Best IT Security Software for Cloud - Page 82

Compare the Top IT Security Software for Cloud as of September 2026 - Page 82

  • 1
    Ballerine

    Ballerine

    Ballerine

    Ballerine is an AI-powered merchant risk management platform that helps PSPs, banks, acquirers, PayFacs, fintechs, and marketplaces underwrite, onboard, monitor, and oversee merchants with less manual work. Its AI agents transform fragmented merchant data into real-time risk profiles so underwriters can focus on decisions instead of collecting information. It automates KYB and entity verification, UBO discovery, sanctions and adverse media screening, web analysis, MCC validation, ownership mapping, and compliance checks while keeping human review available for edge cases. During onboarding, Ballerine enriches submitted data with external signals such as reputation, reviews, regulatory mentions, ownership links, and traffic insights to build a 360-degree merchant view. Risk teams can configure workflows, approval steps, acceptance policies, alerts, and manual reviews around their own risk appetite.
  • 2
    CYBORA

    CYBORA

    CYBORA

    CYBORA is a Cyber Risk Resilience platform that ties every risk to the live systems and controls behind it, then keeps checking around the clock — so exposure is measured continuously rather than reconstructed once a year. Risks carry owners, treatments, appetite thresholds and live key risk indicators on a 5x5 matrix, with control mapping across ISO 27001, NIST CSF, SOC 2, PCI DSS, HIPAA, GDPR, CIS v8, DORA and NIS2. Third-party risk runs 34 deterministic rules including DORA Article 28 concentration exposure. Assets and AI models are registered and classified for EU AI Act risk. Detection feeds the register directly: OSINT and darknet monitoring, IOC tracking, SOC case management with MITRE ATT&CK mapping and SIEM export to Splunk, Elastic and Sentinel. Business impact analysis, continuity plans and a live crisis workspace close the loop. Delivered from Lithuania, the UK and the US. Private tenant, two 256-bit keys, self-hosting, 20+ languages.
    Starting Price: $250/month
  • 3
    PortaAIM

    PortaAIM

    PortaOne

    PortaAIM is an inference service delivery platform that combines PortaBilling with an AI gateway to authorize, meter, and settle AI usage in real time. It checks the customer, pricing rules, and balance before a request runs, reserves funds against the worst-case cost, then meters actual usage in tokens, images, audio, tool calls, or other units and releases any unused balance. Pricing, tokens, credits, and bundles are configured without code changes, and resellers are settled within the same system. PortaAIM routes requests to the lowest-cost capable model, offers a white-label customer portal, and runs across multiple sites for continuity. It supports full API and MCP access, and includes guardrail modules for frameworks such as the EU AI Act. Available as perpetual license or pay-as-you-go, self-hosted or hosted by PortaOne — built on 25+ years of real-time billing experience for nearly 500 operators worldwide.
  • 4
    FinAuth

    FinAuth

    FinAuth

    FinAuth is an identity verification SDK that delivers production-grade KYC and biometric authentication through a single REST API or a fully offline, hardware-bound SDK. It combines NIST FRVT #1-ranked face matching, iBeta Level 2 anti-spoofing liveness detection, document OCR supporting 200+ ID types, and AML watchlist screening. The platform offers both a hosted cloud API for instant deployment and an offline SDK for air-gapped, GDPR-sovereign environments. With 99.85% biometric match accuracy and sub-10ms on-device inference, FinAuth is designed for regulated sectors requiring high assurance identity checks.
    Starting Price: $1
  • 5
    ShieldLabs

    ShieldLabs

    ShieldLabs Inc

    ShieldLabs is fraud detection and prevention with traffic quality scoring. It stops multi-accounting, account sharing, account takeover, fake signups and ad fraud. A single JavaScript snippet collects more than 100 device and network signals on every visit and cross-checks them, which exposes deep masking and delivers up to 99% detection accuracy. Returning visitors are recognised across cleared cookies, incognito mode and changed IP addresses, and linked users are detected across accounts, devices and IP addresses. VPNs, proxies, Tor, Apple Private Relay, datacenter IPs, anti-detect browsers, browser automation, bots and AI agents each come back as a named signal, not one binary flag. Every visitor, user, device and IP gets a risk score. Ready-made patterns cover multi-accounting, account sharing, account takeover and impossible travel, and traffic quality is scored by source, channel and campaign. Five minutes to integrate. Client and server SDKs, public API, signed webhooks
    Starting Price: $79/month
  • 6
    BrowserPod

    BrowserPod

    Leaning Technologies Ltd

    BrowserPod is a browser-based virtual machine. Its API provides a lightweight Linux kernel, replacing expensive and complex cloud infrastructure by delegating server processes to the client's browser via WebAssembly. Developers use BrowserPod to run sandboxes for AI code, create developer tools and documentation without the cloud compute, and as part of wider enterprise transformation programs aiming to reduce their cloud costs and dependencies. Instead of provisioning costly cloud servers, BrowserPod allows you to execute full-stack workloads directly within the user’s browser tab. Each pod is ephemeral, constrained by the browser’s security model, and isolated from the host operating system via a dedicated syscall layer The Linux kernel enables wide compatibility across a range of native runtimes, including Node.js, Rust, Python, Ruby and Go.
    Starting Price: $20/month/user
  • 7
    LeakData

    LeakData

    CyberVisir Solutions Ltd

    LeakData is a digital risk and breach monitoring platform that helps individuals and organizations discover whether monitored email addresses, domains, usernames, phone numbers, IP addresses, crypto wallets and other online assets appear in exposed data. It centralizes asset monitoring in a secure dashboard, sends alerts when new exposure is detected, and provides clear findings so users can assess risk and take protective action. LeakData supports continuous monitoring, searchable breach intelligence, guided remediation, team-ready workflows and API access for eligible plans. A free plan is available, with paid subscriptions starting at $4.99 per month.
    Starting Price: $0
  • 8
    IntoDNS.ai

    IntoDNS.ai

    Cobytes B.V.

    IntoDNS.ai is a free DNS and email security analysis platform. It runs deterministic checks for DNS, SPF, DKIM, DMARC, DNSSEC, MTA-STS, TLS-RPT, BIMI, SMTP STARTTLS, FCrDNS, blacklist status, and web security headers in one workflow. Public diagnostics are free forever and require no registration or API key for normal use. Results include readable evidence and actionable fix guidance, with AI-assisted explanations where available. Teams can also use report snapshots, scheduled monitoring, a public REST API, CLI, and the official MCP server with 45 tools for AI-agent workflows. IntoDNS.ai is developed and operated by Cobytes B.V. in the Netherlands.
    Starting Price: Free
  • 9
    Safeguard

    Safeguard

    Safeguard

    Safeguard is an AI-native software supply chain security platform that discovers vulnerabilities, determines which ones are actually reachable, and can autonomously create and merge fixes. Its Griffin AI system analyzes repositories, containers, dependencies, SBOMs, and call graphs to prioritize exploitable issues instead of overwhelming teams with every detected CVE. The platform can generate remediation pull requests, run CI and regression tests, apply policy gates, and update security attestations after a fix is completed. Safeguard also includes zero-day discovery, runtime protections for AI applications, compliance automation, hardened software components, and support for hundreds of regulatory and security frameworks. Developers and AI agents can interact with the platform through its MCP server, APIs, IDE tools, source-control integrations, and CI/CD connections.
    Starting Price: $9/month
  • 10
    Decripte

    Decripte

    Decripte

    Decripte is an AI-native cybersecurity and incident-response platform for end-to-end detection, investigation, containment, eradication and recovery. It connects endpoint, cloud, server and infrastructure evidence in a governed response workflow, combining specialized AI automation with expert 24/7 human oversight. The platform includes threat management, incident planning, case coordination, evidence handling, reports and guided response actions.
    Starting Price: $0 free plan
  • 11
    PenScan

    PenScan

    PenScan

    PenScan is a Security Intelligence Platform designed to help organizations discover, assess, prioritize, and manage vulnerabilities across their web applications and digital assets. It combines automated security scanning with vulnerability management and actionable security workflows to help teams identify weaknesses before they can be exploited. PenScan supports multiple security scanners and provides features including vulnerability discovery, risk prioritization, vulnerability triage and assignment, asset and subdomain discovery, scheduled and recurring scans, scan comparison, multi-domain management, remediation tracking, and detailed security reporting. Security teams can generate dedicated Executive, Technical, and Compliance reports, as well as combined multi-target reports for a broader view of their security posture. PenScan helps teams move from simply discovering vulnerabilities to understanding, prioritizing, assigning, and tracking them through remediation.
    Starting Price: ₹2900 per scan
  • 12
    SecureMy365

    SecureMy365

    Cyber Spot

    SecureMy365 is an automated Microsoft 365 security assessment and remediation platform by Cyber Spot. It helps businesses strengthen identity security, reduce account takeover risks, and protect critical data across Outlook, OneDrive, and SharePoint. Our platform scans your O365 tenant for security misconfigurations and provides clear, actionable steps to remediate them. Features include Identity Secure Score Review, Customized Branded Web Login, Modern MFA Settings, Conditional Access Policies, Risky Sign-In Notifications, and Real-Time Monitoring.
    Starting Price: $750/domain/year
  • 13
    InboxGuards

    InboxGuards

    DME Computer Services

    InboxGuards is an account-takeover alarm for small and mid-size teams on Google Workspace or Microsoft 365. Connect the workspace, grant read-only audit access, and get alerts when configured signals appear — things like suspicious sign-ins, inbox rules that forward or hide mail, and other takeover patterns that show up in provider logs. It is not a secure email gateway and does not promise to catch every incident. You keep control of what happens next. Pricing is $4 per active user per month with a 30-day guarantee and no credit card required to start. Owned and operated by Orion CMD LLC in Omaha, Nebraska. Install from the Google Workspace Marketplace or at inboxguards.com.
    Starting Price: $4/user email
  • 14
    Railo

    Railo

    Railo

    Railo is an autonomous vulnerability remediation engine that turns security findings from Snyk, Semgrep, and CodeQL into verified, test-passing pull requests. Powered by deterministic AST code transformations and formal verification, Railo patches high-impact vulnerability classes (including SSRF, SQL Injection, Path Traversal, and Network Timeouts) in Python and TypeScript repositories. Every patch runs against the repository's native test suite with automatic rollback on failure, eliminating alert fatigue and reducing manual security triage for engineering teams.
    Starting Price: $99/month
  • 15
    Helios by Isaphia

    Helios by Isaphia

    Isaphia Security

    Helios by Isaphia is a unified exposure-management platform combining External Attack Surface Management (EASM), Internal ASM, Cyber Threat Intelligence (CTI), and Cloud Security Posture Management (CSPM) in a single dashboard. External ASM continuously discovers and prioritizes every internet-facing asset you own — including the ones you forgot. Internal ASM uses lightweight collectors to map what's reachable behind the firewall, surfacing the legacy systems that attackers pivot to once inside. CTI is asset-aware: every indicator is matched against your real inventory instead of flooding you with thousands of generic IOCs. CSPM catches misconfigurations, identity risk, and compliance drift across AWS, Azure, and GCP. Helios was built by Isaphia Security's penetration testers and red teamers around one question: what do we reach for first on a real engagement? Run it yourself as SaaS, or have Isaphia's practitioners operate it for you as a managed service.
    Starting Price: $200/month
  • 16
    Guardeon

    Guardeon

    Infilux AppSec

    Guardeon is an external attack surface management (EASM) and digital risk protection platform from Infilux AppSec. It continuously discovers what your organization exposes to the internet, including domains, subdomains, IP ranges, cloud services, open ports, certificates and shadow IT, then monitors it for misconfiguration, expiry and exploitable exposure. It also watches the dark web, paste sites and criminal forums for leaked credentials and stolen data tied to your business, and runs brand protection across typosquatted and lookalike domains, fake websites, phishing pages, rogue mobile applications in third party app stores, and impersonation accounts targeting your brand and executives on social media. Confirmed threats go straight into takedown, tracked to closure. Findings are validated, risk scored and delivered in a multi tenant console with alerting, API access and white labeled reporting. Built for security teams and for MSSPs managing many clients. No agents to install.
    Starting Price: $499/month
  • 17
    Fallax

    Fallax

    Fallax

    Fallax runs internal phishing simulations inside your own Google Workspace or Microsoft 365 tenant, trains people the moment they click, and turns the result into audit evidence. Simulations are injected straight into mailboxes through your tenant, so there is no sending domain and nothing to allowlist: no SPF, DKIM or DMARC setup, no effect on email reputation. Anyone who clicks gets a short training page. Scheduling is per person and automatic, adjusted by how each one handled the last simulation, capped and paced by rules you set. One export covers ISO 27001, SOC 2, NIS2, DORA, PCI DSS, HIPAA, GDPR Article 32 and NIST CSF, and syncs to Vanta, Drata, Secureframe and Sprinto. Also included: phishing reports credited automatically from Outlook or a Gmail add-on, app discovery that aims lures at the tools staff really use, department standings, a REST API and an MCP server. EU-hosted and GDPR compliant. Submitted credentials are never stored. First 10 seats free, permanently
    Starting Price: $1/month/user (falls to $0.40)
  • 18
    AI Safety 101
    Your team uses AI every day. Prove they use it safely. AI Safety 101 is 14 interactive modules built on real, documented incidents - the Samsung ChatGPT source-code leak, a $25M deepfake CFO video call, AI hallucinations filed in court. Every module puts the learner inside the moment the decision got made, scores their choices, and issues a verifiable certificate; the firm gets a completion evidence file ready for an SEC/FINRA exam. Per-seat annual pricing from $48/seat with a 5-seat minimum. Live the same day: pick a plan, send one link, export the evidence. Built to the standard examiners hold financial firms to. Free demo module.
    Starting Price: $48/seat/yr, 5-seat min
  • 19
    Operator by Planck Proof
    Operator by Planck Proof is an agentic API penetration testing tool. Give it your OpenAPI spec and credentials for two or more roles; it tests every operation across roles and tenants for authorization flaws (BOLA, BFLA, BOPLA), broken authentication, injection, mass assignment and business-logic abuse, chaining findings into attack paths. Coverage maps to the OWASP API Security Top 10 and includes REST, GraphQL and gRPC APIs, plus the APIs behind AI agents, LLM apps and MCP servers. Every finding ships with the exact request and response, a CVSS score and a runnable proof-of-concept your engineers can execute to confirm the issue and verify the fix. Scope, rate and data controls keep runs safe against real environments, and you can steer or pause the agent at any time. Run it on every deploy, retest fixes, and send findings to Jira. Reports are built for engineers and auditors (SOC 2, PCI DSS, HIPAA). First scan is free; Pro and Enterprise are quoted per API by endpoint volume.
    Starting Price: $0
  • 20
    ScanLabsAI

    ScanLabsAI

    ScanLabsAI

    ScanLabsAI is an AI-powered website vulnerability scanner for agencies, MSPs and development teams. It scans against the OWASP Top 10 for Web, API and LLM applications - the last of which most scanners do not cover - and detects leaked AI/LLM provider keys, exposed agentic-tool configuration and GraphQL introspection. Each deep scan runs over 40,000 checks covering CVE detection, SSL/TLS analysis, security headers and DNS. Connected GitHub repositories are scanned for hardcoded secrets and vulnerable dependencies, so problems are caught in source as well as in the deployed site. Findings include AI-written remediation guidance. Scanning is non-intrusive and read-only, completes in under 20 minutes, and reports are never stored. The Agency plan covers 50 client sites for GBP 249/month with white-label PDF reports. The first scan of any website is free. A native MCP server, listed in the official MCP Registry, lets scans run directly from Claude.
    Starting Price: £9.99; £249/month
  • 21
    DRKCACHE

    DRKCACHE

    AFTRDRK

    DRKCACHE is a conversational threat intelligence platform powered by AI and grounded in cyber threat intelligence, designed to give security teams precise answers from exclusive sources without relying on traditional search or dashboards. Users can ask questions directly and receive intelligence drawn from AFTRDRK’s underlying threat data and research, turning complex investigations into a conversational workflow. Real-time detections interrupt when an organization appears in relevant threat intelligence, helping teams identify potential exposure as it surfaces rather than waiting for periodic reviews. DRKCACHE can also generate intelligence reports on demand and scope requests for information (RFIs) in seconds, supporting faster investigation and decision-making during active security operations. Its feature set includes real-time detections, priority RFI submission, an actor knowledge base, flash advisories and intelligence briefs, and access to raw threat data for deeper analysis.
    Starting Price: $2,000 per month
  • 22
    DarkStrata

    DarkStrata

    DarkStrata

    DarkStrata is a dark web monitoring and stolen-credential detection platform for businesses, MSPs, MSSPs, and SOC teams. It continuously monitors infostealer logs, breach dumps, criminal forums, Telegram, leak sites, marketplaces, and paste sites, matching exposed data against your domains, employees, and customers. Its focus is fresh stealer data from 20+ malware families, including Lumma, StealC, Vidar, and RedLine, which can expose passwords, session cookies, autofill data, and device fingerprints within 24–48 hours. An 80+ signal scoring engine filters fake, stale, corrupted, and irrelevant records, while genuine exposures receive Info–Critical threat scores based on organizational context. Microsoft Entra ID and Google Workspace sync keep identity matching current. Lens privately guides affected employees through password resets, session revocation, and security training.
    Starting Price: £259/year
  • 23
    Zunoy Sandbox

    Zunoy Sandbox

    Mentcube Innovations Pvt Ltd

    Zunoy Sandbox is a developer testing platform for testing email, SMS, webhooks, OTP, and TOTP/MFA flows without sending test data to real users or production systems. Developers can connect their existing SMTP clients, SMS APIs, or webhook endpoints to Sandbox and capture the resulting events in an isolated testing environment. For email testing, Sandbox provides inboxes where teams can inspect email HTML, headers, attachments, links, and delivery-related information. SMS testing supports OTP and transactional message flows through REST APIs, sender IDs, and templates. The webhook testing feature provides unique endpoints for receiving and inspecting JSON payloads in real time, with options to replay and organize events by project. The TOTP/MFA sandbox can generate time-based authentication codes from secrets or QR codes for testing login and verification flows without using a physical authenticator.
    Starting Price: $6/month
  • 24
    CloudEndure

    CloudEndure

    CloudEndure

    Backup any workload to the cloud with CloudEndure, a disaster recovery and live migration software. CloudEndure features protection for the users' critical workloads and minimization of downtime while reducing maintenance costs. Easy to use, CloudEndure allows users to migrate complex workloads including legacy applications and databases without disrupting business.
  • 25
    Revenera Usage Intelligence
    Product Usage Analytics for Smarter, Faster Strategy and Roadmap Decisions. Whether defining new features or optimizing your existing product functionality, Usage Intelligence (formerly Revulytics) helps you make better decisions. Collect and analyze actual product usage metrics to understand user engagement and interaction with your software, analyze your install base and build a data-driven strategy for roadmaps, packing, pricing and sunsetting decisions. Enabling analytics in your software applications doesn’t just provide a better foundation for Product Management decisions. Technical and environment data gives insights for Development teams trying to plan for infrastructure and support requirements. Usage Intelligence, the first software usage analytics solution designed for distributed C/C++, .NET, Obj-C and native Java applications on Windows, Macintosh, and Linux, provides deep insight into application usage. See which features are used most and least.
  • 26
    RapidIdentity

    RapidIdentity

    Identity Automation

    Identity Automation delivers the most scalable, full-lifecycle identity, access, governance, and administration solution. As the company's flagship product, RapidIdentity helps organizations increase business agility, embrace security, and deliver an enhanced user experience. For organizations looking to streamline security, reduce risk from network and data breaches, and lessen IT costs, use RapidIdentity today!
  • 27
    Tangoe Managed Mobility Services
    Tangoe's Managed Mobility Solutions helps organizations expand their revenue stream and increase their business productivity. Simple and powerful, this suite of solution automates and enforces corporate policies for optimal management of communications assets, usage, and expenses. Tangoe's Managed Mobility Solutions offers unmatched security and control through managed services, vendor integration, technology and application helpdesk, and implementation services.
  • 28
    Pipl

    Pipl

    Pipl

    Pipl is the worlds leading provider of online identity information. Pipl SEARCH and Pipl API are reducing customer friction, case resolution times, and the risks associated with fraud. Pipl serves fraud and investigation professionals in insurance, e-commerce, financial services, legal, government, and law enforcement. Pipl's unmatched global coverage includes over 3 billion identities cross-referenced from over 25 billion individual records to create the world's leading online identity index.
  • 29
    Kaseya VSA
    Kaseya VSA is a next-generation remote monitoring and management (RMM) software for Managed Service Providers (MSP) and IT enterprises. With VSA, users get access to the fastest remote control powerful discovery, reliable patch management, and monitoring and security tools in a single solution. Thus, helping to increase IT staff productivity, service reliability, and systems security. A Unified IT Management solution to not only deliver better service but to transform the business. Kaseya’s IT Management solution increases IT teams’ efficiency by providing seamless workflows across tools, drives improved service delivery and business productivity See for yourself why thousands of IT departments use Kaseya VSA IT Management software to centrally manage and automate all of IT. You ought to be able to deliver more value with less service delivery costs. Kaseya VSA provides IT departments with the IT Management tools they need to proactively manage their systems from a unified platform.
  • 30
    iionLife

    iionLife

    iionHealth

    iionLife by iionHealth is a free patient portal specifically created for behavioral health professionals. This effiicent and fully HIPAA secure system enables users to extend the care they deliver outside of their office. iionLife offers standardized assessment tools (i.e. PHQ-9) and a range of features for longitudinal tracking of patient results, patient journaling, activity tracking, secure email messaging, and so much more. The solution also includes Community of Care, Care Plan, Reference Library, Accounting, among others.