Amazon GuardDuty vs. Palo Alto Networks Advanced Threat Prevention

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Amazon GuardDuty
Score 9.9 out of 10
N/A
Amazon GuardDuty is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts and workloads.N/A
Palo Alto Networks Advanced Threat Prevention
Score 8.4 out of 10
N/A
Palo Alto Networks Advanced Threat Prevention is an intrusion prevention system (IPS) used to stop zero-day attacks inline in real-time. In addition to the prevention of known threats, the solution helps to stop never-before-seen exploit attempts and command and control with its inline deep learning engines that aims to provide prevention of zero-day injection attacks and evasive command and control.N/A
Pricing
Amazon GuardDutyPalo Alto Networks Advanced Threat Prevention
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Amazon GuardDutyPalo Alto Networks Advanced Threat Prevention
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Amazon GuardDutyPalo Alto Networks Advanced Threat Prevention
Best Alternatives
Amazon GuardDutyPalo Alto Networks Advanced Threat Prevention
Small Businesses
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.0 out of 10
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 7.0 out of 10
Medium-sized Companies
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
Enterprises
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Amazon GuardDutyPalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
10.0
(1 ratings)
9.0
(5 ratings)
Usability
-
(0 ratings)
9.0
(1 ratings)
User Testimonials
Amazon GuardDutyPalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
Amazon AWS
In a multi-account/multi-tenant environment, GuardDuty often alerts us to possible malicious traffic before it becomes an issue. The ability to automatically enable GuardDuty creates baseline security which is crucial when an account is first created. It also helps greatly in environments where other users are able to create resources as often GuardDuty alerts us to insecure resources we did not know about. It can however sometimes be a little overzealous with its assessments alerting on benign activity which then requires suppression rules.
Read full review
Palo Alto Networks
Palo Alto NTP is an appropriate suite of protection for any enterprise environment or anyone that truly needs some serious perimeter protection in a one-stop, all-in-one unit. There are no modules or add-ons or clunky interfaces to deal with it; everything works out of one management plane, licensing, implementation, monitoring. updating, etc. As a network admin, that is immensely valuable to me. Additionally, I get real-time reporting on all the stuff NTP is catching, and it is nothing to shirk at. The real value in NTP comes in only after you begin doing SSL-decryption, however, to truly inspect the traffic. Short of that, you are just seeing a bunch of encrypted data and the NTP suite of tools isn't going to avail you. NTP plus decryption, though, is invaluable!
Read full review
Pros
Amazon AWS
  • Monitors outgoing connections from AWS resources to known malicious hosts.
  • Monitors incoming connection to AWS resources from known malicious hosts.
  • Integrates with other centralized logging solutions.
Read full review
Palo Alto Networks
  • Preventing the data breaches
  • Safeguarding Hybrid and cloud environments
  • Reducing the false alarms
  • Network Perimeter secuirty
Read full review
Cons
Amazon AWS
  • Does not have the ability to add any custom monitors.
Read full review
Palo Alto Networks
  • It can ingest feeds from other tools and security solutions
  • Threat protection should share it intel data with other vendors
  • Users should be able to allow/bypass or create [their] own signatures from intel shared from SOC team
Read full review
Usability
Amazon AWS
No answers on this topic
Palo Alto Networks
The reason to give ATP this rating is it specialises in detecting command control traffic whose primary role is to identify unusual outbound traffic patterns which blocks the command control communication and notifies to different security team to take necessary actions. ATP Global protect holds the responsibility of inspecting all the inbound and outbound traffic going to and from corporate system regardless of the network they are on. ATP plays a major role to identify the threats that blocks threats that could lead to data breach also it identifies any malicious file enter the system will be blocked proactively
Read full review
Alternatives Considered
Amazon AWS
No answers on this topic
Palo Alto Networks
Having used Palo Alto Firewalls for years, implementing threat protection was the next step in perimeter security. Works much better than the few competitors I have personally used. Frequent content updates occur which may impact some policy rules, but that is normal across most vendors.
Read full review
Return on Investment
Amazon AWS
  • GuardDuty has helped us prevent possible security incidents multiple times which could have caused substantial damage.
Read full review
Palo Alto Networks
  • New deployment hasn't been fully calculated yet.
  • With the addition of Panorama and central logging, event investigation has become more streamlined.
Read full review
ScreenShots