment. Pricing: Free plan (1 server) with a Pro plan at 7 EUR/server/month for unlimited servers, advanced analytics, auto-remediation, and the full threat intelligence network.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Defensia?

  • Ease of Admin: 10.0/10 (Category avg: 9.0/10)
  • API / Integrations: 5.0/10 (Category avg: 8.6/10)
  • Security Auditing: 10.0/10 (Category avg: 8.9/10)

Who Is the Company Behind Defensia?

  • Seller: Defensia
  • Year Founded: 2026
  • HQ Location: Barcelona, ES
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of Defensia?

Fidelis Halo

CloudPassage is a security and compliance automation platform designed to provide instant visibility and continuous protection for servers in any combination of data centers, private clouds and public clouds.

Average Rating: 4.8/5.0

Total Reviews: 3

How Do G2 Users Rate Fidelis Halo?

  • Ease of Admin: 10.0/10 (Category avg: 9.0/10)

Who Is the Company Behind Fidelis Halo?

Who Uses This Product?

  • Company Size: 67% Large, 33% Small

What Do G2 Reviewers Say About Fidelis Halo?

AI-generated summary from verified user reviews

Pros
  • Users appreciate the real-time data intrusion detection of Fidelis Halo, ensuring robust protection for their critical assets.
  • Users value the real-time data intrusion detection of Fidelis Halo, ensuring critical asset protection effortlessly.
  • Users value the real-time data intrusion detection of Fidelis Halo, ensuring robust protection for sensitive assets.
  • Users appreciate the real-time data intrusion detection of Fidelis Halo, ensuring robust protection for critical assets.
  • Users value the real-time data intrusion detection of Fidelis Halo, ensuring robust protection for sensitive assets and compliance.

What Are Recent G2 Reviews of Fidelis Halo?

What Are G2 Users Discussing About Fidelis Halo?

FirstWave Cloud

FirstWave Cloud is a fully virtualised solution allowing telcos to deliver advanced cloud security solutions.

Average Rating: 4.0/5.0

Total Reviews: 2

How Do G2 Users Rate FirstWave Cloud?

  • Governance: 6.7/10 (Category avg: 8.8/10)
  • Ease of Admin: 8.3/10 (Category avg: 9.0/10)
  • API / Integrations: 10.0/10 (Category avg: 8.6/10)
  • Security Auditing: 6.7/10 (Category avg: 8.9/10)

Who Is the Company Behind FirstWave Cloud?

Who Uses This Product?

  • Company Size: 50% Large, 50% Small

What Are Recent G2 Reviews of FirstWave Cloud?

HyTrust Cloud Control

CloudControl helps you protect your virtual infrastructure with authentication, authorization and auditing. Better visibility and control simplify compliance and accelerate further virtualization

Average Rating: 4.5/5.0

Total Reviews: 1

How Do G2 Users Rate HyTrust Cloud Control?

  • Ease of Admin: 10.0/10 (Category avg: 9.0/10)

Who Is the Company Behind HyTrust Cloud Control?

  • Seller: HyTrust
  • HQ Location: Minneapolis, Minnesota, United States
  • Twitter: @HyTrust
    1,578 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,742 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of HyTrust Cloud Control?

IBM Secure Gateway

The Secure Gateway Service provides a quick, easy, and secure solution to connect anything to anything. The solution provides a persistent connection between on-premises or third party cloud environments and the IBM Cloud.

Average Rating: 5.0/5.0

Total Reviews: 1

Who Is the Company Behind IBM Secure Gateway?

  • Seller: IBM
  • Year Founded: 1911
  • HQ Location: Armonk, New York, United States
  • Twitter: @IBMSecurity
    74,660 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    344,328 employees on LinkedIn®
  • Ownership: SWX:IBM

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of IBM Secure Gateway?

What Are G2 Users Discussing About IBM Secure Gateway?

IBM Security zSecure

IBM Security zSecure Admin automates and simplifies IBM Resource Access Control Facility (RACF) security and compliance administration tasks and enhances RACF delegation capabilities and identity governance. By automating many recurring system administration functions and enhancing the native RACF authorization and delegation capabilities, zSecure Admin helps you maximize IT resources, reduce errors, increase efficiency, improve service quality and identify problems quickly to help minimize security risks and demonstrate compliance.

Average Rating: 2.5/5.0

Total Reviews: 1

Who Is the Company Behind IBM Security zSecure?

  • Seller: IBM
  • Year Founded: 1911
  • HQ Location: Armonk, New York, United States
  • Twitter: @IBMSecurity
    74,660 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    344,328 employees on LinkedIn®
  • Ownership: SWX:IBM

Who Uses This Product?

  • Company Size: 100% Medium

What Are G2 Users Discussing About IBM Security zSecure?

ManageEngine Cloud Security Plus

Cloud Security Plus combats security concerns and protects your cloud. It gives complete visibility into both your AWS and Azure cloud infrastructures.

Average Rating: 4.5/5.0

Total Reviews: 1

How Do G2 Users Rate ManageEngine Cloud Security Plus?

  • Ease of Admin: 8.3/10 (Category avg: 9.0/10)

Who Is the Company Behind ManageEngine Cloud Security Plus?

  • Seller: Zoho
  • Year Founded: 1996
  • HQ Location: Austin, TX
  • Twitter: @Zoho
    137,880 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    30,913 employees on LinkedIn®
  • Phone: +1 (888) 900-9646

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of ManageEngine Cloud Security Plus?

Styra

Styra are the creators and maintainers of Open Policy Agent and leaders in cloud-native authorization. Our mission at Styra is to provide unified authorization and policy across the cloud-native stack. Styra enables enterprises to define, enforce and monitor policy across their cloud-native environments. With a combination of open source (Open Policy Agent) and commercial products (Styra Declarative Authorization Service and Styra Run), Styra provides security, operations and compliance guardrails to protect applications, as well as the infrastructure they run on. Styra policy-as-code approach lets developers, DevOps, and security teams mitigate risks, reduce human error and accelerate application development. Styra is rethinking authorization policy by providing enterprises with context-based policy guardrails to mitigate risk, reduce errors and accelerate development

Average Rating: 4.5/5.0

Total Reviews: 3

How Do G2 Users Rate Styra?

  • Ease of Admin: 6.7/10 (Category avg: 9.0/10)

Who Is the Company Behind Styra?

  • Seller: Styra
  • Year Founded: 2016
  • HQ Location: Redwood City, US
  • Twitter: @styrainc
    3,357 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    19 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 67% Large, 33% Small

What Are Recent G2 Reviews of Styra?

Uptycs

Uptycs unified CNAPP and XDR platform is a comprehensive security solution designed to protect the full spectrum of modern attack surfaces in your cloud, data centers, user devices, build pipelines, and containers. With a strong focus on DevSecOps, Uptycs offers a powerful combination of CNAPP capabilities, including Cloud Workload Protection Platform (CWPP), Kubernetes Security Posture Management (KSPM), Cloud Security Posture Management (CSPM), Cloud Infrastructure Entitlement Management (CIEM), and Cloud Detection and Response (CDR). With Uptycs you also get industry-leading eXtended Detection and Response (XDR) across macOS, Windows, and Linux endpoints, ensuring comprehensive protection, detection, and investigation. Uptycs delivers real-time threat detection, context-rich alerts, and maps detections to the MITRE ATT&CK framework for improved security insights. Uptycs performs scanning of containers for vulnerabilities throughout the CI/CD pipeline, promoting agile DevOps workflows, and reducing risk in production environments. Uptycs seamlessly integrates with existing tools and processes, streamlining operations and improving overall efficiency. Customers also benefit from the flexibility to choose between agent-based and agentless scanning options tailored to their unique cloud workload needs. Discover how Uptycs can transform your security posture with a comprehensive, flexible, and powerful security solution designed to meet the needs of today's complex and rapidly evolving cloud environments. Shift up with Uptycs. KEY DIFFERENTIATORS: 1. Unified & Comprehensive Platform: Uptycs offers a holistic security solution with CNAPP capabilities (CWPP, KSPM, CSPM, CIEM, and CDR) across data centers, laptops, build pipelines, containers, and cloud environments, reducing tool sprawl. 2. Advanced XDR: Industry-leading eXtended Detection and Response for endpoint protection across macOS, Windows, and Linux systems. 3. DevSecOps Focus: Enhanced security for container-based workloads and Kubernetes, supporting agile DevOps workflows. 4. Real-Time Threat Detection: Context-rich alerts and threat detection mapped to the MITRE ATT&CK framework for improved insights. 5. CI/CD Integration: Efficiently scan containers for vulnerabilities throughout the CI/CD pipeline, reducing risk in production. 6. Both agent-based and agentless scanning. Deploy agentless scanning for rapid, friction-free coverage to keep your data secure, and gain continuous runtime security, real-time investigations, and remediation with agent-based telemetry. 7. Rich API & Compatibility: Seamless integration with existing security tools and platforms, powered by osquery for broad compatibility. 8. Expert Support & Flexibility: Dedicated support from security experts and the best of both worlds with agent-based and agentless scanning options tailored to your needs.

Average Rating: 4.4/5.0

Total Reviews: 13

How Do G2 Users Rate Uptycs?

  • Governance: 5.0/10 (Category avg: 8.8/10)
  • Ease of Admin: 8.3/10 (Category avg: 9.0/10)
  • API / Integrations: 3.3/10 (Category avg: 8.6/10)
  • Security Auditing: 6.7/10 (Category avg: 8.9/10)

Who Is the Company Behind Uptycs?

  • Seller: Uptycs
  • Year Founded: 2016
  • HQ Location: Waltham, US
  • Twitter: @uptycs
    1,483 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    132 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Financial Services
  • Company Size: 54% Medium, 38% Large

What Do G2 Reviewers Say About Uptycs?

AI-generated summary from verified user reviews

Pros
  • Users value the comparative analysis features of Uptycs, aiding in selecting the best cloud security tools.
  • Users appreciate the comparative analysis features of Uptycs, aiding them in selecting the best cloud security tools.
  • Users value the comparative analysis features of Uptycs for making informed decisions in cloud security tools.
  • Users value Uptycs for its compliance with CIS and PCI DSS standards, enhancing security monitoring capabilities.
  • Users value the compliance management of Uptycs, appreciating its adherence to CIS and PCI DSS standards.
Cons
  • Users regret the high fees of Uptycs, which impact their willingness to continue using the tool.
  • Users express concerns about high pricing, which makes continued use of Uptycs challenging for some.

What Are Recent G2 Reviews of Uptycs?

Araali Network Security Pro

Araali Networks allows lean security teams to discover their exposure - data, services, and backdoors and prioritize the top 1% of risks that really matter. The security team can use cloud-native controls or Araali's ebpf firewall to create compensating controls to neutralize these risks. In addition, Araali is introducing a new feature that allows teams to patch their CVEs, automatically using Araali - this is a game changer as it allows team to knock off 90% of critical CVEs with little effort. Coverage: VMs, Containers, and Kubernetes across the public and private clouds. How: Araali automatically discovers your apps, their networking, access privileges, and security risks. It also creates and maintains the least privilege policies for all the apps. Your teams can enforce explicit policies for “who can do what” in your virtual private cloud, blocking malicious code from establishing a backdoor or accessing your services. Araali's customers include cloud-native startups, mid-market enterprises, and government agencies. To learn more visit www.araalinetworks.com or create a free trial account by signing up on console.araalinetworks.com Use Cases: 1) SOC-2 compliance: IDS/IPS, vulnerability management, asset management, vulnerability compensation controls, app access control for 2) Egress Filtering: Monitor and control egress to third-party sites, backdoors, supply chain attacks, and ransomware 3) Risk Prioritization: Visibility into the runtime - apps and associated risks 4) Vulnerability Management and Vulnerability Shielding: prevent vuln from getting exploited - especially useful for zero-day or cases where patches are not available as seen in Log4j 5) Enforcement: Proactively or Reactively Neutralize Threats to stop them from moving laterally and exfiltrating your data.

Average Rating: 4.3/5.0

Total Reviews: 3

Who Is the Company Behind Araali Network Security Pro?

Who Uses This Product?

  • Company Size: 67% Small, 33% Medium

What Do G2 Reviewers Say About Araali Network Security Pro?

AI-generated summary from verified user reviews

Pros
  • Users value the precision in threat alerting that aids in identifying and mitigating zero-day vulnerabilities effectively.
  • Users value the seamless API integration of Araali Network Security Pro, enhancing threat detection and mitigation capabilities.
  • Users value the detection efficiency of Araali Network Security Pro, effectively identifying and addressing zero-day vulnerabilities.
  • Users commend the seamless integrations of Araali Network Security Pro, enhancing their security tool ecosystem effectively.
  • Users value the seamless integration and precision in threat detection of Araali Network Security Pro.
Cons
  • Users find the complex coding challenging, as it delays security alerts and hinders timely incident response.
  • Users find that delayed detection hampers incident response, especially with complex network setups.
  • Users find the ineffective alerts from Araali Network Security Pro hinder timely incident responses, especially in complex networks.
  • Users experience delays in receiving security alerts, complicating incident response for complex network infrastructures.
  • Users experience challenges with network issues, facing delays in security alerts that hinder timely incident response.

What Are Recent G2 Reviews of Araali Network Security Pro?

Crowd Sentry

Ever wondered if your cloud environment was security but didn't want to pay the 100K price tag that every other security vendor wants to charge you. You can use our product, get a great view into your assets and security risk, and not pay for more than you need. Features: ✅ Full Asset Management of your AWS resources across all regions ✅ Centralized risk management platform that tracks your security risk across time ✅. Complete set of guides on how to fix every vulnerability we find ✅. Fully open API so you can enrich your own data ✅. Secure read-only interface that you can give to auditors or your MSSP Use Cases: 💡 Startup - Secure your cloud infrastructure to gain some security peace of mind 💡 VC - Want to know the risk risk of clients but don't want to pay for audits every year 💡 MSSP - Need access to your clients AWS ENV without having read access 💡 Cyber Insurance - Want a weekly report of your clients security risk

Who Is the Company Behind Crowd Sentry?

Data Theorem Cloud Secure

Data Theorem's Cloud Secure is an automated, continuous security service that integrates Cloud-Native Application Protection Platform (CNAPP) and Application Security (AppSec) capabilities across multi-cloud environments, encompassing both public and private assets. It offers a comprehensive, application-centric approach to cloud security, ensuring robust protection for cloud-native applications and infrastructure. Key Features and Functionality: - Monitoring: Implements Cloud Security Posture Management (CSPM) for continuous asset discovery, vulnerability assessments—including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and Infrastructure as Code (IaC) analysis—and Cloud Identity and Entitlement Management (CIEM). - Hacking: Utilizes innovative Hacker Toolkits that provide daily updates on security vulnerabilities and exploits, identifying potential external attack vectors and data breach risks within cloud environments. - Protection: Offers runtime protections designed to prevent data breaches across cloud-native APIs and applications, leveraging Data Theorem's Software Development Kit (SDK) libraries for real-time telemetry collection and policy-based blocking. Primary Value and Problem Solved: Cloud Secure addresses the critical need for comprehensive security in cloud-native applications by providing continuous monitoring, proactive vulnerability identification, and real-time protection mechanisms. By integrating CNAPP and AppSec functionalities, it enables organizations to effectively manage and secure their multi-cloud assets, thereby reducing the risk of data breaches and ensuring compliance with security standards. This holistic approach empowers businesses to maintain a strong security posture in the dynamic landscape of cloud computing.

Average Rating: 4.5/5.0

Total Reviews: 3

Who Is the Company Behind Data Theorem Cloud Secure?

Who Uses This Product?

  • Company Size: 67% Medium, 33% Small

What Are Recent G2 Reviews of Data Theorem Cloud Secure?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated October 3, 2024