FireMon Cloud Defense is a saas-based Cloud Detection and Response platform that automates assessment and remediation of critical cloud security issues. Our software continuously analyzes your entire cloud infrastructure for misconfigurations and security risks, automating remediation and policy enforcement.
Built for today's enterprises utilizing the cloud at scale, FireMon Cloud Defense is a Cloud Detection and Response platform automates assessment and remediation procedures of critical cloud security issues. The SaaS-based platform provides immediate and centralized visibility across multiple accounts, regions, and cloud service providers. DisruptOps continuously analyzes your cloud infrastructure for misconfigurations and security risks, while also providing single-click or automated remediation and policy enforcement on all discovered issues. Our software insures your organization remains compliant with recommended cloud security best practices and benchmarks.
Highlights
Cloud Security Governance - Run continuous, real-time compliance assessments on your cloud infrastructure, based on industry standards. Interactively or automatically remediate issues based on the environments they are detected in.
Cloud Security Remediation - Deploy environment-specific security policies that provide continuous enforcement to identified security configuration issues. Choose to remediate with a single-click, or automatically, and minimize risk and alert fatigue.
Cloud Detection and Response Automated remediation and response platform to address the critical challenges of cloud security at scale. Collect, analyze, remediate, and respond to cloud-native security issues and events from 3rd party integrations like AWS Security Hub.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
Pricing works around two units that build on each other. You buy one AWS account unit, which covers cloud security monitoring for a single AWS account and includes up to 1,000 resources. When an account holds more than 1,000 resources, you add the 1000 Resource add-on to cover each additional block of 1,000 resources in that account. Cost scales with the number of accounts you protect and the resource count in each. The add-on is optional and applies only when you exceed the base resource limit.
Top-of-mind questions for buyers
What counts as one resource toward the 1,000-resource limit per AWS account?
A resource is any cloud asset the service tracks in your AWS account, such as compute instances, storage buckets, network components, and IAM entities. The service builds a searchable inventory of these assets with change history. Each tracked asset counts toward your 1,000-resource limit for that account.
What happens to my cost when one account grows past 1,000 resources?
The base AWS account unit covers up to 1,000 resources. When you cross that limit, you add the 1000 Resource add-on for each additional block of 1,000 resources in that account. The add-on does not apply automatically; you purchase it to extend coverage for that account.
If I protect several AWS accounts, how do the two units combine on my bill?
You buy one AWS account unit per account you protect. Both units bill independently and add together. The account count drives the base charge; the add-on charge depends on how many resource blocks each account needs beyond its included 1,000. Accounts under 1,000 resources need no add-on.
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Contact support via the in-app support link, email, or phone
support@firemon.com
1 (913) 730-1130
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Real-time compliance assessments on cloud infrastructure based on industry standards with interactive or automatic remediation capabilities
Multi-Cloud Infrastructure Visibility
Centralized visibility across multiple accounts, regions, and cloud service providers
Automated Security Remediation
Single-click or fully automated remediation of security configuration issues with environment-specific policy enforcement
Misconfiguration Detection
Continuous analysis of cloud infrastructure to identify misconfigurations and security risks
Third-Party Security Integration
Integration with third-party security tools including AWS Security Hub for collecting and analyzing cloud-native security events
Threat Detection and Response
Automatic threat detection and neutralization with 99.98% threat interception rate, supported by 24/7 managed detection and response service with threat hunting and neutralization experts
Cloud Security Posture Management
Continuous scanning of cloud environments to identify assets, assess security and compliance settings, detect malicious activity, and identify misconfigurations with agentless malware scanning for S3 storage and integration with AWS GuardDuty and SecurityHub
Unified Management Platform
Cloud-based centralized management platform enabling configuration and reporting across all security products, real-time threat information sharing between products, and automatic response actions for threat containment and eradication
Multi-Layer Endpoint and Workload Protection
Agent-based protection for Windows and Linux hosts against modern threats including ransomware, fileless attacks, and advanced malware across cloud and on-premises environments
Network and Firewall Security
Cloud-native, virtual, and physical firewall appliances providing network visibility, protection, and response capabilities across public, private, and hybrid cloud environments
Multi-Workload Security Coverage
Unified platform securing containers, serverless, Kubernetes, and AI workloads across AWS, on-premises, and multi-cloud environments
Runtime Threat Detection and Enforcement
Runtime protection to detect threats, block malicious activity, and enforce compliance in production across all cloud native workloads
AI and LLM Security Governance
Purpose-built AI workload security to govern large language models and generative AI applications with model abuse detection and policy enforcement
Full Lifecycle Security
Security coverage across the entire software development lifecycle from code development through production deployment
Compliance Standards Support
FedRAMP High authorization enabling compliance with rigorous security and regulatory standards
It helps quickly identify policy issues such as over permissive, duplicate, and unused firewall rules, which improves security and reduces risk.
What do you dislike about the product?
maintaining accurate device data and optimizing policy workflows often requires ongoing administrative effort
What problems is the product solving and how is that benefiting you?
It provides visibility, risk analysis, rule optimization, and compliance management. It helps me quickly identify policy issues, streamline reviews, and automate the reporting process
Hospital & Health Care
Centralized Visibility and Easy Rule Management That Streamlines Firewall Policies
Reviewed on Sep 30, 2026
Review provided by G2
What do you like best about the product?
I like the centralized visibility and easy rule management, which makes analysing, optimizing, and maintaining firewall policies much more efficient.
What do you dislike about the product?
The interface can feel a bit complex at first, and some reporting and configuration tasks could be more intuitive.
What problems is the product solving and how is that benefiting you?
Policy Manager gives us centralized visibility and control over firewall policies, helping reduce manual effort, improve compliance, and identify risky or unnecessary rules faster.
Alfred Y.
Great for Auditing Firewall Policies and Catching Redundant Rules
Reviewed on Sep 29, 2026
Review provided by G2
What do you like best about the product?
We use it to audit our firewall policies and ensure there are no redundant rules, shadow rules, or unauthorized changes that could lead to security issues.
What do you dislike about the product?
The UI is a bit hard to navigate but the functionality is great.
What problems is the product solving and how is that benefiting you?
There are too many firewall rules being created, and they end up needing cleanup. However, there’s no clear way to tell whether all of them are actually necessary or whether they’re creating security holes.
Anderson G.
Centralized view and compliance audit streamline firewall rule management
Reviewed on Sep 29, 2026
Review provided by G2
What do you like best about the product?
What I value most about the Policy Manager is the centralized view of firewall rules from various manufacturers in a single console. The analysis of redundant, shadowed, and overly permissive (any/any) rules has significantly reduced the time for periodic base review. The change request and approval workflow leaves the audit trail ready for compliance evidence, which greatly facilitates internal and GRC audits. I also like the impact simulation before applying the change, which prevents unauthorized access or service disruption in production.
What do you dislike about the product?
The interface could be more intuitive, especially in navigating between devices and searching for rules in large bases. Some screens become slow when loading extensive policies, and risk analysis reports take time to generate. Integration with some manufacturers and ITSM/SIEM tools requires manual adjustments, and object normalization is not always consistent across platforms. The initial learning curve is steep, and the documentation could include more practical examples. It would be interesting to have AI resources to suggest automatic rule optimization and cleanup.
What problems is the product solving and how is that benefiting you?
Draft for this question, already including Price/ROI, the only topic missing from the panel:
The Policy Manager addresses the lack of visibility and control over firewall rules in an environment with multiple manufacturers and many devices. Previously, rule review was manual, done in spreadsheets, time-consuming, and prone to error. Today, we quickly identify redundant, shadowed, unused, or overly permissive rules, reducing the attack surface and facilitating incident response, as it allows immediate knowledge of which network path is open. The change workflow with approval and audit trail generates ready evidence for internal audits and compliance requirements, saving hours of work in each cycle. The return is seen in the reduction of the team's operational effort, fewer errors in production changes, and increased security in periodic rule recertifications.
Fabio S.
Powerful Centralized Policy Management, but Usability and Workflow Need Streamlining
Reviewed on Sep 29, 2026
Review provided by G2
What do you like best about the product?
What I like best about Policy Manager is that it gives me a centralized way to manage and review security policies across the environment. It simplifies policy administration, improves visibility into firewall and access control rules, and helps ensure consistency and compliance. The reporting and auditing capabilities make it easier to identify gaps, validate policy changes, and reduce the time spent on manual reviews. Overall, it helps me manage security more efficiently while maintaining a strong security posture
What do you dislike about the product?
What I dislike about Policy Manager is that some tasks can feel more complex and time-consuming than necessary, especially when reviewing large numbers of policies or troubleshooting rule-related issues. The interface can occasionally be difficult to navigate when trying to quickly identify dependencies or understand the impact of policy changes. Additionally, reporting and workflow automation could be more streamlined to reduce manual effort. While it is a powerful tool overall, there is room for improvement in usability and operational efficiency
What problems is the product solving and how is that benefiting you?
Policy Manager is solving the challenge of managing and enforcing security policies consistently across a large and complex environment. It provides centralized visibility into policies, helps identify misconfigurations and compliance gaps, and streamlines policy reviews and change management. This benefits me by reducing the time spent on manual policy analysis, improving the accuracy of security decisions, and making it easier to maintain a strong security posture across the organization. It also helps ensure that policy changes are documented, auditable, and aligned with security and compliance requirements.