Cybersecurity
Cloud Security
Cloud Security Posture Management (CSPM), CWPP, and cloud-native security platforms
Overview
Cloud security platforms protect cloud infrastructure, workloads, and applications. This category includes Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWPP), Cloud Infrastructure Entitlement Management (CIEM), and Cloud-Native Application Protection Platforms (CNAPP).
Top Players
Wiz
- Company: Wiz Inc. (USA/Israel)
- Market Position: Fastest-growing cloud security company, leader in CNAPP
- Key Strengths: Agentless scanning, graph-based risk visualization, fast time-to-value, comprehensive CNAPP (CSPM + CWPP + CIEM + DSPM)
- Typical Customers: Cloud-native enterprises, multi-cloud organizations
Palo Alto Networks Prisma Cloud
- Company: Palo Alto Networks (USA)
- Market Position: Comprehensive CNAPP with broad coverage
- Key Strengths: Code-to-cloud security, shift-left scanning, runtime protection, broadest compliance coverage
- Products: Prisma Cloud (unified CNAPP)
- Typical Customers: Large enterprises, security-mature organizations
CrowdStrike Cloud Security
- Company: CrowdStrike (USA)
- Market Position: Strong CNAPP with EDR heritage
- Key Strengths: Agent + agentless approach, unified with Falcon platform, strong threat intelligence, adversary-focused
- Products: Falcon Cloud Security (CSPM, CWPP, CIEM)
- Typical Customers: CrowdStrike Falcon ecosystem users
Orca Security
- Company: Orca Security (USA/Israel)
- Market Position: Pioneer of agentless cloud security
- Key Strengths: SideScanning technology (agentless), unified platform, risk prioritization, data security
- Products: Orca Cloud Security Platform
- Typical Customers: Cloud-first organizations, DevSecOps teams
Lacework
- Company: Fortinet (USA, acquired 2024)
- Market Position: Data-driven cloud security platform
- Key Strengths: Polygraph behavioral analytics, anomaly detection, minimal rule configuration, cloud compliance
- Typical Customers: Cloud-native companies, DevSecOps teams
Key Trends
- CNAPP consolidation: Vendors combining CSPM, CWPP, CIEM, and DSPM into unified platforms
- Shift-left security: Security scanning in CI/CD pipelines and developer workflows
- AI for cloud security: LLM-powered cloud misconfiguration remediation and policy generation
- Data Security Posture Management (DSPM): Discovering and protecting sensitive data across cloud environments