Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Qualys Cloud Security offers a vulnerability analysis plug-in specifically designed for the CI/CD tool Jenkins, with plans to expand to additional platforms such as Bamboo, TeamCity, and CircleCI in the near future. Users can conveniently download these plug-ins straight from the container security module. This integration allows security teams to engage in the DevOps workflow, ensuring that vulnerable images are blocked from entering the system, while developers receive practical insights to address vulnerabilities effectively. It is possible to establish policies aimed at preventing the inclusion of vulnerable images in repositories, with settings adjustable based on factors like vulnerability severity and particular QIDs. The plug-in also provides an overview of the build, detailing vulnerabilities, information on software that can be patched, available fixed versions, and the specific image layers affected. Given that container infrastructure is inherently immutable, it is essential for containers to be consistent with the original images they are created from, thus necessitating rigorous security measures throughout the development lifecycle. By implementing these strategies, organizations can enhance their ability to maintain secure and compliant container environments.

Description

Qualys Web Application Firewall (WAF) is a service based on virtual appliances designed to streamline application security while minimizing operational costs and complexity. Utilizing a cohesive platform, it consistently identifies threats using proprietary inspection logic and rulesets, and can provide virtual patches for web application vulnerabilities as necessary. Its straightforward, scalable, and flexible methodology enables rapid blocking of web application attacks, safeguarding sensitive information from exposure, and regulating access to your applications. Qualys WAF can function independently or in conjunction with Qualys Web Application Scanning (WAS), which enhances the process of discovering and addressing web application vulnerabilities efficiently, regardless of whether you manage a few applications or many. By employing Qualys WAS for scanning and enabling one-click virtual patches for any identified vulnerabilities in the WAF, users can oversee everything from a centralized cloud portal, ensuring seamless management. Moreover, the deployment of Qualys WAF can be completed in just minutes, and it offers support for SSL/TLS, further enhancing its security capabilities. This combination of features makes it a robust solution for protecting web applications in today’s ever-evolving threat landscape.

API Access

Has API Yes 

API Access

Has API Yes 

Screenshots View All

Screenshots View All

Integrations

Docker Yes 
anecdotes Yes 
Amazon Web Services (AWS) No 
C1Risk Yes 
Cyclops Yes 
Drupal No 
Google Cloud Platform No 
Graylog Yes 
HivePro Uni5 Yes 
Kroll Cyber Risk Yes 
Kubernetes Yes 
Magento No 
Microsoft Outlook No 
OctoXLabs Yes 
Polarity Yes 
Qualys WAS No 
Refold Yes 
Seconize DeRisk Center Yes 
Splunk Cloud Platform Yes 

Integrations

Docker Yes 
anecdotes Yes 
Amazon Web Services (AWS) Yes 
C1Risk No 
Cyclops No 
Drupal Yes 
Google Cloud Platform Yes 
Graylog No 
HivePro Uni5 No 
Kroll Cyber Risk No 
Kubernetes No 
Magento Yes 
Microsoft Outlook Yes 
OctoXLabs No 
Polarity No 
Qualys WAS Yes 
Refold No 
Seconize DeRisk Center No 
Splunk Cloud Platform No 

Pricing Details

No price information available.
Free Trial Yes 
Free Version No 

Pricing Details

No price information available.
Free Trial Yes 
Free Version No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux Yes 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours No 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) Yes 
In Person No 

Vendor Details

Company Name

Qualys

Founded

1999

Country

United States

Website

www.qualys.com/apps/container-security/

Vendor Details

Company Name

Qualys

Founded

1999

Country

United States

Website

www.qualys.com/apps/web-app-firewall/

Product Features

Container Security

Access Roles / Permissions No 
Application Performance Tracking No 
Centralized Policy Management No 
Container Stack Scanning No 
Image Vulnerability Detection No 
Reporting No 
Testing No 
View Container Metadata No 

Product Features

Web Application Firewalls (WAF)

Access Control / Permissions No 
Alerts / Notifications No 
Automate and Orchestrate Security No 
Automated Attack Detection No 
DDoS Protection No 
Dashboard No 
IP Reputation Checking No 
Managed Rules No 
OWASP Protection No 
Reporting / Analytics No 
Secure App Delivery No 
Server Cloaking No 
Virtual Patching No 
Zero-Day Attack Prevention No 

Alternatives

Alternatives

Qualys VMDR Reviews

Qualys VMDR

Qualys
DataLyzer Qualis Reviews

DataLyzer Qualis

DataLyzer International
Aqua Reviews

Aqua

Aqua Security