Listing Thumbnail

    Tenable Cloud Security [Private Offer Only]

     Info
    Deployed on AWS
    Tenable Cloud Security is an integrated cloud-native application protection (CNAPP) and infrastructure security platform that automates asset discovery, risk analysis, runtime threat detection, compliance and least-privilege remediation.
    4.5

    Overview

    Tenable Cloud Exposure Management is a comprehensive cloud-native application protection platform (CNAPP) that secures your AWS, multi-cloud, and hybrid environments, enabling you to secure AI workloads and close exposures fast and address the four critical cloud risks: misconfigurations, vulnerabilities, unsecured identities, and exposed sensitive data.

    Tenable Cloud Exposure Management uses an identity-first approach to unify Cloud Workload Protection (CWP), Cloud Security Posture Management (CSPM), Cloud Infrastructure Entitlement Management (CIEM), Kubernetes Security Posture Management (KSPM), AI Security Posture Management (AI-SPM), Data Security Posture Management (DSPM), Infrastructure as Code (IaC) security, Just-in-Time (JIT) Access, and Cloud Detection and Response (CDR) in a single platform.

    Tenable Cloud Exposure Management secures all your resources across every migration phase, from traditional IT infrastructure to fully cloud-native environments. Native AWS integration and agentless assessment of EC2 instances deliver instant, frictionless visibility into vulnerabilities, the same experience customers trust with Tenable Vulnerability Management. AI-SPM secures AI workloads by detecting unauthorized AI software and vulnerabilities, while DSPM protects the sensitive data these workloads ingest.

    By using Tenable Cloud Exposure Management, you can protect workloads, identities, data, and configurations while correlating risks across vulnerabilities, misconfigurations, and excessive privileges to keep security and DevOps teams aligned.

    For custom pricing, EULA, or a private contract, please contact awsMPsales@tenable.com  Learn more about Tenable One .

    Contact Us For custom pricing, EULA, or private contract options, contact awsMPsales@tenable.com 

    View other offerings from Tenable: Tenable One  Tenable Vulnerability Management 

    Highlights

    • Secure AI and Data Workloads in the CloudDiscover and inventory AI services and models across your AWS environment while identifying exposed training data and sensitive information. Tenable helps you assess misconfigurations in AI infrastructure and monitor for vulnerabilities in AI/ML pipelines and dependencies.
    • Multi-Cloud and Hybrid Environment SecurityGain unified visibility across AWS infrastructure, as well as multi-cloud and hybrid environments, with consistent security policies and exposure prioritization. Tenable Cloud Security provides a single pane of glass for exposure management, enabling you to correlate risks across the cloud and everywhere else.
    • Secure Migration and Cloud-Native Modernization Assess your security posture before, during, and after migration while protecting modern containers, Kubernetes, and serverless architectures. Tenable helps maintain continuous compliance, reduces risk exposure during transition periods, and uses shift-left security in CI/CD pipelines to catch misconfigurations before deployment.

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Buyer guide

    Gain valuable insights from real users who purchased this product, powered by PeerSpot.
    Buyer guide

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. Request a private offer to receive a custom quote. Sign in to view any offers that have been extended to you.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Resources

    Vendor resources

    Support

    Vendor support

    Tenable (the "Supplier") will provide email support ("Technical Support") eight (8) hours per day, five (5) days per week. Technical Support will include any research and resolution activity performed by Supplier. Technical Support requests are made by calling or emailing Supplier's Technical Support staff. The Technical Support staff shall assign to the request the Problem Severity Level (as defined herein) indicated by the requestor.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    4.5
    52 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    65%
    31%
    4%
    0%
    0%
    7 AWS reviews
    |
    45 external reviews
    External reviews are from G2  and PeerSpot .
    Computer & Network Security

    Fast, Agentless Cloud Risk Visibility with Powerful Identity & Entitlement Insights

    Reviewed on Sep 22, 2026
    Review provided by G2
    What do you like best about the product?
    What I like most about Tenable Cloud Security is how quickly it gives us a clear, unified view of risk across our cloud environments. Onboarding was fast and agentless, and within a short time we had visibility into our AWS, Azure, and GCP accounts without deploying anything on our workloads.

    The identity and entitlement analysis is the standout feature for me. It surfaces excessive permissions, unused access, and risky identity combinations that are extremely difficult to uncover manually, and it also generates least-privilege policy recommendations we can act on immediately. The attack-path and “toxic combination” views are genuinely useful for prioritization. Rather than drowning in thousands of findings, we can focus on the handful of exposures that actually lead to sensitive data or critical resources.

    I also appreciate how well it fits into the broader Tenable ecosystem alongside Vulnerability Management and Security Center, so cloud misconfigurations, workload vulnerabilities, and identity risks show up in one place with consistent context. Compliance reporting against common frameworks saves our team significant audit-prep time, and the IaC scanning helps us catch issues before they reach production. Overall, it has made our cloud security posture more measurable and has kept our remediation work much more focused.
    What do you dislike about the product?
    The biggest downside for me is the learning curve. The platform is very capable, but the interface feels dense, and it takes time to learn where everything lives and how to tune policies effectively. New team members typically need a walkthrough before they can be productive. The initial alert volume can also be high; until you tune exclusions and severity thresholds for your environment, some findings come across as noisy or simply low priority.

    Integration with the rest of the Tenable portfolio has improved, but it still doesn’t always feel completely seamless. We sometimes have to jump between consoles, and the data and terminology don’t line up perfectly between cloud and on-prem views. Dashboard and report customization is also more limited than I’d like, especially when trying to tailor executive-level views.

    Pricing is on the premium side, which can be a hurdle for smaller teams or organizations that are early in their cloud journey. Licensing can also take some effort to understand as environments grow. Finally, some documentation lags behind new features, so we occasionally rely on support to clarify expected behavior. That said, support has been responsive, and none of these issues outweigh the value the product provides.
    What problems is the product solving and how is that benefiting you?
    Tenable Cloud Security solves a problem we couldn’t address well with our previous tools: understanding real risk across multiple cloud accounts and providers from a single place. Previously, cloud misconfigurations, identity permissions, and workload vulnerabilities were tracked in separate systems—often spreadsheets or native cloud consoles—which made it difficult to understand how individual issues combined into real exposure.

    The biggest challenge it helps us tackle is identity sprawl. Over time, users, service accounts, and roles accumulated far more permissions than they actually needed. Tenable makes it clear which entitlements are excessive or unused and generates least-privilege policies we can apply. As a result, we’ve meaningfully reduced our attack surface without disrupting day-to-day workflows.

    It also improves how we prioritize remediation. The attack-path analysis connects misconfigurations, vulnerabilities, and permissions to show which issues could realistically lead to sensitive data exposure or impact critical systems. Instead of chasing every finding, our team can focus effort where it matters most, which saves time and gives leadership a clearer view of risk.

    On the compliance side, continuous checks against common frameworks reduce the manual work involved in preparing for audits and customer security reviews. IaC scanning also helps us catch misconfigurations earlier in the development process, before they reach production.

    Overall, it supports a more measurable and proactive cloud security program: fewer blind spots, faster remediation of high-impact issues, and less time spent on manual evidence gathering.
    Financial Services

    Powerful, Consistent UI and Seamless Tenable One EM Integration—Azure Setup Could Be More Flexible

    Reviewed on Sep 11, 2026
    Review provided by G2
    What do you like best about the product?
    A powerful tool that provides similar consistent UI experience to other Tenable products, actively assesses your Cloud Security Posture and integrates seamlessly with Tenable One EM.
    What do you dislike about the product?
    The only downside is that it requires to create a vendor-provided multi-tenant application with no possibility to use your own Service Principal for Azure integration
    What problems is the product solving and how is that benefiting you?
    Cloud Security Posture assessment, though, usually cloud vendors usually provide this at better pricing than Tenable, so the practicality could be questionable, unless your company uses multiple vendors and wants a centralized view of all the assets
    Soumyajit D.

    Clear, Actionable Cloud Risk with Accurate Visibility and Prioritized Findings

    Reviewed on Jul 24, 2026
    Review provided by G2
    What do you like best about the product?
    What stands out most is how it turns cloud complexity into clear, actionable risk. Modern cloud environments are dynamic and distributed across multiple providers, services, and ephemeral workloads. Tenable Cloud Security combines broad discovery with continuous checks for vulnerabilities and misconfigurations, then layers risk-based prioritization on top so teams aren’t overwhelmed by noise. That combination—accurate visibility plus prioritized, contextualized findings—makes security work practical instead of purely reactive.
    What do you dislike about the product?
    Many users report that cloud security tools, including Tenable, can generate a high volume of findings that aren’t immediately actionable. When a platform surfaces many low‑priority or context‑less alerts, teams spend time triaging instead of fixing the highest‑risk issues. This is especially true in dynamic cloud environments where ephemeral resources trigger transient findings.
    What problems is the product solving and how is that benefiting you?
    Cloud environments span AWS, Azure, GCP, containers, serverless, and IaC templates; teams often don’t have a single, up‑to‑date inventory of what exists and how resources relate.
    oscar R.

    Effective automation for security and compliance failures in the cloud

    Reviewed on Jul 21, 2026
    Review provided by G2
    What do you like best about the product?
    Automate the identification of security flaws and help prioritize their mitigation. Additionally, facilitate maintaining standards and regulations in cloud environments without requiring additional effort.
    What do you dislike about the product?
    It requires considerable technical experience, which can pose a challenge for teams with less knowledge in cloud security.
    What problems is the product solving and how is that benefiting you?
    Mainly, manage identities with excessive privileges and protect workloads, limiting users who should not have access to certain company assets.
    Ojasv P.

    Great tool for vulnerability management, but needs better reporting

    Reviewed on Nov 03, 2025
    Review provided by G2
    What do you like best about the product?
    Continuous monitoring and real-time risk assessment

    Vulnerability management and detection

    Integration with other security tools

    Automated remediation and security recommendations
    What do you dislike about the product?
    Performance or latency issues

    Lack of certain security features or tools

    Difficulty integrating with other security solutions

    Reporting and analytics limitations

    Pricing concerns
    What problems is the product solving and how is that benefiting you?
    Vulnerability management: Helps identify and address security vulnerabilities across cloud environments

    Compliance and risk management: Ensures compliance with industry standards and reduces risk exposure

    Cloud infrastructure visibility: Provides better visibility into cloud security posture across AWS, Azure, GCP, etc.
    View all reviews