Regarding my main use case, I first log into the WAF applications, then access the Alerts section. In that section, I can see different types of activity happening in the firewall. I review each alert to determine whether it is legitimate or suspicious activity. I can also view the target IP address and locations, target servers, and the payload that the attacker was using in that alert. I can see the OWASP Top 10 alerts and the event timing to identify when the attack occurred.
External reviews
External reviews are not included in the AWS star rating for the product.
Continuous monitoring has strengthened our web defenses and has reduced malicious incidents
What is our primary use case?
What is most valuable?
There are many alerts in Imperva Application Security Platform. For example, there is an OWASP Top 10 alert called SSRF, which is server-side request forgery. If someone attempts to access the server, the WAF blocks that SSRF alert, or RCE, Remote Code Execution alert, blocking immediately based on the signature, not only by the payload or the IP address. That is very effective.
Imperva Application Security Platform has positively impacted my organization because every time an attacker uses a malicious payload or malicious signature that is already included in the signature database of the WAF application or Imperva application, the application directly blocks that particular signature immediately. This capability can help any organization achieve better security outcomes.
What needs improvement?
For how long have I used the solution?
What do I think about the stability of the solution?
How are customer service and support?
Which solution did I use previously and why did I switch?
What was our ROI?
What other advice do I have?
I gave it a 10 because it is useful for private organizations and it is very safe to have WAF applications, particularly Imperva Application Security Platform.
The advice I would give to others looking into using Imperva Application Security Platform is that it is safer to use or to have it. My overall rating for this product is 10 out of 10.
Enhanced security with profile functionality
What is our primary use case?
I use the service for protection due to the fact that it has profile functionality.
What is most valuable?
Protection is the best solution since it has profile functionality.
Which other solutions did I evaluate?
Interesting alternatives are Akamai and some cloud solutions do exist.
Provide DDoS protection and better security at effective rate
How has it helped my organization?
We have details on the protection available in two key ways. We primarily see the use of WAF, specifically the CloudWAF, which is always active for application security. This ensures that everyone attempting to update the customer environment must go through the CloudWAF.
We often see customers opting for the on-demand option for DDoS protection as it’s more cost-effective. When a DDoS attack is detected, traffic is redirected through Imperva’s servers to be cleaned before being sent to the client. This on-demand option is particularly popular in my region. However, customers with the budget can choose Orizon, where traffic is continuously routed through Imperva’s scrubbing centers, which are among the largest in the world.
What is most valuable?
For Linux protection, the most important feature is layer seven DDoS protection, which focuses on application-level threats. Imperva does offer layer three DDoS protection, but that's less common in my region.
What needs improvement?
It is expanding its number of data centers for scrubbing traffic. Currently, there is only one POP for cleaning in South Africa. They might add another POP in North Africa, possibly in Nigeria or Egypt. Latency concerns customers, especially in regions like East and West Africa, where traffic has to travel to South Africa before returning. Increasing the number of POPs across the continent would help address these latency issues and improve overall service.
While the platform is already quite strong, there’s always room for improvement, especially in keeping up with emerging trends and new types of attacks. Enhancing security capabilities could be beneficial. Integrating more advanced AI features could significantly improve its effectiveness and help customers leverage these tools more effectively. It would be great to see more focus on AI integration to handle and analyze data more efficiently.
What do I think about the stability of the solution?
I rate the solution's stability a nine-point five out of ten.
What do I think about the scalability of the solution?
Scalability is quite good. Imperva has an extensive global network with over fifty data centers, which supports their cloud platform's load balancing. As you increase the number of web servers, you can adjust your license to accommodate more throughput. Licensing is based on throughput, so as your needs grow, you can quickly expand your coverage accordingly.
How are customer service and support?
Support is solid because it's a managed service. Everything runs smoothly, and I haven't encountered any issues with it.
What other advice do I have?
It’s also available as a managed service, meaning local IT teams need less involvement. Through the managed services, most management is handled on the server side. This approach is effective and reduces the total cost of ownership by requiring fewer resources to handle attacks and related events.
Generally, it provides better security and offers more relief for security teams managing their applications. It simplifies things for architects, as layer seven protection is more reliable than traditional next-generation solutions, which may not cover this level of detail. With Imperva’s managed service, there's no need to worry about the payload size or complex settings, as the service handles these aspects effectively.
The cloud platform excels in interface design, reporting, and support. It offers both executive and technical reports that are highly usable.
Overall, I rate the solution as ten out of ten.