Image scanning has supported consistent security practices during cloud deployment
What is our primary use case?
We are already using Prisma Cloud by Palo Alto Networks and we're looking at using Red Hat. We have licenses for it as part of the Red Hat contract that we have.
We're looking to replace Prisma Cloud by Palo Alto Networks with Red Hat ACS in some use cases. We are a telecom company, and we've been a customer.
What is most valuable?
We cannot answer questions about facing other issues with Prisma Cloud by Palo Alto Networks. What we know is that we don't use all the capabilities.
We are mainly using the image scanning in the repository. Prisma Cloud by Palo Alto Networks can also be used at runtime to detect security issues, but we don't use that part. We use the workload image scanning for cloud computing, not the VM.
We are only looking at Red Hat at the moment, and the focus is on Red Hat because we have the licenses. Engineering is thinking it's easy to integrate because we use many Red Hat products.
The opportunity in our company is good because we are already using Red Hat at different stages of cloud computing.
We are using Red Hat's operating systems, cloud products, and container security. For the private cloud, we're using the full OpenShift, OpenStack, and Linux Red Hat everywhere. We are using Red Hat Enterprise Linux.
What needs improvement?
On a scale of ten, we would say people are happy with Prisma Cloud by Palo Alto Networks for the part we use. People are okay with it. We probably would give an eight.
We don't give ten because if we don't use the other parts of Prisma Cloud by Palo Alto Networks, it's because it was difficult to implement from an operational point of view.
We could have deployed the runtime monitoring with Prisma Cloud by Palo Alto Networks, but within our organization at our company, it was very difficult to find who would be the owner for the alerts.
People have other tools and in the end, we don't use the full capabilities of a product that we pay for. It's partially related to the difficulty to integrate Prisma Cloud by Palo Alto Networks runtime in our company's support process.
We don't use the real-time monitoring part of Prisma Cloud by Palo Alto Networks. We don't know about the automated remediation feature of Prisma Cloud by Palo Alto Networks.
For how long have I used the solution?
We don't know exactly how long we've been working with Prisma Cloud by Palo Alto Networks overall. We were not involved in the beginning, but it's probably something around three to four years.
What other advice do I have?
Based on our experience, we would recommend Prisma Cloud by Palo Alto Networks to others. We would not recommend it to any specific types of companies.
Our knowledge is limited on this topic, but we don't believe there are types of companies to exclude. Our overall review rating for Prisma Cloud by Palo Alto Networks is eight out of ten.
Supports threat detection and real-time monitoring while enabling custom security assessments
What is our primary use case?
Currently, we are using Prisma Cloud by Palo Alto Networks for CSPM, CWP, and application security. In CSPM, we check for cloud security posture and overall assets that we have. We verify whether we meet the compliance standards based on company compliance requirements.
In CWP, we deploy a defender on containers that we use to monitor vulnerability and compliance issues. We have also started doing runtime protection, which checks for any runtime security threats such as crypto mining or port scanning.
In application security, we perform Terraform scanning. We use containers with Prisma Cloud by Palo Alto Networks.
What is most valuable?
From the CSPM perspective, RQL in Prisma Cloud by Palo Alto Networks is a feature where we can conduct any kind of investigation and create our own custom policies. This is really helpful because in the cloud, there are millions of assets. With RQL, we can drill down to as fine a level as per our requirement.
For CWP, the runtime protection is the most valuable feature. Every tool does vulnerability monitoring through tools such as Qualys, but the additional feature we get here is runtime protection in CWP.
Prisma Cloud by Palo Alto Networks supports auto-remediation. Currently, it supports more than 100 policy auto-remediations, and we can even customize the auto-remediation policy.
From a security perspective in Prisma Cloud by Palo Alto Networks, if we integrate CI at the early stage, it gives all the vulnerability details so we can fix issues before going to production. The CI feature is helpful in application development from a security perspective.
Prisma Cloud by Palo Alto Networks is real-time in CWP. It fetches all the data within a second. For CSPM, it takes approximately 30 minutes to one hour to ingest the data. In CSPM, it scans the whole inventory on some time intervals. From my observations, it depends; sometimes five minutes, sometimes ten minutes, so approximately I consider it between 15 minutes to one hour.
What needs improvement?
There is a tool called PingSafe, which is a cloud security tool and a Sentinel tool. It also does monitoring of CSPM. There I saw one feature called dummy payloads, in which we trigger the dummy payload, so it exactly gives the exploitable resources. That might be a feature that would be helpful if Prisma Cloud by Palo Alto Networks also had some kind of that feature.
It might be possible because currently, I think Prisma Cloud is migrating to Codex Cloud. They are changing their platform from Prisma Cloud to Codex Cloud. There might be a chance that they will introduce all these new features in Codex Cloud. From next year, Prisma Cloud will be decommissioned and it will be called Codex Cloud.
For how long have I used the solution?
I have been working with Prisma Cloud by Palo Alto Networks for more than three years.
How are customer service and support?
Prisma Cloud by Palo Alto Networks has more support than other tools at this time. This helps Prisma Cloud by Palo Alto Networks capture the market overall. In terms of features and models, a tool can have some issues and bugs. To fix those issues and resolve queries, any tool requires a strong support system and background technical support. Prisma Cloud by Palo Alto Networks has a strong background technical support system. Anywhere we raise a tech case, they revert back within an hour. This helps them capture the market in terms of support.
For technical support in Prisma Cloud by Palo Alto Networks, I rate it a nine out of ten.
How would you rate customer service and support?
How was the initial setup?
The initial setup for Prisma Cloud by Palo Alto Networks is a very simple feature. It depends on the different types of cloud environments, but it is simple.
What other advice do I have?
I am still working with Prisma Cloud by Palo Alto Networks. I will definitely recommend this tool to others. I give this review a rating of nine out of ten.
Centralized Data and Analytics That Save Time
What do you like best about the product?
i like how Cortex Cloud centralizes all data and analytics in one platform. It makes monitoring performance and generating reports much faster and easier, saving me time and helping me make better decisions.
What do you dislike about the product?
The interface can feel a bit cluttered, and it takes time to find certain features. Some advanced analytics options are not very intuitive for first-time users.
What problems is the product solving and how is that benefiting you?
Cortex Cloud helps me consolidate data from multiple sources and track key metrics in real time. This solves the problem of manual reporting, saves time, allows me to make faster, more informed decisions for my projects.
Blazing Fast Performance, But UI Needs Improvement
What do you like best about the product?
What I like best about Cortex Cloud is its unified and scalable platform for security operations. It integrates threat detection, investigation, and response in one place, which reduces complexity and improves efficiency. The automation and AI-driven analytics also help teams focus on high-priority incidents rather than repetitive tasks.
What do you dislike about the product?
While Cortex Cloud is a powerful and comprehensive platform, I’ve noticed that its learning curve can be quite steep, especially for teams new to its ecosystem. Some configurations and integrations require deep product knowledge, which can initially slow down adoption. However, once the platform is properly set up, its automation and analytics capabilities make the effort worthwhile.
What problems is the product solving and how is that benefiting you?
Cortex Cloud solves the major challenge of fragmented security operations by unifying detection, investigation, and response within a single cloud platform. It automates repetitive SOC tasks, correlates threat data across multiple sources, and accelerates incident resolution. For me, this means less manual analysis, fewer false positives, and faster response times — ultimately improving overall operational efficiency and security posture.
Detailed Hands on Review of Cortex Cloud
What do you like best about the product?
It's an impressive and all-encompassing platform for cloud security, recognized for its real-time insights, automated threat detection, and seamless integration across various cloud environments.
Key advantages consist of centralized asset visibility, risk evaluations, and leveraging AI for threat identification, which makes it beneficial for both governments and enterprises.
What do you dislike about the product?
I would honestly say the main dislike of mine will be the High and unclear costing. As well as a steep learning curve that is required to become efficent at using it.
What problems is the product solving and how is that benefiting you?
This was uses to unify multiple cloud application and operations as it was diffiult to manage from different point of views and being able to mange centrally with with a single plain of glass platform with AI-powere risk correlation and automated remediation will always be a great benefit.
Solid cloud security platform with great visibility and automation
What do you like best about the product?
Palo Alto Networks Cortex Cloud provides excellent visibility across the infrastructure, with intuitive dashboards and strong detection and response capabilities. The integration with multiple data sources is comprehensive, and the built-in automation helps reduce incident response times. Scalability in enterprise environments is one of its strongest advantages.
What do you dislike about the product?
The initial learning curve can be steep, especially for teams with limited experience in advanced security platforms. Licensing and resource consumption can also be high for mid-sized organizations.
What problems is the product solving and how is that benefiting you?
With Cortex Cloud, we have been able to centralize security management, detect threats in real time, and respond to incidents much faster. This has significantly improved our organizational resilience and reduced the need for multiple isolated security tools.
Reduced manual effor with visible gains
What do you like best about the product?
what i liked most at Cortex Cloud is the real time threat detection, automated remediation and anomaly detection. It also reduces manual effort woth visible gains such as halved remediation time and analysis
What do you dislike about the product?
onboarding and setup is time consuming and guidance is limited for advanced modules. Cortex cloud is also a bit pricy, especially for smaller teams and companies
What problems is the product solving and how is that benefiting you?
cortex cloud helps streamline clout threat detection and responses across our multi cloud environment. it significantly reduces manual work allowing security team to focus on critical issues
Pretty good overall, but not perfect
What do you like best about the product?
Used it for a few months. It’s great for spotting issues and keeping things secure across AWS and GCP. The features are strong, and I do feel more confident with it runningg
What do you dislike about the product?
the UI is kinda clunky, and it took me a while to get used to. Alerts can also be a bit too much until you tune them properly. Not the easiest tool for beginners, but once it’s set up, it works well.
What problems is the product solving and how is that benefiting you?
it helps us actually catch misconfigs and threats across AWS/GCP. Saves time and gives better visibility. UI isn’t the best, but it gets the job done well.
Solid Cloud Security Platform with Some Room to Grow
What do you like best about the product?
What I like most is how much visibility it gives us across all our cloud environments. It does a great job detecting threats and keeping things compliant without needing a ton of manual effort. The real-time monitoring and automatic remediation features are super helpful, especially when you’re juggling multiple cloud providers like AWS and Azure.
What do you dislike about the product?
The UI can feel a bit cluttered at times. There’s definitely a learning curve. Also, getting some of the integrations up and running takes more trial and error than I’d like - more documentation or guidance would go a long way.
What problems is the product solving and how is that benefiting you?
Mainly using it to keep our cloud environments secure and compliant. It helps us catch misconfigurations early, monitor container workloads, and stay aligned with standards. Basically, it’s our go-to for cloud security posture management.
Has improved monitoring processes and provides effective dashboarding and reporting features
What is our primary use case?
Primarily we are using Prisma Cloud (Annual Contract) for the CNAPP perspective, where we are getting knowledge about vulnerabilities from the workload, code repositories, CI/CD pipelines, and vulnerabilities which are available in our cloud environment.
What is most valuable?
The reporting, dashboarding, and filtering capabilities which provide reports we can present to our senior staff are the most helpful features of Prisma Cloud (Annual Contract).
As of now, all the features we have checked are sufficing our requirements. It is quite a stable tool and easy to handle. Its dashboard and UI are very user-friendly regarding how Prisma Cloud (Annual Contract) has improved our monitoring processes.
What needs improvement?
This could be one input that its pricing could be adjusted with respect to other competitors regarding any new features that could be added or improvements to be made in Prisma Cloud (Annual Contract).
For how long have I used the solution?
I have been working with Prisma Cloud (Annual Contract) for approximately 18-19 months.
What was my experience with deployment of the solution?
It requires fine-tuning with other third-party integrations. Small tweaks need to be done, and this has to be done for other tools as well, which indicates deploying Prisma Cloud (Annual Contract) required some customization.
It depends, as it is quite a subjective matter regarding how long the deployment process takes. With someone having knowledge of the tool and integration, it should not take more than two to three days.
Deployment is quite easy. It just requires authentication. If you provide correct authentication, it works on the fly. We are not having any issues with the deployment process of Prisma Cloud (Annual Contract).
How are customer service and support?
The support we have raised was mostly related to gaining more knowledge rather than troubleshooting issues. I am satisfied with the quality of support I received from Prisma Cloud (Annual Contract).
I would rate the support from Prisma Cloud (Annual Contract) as nine because there is always scope for improvement.
How would you rate customer service and support?
What other advice do I have?
I was doing work with the Web Application Firewall for research and technical comparison. Currently, I am working with the top products in Gartner for research.
We are using multiple tools and relying on native tools as well. My prime criteria for research is to compare the native tools with the exact tools when selecting them for feedback.
The percentage difference in price compared to competitors is around 15-17%. If this price difference were addressed, the reach of Prisma Cloud (Annual Contract) would be greater, potentially capturing more of the lower segment.
Currently, we are in the exploration phase and not actively using it, but while exploring it, we will be implementing automation as well regarding AI features of Prisma Cloud (Annual Contract).
Overall rating for Prisma Cloud (Annual Contract): 9 out of 10.