# Top Free Container Security Tools - Page 2

## How Many Container Security Tools Products Does G2 Track?

**Total Products under this Category:** 75

### Category Stats (Aug 2026)

- **Average Rating:** 4.53/5 (↓0.01 vs Jul 2026) The average rating of products in this category, based on all submitted ratings
- **Top Trending Product:** Orca Security (+0.34%) - Among all products in this category, Orca Security recorded the largest rating increase compared to last month

_Last updated: August 14, 2026_

## How Does G2 Rank Container Security Tools Products?

**Why You Can Trust G2's Software Rankings:**

- 30 Analysts and Data Experts
- 4,600+ Authentic Reviews
- 75+ Products
- Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

## G2 Grid® for Container Security Tools
 ![G2 Grid® for Container Security Tools plotting products by satisfaction and market presence](https://www.g2.com/categories/container-security-tools/grids.png?focus%5B%5D=146504&focus%5B%5D=1183453&focus%5B%5D=1259627&focus%5B%5D=52233&focus%5B%5D=20460&focus%5B%5D=151443&focus%5B%5D=123609&focus%5B%5D=1212165)

Highlighted products: Wiz, Chainguard, Aikido Security, Microsoft Defender for Cloud, Sysdig Secure, CrowdStrike Falcon Cloud Security, Orca Security, and Red Hat Advanced Cluster Security for Kubernetes.

Underlying data: [Grid® JSON](https://www.g2.com/categories/container-security-tools/grids.json?focus%5B%5D=wiz-wiz&focus%5B%5D=chainguard&focus%5B%5D=aikido-security&focus%5B%5D=microsoft-defender-for-cloud&focus%5B%5D=sysdig-sysdig-secure&focus%5B%5D=crowdstrike-falcon-cloud-security&focus%5B%5D=orca-security&focus%5B%5D=red-hat-advanced-cluster-security-for-kubernetes)

**Sponsored**

### Aikido Security

Aikido Security is the developer-first security platform that unifies code, cloud, protection, and attack testing in one suite of best-in-class products. Built by developers for developers, Aikido helps teams of any size ship secure software faster, automate protection, and simulate real-world attacks with AI-driven precision. The platform’s proprietary AI cuts noise by 95%, delivers one-click fixes, and saves developers 10+ hours per week. Aikido Intel proactively uncovers vulnerabilities in open source packages before disclosure, helping secure more than 50,000 organizations worldwide, including Revolut, Niantic, Visma, Montblanc, and GoCardless.

[Visit website](https://www.g2.com/external_clickthroughs/record?secure%5Bad_program%5D=ppc&secure%5Bad_slot%5D=category_product_list_llm&secure%5Bcategory_id%5D=1594&secure%5Bchosen_at%5D=2026-08-15T07%3A28%3A33Z&secure%5Bdisplayable_resource_id%5D=1594&secure%5Bdisplayable_resource_type%5D=Category&secure%5Bmedium%5D=sponsored&secure%5Bplacement_reason%5D=page_category&secure%5Bplacement_resource_ids%5D%5B%5D=1594&secure%5Bprioritized%5D=false&secure%5Bproduct_id%5D=1259627&secure%5Bresource_id%5D=1594&secure%5Bresource_type%5D=Category&secure%5Bsource_type%5D=category_page&secure%5Bsource_url%5D=https%3A%2F%2Fwww.g2.com%2Fcategories%2Fcontainer-security-tools%2Ffree%3Fpage%3D2&secure%5Btoken%5D=2dac72d47e6f783b23f15b3a99d24751e6548f982e9d6c1c915475af86daab9d&secure%5Burl%5D=https%3A%2F%2Fwww.aikido.dev%2Fcode%2Fcontainer-image-scanning%3Futm_source%3Dg2%26utm_campaign%3Dg2-promoted-listing-container-security%26utm_medium%3Dcpc&secure%5Burl_type%5D=custom_url)

### [ThreatWorx](https://www.g2.com/products/threatworx/reviews)

ThreatWorx is a next-gen proactive cybersecurity platform that protects servers, cloud, containers and source code from malware and vulnerabilities without scanner appliances or bulky agents. ThreatWorx serves multiple use cases including threat intelligence, DevSecOps, cloud security, vulnerability management and third party risk assessment.

**Average Rating:** 4.7/5.0

**Total Reviews:** 9

#### How Do G2 Users Rate ThreatWorx?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.0/10)
- **Security Auditing:** 9.2/10 (Category avg: 8.3/10)
- **Network Segmentation:** 8.3/10 (Category avg: 8.0/10)
- **Workload Protection:** 5.0/10 (Category avg: 8.0/10)

#### Who Is the Company Behind ThreatWorx?

- **Seller:** [Threatwatch](https://www.g2.com/sellers/threatwatch)
- **Year Founded:** 2016
- **HQ Location:** LOS GATOS, US
- **Twitter:** @threatwatch  
100 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=f5657162472a245c39f3e39a2b762d1ff812c0737644e0357ad52a4b7f8301aa&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fthreatwatch%2F&secure%5Burl_type%5D=linkedin_company_website)  
5 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 40% Medium, 40% Small

#### What Are Recent G2 Reviews of ThreatWorx?

**["Amazing security technology"](https://www.g2.com/survey_responses/threatworx-review-4936116)**

**Rating:** 5.0/5.0 stars

_— Parikshit S._

[Read full review](https://www.g2.com/survey_responses/threatworx-review-4936116)

**["very good product"](https://www.g2.com/survey_responses/threatworx-review-6954316)**

**Rating:** 4.5/5.0 stars

_— Yogesh S._

[Read full review](https://www.g2.com/survey_responses/threatworx-review-6954316)

#### What Are G2 Users Discussing About ThreatWorx?

- [What is ThreatWorx used for?](https://www.g2.com/discussions/what-is-threatworx-used-for)

### [AccuKnox](https://www.g2.com/products/accuknox/reviews)

AccuKnox Zero Trust CNAPP cloud security protects public and private clouds, Kubernetes and VMs. AccuKnox is a AI-powered Zero Trust Cloud Native Security Platform that helps organizations comply with various frameworks and over 33+ compliance controls, including MITRE, NIST, STIG, CIS, PCI-DSS, GDPR, and SOC2. AccuKnox enhances InfraSec and DevSecOps teams by enabling them to detect, prioritize, prevent and protect against advanced and sophisticated cloud attacks. Key Benefits 1. Code to Cloud Security 2. Easy Deployment 3. Extensive Coverage. 4. Preemptive Attack Mitigation 5. Open Source and Innovative Key Differentiators - Inline Preemptive Security (as opposed to Post-attack mitigation) - Secures modern workloads (Kubernetes) and traditional workloads (VMs) - Multi-Cloud, Private, Air-gapped, and Hybrid Cloud Security - IaC – Infrastructure As Code scanning - Secures AI/ML workloads like Jupyter Notebooks Features - Automated Zero Trust Cloud Security (Public, Private, Hybrid, Air-gapped) - Vulnerability Management & Prioritization - Run-time security, Micro-segmentation - Application Firewalling, Kernel Hardening - Drift Detection & Audit Trail - Continuous Diagnostics & Mitigation - GRC – CIS, HIPAA, GDPR, SOC2, STIG, MITRE, NIST - Securing Mission-Critical Workloads like Vault - Securing AI workbenches like Jupyter Notebooks - Cryptojacking and TNTBotinger Attacks With over 15+ patents, we're proud to offer an OpenSource, DevSecOps-led delivery model. To top it off, we have an ongoing R&D partnership with the esteemed SRI International. We deliver both Static and Runtime Security, anchored on innovations in Cloud Security and AI/ML-based Anomaly Detection. Static Code Analysis - Deeply analyze your code for vulnerabilities and weaknesses. CI/CD Pipelines Scanning - Continuously scan your pipelines for security flaws and risks. Container Security - Fortify your containers with robust security measures. Kubernetes Orchestration - Seamlessly manage and secure your Kubernetes environments. Secret Scanning - Detect and protect sensitive information from unauthorized access.

**Average Rating:** 4.4/5.0

**Total Reviews:** 12

#### How Do G2 Users Rate AccuKnox?

- **Has the product been a good partner in doing business?:** 8.9/10 (Category avg: 9.0/10)
- **Security Auditing:** 8.7/10 (Category avg: 8.3/10)
- **Network Segmentation:** 9.0/10 (Category avg: 8.0/10)
- **Workload Protection:** 9.0/10 (Category avg: 8.0/10)

#### Who Is the Company Behind AccuKnox?

- **Seller:** [Accuknox](https://www.g2.com/sellers/accuknox)
- **Year Founded:** 2020
- **HQ Location:** California, USA
- **Twitter:** @AccuKnox  
341 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=c15a1a00305354f8e770c469c551b7cc7aead95829f7289e088c2caa17c4a6e3&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Faccuknox&secure%5Burl_type%5D=linkedin_company_website)  
180 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 46% Large, 31% Medium

#### What Do G2 Reviewers Say About AccuKnox?

_AI-generated summary from verified user reviews_

##### Pros

- Users highly value the **comprehensive security** offered by AccuKnox, effectively managing tools across various platforms.
- Users value the **high security level** of AccuKnox, effectively enhancing protection across their cloud environments and tools.
- Users value the **seamless cloud integration** of AccuKnox, enhancing security and compliance effortlessly across platforms.
- Users value the **seamless compliance management** of AccuKnox, enhancing security across cloud workloads and integrations.
- Users commend the **exceptional customer support** from AccuKnox, praising their responsiveness and deep product knowledge.

##### Cons

- Users find the **difficult learning curve** challenging, especially with complex setup and Kubernetes knowledge required.
- Users find the **complex setup** challenging, particularly for those with limited security expertise in their organizations.
- Users find the solution **cost prohibitive** , making it a potential barrier for many customers.
- Users find the **poor customer support** frustrating, as response times are slow and require follow-ups.
- Users find the **complex setup** of AccuKnox challenging, particularly for those with limited security knowledge.

#### What Are Recent G2 Reviews of AccuKnox?

**["Right set of Solution building blocks to address complex CloudSec challenges"](https://www.g2.com/survey_responses/accuknox-review-10731493)**

**Rating:** 5.0/5.0 stars

_— Dinakar R._

[Read full review](https://www.g2.com/survey_responses/accuknox-review-10731493)

**["Having performed PoC with the product and involved with discussions with the team - excellent!"](https://www.g2.com/survey_responses/accuknox-review-10934962)**

**Rating:** 5.0/5.0 stars

_— Ashleigh W._

[Read full review](https://www.g2.com/survey_responses/accuknox-review-10934962)

### [GuardRails](https://www.g2.com/products/guardrails-guardrails/reviews)

GuardRails is an end-to-end security platform that makes AppSec easier for both security and development teams. We scan, detect, and provide real-time guidance to fix vulnerabilities early. Trusted by hundreds of teams around the world to build safer apps, GuardRails integrates seamlessly into the developers’ workflow, quietly scans as they code, and shows how to fix security issues on the spot via Just-in-Time training. GuardRails commits to keeping the noise low and only reporting high-impact vulnerabilities that are relevant to your organization. GuardRails helps organizations shift security everywhere and build a strong DevSecOps pipeline, so they can go faster to market without risking security.

**Average Rating:** 4.3/5.0

**Total Reviews:** 29

#### How Do G2 Users Rate GuardRails?

- **Has the product been a good partner in doing business?:** 9.4/10 (Category avg: 9.0/10)
- **Security Auditing:** 10.0/10 (Category avg: 8.3/10)
- **Workload Protection:** 10.0/10 (Category avg: 8.0/10)

#### Who Is the Company Behind GuardRails?

- **Seller:** [GuardRails](https://www.g2.com/sellers/guardrails)
- **Year Founded:** 2017
- **HQ Location:** Singapore, Singapore
- **Twitter:** @guardrailsio  
1,553 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=6be090277f6c8c141e1d2ae05a89f7c1ee759f1313bdebe23b0a48edda8ba158&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F13599521&secure%5Burl_type%5D=linkedin_company_website)  
13 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Information Technology and Services, Financial Services
- **Company Size:** 52% Small, 48% Medium

#### What Do G2 Reviewers Say About GuardRails?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **robust security features** of GuardRails, enabling better vulnerability management and compliance in development processes.
- Users value the **vulnerability detection** capabilities of GuardRails, ensuring quick and effective security for their code.
- Users find GuardRails **easy to use** , benefiting from seamless IDE integration and real-time security feedback.
- Users value the **error reduction** capabilities of GuardRails, which enhance security and improve overall development efficiency.
- Users commend the **effective threat detection** of GuardRails, ensuring robust security throughout the development process.

##### Cons

- Users note the **missing features** in GuardRails, such as limited developer access and inadequate report generation capabilities.
- Users find **time management challenging** with GuardRails due to features being overwhelming and limited developer capacity.
- Users face **bug issues** with GuardRails, including code push failures and delays due to low-quality coding practices.
- Users experience **dashboard issues** , facing challenges with report generation and syncing new user dashboards.
- Users report **numerous false positives** in GuardRails, potentially complicating the vulnerability management process.

#### What Are Recent G2 Reviews of GuardRails?

**["A must tool for security"](https://www.g2.com/survey_responses/guardrails-review-8536638)**

**Rating:** 4.0/5.0 stars

_— Sanjeev M._

[Read full review](https://www.g2.com/survey_responses/guardrails-review-8536638)

**["Security and Flexibility with GuardRails"](https://www.g2.com/survey_responses/guardrails-review-8956655)**

**Rating:** 4.0/5.0 stars

_— Muhammad S._

[Read full review](https://www.g2.com/survey_responses/guardrails-review-8956655)

### [Styra](https://www.g2.com/products/styra/reviews)

Styra are the creators and maintainers of Open Policy Agent and leaders in cloud-native authorization. Our mission at Styra is to provide unified authorization and policy across the cloud-native stack. Styra enables enterprises to define, enforce and monitor policy across their cloud-native environments. With a combination of open source (Open Policy Agent) and commercial products (Styra Declarative Authorization Service and Styra Run), Styra provides security, operations and compliance guardrails to protect applications, as well as the infrastructure they run on. Styra policy-as-code approach lets developers, DevOps, and security teams mitigate risks, reduce human error and accelerate application development. Styra is rethinking authorization policy by providing enterprises with context-based policy guardrails to mitigate risk, reduce errors and accelerate development

**Average Rating:** 4.5/5.0

**Total Reviews:** 3

#### How Do G2 Users Rate Styra?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.0/10)
- **Security Auditing:** 6.7/10 (Category avg: 8.3/10)

#### Who Is the Company Behind Styra?

- **Seller:** [Styra](https://www.g2.com/sellers/styra-9c4063d4-2358-493b-91ec-ba0a2d47a466)
- **Year Founded:** 2016
- **HQ Location:** Redwood City, California, United States
- **Twitter:** @styrainc  
3,357 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=b7c358911b9508a8734036c96c4831d05eec20dc6c85c603bb45e00bfcb8c245&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fstyra&secure%5Burl_type%5D=linkedin_company_website)  
55 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 67% Large, 33% Small

#### What Are Recent G2 Reviews of Styra?

**["The greatest authorization tech company out there."](https://www.g2.com/survey_responses/styra-review-7476888)**

**Rating:** 5.0/5.0 stars

_— Verified User in Mechanical or Industrial Engineering_

[Read full review](https://www.g2.com/survey_responses/styra-review-7476888)

**["Versatile and needed tool for managing Open Policy Agent Instances at scale."](https://www.g2.com/survey_responses/styra-review-7609192)**

**Rating:** 4.0/5.0 stars

_— Verified User in Transportation/Trucking/Railroad_

[Read full review](https://www.g2.com/survey_responses/styra-review-7609192)

### [OX Security](https://www.g2.com/products/ox-security/reviews)

OX rewires your security program for the Mythos Age: the era where AI writes the code, chains the exploits, and moves faster than human-built defenses can track. OX is an AI Native Application Protection Platform (AINAPP) unifying security from Prompt to Runtime. It moves your control surface upstream to the prompt, preventing and governing risk at the source instead of chasing it downstream in runtime. OX Mind and OX AI Context Lake connect AI-user governance, code security, cloud and runtime enforcement, and agentic pentesting into one system that shares context across the entire Agentic Development Lifecycle (ADLC), replacing fragmented point tools with a single platform. The platform runs on four connected pillars: OX VibeSec: Prevents unsafe AI decisions at the point of creation and governs every AI user in the organization, not just developers using coding assistants. Full visibility into which agents, MCPs, skills, and packages run, with what permissions, against what data. OX Code: Separates exploitable risk from theoretical noise using evidence from your actual deployment, threat model, and threat intelligence. OX Cloud: Prevents misconfigurations and enforces runtime boundaries that code and agents cannot cross, watching what actually runs in production. OX Agentic Pentester: Continuously simulates adversarial agent behavior to prove exploit paths back to their exact source, feeding what it finds back into OX VibeSec to sharpen governance. OX connects to your existing stack and traces every finding back to its origin (the prompt, the AI user, or the endpoint that created it), then fixes issues at the source rather than flagging them after the fact. For new deployments, OX consolidates governance, code security, cloud enforcement, and pentesting into one platform. For existing stacks, OX layers governance on top and makes current tools smarter through continuous learning, so the same issue never gets created twice. Visit https://ox.security for more information.

**Average Rating:** 4.8/5.0

**Total Reviews:** 51

#### How Do G2 Users Rate OX Security?

- **Has the product been a good partner in doing business?:** 9.7/10 (Category avg: 9.0/10)

#### Who Is the Company Behind OX Security?

- **Seller:** [OX Security](https://www.g2.com/sellers/ox-security)
- **Year Founded:** 2021
- **HQ Location:** New York, USA
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=ee8e1fc166aedd5d2f8edd57605f86ae8eec3007f5eee8810871f0e4645b4f4d&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fox-security%2F&secure%5Burl_type%5D=linkedin_company_website)  
199 employees on LinkedIn®

#### Who Uses This Product?

- **Who Uses This:** Security Engineer
- **Top Industries:** Financial Services, Information Technology and Services
- **Company Size:** 63% Medium, 25% Large

#### What Do G2 Reviewers Say About OX Security?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **intuitive dashboard and seamless integration** of OX Security, enhancing their security management and workflow efficiency.
- Users value the **seamless collaboration** enabled by OX Security, enhancing their focus on critical development tasks.
- Users commend the **responsive customer support** of OX Security, enhancing their overall operational efficiency and satisfaction.
- Users value the **seamless integrations** with existing tools, enhancing workflows and boosting overall development efficiency.
- Users appreciate the **speed** of OX Security, enabling faster remediation of vulnerabilities and cloud misconfigurations.

##### Cons

- Users find the **complexity** of OX Security daunting, facing a steep learning curve and inadequate documentation.
- Users find the **interface overwhelming** , with a steep learning curve and insufficient documentation to guide new users.
- Users find the **complex setup** challenging, especially due to inadequate documentation and overwhelming UI for new users.
- Users find the **executive dashboard limiting** , impacting effective reporting on product security enhancements to management.
- Users find OX Security's **difficult learning curve** challenging, particularly due to its complex interface and lacking documentation.

#### What Are Recent G2 Reviews of OX Security?

**["A powerful and comprehensive tool that meets most best practices for web app security testing"](https://www.g2.com/survey_responses/ox-security-review-10961361)**

**Rating:** 4.5/5.0 stars

_— Verified User in Gambling & Casinos_

[Read full review](https://www.g2.com/survey_responses/ox-security-review-10961361)

**["Holistic Security Solution with Seamless Integration"](https://www.g2.com/survey_responses/ox-security-review-10487561)**

**Rating:** 4.5/5.0 stars

_— Sharon S._

[Read full review](https://www.g2.com/survey_responses/ox-security-review-10487561)

### [Sonatype Lifecycle](https://www.g2.com/products/sonatype-lifecycle/reviews)

Continuously secure your software supply chain with Sonatype Nexus Lifecycle, a software composition analysis (SCA) solution. Nexus Lifecycle helps development, security, and compliance teams reduce open source risk without slowing delivery. It detects vulnerable or non-compliant components early, provides clear remediation guidance, and enforces the same policies from development through CI/CD and release - powered by Sonatype Nexus Intelligence. Choose safer components up front: A Chrome extension and IDE integrations surface vulnerability, license, and quality insights as developers browse public repositories or add dependencies. Fix issues fast where work happens: In Eclipse, IntelliJ, and Visual Studio, developers can see exactly what's wrong and upgrade to an approved version with a click - no guesswork. Automate remediation in source control: Integrations with GitHub, GitLab, and Atlassian Bitbucket can comment on pull/merge requests and identify the specific dependency change that introduces risk, along with recommended versions to resolve it. You can also generate automated pull requests to update components that violate policy. Enforce open source policies across the SDLC: Create security, license, and architectural policies tailored by application type, team, or organization, then apply them consistently in developer tools, CI/CD, and repositories to prevent risky components from reaching production. Generate SBOMs in minutes: Produce accurate Software Bills of Materials (SBOMs) per application to understand what components and transitive dependencies are in use and verify compliance. Prove progress with reporting: Track trends like Mean Time to Resolution (MTTR) and violation reduction over time to demonstrate measurable risk reduction to stakeholders. Nexus Lifecycle integrates with common developer, CI/CD, and repository tools including Nexus Repository, Artifactory, Jira, Jenkins, Azure DevOps, and more.

**Average Rating:** 4.2/5.0

**Total Reviews:** 3

#### How Do G2 Users Rate Sonatype Lifecycle?

- **Has the product been a good partner in doing business?:** 6.7/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Sonatype Lifecycle?

- **Seller:** [Sonatype](https://www.g2.com/sellers/sonatype)
- **Year Founded:** 2008
- **HQ Location:** Fulton, US
- **Twitter:** @sonatype  
10,589 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=dd965bcc74ef94929b9eb731aaa8ab372133c521cbfc49096fe776e20652458f&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F210324%2F&secure%5Burl_type%5D=linkedin_company_website)  
553 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 75% Large, 25% Medium

#### What Are Recent G2 Reviews of Sonatype Lifecycle?

**["Best SCA tool in the market for Java, and .NET"](https://www.g2.com/survey_responses/sonatype-lifecycle-review-6933703)**

**Rating:** 5.0/5.0 stars

_— Vis C._

[Read full review](https://www.g2.com/survey_responses/sonatype-lifecycle-review-6933703)

**["So many features, easily configurable and wide support for a lot of languages"](https://www.g2.com/survey_responses/sonatype-lifecycle-review-4165826)**

**Rating:** 5.0/5.0 stars

_— Verified User in Financial Services_

[Read full review](https://www.g2.com/survey_responses/sonatype-lifecycle-review-4165826)

### [Uptycs](https://www.g2.com/products/uptycs-uptycs/reviews)

Uptycs unified CNAPP and XDR platform is a comprehensive security solution designed to protect the full spectrum of modern attack surfaces in your cloud, data centers, user devices, build pipelines, and containers. With a strong focus on DevSecOps, Uptycs offers a powerful combination of CNAPP capabilities, including Cloud Workload Protection Platform (CWPP), Kubernetes Security Posture Management (KSPM), Cloud Security Posture Management (CSPM), Cloud Infrastructure Entitlement Management (CIEM), and Cloud Detection and Response (CDR). With Uptycs you also get industry-leading eXtended Detection and Response (XDR) across macOS, Windows, and Linux endpoints, ensuring comprehensive protection, detection, and investigation. Uptycs delivers real-time threat detection, context-rich alerts, and maps detections to the MITRE ATT&CK framework for improved security insights. Uptycs performs scanning of containers for vulnerabilities throughout the CI/CD pipeline, promoting agile DevOps workflows, and reducing risk in production environments. Uptycs seamlessly integrates with existing tools and processes, streamlining operations and improving overall efficiency. Customers also benefit from the flexibility to choose between agent-based and agentless scanning options tailored to their unique cloud workload needs. Discover how Uptycs can transform your security posture with a comprehensive, flexible, and powerful security solution designed to meet the needs of today's complex and rapidly evolving cloud environments. Shift up with Uptycs. KEY DIFFERENTIATORS: 1. Unified & Comprehensive Platform: Uptycs offers a holistic security solution with CNAPP capabilities (CWPP, KSPM, CSPM, CIEM, and CDR) across data centers, laptops, build pipelines, containers, and cloud environments, reducing tool sprawl. 2. Advanced XDR: Industry-leading eXtended Detection and Response for endpoint protection across macOS, Windows, and Linux systems. 3. DevSecOps Focus: Enhanced security for container-based workloads and Kubernetes, supporting agile DevOps workflows. 4. Real-Time Threat Detection: Context-rich alerts and threat detection mapped to the MITRE ATT&CK framework for improved insights. 5. CI/CD Integration: Efficiently scan containers for vulnerabilities throughout the CI/CD pipeline, reducing risk in production. 6. Both agent-based and agentless scanning. Deploy agentless scanning for rapid, friction-free coverage to keep your data secure, and gain continuous runtime security, real-time investigations, and remediation with agent-based telemetry. 7. Rich API & Compatibility: Seamless integration with existing security tools and platforms, powered by osquery for broad compatibility. 8. Expert Support & Flexibility: Dedicated support from security experts and the best of both worlds with agent-based and agentless scanning options tailored to your needs.

**Average Rating:** 4.4/5.0

**Total Reviews:** 13

#### How Do G2 Users Rate Uptycs?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.0/10)
- **Security Auditing:** 3.3/10 (Category avg: 8.3/10)
- **Network Segmentation:** 5.0/10 (Category avg: 8.0/10)
- **Workload Protection:** 5.0/10 (Category avg: 8.0/10)

#### Who Is the Company Behind Uptycs?

- **Seller:** [Uptycs](https://www.g2.com/sellers/uptycs)
- **Year Founded:** 2016
- **HQ Location:** Waltham, US
- **Twitter:** @uptycs  
1,483 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=5fbbec865928db3855f7de2121b8326b856f21275edc24d348aee146bafa5372&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fuptycs%2F&secure%5Burl_type%5D=linkedin_company_website)  
134 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Financial Services
- **Company Size:** 54% Medium, 38% Large

#### What Do G2 Reviewers Say About Uptycs?

_AI-generated summary from verified user reviews_

##### Pros

- Users value Uptycs for its **comprehensive comparative analysis** , simplifying the selection of the best cloud security tools.
- Users value the **comparative analysis features** of Uptycs, which aid in selecting the best cloud security tools.
- Users value the **comparative analysis features** of Uptycs, aiding in selecting the best cloud security tools.
- Users value Uptycs for its **strong compliance with CIS and PCI DSS standards** , enhancing their security monitoring capabilities.
- Users value Uptycs for its **effective compliance management** with CIS and PCI DSS standards, enhancing security monitoring.

##### Cons

- Users find the **high fees** of Uptycs to be off-putting, impacting their willingness to continue using the tool.
- Users feel that the **high pricing** of Uptycs discourages continued use despite its benefits.

#### What Are Recent G2 Reviews of Uptycs?

**["A unified solution to improve IT management and operations – all in one."](https://www.g2.com/survey_responses/uptycs-review-10769636)**

**Rating:** 4.0/5.0 stars

_— Rajitha A._

[Read full review](https://www.g2.com/survey_responses/uptycs-review-10769636)

**["Excellent lightweight EDR with full Mac support"](https://www.g2.com/survey_responses/uptycs-review-8402333)**

**Rating:** 4.5/5.0 stars

_— Joseph M._

[Read full review](https://www.g2.com/survey_responses/uptycs-review-8402333)

### [Xygeni](https://www.g2.com/products/xygeni/reviews)

Xygeni: AI-Native ASPM for the Software Supply Chain Xygeni is an AI-native ASPM (Application Security Posture Management) platform that unifies native and third-party security findings into one prioritized view. Its own detection engines cover SAST, SCA, DAST, Secrets, IaC, Container, CI/CD, and Build Security, and it also ingests results from tools like Snyk, Veracode, and Checkmarx so teams don't have to abandon what they've already invested in. Every finding, regardless of source, gets scored by exploitability, reachability, and business impact through Xygeni's Dynamic Funnels, which is what drives its reported 90% cut in alert noise. Two AI systems sit underneath the platform. CoreAI acts as a correlation and reporting layer for security leaders, turning scattered findings into a single risk narrative. DevAI works earlier, inside the developer's IDE and AI coding assistants, catching problems in both human-written and AI-generated code and proposing fixes before a pull request is even opened. On the supply chain side, Xygeni's MEW engine (Malware Early Warning) is built to catch malicious open-source packages the moment they hit a public registry, ahead of when a formal malware signature would normally exist. Shield takes that enforcement to the developer's own machine, blocking unauthorized package downloads at the OS level before they reach disk. Xygeni also runs a dedicated Code Quality engine across ten languages, ranking maintainability and complexity issues alongside security findings in the same console, so a team can see when the messiest file is also the riskiest one. The platform connects to GitHub, GitLab, Bitbucket, Jenkins, and Azure DevOps, and deploys as SaaS, on-premises, or fully air-gapped. Xygeni was named Hot Company in ASPM and in GenAI Application Security at the 2026 Global InfoSec Awards.

**Average Rating:** 4.6/5.0

**Total Reviews:** 4

#### How Do G2 Users Rate Xygeni?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.0/10)
- **Security Auditing:** 9.2/10 (Category avg: 8.3/10)
- **Network Segmentation:** 4.2/10 (Category avg: 8.0/10)
- **Workload Protection:** 5.0/10 (Category avg: 8.0/10)

#### Who Is the Company Behind Xygeni?

- **Seller:** [Xygeni Security](https://www.g2.com/sellers/xygeni-security)
- **Year Founded:** 2021
- **HQ Location:** Madrid, ES
- **Twitter:** @xygeni  
178 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=0302db05d62f71019af9c96a9c2a81cfa4c370ac1ddef2c863b931a5bb7be15a&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fxygeni%2F&secure%5Burl_type%5D=linkedin_company_website)  
30 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 60% Small, 40% Medium

#### What Do G2 Reviewers Say About Xygeni?

_AI-generated summary from verified user reviews_

##### Pros

- Users commend Xygeni for its **comprehensive security features** , enhancing protection while maintaining efficient software development processes.
- Users value the **contextual risk prioritization** of Xygeni, enabling focus on the most critical security issues efficiently.
- Users value the **effective risk management** of Xygeni, ensuring security without hindering development speed.
- Users praise the **robust security features** of Xygeni, ensuring efficient vulnerability management and compliance throughout development.
- Users value the **seamless CI/CD integration** of Xygeni, enhancing security without hindering development speed.

##### Cons

- Users experience **difficult setup** with Xygeni due to manual adjustments needed for specific CI/CD configurations.
- Users find the **learning curve for first-time users** challenging, needing familiarity with AppSec best practices for deeper insights.

#### What Are Recent G2 Reviews of Xygeni?

**["The essential tool for proactive security and confident development"](https://www.g2.com/survey_responses/xygeni-review-11393516)**

**Rating:** 4.5/5.0 stars

_— Marcos C._

[Read full review](https://www.g2.com/survey_responses/xygeni-review-11393516)

**["Revolutionized Our Security Workflow with Unified, AI-Driven Efficiency"](https://www.g2.com/survey_responses/xygeni-review-11998435)**

**Rating:** 5.0/5.0 stars

_— Yerassyl K._

[Read full review](https://www.g2.com/survey_responses/xygeni-review-11998435)

### [Araali Network Security Pro](https://www.g2.com/products/araali-network-security-pro/reviews)

Araali Networks allows lean security teams to discover their exposure - data, services, and backdoors and prioritize the top 1% of risks that really matter. The security team can use cloud-native controls or Araali's ebpf firewall to create compensating controls to neutralize these risks. In addition, Araali is introducing a new feature that allows teams to patch their CVEs, automatically using Araali - this is a game changer as it allows team to knock off 90% of critical CVEs with little effort. Coverage: VMs, Containers, and Kubernetes across the public and private clouds. How: Araali automatically discovers your apps, their networking, access privileges, and security risks. It also creates and maintains the least privilege policies for all the apps. Your teams can enforce explicit policies for “who can do what” in your virtual private cloud, blocking malicious code from establishing a backdoor or accessing your services. Araali's customers include cloud-native startups, mid-market enterprises, and government agencies. To learn more visit www.araalinetworks.com or create a free trial account by signing up on console.araalinetworks.com Use Cases: 1) SOC-2 compliance: IDS/IPS, vulnerability management, asset management, vulnerability compensation controls, app access control for 2) Egress Filtering: Monitor and control egress to third-party sites, backdoors, supply chain attacks, and ransomware 3) Risk Prioritization: Visibility into the runtime - apps and associated risks 4) Vulnerability Management and Vulnerability Shielding: prevent vuln from getting exploited - especially useful for zero-day or cases where patches are not available as seen in Log4j 5) Enforcement: Proactively or Reactively Neutralize Threats to stop them from moving laterally and exfiltrating your data.

**Average Rating:** 4.3/5.0

**Total Reviews:** 3

#### Who Is the Company Behind Araali Network Security Pro?

- **Seller:** [Araali Networks](https://www.g2.com/sellers/araali-networks)
- **Year Founded:** 2018
- **HQ Location:** Fremont, US
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=15cb15fb9655171b9fb605e680450e5dd09817d29ded898c9344a19a3990d77c&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Faraali-networks%2F&secure%5Burl_type%5D=linkedin_company_website)  
4 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 67% Small, 33% Medium

#### What Do G2 Reviewers Say About Araali Network Security Pro?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **precision of threat alerts** , aiding in the quick identification and mitigation of vulnerabilities.
- Users value the **seamless API integration** that enhances security by effectively identifying and mitigating vulnerabilities.
- Users value the **detection efficiency** of Araali Network Security Pro, effectively identifying and mitigating zero-day vulnerabilities.
- Users value the **seamless integrations** with security tools, enhancing precision in threat detection and vulnerability management.
- Users value the **seamless integration** of Araali Network Security Pro, enhancing threat detection and vulnerability management.

##### Cons

- Users find the **complex coding** challenging, especially with larger network setups, leading to delays in security alert responses.
- Users report **delayed detection** of security alerts, complicating incident response and affecting overall network security efficiency.
- Users experience **ineffective alerts** that delay incident response, especially with complex network infrastructures.
- Users find the **inefficient alert system** problematic, as delays hinder timely incident response in complex networks.
- Users face **network issues** that complicate adding infrastructure and cause delays in security alert responses.

#### What Are Recent G2 Reviews of Araali Network Security Pro?

**["Sleep Soundly with Araali"](https://www.g2.com/survey_responses/araali-network-security-pro-review-7418220)**

**Rating:** 4.5/5.0 stars

_— Dan M._

[Read full review](https://www.g2.com/survey_responses/araali-network-security-pro-review-7418220)

**["Review on Araali Network Security Pro"](https://www.g2.com/survey_responses/araali-network-security-pro-review-10672589)**

**Rating:** 4.5/5.0 stars

_— Verified User in Computer & Network Security_

[Read full review](https://www.g2.com/survey_responses/araali-network-security-pro-review-10672589)

### [Plerion](https://www.g2.com/products/plerion/reviews)

Plerion is a cloud security platform designed to assist organizations in managing and mitigating risks within their cloud environments. Unlike traditional security tools that inundate users with alerts, Plerion focuses on actionable insights, enabling teams to address vulnerabilities effectively. By streamlining the risk management process, Plerion transforms the way organizations approach cloud security, ensuring that the most critical threats are prioritized and resolved. The platform is tailored for IT security teams and cloud administrators across various industries that utilize cloud services such as AWS, Azure, and Google Cloud Platform (GCP). Plerion’s unique approach allows users to visualize their cloud infrastructure, identities, workloads, and code as a cohesive graph. This visualization helps users identify the approximately 1% of risks that are genuinely exploitable, eliminating the noise typically associated with security alerts. By presenting a concise, ranked list of vulnerabilities, Plerion empowers teams to focus their efforts where they matter most. At the heart of the Plerion platform is Pleri, an AI-driven cloud security engineer that mimics the investigative capabilities of a human security expert. Pleri assesses findings, verifies their exploitability in context, and traces risks back to the underlying code responsible for them. This automated process culminates in the creation of pull requests or Jira tickets for remediation, ensuring that every proposed change awaits human approval. This feature not only enhances accountability through full audit trails but also allows for easy rollbacks if necessary. Plerion’s comprehensive coverage includes cloud configuration, workloads, identity and permissions, data, code, and AI workloads, making it a versatile solution for diverse cloud environments. The platform also offers compliance mapping against a wide range of frameworks, linking each identified failure to specific corrective actions rather than merely generating reports. This capability significantly reduces the time and effort required for compliance management. Organizations using Plerion have reported substantial improvements in their security operations. For instance, Deputy achieved an 80% reduction in alerts and decreased their time-to-remediation from 30 days to just 4 hours. Similarly, Basis eliminated 40 hours of manual review each week, illustrating the platform's efficiency. With ISO 27001 certification, SOC 2 attestation, and the AWS Security Software Competency, Plerion ensures a high standard of security and reliability. By deploying in minutes rather than months, Plerion allows organizations to put their cloud security on autopilot while maintaining a human touch in the decision-making process.

**Average Rating:** 4.7/5.0

**Total Reviews:** 30

#### How Do G2 Users Rate Plerion?

- **Has the product been a good partner in doing business?:** 9.6/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Plerion?

- **Seller:** [Plerion](https://www.g2.com/sellers/plerion)
- **Company Website:** plerion.com
- **Year Founded:** 2021
- **HQ Location:** Sydney, AU
- **Twitter:** @PlerionHQ  
141 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=66e803ab8dbef91e2779b22043f8f4ae54806808c49472588d1c7efbd3345c29&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fplerion&secure%5Burl_type%5D=linkedin_company_website)  
31 employees on LinkedIn®

#### Who Uses This Product?

- **Top Industries:** Computer Software, Information Technology and Services
- **Company Size:** 55% Medium, 29% Small

#### What Do G2 Reviewers Say About Plerion?

_AI-generated summary from verified user reviews_

##### Pros

- Users appreciate the **centralized security management** of Plerion, providing clear risk visibility and actionable insights.
- Users love the **ease of use** of Plerion, appreciating its seamless integration and practical guidance for security management.
- Users praise the **exceptional customer support** of Plerion, noting their responsiveness and genuine commitment to customer success.
- Users appreciate the **immediate visibility and actionable advice** provided by Plerion, enhancing their security management efforts.
- Users value the **effective prioritization** in Plerion, allowing focus on critical security issues without distraction.

##### Cons

- Users note that **improvements are needed** in ongoing measurement tools and Jira ticket creation for better long-term value.
- Users feel that Plerion needs **improvement in ongoing measurement** and enhanced features to maintain visible long-term value.
- Users find the **missing features** in Plerion limit customization and cloud support, impacting their overall experience.
- Users find the **limited support for Google Cloud** challenging, wishing for better integration with all cloud providers.
- Users face **integration issues** due to manual updates and deployment friction with the new features in Plerion.

#### What Are Recent G2 Reviews of Plerion?

**["Continuous Cloud Misconfiguration Detection That Strengthened Our Google Cloud Security"](https://www.g2.com/survey_responses/plerion-review-13216854)**

**Rating:** 4.0/5.0 stars

_— Muhammed A._

[Read full review](https://www.g2.com/survey_responses/plerion-review-13216854)

**["Centralized Cloud Security & Compliance Made Simple with Plerion"](https://www.g2.com/survey_responses/plerion-review-13209518)**

**Rating:** 4.5/5.0 stars

_— Atharva S._

[Read full review](https://www.g2.com/survey_responses/plerion-review-13209518)

### [Runecast](https://www.g2.com/products/runecast/reviews)

Runecast is an enterprise CNAPP platform which saves your Security and Operations teams time and resources by enabling a proactive approach to ITOM, CSPM, and compliance. It helps you proactively remediate vulnerabilities for continuous compliance, whether on-prem, cloud or containers. By proactively using our agentless scanning in real-time admins discover potential risks and remediation solutions before any issues can develop into a major outage. Runecast’s AI-RAIKA, leverages advanced natural language processing (NLP) capabilities to interpret a vast amount of information to provide automated audits for security compliance standards, vulnerabilities (such as KEVs, CVEs or VMSAs) and technology vendor best practices. The platform has been recognized with Frost & Sullivan's 2023 European New Product Innovation Award in the CNAPP industry for its strong overall performance and commitment to user experience. NAVIGATING YOUR COMPLEXITY Runecast helps teams with a simpler transition to cloud, enabling admins to fully understand their hybrid environments and Cloud Security Posture Management (CSPM) and Kubernetes Security Posture Management (KSPM). Running securely on-premises, it provides insights into what is happening both in the cloud and on-site. IMMEDIATE VALUE FOR TEAMS As Runecast helps teams to stabilize availability and ensure security compliance, it contributes also to greater ROI for both existing and future investments with AWS, Azure, Kubernetes and VMware. FULLY ON-PREM SECURE Operates fully on-prem to analyze your hybrid-cloud environment, so that your data remains safely on-site. To provide additional security, Runecast features a customizable, transparent rules engine. RUNECAST FOR SECURITY AND COMPLIANCE Vulnerability Management Regular automated scanning, recommendations, remediation, and the ability to set up vulnerability management policies are just some of the requirements many enterprises have. The Runecast platform is constantly updated to detect the latest vulnerabilities for all of the supported technologies. Container Security Runecast scans container images for known vulnerabilities and misconfigurations, and can also detect runtime issues such as exposed ports and running processes. It also provides a public API which can be used in your CI/CD platform to analyze the container images and whether they are vulnerable or not to known vulnerabilities, before deploying them in production. Compliance with Security Standards Runecast offers automated audits against security hardening guidelines and common industry standards like CIS Benchmarks, NIST 800-53, PCI DSS, HIPAA, DISA STIG 6, GDPR, KVKK (Turkey), ISO 27001, BSI IT-Grundschutz, Essential 8 and Cyber Essentials Security Standard. RUNECAST FOR IT OPERATIONS TEAMS Vendor Best Practices for Security Hardening Runecast continuously monitors your complex environment, reporting violations and providing recommendations against Vendor Best Practices. It maintains a database with Best Practices of the latest AWS, Azure, Kubernetes, GCP, VMware and Windows and Linux OS. It analyzes your environment to detect any configuration issues against Vendor Best Practices. This delivers valuable insights to improve the stability and security of your infrastructure. Configuration Vault Tracks your configuration to help you prevent drift. Reports your entire configuration and provides the ability to compare your configurations over time. Hardware Compatibility and Upgrade Stimulations Runecast has automated the process of validating the hardware compliance of hosts and clusters against a selected ESXi version, ensuring compliance with the VMware Compatibility Guide (VCG) and vSAN Hardware Compatibility List (vSAN HCL). The AI-powered platform runs a quick and automated analysis using the latest HCL for your servers, I/O devices, and vSAN controllers. For upgrade planning, admins can see the results of multiple HCL upgrade simulation scenarios within seconds, and the findings are presented in a comprehensive way with details about any non-compatibility and how to resolve it. Validates your hardware, drivers, and firmware against current and upstream releases of ESXi for faster upgrade planning. Remediation Scripts A growing number of findings in Runecast offer remediation actions – allowing you to download the customized script to perform the reconfiguration. Some rules offer more than one remediation option, for example PowerCLI and Ansible. SUPPORTED SERVICES SUPPORTED SYSTEMS: AWS, Azure GCP, Kubernetes (1.20 and above), VMware (VMware vSphere, NSX-V, NSX-T, VMware Horizon, VMware Cloud Director, AP HANA for VMware, VMware on Nutanix, Pure Storage), Windows (Microsoft Windows) and Linux OS (RHEL 8, CentOS 7). SECURITY STANDARDS: CIS Benchmarks, NIST 800-53, PCI DSS, HIPAA, DISA STIG 6, GDPR, KVKK (Turkey), ISO 27001, BSI IT-Grundschutz, Essential 8 and Cyber Essentials Security Standard. INTEGRATIONS: Jira, ServiceNow, vSphere Client Plugin, OpenID Connect, REST API, HPE Ezmeral. REMEDIATION TOOLS: Ansible (VMware), PowerCLI (VMware), AWS CLI (AWS), AWS Tools for PowerShell (AWS), GCP CLI

**Average Rating:** 4.8/5.0

**Total Reviews:** 21

#### How Do G2 Users Rate Runecast?

- **Has the product been a good partner in doing business?:** 9.6/10 (Category avg: 9.0/10)

#### Who Is the Company Behind Runecast?

- **Seller:** [Runecast Solutions](https://www.g2.com/sellers/runecast-solutions)
- **Year Founded:** 2014
- **HQ Location:** London, London
- **Twitter:** @Runecast  
1,093 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=a4b3474375a540f71d3c0c3aff017a1d6d8bc20cdfe6291f431ed8992c35f17e&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F5226278&secure%5Burl_type%5D=linkedin_company_website)  
14 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 48% Large, 24% Medium

#### What Are Recent G2 Reviews of Runecast?

**["Runecast"](https://www.g2.com/survey_responses/runecast-review-7966299)**

**Rating:** 5.0/5.0 stars

_— Manolis F._

[Read full review](https://www.g2.com/survey_responses/runecast-review-7966299)

**["Runecast gives me great audit and security compliance insights immediately."](https://www.g2.com/survey_responses/runecast-review-5371828)**

**Rating:** 5.0/5.0 stars

_— Verified User in Telecommunications_

[Read full review](https://www.g2.com/survey_responses/runecast-review-5371828)

### [CloudWize](https://www.g2.com/products/cloudwize-cloudwize/reviews)

CloudWize is a no-code Cloud Security Center of Excellence that gives you maximum cloud compliance & security. Get 360° Protection from Architecture Design to Runtime. CludWize enforces cloud regulations with over 1K rules running continuously, scans your cloud vulnerabilities, and remediates them automatically. With our unique investigation graph engine, you can detect and fix cloud issues in minutes instead of days and weeks. This holistic solution offers a blackbox web app penetration test, evolved IAM (identity access management), IaC (infrastructure as code) risk scanning, Data Security Posture Management, and more. Why deal with many tools when you can have everything in one place? CNAPP + WAAP + KSPM – CSPM + CWPP + CIEM + CASB + DSPM + CNSP = CloudWize (CSCoE)

**Average Rating:** 4.7/5.0

**Total Reviews:** 11

#### How Do G2 Users Rate CloudWize?

- **Has the product been a good partner in doing business?:** 10.0/10 (Category avg: 9.0/10)

#### Who Is the Company Behind CloudWize?

- **Seller:** [CloudWize](https://www.g2.com/sellers/cloudwize)
- **Year Founded:** 2019
- **HQ Location:** Netanya, IL
- **Twitter:** @cloud\_wize  
94 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=855c0193503091bdace55c8ea9b81407b48bb9cc68865eb3a0d4900935ef4dc2&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fcloudwize-io%2Fabout&secure%5Burl_type%5D=linkedin_company_website)  
4 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 50% Small, 33% Medium

#### What Do G2 Reviewers Say About CloudWize?

_AI-generated summary from verified user reviews_

##### Pros

- Users value the **exceptional security features** of CloudWize, enabling total control and proactive vulnerability management.
- Users find CloudWize's **ease of use** invaluable, enjoying intuitive features and excellent customer support for optimal security management.
- Users value the **integrated cloud security** of CloudWize, enhancing threat detection and response across environments.
- Users value the **effective cloud management** features of CloudWize, enhancing security and control over their systems.
- Users appreciate the **credible security features** of CloudWize, enabling companies to maintain absolute control over their systems.

##### Cons

- Users find the **complex implementation** of CloudWize challenging, often needing templates for assistance during setup.
- Users find the **complex setup** of CloudWize challenging, often requiring templates for proper implementation and guidance.
- Users find the **customization difficulty** in CloudWize limits their ability to fully tailor the platform to their needs.
- Users find the **difficult navigation** in CloudWize occasionally hinders their overall experience despite its positive aspects.
- Users note that **excessive customization** options can complicate the user experience beyond what is necessary for effective use.

#### What Are Recent G2 Reviews of CloudWize?

**["The quick-witted and compliance data security platform for cloud management"](https://www.g2.com/survey_responses/cloudwize-review-9119208)**

**Rating:** 4.5/5.0 stars

_— ravella l._

[Read full review](https://www.g2.com/survey_responses/cloudwize-review-9119208)

**["The Consistent and Affirmative Platform for Cloud Management and Operations SupportTh"](https://www.g2.com/survey_responses/cloudwize-review-9111779)**

**Rating:** 4.5/5.0 stars

_— Yadira J._

[Read full review](https://www.g2.com/survey_responses/cloudwize-review-9111779)

### [Constellation](https://www.g2.com/products/edgeless-systems-constellation/reviews)

Constellation leverages confidential computing to isolate entire Kubernetes clusters from the infrastructure. Finally, the public cloud turns into your private cloud. All data in the cluster remains encrypted in all states - at rest, in transit, and during processing. The integrity of the entire cluster is verified based on cryptographic certificates and latest supply-chain security mechanisms. The source code of Constellation is accessible for anyone to review on GitHub. This enables meaningful remote attestation.

#### Who Is the Company Behind Constellation?

- **Seller:** [Edgeless Systems](https://www.g2.com/sellers/edgeless-systems)
- **Year Founded:** 2020
- **HQ Location:** Bochum, DE
- **LinkedIn® Page:** [linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=aaea0ddd2a6df4f77cbeee7701925d22d2d3ba6a2a4386db9f6c0e1ccb93c619&secure%5Burl%5D=https%3A%2F%2Flinkedin.com%2Fcompany%2Fedgeless-systems&secure%5Burl_type%5D=linkedin_company_website)  
21 employees on LinkedIn®

### [Darktrace / CLOUD](https://www.g2.com/products/darktrace-cloud/reviews)

Darktrace / CLOUD is a Cloud-Native Application Protection Platform (CNAPP) with advanced real-time Cloud Detection and Response (CDR) to protect runtime environments from active threats. It secures modern hybrid and multi-cloud environments by combining posture management, runtime threat detection, cloud-native response, and automated cloud investigations in a single AI-driven platform. As organizations scale across AWS, Azure, Google Cloud, SaaS, containers, and serverless architectures, static posture checks and alert-heavy tools are no longer enough. Darktrace / CLOUD continuously understands how your cloud environment behaves and automatically stops threats as they unfold. 1. Stop Active Cloud Threats in Real Time with AI-Driven CDR Darktrace delivers true Cloud Detection and Response in live production environments. Its Self-Learning AI monitors identity behavior, workload activity, and network connections to detect the most subtle indicators of account compromise, privilege escalation, insider threats, ransomware, and novel attacks. When real threats emerge, it can take precise, proportionate action to contain them immediately, minimizing business disruption. 2. Maintain Continuous Cloud Visibility, Posture Assurance, and Risk Reduction Darktrace combines continuous cloud monitoring with Cloud Security Posture Management (CSPM) capabilities to dynamically map architecture, identities (human and non-human), services, containers, and configurations. It identifies misconfigurations, vulnerabilities, toxic combinations of privileges, and exploitable attack paths, not just static compliance gaps. This ensures organizations maintain real-time visibility and awareness of risk as cloud environments evolve. 3. Accelerate Incident Response with Automated Cloud Investigations at Scale Darktrace integrates with any detection source and your existing security stack to perform automated investigations at cloud speed and scale. When suspicious activity is detected, Darktrace automatically collects and analyzes forensic evidence across logs, configurations, disk, memory, and ephemeral workloads. Full attacker timelines are generated in minutes, enabling rapid root-cause analysis, confident remediation, and audit-ready evidence without manual data gathering. While many CNAPP solutions focus primarily on posture or fragmented point capabilities, Darktrace / CLOUD unifies prevention, real-time detection, response, and automated investigation in one continuous AI-driven workflow, delivering protection that adapts as fast as the cloud itself. AI-Driven Automation from Detection to Investigation Self-Learning AI detects known, unknown, and novel threats while autonomous response and automated investigations dramatically reduce analyst workload and stop threats automatically. Unmatched Cloud Coverage with Breadth and Depth Darktrace unifies CSPM, identity analytics, runtime CDR, and forensic depth across IaaS, PaaS, SaaS, containers, and serverless environments to deliver protection at cloud speed and scale. True Hybrid, Cross-Domain Protection The platform correlates live activity across cloud, SaaS, on-premises, and network environments to uncover and contain lateral, cross-domain attacks. Flexible Deployment for Enterprise Reality With agentless API integrations and optional agent-based telemetry, Darktrace supports SaaS, hosted, and on-prem deployments, delivering rapid time-to-value while meeting regulatory and operational requirements.

**Average Rating:** 4.5/5.0

**Total Reviews:** 1

#### Who Is the Company Behind Darktrace / CLOUD?

- **Seller:** [Darktrace](https://www.g2.com/sellers/darktrace)
- **Company Website:** www.darktrace.com
- **Year Founded:** 2013
- **HQ Location:** Cambridgeshire, England
- **Twitter:** @Darktrace  
18,177 Twitter followers
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=135b6c23b3a9e309b159fca717d84aafed8cc711e65da3de0cae9184091cd6d3&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2F5013440%2F&secure%5Burl_type%5D=linkedin_company_website)  
2,607 employees on LinkedIn®

#### Who Uses This Product?

- **Company Size:** 100% Medium

#### What Are Recent G2 Reviews of Darktrace / CLOUD?

**["Real-Time Cloud Visibility and Proactive Anomaly Detection"](https://www.g2.com/survey_responses/darktrace-cloud-review-12659218)**

**Rating:** 4.5/5.0 stars

_— Angel I._

[Read full review](https://www.g2.com/survey_responses/darktrace-cloud-review-12659218)

### [Strong Network](https://www.g2.com/products/strong-network/reviews)

Deploy secure development environments in minutes while protecting your assets and improving your DevOps efficiency. Strong Network's code development workspaces allow organizations to efficiently manage internal and external developers, protect source code, data, and credentials, as well as access real-time monitoring metrics to improve their IT efficiency and ensure compliance. From startups to large infrastructures; organizations who are looking to efficiently manage internal & external developers, protect their development assets, and improve their DevOps benefit from it. 1- Provide development environments that significantly improve developers' comfort, reducing any burden attached to their provisioning and maintenance, while not putting any restrictions on their customization. 2- Simplify and secure access to all data and resources necessary to a team of developers to create software and perform data science. 3- Implement and deploy policy-compliant DevSecOps practices across a workforce that reflects the complexities.

#### Who Is the Company Behind Strong Network?

- **Seller:** [Strong Network](https://www.g2.com/sellers/strong-network)
- **Year Founded:** 2020
- **HQ Location:** Lausanne, CH
- **LinkedIn® Page:** [www.linkedin.com](https://www.g2.com/external_clickthroughs/record?secure%5Bsource_type%5D=product_profile&secure%5Btoken%5D=67ff4c0121b4c4db087235b87d5a5d84aa50bba0ef0037e209768b05a1a61726&secure%5Burl%5D=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fstrongnetworkinc&secure%5Burl_type%5D=linkedin_company_website)  
3 employees on LinkedIn®

- [&lsaquo; Prev ‹ Prev](/categories/container-security-tools/free?order=g2_score#product-list)
- [1](/categories/container-security-tools/free?order=g2_score#product-list)
- 2
- Next &rsaquo; Next ›

Spotlight Categories

[SaaS Backup Software](https://www.g2.com/categories/saas-backup)

[Board Management Software](https://www.g2.com/categories/board-management)

[Marketing Analytics Tools](https://www.g2.com/categories/marketing-analytics)

[Voice Recognition Software](https://www.g2.com/categories/voice-recognition)

[Lead Intelligence Software](https://www.g2.com/categories/lead-intelligence)

Similar Categories

- [Static Code Analysis](/categories/static-code-analysis)
- [Dynamic Application Security Testing (DAST)](/categories/dynamic-application-security-testing-dast)
- [Interactive Application Security Testing (IAST)](/categories/interactive-application-security-testing-iast)
- [Log Analysis](/categories/log-analysis)

- [Penetration Testing](/categories/penetration-testing-tools)
- [Secure Code Review](/categories/secure-code-review)
- [Software Bill of Materials (SBOM)](/categories/software-bill-of-materials-sbom)
- [Software Composition Analysis](/categories/software-composition-analysis)

- [Static Application Security Testing (SAST)](/categories/static-application-security-testing-sast)
- [Vulnerability Scanner](/categories/vulnerability-scanner)
- [Web Application Firewall (WAF)](/categories/web-application-firewall-waf)

[Browse Container Security Themes](/categories/container-security-tools/themes)