Prisma Cloud (Bridgecrew)
The industryβs most complete Cloud-Native Application Protection Platform (CNAPP).
Overview
Prisma Cloud, which acquired Bridgecrew, is a full-lifecycle cloud security platform. Its Infrastructure as Code security capabilities allow developers to scan IaC templates for misconfigurations and security vulnerabilities. It also provides drift detection by comparing cloud runtime environments against their source IaC configurations, helping to identify and remediate manual changes.
β¨ Key Features
- IaC Security Scanning (Checkov)
- Cloud Drift Detection
- Cloud Security Posture Management (CSPM)
- Cloud Workload Protection (CWP)
- Supply Chain Security
- Automated Remediation
π― Key Differentiators
- Complete code-to-cloud security platform (CNAPP)
- Powered by the popular open-source engine Checkov
- Strong integration with the Palo Alto Networks ecosystem
Unique Value: Provides a single, integrated platform for cloud-native security, from securing IaC in the IDE to protecting workloads in production.
π― Use Cases (4)
β Best For
- Shift-left security for IaC
- Comprehensive cloud security posture management
π‘ Check With Vendor
Verify these considerations match your specific requirements:
- Purely IaC automation and deployment (it's a security tool first)
- Cost management
π Alternatives
Offers a more comprehensive and integrated security solution compared to point solutions that only focus on IaC scanning or CSPM.
π» Platforms
π Integrations
π Support Options
- β Email Support
- β Live Chat
- β Phone Support
- β Dedicated Support (Enterprise tier)
π Compliance & Security
π° Pricing
β 14-day free trial
Free tier: Free tier for Checkov (open source) and a limited free plan for the platform.
π Similar Tools in IaC Drift Detection
driftctl
An open-source CLI that tracks, alerts, and remedies infrastructure drift....
Spacelift
A CI/CD platform for IaC with drift detection and policy as code....
env0
An IaC platform for managing cloud environments with governance and cost control....
Scalr
A Terraform automation platform that provides an alternative to Terraform Cloud with features like h...
Snyk Infrastructure as Code
A developer-focused security platform that includes IaC scanning and drift detection....
Firefly
A platform for cloud asset management, IaC codification, and drift detection....