Cloud Security Tools

Discover and compare 596 cloud security solutions for AWS, Azure, GCP and multi-cloud environments.

OWASP WrongSecrets CTF Party

OWASP WrongSecrets CTF Party

Security Training & Simulation

Run Capture the Flags and Security Trainings with OWASP WrongSecrets

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Bridgecrew

Bridgecrew

DevSecOps & Pipeline Security

Bridgecrew automates the identification and remediation of misconfigurations in cloud infrastructure, leveraging its open-source tool Checkov for static analysis of IaC templates.

Multi-Cloud
Proprietary
Cloud Service Only
Kubewatch

Kubewatch

Container & Kubernetes Security

A tool for monitoring and notifying teams about resource changes in Kubernetes clusters.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Mend.io

Mend.io

DevSecOps & Pipeline Security

Mend.io is a platform that integrates security into the software development lifecycle, focusing on open-source dependencies and codebases.

Multi-Cloud
Proprietary
Cloud Service Only
kubectl-who-can

kubectl-who-can

Container & Kubernetes Security

Show who has RBAC permissions to perform actions on different resources in Kubernetes

Multi-Cloud
Open Source
Self Hosted Only
Checkmarx SAST

Checkmarx SAST

DevSecOps & Pipeline Security

A static application security testing tool that identifies and mitigates security vulnerabilities early in the software development life cycle.

Multi-Cloud
Proprietary
Cloud Service Only
WeirdAAL

WeirdAAL

Penetration Testing Tools

WeirdAAL (AWS Attack Library) is a toolkit designed to assess and exploit potential vulnerabilities in AWS environments.

AWS
Open Source
Self Hosted Only
Snyk Cloud

Snyk Cloud

DevSecOps & Pipeline Security

Snyk Cloud secures cloud environments by integrating security checks into the development lifecycle, automating scans and continuous monitoring of cloud configurations.

Multi-Cloud
Proprietary
Cloud Service Only
aws-break-glass-role

aws-break-glass-role

Identity & Access Management

Create a break glass role for emergency use in AWS to limit access and configure alerts and logging for secure usage.

AWS
Open Source
Self Hosted Only
Snyk Cloud Security

Snyk Cloud Security

DevSecOps & Pipeline Security

A platform for securing cloud-native applications and infrastructure by integrating security into the software development lifecycle.

Multi-Cloud
Proprietary
Cloud Service Only
OpenWAF

OpenWAF

Threat Detection & Response

Web security protection system based on openresty

Multi-Cloud
Open Source
Self Hosted Only
Spectral

Spectral

DevSecOps & Pipeline Security

A DevSecOps tool that integrates security into the software development lifecycle, focusing on secret protection and code security.

Multi-Cloud
Proprietary
Cloud Service Only