FireMon Cloud Defense is a saas-based Cloud Detection and Response platform that automates assessment and remediation of critical cloud security issues. Our software continuously analyzes your entire cloud infrastructure for misconfigurations and security risks, automating remediation and policy enforcement.
Built for today's enterprises utilizing the cloud at scale, FireMon Cloud Defense is a Cloud Detection and Response platform automates assessment and remediation procedures of critical cloud security issues. The SaaS-based platform provides immediate and centralized visibility across multiple accounts, regions, and cloud service providers. DisruptOps continuously analyzes your cloud infrastructure for misconfigurations and security risks, while also providing single-click or automated remediation and policy enforcement on all discovered issues. Our software insures your organization remains compliant with recommended cloud security best practices and benchmarks.
Highlights
Cloud Security Governance - Run continuous, real-time compliance assessments on your cloud infrastructure, based on industry standards. Interactively or automatically remediate issues based on the environments they are detected in.
Cloud Security Remediation - Deploy environment-specific security policies that provide continuous enforcement to identified security configuration issues. Choose to remediate with a single-click, or automatically, and minimize risk and alert fatigue.
Cloud Detection and Response Automated remediation and response platform to address the critical challenges of cloud security at scale. Collect, analyze, remediate, and respond to cloud-native security issues and events from 3rd party integrations like AWS Security Hub.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
Pricing works around two units that build on each other. You buy one AWS account unit, which covers cloud security monitoring for a single AWS account and includes up to 1,000 resources. When an account holds more than 1,000 resources, you add the 1000 Resource add-on to cover each additional block of 1,000 resources in that account. Cost scales with the number of accounts you protect and the resource count in each. The add-on is optional and applies only when you exceed the base resource limit.
Top-of-mind questions for buyers
What counts as one resource toward the 1,000-resource limit per AWS account?
A resource is any cloud asset the service tracks in your AWS account, such as compute instances, storage buckets, network components, and IAM entities. The service builds a searchable inventory of these assets with change history. Each tracked asset counts toward your 1,000-resource limit for that account.
What happens to my cost when one account grows past 1,000 resources?
The base AWS account unit covers up to 1,000 resources. When you cross that limit, you add the 1000 Resource add-on for each additional block of 1,000 resources in that account. The add-on does not apply automatically; you purchase it to extend coverage for that account.
If I protect several AWS accounts, how do the two units combine on my bill?
You buy one AWS account unit per account you protect. Both units bill independently and add together. The account count drives the base charge; the add-on charge depends on how many resource blocks each account needs beyond its included 1,000. Accounts under 1,000 resources need no add-on.
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Contact support via the in-app support link, email, or phone
support@firemon.com
1 (913) 730-1130
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Real-time compliance assessments on cloud infrastructure based on industry standards with interactive or automatic remediation capabilities
Multi-Cloud Infrastructure Visibility
Centralized visibility across multiple accounts, regions, and cloud service providers
Automated Security Remediation
Single-click or fully automated remediation of security configuration issues with environment-specific policy enforcement
Misconfiguration Detection
Continuous analysis of cloud infrastructure to identify misconfigurations and security risks
Third-Party Security Integration
Integration with third-party security tools including AWS Security Hub for collecting and analyzing cloud-native security events
Threat Detection and Response
Automatic threat detection and neutralization with 99.98% threat interception rate, supported by 24/7 managed detection and response service with threat hunting and neutralization experts
Cloud Security Posture Management
Continuous scanning of cloud environments to identify assets, assess security and compliance settings, detect malicious activity, and identify misconfigurations with agentless malware scanning for S3 storage and integration with AWS GuardDuty and SecurityHub
Unified Management Platform
Cloud-based centralized management platform enabling configuration and reporting across all security products, real-time threat information sharing between products, and automatic response actions for threat containment and eradication
Multi-Layer Endpoint and Workload Protection
Agent-based protection for Windows and Linux hosts against modern threats including ransomware, fileless attacks, and advanced malware across cloud and on-premises environments
Network and Firewall Security
Cloud-native, virtual, and physical firewall appliances providing network visibility, protection, and response capabilities across public, private, and hybrid cloud environments
Multi-Workload Security Coverage
Unified platform securing containers, serverless, Kubernetes, and AI workloads across AWS, on-premises, and multi-cloud environments
Runtime Threat Detection and Enforcement
Runtime protection to detect threats, block malicious activity, and enforce compliance in production across all cloud native workloads
AI and LLM Security Governance
Purpose-built AI workload security to govern large language models and generative AI applications with model abuse detection and policy enforcement
Full Lifecycle Security
Security coverage across the entire software development lifecycle from code development through production deployment
Compliance Standards Support
FedRAMP High authorization enabling compliance with rigorous security and regulatory standards
Great for Auditing Firewall Policies and Catching Redundant Rules
Reviewed on Sep 29, 2026
Review provided by G2
What do you like best about the product?
We use it to audit our firewall policies and ensure there are no redundant rules, shadow rules, or unauthorized changes that could lead to security issues.
What do you dislike about the product?
The UI is a bit hard to navigate but the functionality is great.
What problems is the product solving and how is that benefiting you?
There are too many firewall rules being created, and they end up needing cleanup. However, there’s no clear way to tell whether all of them are actually necessary or whether they’re creating security holes.
Fabio S.
Powerful Centralized Policy Management, but Usability and Workflow Need Streamlining
Reviewed on Sep 29, 2026
Review provided by G2
What do you like best about the product?
What I like best about Policy Manager is that it gives me a centralized way to manage and review security policies across the environment. It simplifies policy administration, improves visibility into firewall and access control rules, and helps ensure consistency and compliance. The reporting and auditing capabilities make it easier to identify gaps, validate policy changes, and reduce the time spent on manual reviews. Overall, it helps me manage security more efficiently while maintaining a strong security posture
What do you dislike about the product?
What I dislike about Policy Manager is that some tasks can feel more complex and time-consuming than necessary, especially when reviewing large numbers of policies or troubleshooting rule-related issues. The interface can occasionally be difficult to navigate when trying to quickly identify dependencies or understand the impact of policy changes. Additionally, reporting and workflow automation could be more streamlined to reduce manual effort. While it is a powerful tool overall, there is room for improvement in usability and operational efficiency
What problems is the product solving and how is that benefiting you?
Policy Manager is solving the challenge of managing and enforcing security policies consistently across a large and complex environment. It provides centralized visibility into policies, helps identify misconfigurations and compliance gaps, and streamlines policy reviews and change management. This benefits me by reducing the time spent on manual policy analysis, improving the accuracy of security decisions, and making it easier to maintain a strong security posture across the organization. It also helps ensure that policy changes are documented, auditable, and aligned with security and compliance requirements.
Mohammed S.
Excellent Firewall Review Rules, Best Practices, and Compliance Support
Reviewed on Sep 23, 2026
Review provided by G2
What do you like best about the product?
Firewall review rules, best practices, and compliance.
What do you dislike about the product?
Everything is good, and there’s nothing I dislike.
What problems is the product solving and how is that benefiting you?
Please help me remove insecure ports and address the zero-hit policies.
Financial Services
Simplifies Rule Analysis and Compliance Reporting
Reviewed on Sep 22, 2026
Review provided by G2
What do you like best about the product?
simplifies rule analysis, policy reviews, and compliance reporting, making it much easier to identify redundant, unused, or risky rules
What do you dislike about the product?
Creating customized reports and workflows often requires extra configuration
What problems is the product solving and how is that benefiting you?
reducing the time spent on manual rule reviews, change validation, and audit preparation. it also helps ensure that the firewall changes made by administrators comply with internal security guidelines and regulatory requirements
Information Technology and Services
Real-Time Visibility That Delivers
Reviewed on Aug 18, 2026
Review provided by G2
What do you like best about the product?
It provides me the ability to get real time visibility
What do you dislike about the product?
I cannot think of anything I dislike about the solution.
What problems is the product solving and how is that benefiting you?
It is easy to review different rules on multiple devices, especially when there is large number of security devices. A major benefit is it saves time.