Application Control and Allowlisting Solution
Controlled demos have become smoother as application control now reduces unauthorized software
What is our primary use case?
My main use case for Airlock Digital Application Control is primarily for training awareness demos, such as showing allow listing in practice.
A specific example of how I use Airlock Digital Application Control in one of my training sessions is during a practical allow listing scenario. First, I allow approved applications, then I try to run a non-approved app.
I sometimes focus on handling updates afterward regarding my main use case and how I use Airlock Digital Application Control. When I mention updates, I mean that I use Airlock to demonstrate how to manage application updates within an allow list so that updates do not break policy while keeping control tight.
What is most valuable?
The best features Airlock Digital Application Control offers include application allow listing, policy enforcement, unauthorized software blocking, update management with policies, and app execution visibility.
Airlock Digital Application Control has positively impacted my organization by helping reduce the risk of unapproved software running and making my demo systems more controlled and predictable.
I have noticed a reduction in the number of unauthorized apps in controlled environments, which shows the positive impact of Airlock Digital Application Control, but I do not have an exact percentage yet.
What needs improvement?
To improve Airlock Digital Application Control, I would say making policy handling and app updates more predictable is a key area for improvement. For example, clearer visibility into why an application was blocked and smoother handling of legitimate app updates would speed up troubleshooting in practical sessions and reduce surprises.
For how long have I used the solution?
I have used this solution for about a year.
What do I think about the stability of the solution?
Airlock Digital Application Control has been stable in my experience.
What do I think about the scalability of the solution?
Airlock Digital Application Control scales well in my experience, as it can manage policies across multiple systems and enforce application allow listing centrally, making it practical to scale without too much overhead.
How are customer service and support?
I would rate customer support around seven out of ten.
Which solution did I use previously and why did I switch?
Previously, I used Microsoft AppLocker before switching to Airlock Digital Application Control because its app allow listing and policy management felt more straightforward for my use cases, with good visibility and easier day-to-day management.
What was our ROI?
I do not have any specific financial ROI or headcount reduction metrics, so I will not invent any numbers, but I can say that manual effort has reduced, control over unauthorized apps has improved, and application management has become more predictable and efficient.
What's my experience with pricing, setup cost, and licensing?
The single SKU licensing model has made budgeting easier for us and given a clear view of overall application control costs, thus reducing the hassle of dividing resources among different licensing components and making planning more predictable.
Which other solutions did I evaluate?
I evaluated other options before choosing Airlock Digital Application Control, including Microsoft AppLocker, as I was mainly comparing application allow listing, policy management, visibility, and day-to-day practicality.
What other advice do I have?
My advice for others looking into using Airlock Digital Application Control is first to make your use cases clear, run a pilot, and start with basic policies while making use of the vendor's documentation and support. I recommend reviewing policies from time to time to ensure everything stays aligned with changing needs.
I have no additional thoughts about Airlock Digital Application Control, as everything is complete, and overall it is good. I would rate this solution an eight out of ten.
Application control has reduced vulnerabilities and has simplified admin rights management
What is our primary use case?
Airlock Digital Application Control is primarily used to deny execution of untrusted applications and scripts through integration with Defender, blocking untrusted applications and scripts. In our environment, all users have admin rights, which led to numerous vulnerabilities as users downloaded and installed applications according to their own requirements. Airlock Digital Application Control allows installation only of whitelisted applications, and we are blocking untrusted applications like Mozilla Firefox, Opera Mini, and other browsers through this tool, which we implemented very recently.
We use the policy change history feature in Airlock Digital Application Control, which allows us to monitor policy change history and easily trace and fix any issues that occur based on that monitoring.
In day-to-day tasks, Airlock Digital Application Control helps by monitoring user activity concerning app installation and script running, significantly reducing risk and vulnerability.
We use the bidirectional REST API in Airlock Digital Application Control, primarily to monitor activities. This API is integrated with our Power BI dashboard for activity monitoring.
What is most valuable?
Airlock Digital Application Control is an excellent tool because it has extended features like integration with Microsoft Defender, which we use to monitor vulnerabilities. This tool works alongside Microsoft Defender to block untrusted applications, helping reduce the attack surface and vulnerabilities.
The integration with Microsoft Defender is the best feature because it makes it easier for us to monitor both the vulnerability status of devices and the applications users are trying to install. This tool responds to installation attempts by users, allowing us to monitor both aspects in one place.
Airlock Digital Application Control is very easy to use, so we do not need any additional training for its use, making it user-friendly.
After implementing Airlock Digital Application Control in our environment, we see fewer vulnerability incidents because the count of third-party application vulnerabilities is very low after implementation.
Before this implementation, we used to create a lot of packages to upgrade third-party applications, and now, in percentage-wise, it has reduced to 20%, so we see much less.
Airlock Digital Application Control is deployed in our organization in the public cloud using AWS. We purchased Airlock Digital Application Control through the AWS Marketplace.
Airlock Digital Application Control has a great feature that allows us to deploy granularly to all devices in a phased manner, making it very user-friendly and easy to deploy.
What needs improvement?
Airlock Digital Application Control can be improved by extending support to Android devices, as it currently supports only Windows, Mac, and iOS devices.
If Airlock Digital Application Control allowed integration with Intune, we would be able to monitor the status through Intune as well, which would be a valuable improvement.
For how long have I used the solution?
Airlock Digital Application Control has been in use in our project for the last one year.
What do I think about the stability of the solution?
Airlock Digital Application Control is stable.
What do I think about the scalability of the solution?
We are managing around 6,000 devices through Airlock Digital Application Control in our environment.
How are customer service and support?
Customer support for Airlock Digital Application Control is very good, and we receive responses from the customer support team immediately whenever we raise any ticket. I would give the customer support a rating of 10.
Which solution did I use previously and why did I switch?
Previously, we used CyberArk EPM, and compared to CyberArk EPM, we found Airlock Digital Application Control to be very useful and better in cost.
Before choosing Airlock Digital Application Control, we tried using the default Intune EPM feature, but we found that Airlock Digital Application Control has additional features such as blocking script execution, which prompted our move to it.
How was the initial setup?
The price of Airlock Digital Application Control is very cost-effective and useful. Implementing it reduces our man-effort significantly, making it worth the investment.
What was our ROI?
Airlock Digital Application Control is reducing our man-effort by around 80%, and it is effectively reducing vulnerabilities, which is certainly a return on investment.
What's my experience with pricing, setup cost, and licensing?
The price of Airlock Digital Application Control is very cost-effective and useful. Implementing it reduces our man-effort significantly, making it worth the investment.
Which other solutions did I evaluate?
Before choosing Airlock Digital Application Control, we tried using the default Intune EPM feature, but we found that Airlock Digital Application Control has additional features such as blocking script execution, which prompted our move to it.
What other advice do I have?
Regarding Airlock Digital Application Control's AI capabilities, I am not primarily focused on using LLM to make security decisions.
The accuracy and reliability of Airlock Digital Application Control are very good, making it a best-in-class tool.
My advice to others looking into using Airlock Digital Application Control is that it is a very cost-effective product with features for app and third-party app installation control and script execution control, reducing man-effort by at least 80% in vulnerability remediation. It is truly worth the investment. I would rate this product 9 out of 10.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Data protection has improved and current workflows run faster with automated security controls
What is our primary use case?
I mainly use Airlock Digital Application Control in my organization for security purposes.
I use Airlock Digital Application Control for email checks, WhatsApp checking, email processing, loan processing, and customer security programs.
For main use cases, we currently have recent CKI chatbot creation related to the customer engagement program with Airlock Digital Application Control.
What is most valuable?
Airlock Digital Application Control controls data flow in our organization, ensuring that data will not go outside of the organization. We also have IT security, email, and chatbot features.
The security features we have with Airlock Digital Application Control are relevant and do not take much time to generate reports for client engagement data.
Airlock Digital Application Control has improved the security system and saved time for our team in a larger organization.
What needs improvement?
Airlock Digital Application Control already provides the improvements we need, so we do not need to change anything. It is a good product and better to work with this application.
For how long have I used the solution?
I have been using Airlock Digital Application Control for the past two years.
What do I think about the stability of the solution?
Airlock Digital Application Control is stable in my experience.
The stability of Airlock Digital Application Control is good.
How are customer service and support?
Customer support for Airlock Digital Application Control is very good.
I would rate the customer support for Airlock Digital Application Control a 10.
Which solution did I use previously and why did I switch?
We do not want to switch to any other solution as Airlock Digital Application Control is good.
What was our ROI?
Money was saved and time was saved since implementing Airlock Digital Application Control.
What's my experience with pricing, setup cost, and licensing?
The cost is not excessive, but it is good value for a license with Airlock Digital Application Control.
What other advice do I have?
Airlock Digital Application Control is a good product, and I have been using it for the past two years with no issues. It is a good platform and flexible, and everything is good.
Airlock Digital Application Control works smoothly and is fine for our organization. It is not time-consuming, and there are no issues with the application.
Governance is good with Airlock Digital Application Control and is most suitable for the organization and team.
Airlock Digital Application Control is a good product to secure data for our current organization, and sending data outside is very useful and much more relevant for team management.
My experience with the granular policy control offered by Airlock Digital Application Control is very good.
The policy creation wizard offered by Airlock Digital Application Control impacts my daily management tasks.
Currently, we are not using the policy change history feature in Airlock Digital Application Control, but in the future, we want to use it and explore more.
For security purposes, the new user interface of Airlock Digital Application Control is good, and the speed is also good.
We are currently using Airlock Digital Application Control's bidirectional REST API, and it runs very fast. It is good for generating reports and provides a quick response.
Airlock Digital Application Control provides a quick response to save time with the single SKU licensing model.
It provides a quick response and is not time-consuming.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Application control has improved endpoint security and now keeps unauthorized software blocked
What is our primary use case?
My main use case for Airlock Digital Application Control is controlling which applications are allowed to run on company endpoints. For example, I can create policies that allow approved business applications while blocking unknown or unauthorized executables. This helps reduce the risk of users accidentally running potentially harmful software.
Airlock Digital Application Control fits well into my overall endpoint security approach. It gives me better visibility and control over what applications can run while helping reduce unnecessary software risks. Once the policies are set up, it is relatively easy to maintain and manage.
What is most valuable?
The features I find most useful in Airlock Digital Application Control are application allow-listing, policy-based application control, and the ability to manage application access across multiple endpoints. I also appreciate the visibility it provides into what is running in the environment. Overall, it gives me more control without making endpoint management overly complicated.
The application allow-listing feature is the one I rely on the most. It helps me ensure that only approved and trusted applications can run on my endpoints. This gives me better control over the environment and reduces the chances of unauthorized or potentially risky software being executed.
The feature set of Airlock Digital Application Control is quite practical for day-to-day endpoint security. I especially appreciate that the controls can be tailored to my organization's requirements rather than using a one-size-fits-all approach. The combination of application control, visibility, and policy management makes it useful for maintaining a controlled environment.
The impact of Airlock Digital Application Control has been positive for my organization. It has given me better control over what applications can run on endpoints and helped in reducing the risk of unauthorized software being executed. I have also found it easier to maintain consistent application policies across different systems, which has made endpoint security more manageable.
What needs improvement?
Airlock Digital Application Control works well overall, but the initial policy configuration could be more intuitive for new users. More guided setup options and clearer explanations when a policy blocks an application would make troubleshooting easier. It would also be helpful to have more detailed reporting and dashboards for quickly reviewing application activity.
I chose nine out of ten for Airlock Digital Application Control because it gives strong application control, good policy management, and better visibility across endpoints. It has been reliable and useful in my day-to-day security operations. To make it a perfect ten, I would like to see simpler initial setup, more intuitive reporting, and clearer troubleshooting guidance when applications are blocked.
For how long have I used the solution?
I have been using Airlock Digital Application Control for around six months.
What do I think about the stability of the solution?
Overall, I have found Airlock Digital Application Control to be stable and reliable in day-to-day use. I have not experienced major issues with the core application control functionality, and the policies generally work as expected once configured. It has been dependable for maintaining consistent applications across endpoints.
What do I think about the scalability of the solution?
The scalability of Airlock Digital Application Control is quite positive. It can be applied across different endpoint groups without making policy management overly complicated. As the environment grows, the centralized approach makes it easier to maintain consistent application control and security policies across a larger number of endpoints.
How are customer service and support?
Customer support for Airlock Digital Application Control has been good. The team has been responsive when I have needed assistance and helped me with configuration or troubleshooting questions. There is still room for faster resolution on one complex issue, but overall, my experience with the support team has been positive.
Which solution did I use previously and why did I switch?
I previously used a more traditional application control approach with a combination of endpoint policies and manual allow-listing. I switched to Airlock Digital Application Control because I wanted more granular control, better visibility, and a more centralized way to manage application policies across my endpoints.
How was the initial setup?
Creating and managing policies for Airlock Digital Application Control has been fairly easy. The interface is straightforward, and once the basic policy structure is understood, it is simple to apply rules to different groups of endpoints. The initial setup takes some time and learning, but day-to-day management is quite smooth.
The use of Airlock Digital Application Control's policy creation wizard impacts my daily management tasks positively. It makes it easier to build and apply application control policies without having to configure everything manually. It saves some time during setup and makes the process more straightforward, especially when creating policies for different groups of endpoints.
What about the implementation team?
I use the policy change history feature in Airlock Digital Application Control. It is useful for tracking what changes were made, when they were made, and helping identify who made them. This improves the auditability and makes it easier to review or troubleshoot policy changes, especially when investigating unexpected application behavior.
I use Airlock Digital Application Control's bi-directional REST API for integration with some of my existing IT and security processes. It helps me automate certain administrative tasks and makes it easier to exchange application and policy information with other systems. This reduces some manual work and makes the overall workflow more efficient.
What was our ROI?
I have not calculated a specific ROI figure for Airlock Digital Application Control, but the qualitative benefits have been positive. Airlock has reduced some of the manual effort involved in controlling and reviewing applications and has made policy management more consistent. The biggest value for me is having strong application control without requiring additional staff to manage it.
What's my experience with pricing, setup cost, and licensing?
Overall, the pricing and licensing experience with Airlock Digital Application Control has been fairly straightforward. The licensing model is easy to understand, and the setup cost felt reasonable considering the level of application control and security it provides. The initial implementation required some planning, but once I configured it, ongoing management has been relatively simple.
Which other solutions did I evaluate?
I looked at a few application control and endpoint security options before choosing Airlock Digital Application Control. I compared them mainly on policy flexibility, ease of management, visibility, and overall fit with my existing environment. Airlock stood out because it offered the level of granular control I was looking for without making administration overly complicated.
What other advice do I have?
I recommend clearly defining your application control requirements before getting started with Airlock Digital Application Control and planning the policies around your endpoint groups. Take some time to understand the initial configuration, but once the policies are in place, the day-to-day management is fairly straightforward. It is a good option if you want stronger control over what applications can run. I would rate this product a nine out of ten.
Granular controls have strengthened application security and provide clear visibility into usage
What is our primary use case?
In our organization, we use Airlock Digital Application Control for granular application control and to prevent unauthorized applications, DLLs, and browser extensions which can be vulnerable to our organization's internal computers and databases.
We use Airlock Digital Application Control to prevent vulnerable applications and end-of-life applications which can be vulnerable for execution in the organization.
Application controls provide broad execution coverage across application libraries and DLLs with contextual restrictions. We can check for files which are uploaded in the application or in browser extensions.
How has it helped my organization?
Since implementing Airlock Digital Application Control, we have gained visibility into application usage and how users are utilizing it.
We are receiving notifications of vulnerabilities if vulnerabilities exist. The compliance aspect has improved significantly because the control includes granular control methods and compliance features.
What is most valuable?
The VirusTotal overlay is a standout feature for me. Airlock Digital Application Control integrates natively with Google's VirusTotal so that global intelligence is directly available to end security teams, allowing them to instantly spot non-malicious or suspicious files. The intelligence and visibility that Airlock Digital Application Control provides is excellent.
The VirusTotal overlay shows any vulnerabilities if an application has vulnerabilities, any CVEs present, or any active CVEs. This allows us to easily patch applications accordingly based on the criticality of the vulnerability. The audit mode or monitoring mode visibility is also very helpful for us, as we can have visibility into application usage and how employees and users are utilizing it.
The direct blocklisting is another feature I can specify. Alongside its core allowlist features, pre-configured blocklists map to the MITRE ATT&CK databases and Microsoft recommended block rules. This proactively neutralizes living-off-the-land attacks where bad actors try to hijack legitimate native system utilities.
What needs improvement?
For improvements, Airlock Digital Application Control could add patching advice or recommendations to improve the usage of their application. They could specify critical security vulnerabilities they are finding in applications or end-of-life applications. For example, if an application is end of life, that should be identified. Although the VirusTotal overlay exists and VirusTotal provides their own database and repository information, Airlock Digital Application Control could add additional information related to the security aspects of the applications or browser extensions we are using.
For how long have I used the solution?
I have been using Airlock Digital Application Control for the last year in my organization.
What other advice do I have?
On a scale of one to ten, I would give eight out of ten. I will not give any application a ten out of ten because no application is perfect in nature.
Regarding governance, I can say that we have audit mode and enforcement mode, and governance is completely in compliance. Regarding the security aspect of the application, that is excellent, which includes OTP and for administrators, multi-factor authentication and one-time passwords. The security advice is an area for improvement that I mentioned earlier.
It has been consistent because of the multiple policies that we can add as multi-attribute trust policies. These can be configured based on file hashes, digital publishers, specific file paths, or parent processes, which has been very useful for me. The broad execution coverage is one of the beneficial aspects, covering EXE, MSI, or DLL files, as well as scripts such as PowerShell scripts.
I would recommend trying the free trial which is offered. I experienced Airlock Digital Application Control in the trial, and the satisfaction I received led me to purchase Airlock Digital Application Control from AWS.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Application control has strengthened endpoint protection and now streamlines security investigations
What is our primary use case?
Airlock Digital Application Control is used primarily for whitelisting and endpoint security, controlling which applications are allowed to execute on endpoints, preventing unauthorized and potential malicious software from running and reducing overall attack surface.
A specific example of whitelisting and endpoint security involves an unauthorized executable being introduced onto an endpoint and attempting to run. Because the application was not on the approval whitelist, Airlock blocked its execution before it could run.
Utilizing Airlock has helped prevent malware within our systems, particularly when an unknown executable or application is introduced at an endpoint. Because it is not approved by the application control policy, Airlock blocks it from executing, allowing the security team to investigate it before it can cause an impact.
What is most valuable?
The best features Airlock Digital Application Control offers include policy management, which allows us to define and maintain application control rules based on our environment.
The policy management feature has made things easier for the team because it provides understanding of what was blocked and allowed, giving the security team useful information for investigation.
Airlock Digital Application Control has positively impacted the organization by increasing productivity and reducing the time consumed to validate alerts and issues, making it an overall good process.
Airlock improved productivity and reduced the time to validate alerts, particularly because for legitimate applications that are blocked, the audit information helps identify the reason for the block and resolve the issue faster, thus reducing the investigation and validation efforts overall.
What needs improvement?
Airlock Digital Application Control can be improved, as its main use case is the ease of management and automation, yet managing policies, exceptions, and application changes can become more time consuming as the environment grows. More automation for policy recommendations, stronger integrations with SIEM tools, and other security tools would be helpful.
I wish Airlock Digital Application Control would add more integrations, and automation could be improved further, particularly around identifying trusted applications and recommending policy changes, which would reduce the amount of manual efforts given to this application.
For how long have I used the solution?
Airlock Digital Application Control has been used for two years, and it has been deployed in an enterprise environment.
What do I think about the stability of the solution?
Airlock Digital Application Control is stable.
What do I think about the scalability of the solution?
Airlock Digital Application Control's scalability is very good, as it increases the ability to scale whenever the organization grows.
How are customer service and support?
The customer support for Airlock Digital Application Control is good.
I would rate the customer support a 10 on a scale of one to ten.
Which solution did I use previously and why did I switch?
Previously, local endpoints were used, but now Airlock Digital Application Control is used because it created an additional layer of security.
How was the initial setup?
The experience with pricing, setup cost, and licensing for Airlock Digital Application Control is good.
The pricing, setup cost, and licensing have been good, as they are transparent and straightforward, and the initial setup cost was reasonable considering the security value and functionality provided by the platform.
What was our ROI?
There has been a very good return on investment, which can be measured in terms of operational efficiency and reduced security risk. Airlock has helped prevent unauthorized applications from executing, leading to reduced manual efforts, faster investigations, and better endpoint protection.
What's my experience with pricing, setup cost, and licensing?
The single SKU licensing model of Airlock Digital Application Control positively affects the organization's budgeting and resource allocation for application control by combining all expenses in one place, simplifying procurement, and making it easier to understand overall costs while planning for the number of endpoints that need to be covered.
Which other solutions did I evaluate?
Before choosing Airlock Digital Application Control, other options were evaluated primarily based on application control capabilities and policy granularities. Airlock stood out with a good balance of strong application control, centralized management, and straightforward licensing.
What other advice do I have?
Airlock Digital Application Control is highly recommended to others looking into using it. Airlock Digital Application Control is a very good application and it is performing great. I would rate this review a 10 on a scale of one to ten.
Application control has improved compliance and simplified daily policy management
What is our primary use case?
My main use case for Airlock Digital Application Control is to assist customers in deploying application control to their businesses.
I help customers deploy application control by asking them a bunch of scoping questions to determine exactly what they need and how to configure it. Once we understand their requirements, we get access to their environment to deploy the software and assist the customer by training them, running various calls, and looking at the applications running in their environment to show them how to permit or deny those applications.
There were a few projects we did that were quite large and were more advisory, where nothing was necessarily deployed, at least in the first phase, but we were assisting in determining if Airlock Digital Application Control was the right product and how they could use it.
What is most valuable?
The best features Airlock Digital Application Control offers include the ease of being able to add applications daily, along with good interfaces that certainly improved during my time using it, plus the constant feedback and updates. The ability to add an entire publisher to allow application by publisher instead of just by a folder is also a great advantage compared to some competitors.
Those features made my day-to-day work easier because, if a customer was happy to permit an entire publisher, that could wipe out a lot of executions in an environment at once and also prevent items from that publisher coming up again in the future, which is a huge improvement to their workflows, not having to constantly add those executions.
Airlock Digital Application Control positively impacts my organization and customers by helping them achieve Essential Eight compliance, giving them visibility into applications they don't know people are running, and providing insights about applications used in their environment, reducing the risk of phishing attacks by blocking unauthorized applications, which is the primary goal of the software.
What needs improvement?
Airlock Digital Application Control can be improved in terms of search functionality and how blocked apps are handled, as well as addressing limitations in the logic when configuring granular rules based on criteria combinations like file name, path, or publisher.
There were some challenges when a customer wanted to block or allow a certain app for a certain group; they couldn't use AD groups, which posed difficulties, but it was a specific customer issue and I can't remember the exact details.
I chose 8 out of 10 due to areas needing improvement, even though what's currently functioning is really good. The main challenges arose with very large organizations where I've discussed potential improvements with Airlock, yet there are valid reasons for specific approaches, making it not necessarily a bad thing.
I can't think of anything more specific needed for improvements to Airlock Digital Application Control.
For how long have I used the solution?
I've been working in my current field for nearly a year and in my previous role for three years.
What do I think about the stability of the solution?
I believe Airlock Digital Application Control is stable, as I only saw one issue with a customer, and overall, I consider it to be very stable.
What do I think about the scalability of the solution?
The scalability of Airlock Digital Application Control is great; by deploying a straightforward policy grouping layout, you can easily manage deployments, and it also integrates with Entra ID and Active Directory to automate adding people to Airlock groups.
How are customer service and support?
I don't have a lot of experience with the competition, but from what I've seen, Airlock Digital Application Control makes quite a compelling product. When we faced challenges or were trying to figure out the best way to solve something, Airlock support was really good, providing us with responses within a day at longest that were detailed and technical where we requested it.
The customer support I experienced from Airlock is brilliant, as I received excellent assistance while deploying, and customers I've spoken to also report great experiences engaging with Airlock support.
Which solution did I use previously and why did I switch?
Some customers have previously used different solutions like AppLocker, which is included in Microsoft products, or ThreatLocker, but they often switch due to Airlock Digital Application Control being easier to manage and providing better visibility.
How was the initial setup?
Airlock Digital Application Control's single SKU licensing model is pretty straightforward, easy to understand, and works well, scaling fairly well.
What about the implementation team?
I have utilized Airlock Digital Application Control's bi-directional REST API for a couple of customers, and it definitely helped them.
What was our ROI?
I believe there is a return on investment with Airlock Digital Application Control compared to some other basic solutions, as it certainly saves time and allows for fewer employees to manage it, though I don't have specific metrics to share.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for Airlock Digital Application Control is good. Although I wasn't the primary decision-maker regarding costs, customers considered it fair and were willing to invest a bit more for the product and support provided by Airlock.
Which other solutions did I evaluate?
Before choosing Airlock Digital Application Control, my customers evaluated other options, including ThreatLocker and AppLocker, which they typically want to move on from quickly due to management difficulties. I can't recall all other alternatives.
What other advice do I have?
It's very difficult with something like application control to put specific outcomes or metrics on it.
My impression of the granular policy control offered by Airlock Digital Application Control is quite good. While it excels for most deployments, larger customers sometimes face challenges when they want to split into more categories, which we generally advise against, as it complicates scaling when dealing with very high numbers.
The use of Airlock Digital Application Control's policy creation wizard never impacted my daily management tasks, though I assisted others with it as a consultant. For most organizations, it might require about 10 to 30 minutes a day, depending on the organization's size, applications in use, and how many administrators are involved.
I'm not aware of any AI capabilities implemented in Airlock Digital Application Control when I was there, so I don't have insights on its governance and security, but it does make me consider improvements in categorizing applications and finding patterns, which AI could help with to streamline sorting through numerous executions.
I'm not aware of any AI capabilities in the Airlock admin panel, and since I haven't used Airlock Digital Application Control in a while, they could have implemented updates since my last use.
I can't recall if I used the policy change history feature in Airlock Digital Application Control, and I'm uncertain if it has been added since.
I assume this refers to the user interface that came out around a year ago, which I found quite similar to the previous version and didn't see a significant improvement.
I haven't seen enough post-deployment to confirm if Airlock Digital Application Control helped prevent malware in customer systems. While I've observed some unwanted software, I can't recall catching malware, as I typically look at these environments for one to two months before handing over to the customer.
My advice for those considering using Airlock Digital Application Control is to maintain a simple policy structure and understand that having some level of application control is better than having none. Overly complicated policies can create instability and prevent effective management, so simplicity is key. I gave this review a rating of 8 out of 10.
Application allowlisting has transformed our security and now prevents unauthorized software
What is our primary use case?
Airlock Digital Application Control protects our company's products and computers by allowing us to whitelist only trusted applications to be downloaded onto our devices and block any unauthorized software from running on our devices.
Our IT team primarily uses Airlock Digital Application Control, and my team and I work on the Airlock system. It helps us considerably because we have blocked many unauthorized applications manually from the workflows, and now those unauthorized applications cannot be downloaded onto our devices.
Security is the key point regarding my main use case and how my team interacts with Airlock Digital Application Control.
The application allowlist is the main use case and the main standout feature because we have allowed some applications that are authorized by our management and IT team to be accessed by users and employees. This helps considerably so employees cannot access any unauthorized or unallowed application to run.
What is most valuable?
Airlock Digital Application Control offers excellent organization and easy policy management. It is simple to create and update policies across multiple devices and helps with the default deny policy. Any unknown or unauthorized software is blocked from our side and will not be allowed to download or be accessed on any of our organization's devices.
Airlock Digital Application Control has impacted our organization very positively. Earlier, we experienced some malware and security threats because employees downloaded unauthorized applications, and we had many security issues. After applying Airlock Digital Application Control, it has helped us considerably. Now we have end-to-end security and end-to-end visibility on any device, including what employees download and what they cannot download. We have control of everything in our hands.
Since we implemented Airlock Digital Application Control, we have seen around a fifty percent reduction in unauthorized software installations. Earlier, many of our employees could easily download unauthorized software from third-party websites. We have also reduced the time spent investigating endpoint security issues because only approved applications are allowed to run. Overall, it has improved our security, reduced our manual effort, and helped my team and the management team.
The clarity and speed of the new user interface compared to the previous version are definitely improvements. The previous version was good, but the newer version is very reliable. When any new user comes in, the new interface is definitely an improvement. It is very clear and easier to navigate for any user, and our day-to-day tasks such as reviewing policies, checking blocked applications, and managing approvals take less time than before. Overall, it feels like a more responsive product and is helpful for our work.
What needs improvement?
Airlock Digital Application Control should provide a very detailed user manual because when we were new to this application, it was a bit confusing. If we received a very easy manual and enough data to learn about it, it would be easier to use.
Integration is easy, but the main thing is the user manual. If it can be improved, then it would be best for us.
For how long have I used the solution?
I have been using Airlock Digital Application Control for more than six months.
What do I think about the stability of the solution?
Airlock Digital Application Control is very stable. We are currently using it and it remains very stable.
What do I think about the scalability of the solution?
Airlock Digital Application Control is very scalable. We are currently using it with multiple resources and it scales very effectively.
How are customer service and support?
The customer support for Airlock Digital Application Control is good. Earlier we experienced some issues, and they were available for us and helped us resolve them. I would rate the customer support for Airlock Digital Application Control ten out of ten because it helped us considerably.
Which solution did I use previously and why did I switch?
We were not using any other solution. We were managing things manually.
What was our ROI?
The main return on investment is that all our devices are now secured end-to-end for security purposes. We work with international clients, and each of them has their own policies and data security requirements. Because of Airlock Digital Application Control, we can deliver on those requirements very easily. The return on investment is mainly on security and also on time. Earlier we had to spend much more time investigating what the issue was, and now we can prevent issues and reduce our time spent while improving security.
What's my experience with pricing, setup cost, and licensing?
Pricing and setup cost for Airlock Digital Application Control are very low. I think any new company that wants to start with Airlock Digital Application Control will find the charges very nominal, and even the licensing pricing is not too much.
Which other solutions did I evaluate?
Before choosing Airlock Digital Application Control, we did not evaluate any other solution. We directly went with this solution.
What other advice do I have?
Regarding Airlock Digital Application Control's AI capabilities, the governance and the security are very powerful. It gives us end-to-end security on any devices that belong to the company and it improves governance. Overall, it gives very strong end-to-end security and end-to-end visibility on each and every device.
In terms of the accuracy and reliability of output, we heavily rely on Airlock Digital Application Control because all the company devices rely on it. It is very reliable. Currently, we are almost fully reliant on Airlock Digital Application Control's security.
The granular policy control offered by Airlock Digital Application Control is very powerful. We have created different policies based on the user, based on the department, and also based on the device. We do not have to use one rule for everyone. It gives us better control on any device or department and keeps the management simple.
The use of Airlock Digital Application Control's policy creation wizard has impacted my daily management tasks considerably. Our day-to-day tasks have been reduced. It simply creates and updates policies. We have created multiple policies much faster with fewer errors. It reduces the amount of manual work in our day-to-day management.
We have changed our policies based on the department, and we use the policy change tracking to quickly identify when and why a rule has to be updated. It makes troubleshooting and compliance much easier.
The single SKU licensing model has affected our organization's budget very positively. Having a single licensing model makes it easier and more cost-efficient to manage revenue and avoid unexpected license expenses. It is much simpler compared to solutions with multiple add-ons.
Utilizing Airlock Digital Application Control has helped prevent malware within our systems. It helps our organization prevent unauthorized hacking and similar threats. We have had instances where unknown applications were downloaded by a user. Airlock Digital Application Control blocked them because they were not approved. This prevented malware and reduced the amount of manual investigation.
If you are working with any client or sensitive data, then use Airlock Digital Application Control because it gives end-to-end security on your devices. You get very high control on the devices regarding what resources they download and what things to avoid, and it blocks any unauthorized applications. It helps prevent threats to our devices. I would rate this product nine out of ten overall.
Application controls have strengthened endpoint protection and now prevent unauthorized software
What is our primary use case?
My main use case for Airlock Digital Application Control is to implement application whitelisting, prevent unauthorized software from running, and strengthen endpoint security against malware and ransomware.
A specific example of how I have used Airlock Digital Application Control in my environment is when this product blocked an unauthorized executable downloaded through email from running on an employee's workstation, preventing a potential malware infection while allowing approved business applications to continue operating normally.
What is most valuable?
The best features that Airlock Digital Application Control offers are application whitelisting, trusted application control, centralized policy management, audit mode, and detailed application visibility and reporting.
The centralized policy management feature allows us to create, deploy, and update application control policies from a single console, making it much easier to enforce consistent security across all endpoints, roll out changes quickly, and reduce the time spent managing individual devices.
One feature that stands out in Airlock Digital Application Control is audit mode, which lets you test application control policies before enforcing them, helping fine-tune rules, minimize false positives, and ensure a smoother deployment across the organization.
Airlock Digital Application Control has positively impacted my organization by improving endpoint security, reducing malware and ransomware risk, decreasing unauthorized software installation, and giving the IT team greater visibility and control over application execution across the organization.
The use of Airlock Digital's policy creation wizard impacts my daily management tasks by significantly reducing the time needed to create and deploy application control policies. It simplifies onboarding new applications, helps minimize configuration errors, and makes day-to-day policy management more efficient, especially across a large number of endpoints.
Airlock Digital Application Control is highly scalable, allowing organizations to expand protection across thousands of endpoints without major performance issues. It supports centralized policy management, easy onboarding of new devices, and consistent application control enforcement across diverse environments.
What needs improvement?
Airlock Digital Application Control could be improved with a better management interface, richer reporting and analytics, broader third-party integrations, and simpler policy creation for large or complex environments.
For how long have I used the solution?
I have been using Airlock Digital Application Control for around eight months.
What do I think about the stability of the solution?
In my experience, Airlock Digital Application Control is very stable and reliable. It runs consistently across endpoints with minimal downtime, maintains dependable policy enforcement, and performs well even in larger environments with many users and applications.
What do I think about the scalability of the solution?
Airlock Digital Application Control is highly scalable, allowing organizations to expand protection across thousands of endpoints without major performance issues. It supports centralized policy management, easy onboarding of new devices, and consistent application control enforcement across diverse environments.
How are customer service and support?
Customer support for Airlock Digital Application Control is responsive and knowledgeable, providing timely assistance during deployment, troubleshooting, and policy configuration. The support team is helpful in resolving issues and providing guidance on best practices for application control management.
Which solution did I use previously and why did I switch?
I previously used Microsoft AppLocker and traditional endpoint security controls before switching to Airlock Digital Application Control because it provided stronger application allowlisting capabilities, better centralized management, improved visibility, and easier policy enforcement across a large number of endpoints.
How was the initial setup?
I evaluated other options, including Microsoft AppLocker, ThreatLocker, Ivanti Application Control, and CyberArk Endpoint Privilege Manager before selecting Airlock Digital Application Control due to its strong application allowlisting capabilities, ease of management, and focus on endpoint application control.
What about the implementation team?
I evaluated other options, including Microsoft AppLocker, ThreatLocker, Ivanti Application Control, and CyberArk Endpoint Privilege Manager before selecting Airlock Digital Application Control due to its strong application allowlisting capabilities, ease of management, and focus on endpoint application control.
What was our ROI?
Since implementing Airlock Digital Application Control, we have seen around a 50 to 60% reduction in unauthorized application incidents, 30 to 40% less time spent investigating endpoint security events, and lower malware remediation costs, resulting in measurable operational savings and improved IT efficiency.
What's my experience with pricing, setup cost, and licensing?
The deployment of Airlock Digital Application Control required minimal infrastructure investment, and the predictable licensing structure made it easier to plan budgets and scale application control coverage across endpoints.
Which other solutions did I evaluate?
I evaluated other options, including Microsoft AppLocker, ThreatLocker, Ivanti Application Control, and CyberArk Endpoint Privilege Manager before selecting Airlock Digital Application Control due to its strong application allowlisting capabilities, ease of management, and focus on endpoint application control.
What other advice do I have?
My advice to others looking into using Airlock Digital Application Control is to start with a clear application control strategy, use audit mode before enforcing policies, involve application owners early, and gradually roll out controls across the environment. Proper planning and tuning help reduce false positives and ensure a smooth deployment. I would rate this product a 9 out of 10.
Application allow listing has strengthened endpoint security and streamlines software approvals
What is our primary use case?
My main use case for Airlock Digital Application Control is to enforce application allow listing across our Windows endpoints so that only approved and trusted software can run. The goal was to reduce the risk of malware, ransomware, and unauthorized applications without disrupting normal business operations.
In our day-to-day work, we use it to review requests for new software, verifying that the application is legitimate and then approve it through the appropriate policy so users can run it without needing local administrator privileges. A typical example is when a business team needs a new finance or engineering application that is not already approved. Instead of giving the user elevated access or creating broad security exceptions, we validate the software, test it on a small group of machines, understand the allow list, and then deploy the policy to the required endpoint. This process has helped us maintain tighter control over our environment while still allowing business teams to get the applications they need in a structured and auditable way. Although there is some ongoing administrative effort, especially when new software versions are released or vendors frequently update their applications, the visibility and control it provides have made endpoint management much more predictable and secure.
What is most valuable?
The best features Airlock Digital Application Control offers that stand out the most for me are the application allow listing capabilities and centralized policy management, and the visibility into what is actually running across endpoints. The allow listing approach gives us much tighter control than relying only on signature-based security tools because only trusted applications are permitted to execute, which significantly reduces the risk of unauthorized software and malware. I also value having a central console where policies can be managed and applied consistently across different groups of devices, as it makes administration much easier than maintaining separate configurations on individual endpoints. Another feature I find valuable is the ability to review application activity before making policy changes, which helps us validate software and avoid disrupting users during deployments. From an operational perspective, the audit trail is useful because it provides clear records of policy changes and application approvals, making troubleshooting and compliance discussions much simpler. These features together provide a good balance between security and day-to-day manageability without making endpoint administration overly complicated, although none of them completely eliminate the need for ongoing policy maintenance, especially in environments where applications are updated frequently.
What needs improvement?
Airlock Digital Application Control is a solid product, but there are a few areas where it could be improved. The biggest challenge is the ongoing effort required to maintain allow listing policies in the environment where applications are updated frequently. While the initial deployment can be planned carefully, keeping policies current as vendors release new versions requires regular attention, and that can become time-consuming for IT teams managing a large number of endpoints. I would appreciate seeing more automation around approving trusted software updates and better integrations with common software deployment and vulnerability management tools to reduce manual effort. Reporting is another area that could be enhanced, particularly with more customizable dashboards and easier ways to generate compliance and operational reports for different audiences. From an administration perspective, some troubleshooting workflows could be more intuitive, especially when identifying why an application was blocked or determining the exact policy responsible for the decision. These limitations have not been significant enough to outweigh the benefits of the product, but addressing them would make day-to-day management more efficient, reduce administrative overhead, and improve the overall experience for security and endpoint management teams.
One additional area for improvement is the overall user and administration experience. While the platform is functional, I think some of the management workflows could be simplified so that common tasks such as reviewing blocked applications, approving legitimate software, or tracing the reason behind a policy decision require fewer steps. For organizations with lean IT teams, a more intuitive interface and clearer guidance during policy creation would help reduce the learning curve for new administrators. I would appreciate seeing broader integrations with the endpoint management, SIEM, and IT service management platforms so application events, approval requests, and policy updates can fit more naturally into existing operational workflows. Better APIs and pre-built integrations would reduce manual work and make automation easier for larger environments. More flexible reporting and customizable dashboards would help different teams, whether security operations or compliance, quickly access the information that is most relevant to them without having to manually compile reports. Addressing these areas would improve efficiency and make the product easier to operate as organizations scale their endpoint environments.
For how long have I used the solution?
I have been using Airlock Digital Application Control for a little over two years in a production environment, primarily as a part of our endpoint security strategy for Windows desktops and servers.
What do I think about the stability of the solution?
Regarding stability, the product has been reliable in our environment. We have not experienced any significant outages or stability issues with the platform itself, and once the initial policies were properly tested and defined, policy deployment was consistent across our endpoints. The few issues we encountered were generally related to a newly released application version that had not yet been added to the allow list rather than a problem with the product's reliability. Those situations were resolved by validating the software and updating the appropriate policies. The platform has been stable enough that it has become part of our standard security operation, and any day-to-day challenges have been operational rather than related to system availability or performance.
What do I think about the scalability of the solution?
From my experience, Airlock Digital Application Control has scaled effectively as our endpoint environment has grown. As we added new user devices and business applications, we were able to extend our existing policy framework without having to redesign the entire deployment management approach. It made it straightforward to onboard new groups, apply appropriate policies, and maintain consistent security standards across the environment. We also found that creating separate policies for different departments or user groups allowed us to accommodate changing business requirements without affecting the rest of the organization. As the environment grew larger, the biggest challenge was not the platform's ability to scale but the operational effort required to keep application allow lists current and organized. Regular policy reviews, a standard approval process, and a phased deployment became increasingly important to prevent unnecessary complexity. We have not encountered any major performance or reliability issues related to growth, and the platform has continued to support our expanding endpoint environment reliably. Successful scalability depends not only on the product itself but also on having well-defined governance and policy management processes in place.
How are customer service and support?
My experience with Airlock Digital's customer support has been positive, and I would rate it eight out of ten. We have not had to contact support very often because the platform has been stable, but on the few occasions when we did, mainly during deployment and when we needed clarification on policy behavior or best practices for handling specific application scenarios, the team was responsive and technically knowledgeable. They took the time to understand our environment instead of providing generic answers, and their suggestions helped us resolve issues without resorting to broad policy exemptions. Response times were generally reasonable, although for more complex questions that required investigation, it sometimes took longer to receive a detailed solution, which is understandable for enterprise support cases. The documentation and knowledge resources were also useful for many day-to-day questions, reducing the need to open support cases. The reason I did not give support a score higher than eight is that I think there is still room for improvement in providing even faster turnaround for complex cases, more proactive technical guidance, and a broader library of implementation examples and best practices for different deployment scenarios. The support experience has been professional and has given us confidence that assistance is available when needed.
Which solution did I use previously and why did I switch?
Before adopting Airlock Digital Application Control, we relied primarily on a combination of traditional endpoint protection, Microsoft AppLocker for a limited set of systems, and manual administrative controls rather than a dedicated, enterprise-wide application control platform. While that approach provided a basic level of protection, it became increasingly difficult to manage consistently as the environment grew. Policy management was fragmented, visibility into approved and unauthorized applications was limited, and maintaining consistent application control across different endpoint groups required a significant amount of manual effort. We evaluated several application control solutions before selecting Airlock Digital Application Control. We were looking for a product that offered more centralized policy management, better visibility into application activity, and a practical way to implement application allow listings without creating unnecessary operational complexity. The transition required careful planning and policy tuning, but once the deployment was completed, administration became more structured and predictable. Airlock Digital provided a better balance between security, usability, and day-to-day management than our previous approach, which was the primary reason for making the switch.
How was the initial setup?
We deployed Airlock Digital Application Control in an on-premises environment because it aligned with our organization's existing security architecture and endpoint management practice. Most of our critical systems and management infrastructure were already hosted within our own data centers, so keeping the application control management platform on-premises simplified integrations with our existing authentication services, endpoint management tools, and internal security processes. The deployment also gave us greater control over policy management, administrative access, and change management, which was important for us from both a security and a compliance perspective. Once the initial setup and policy configurations were complete, day-to-day administration was straightforward, with the policies being managed centrally and distributed to endpoints as a part of our standard operation process. Although an on-premises deployment requires us to maintain the underlying infrastructure, it has provided the level of control, stability, and predictability we were looking for, and it has integrated well with the rest of our enterprise environment.
What was our ROI?
We have seen positive returns on investment, although it has been more apparent in the reduced operational effort and improved security than in direct headcount savings. Before implementing Airlock Digital Application Control, our IT team spent a noticeable amount of time investigating incidents caused by unauthorized software and responding to requests related to unapproved applications. After introducing application allow listing and establishing a structured approval process, those incidents became much less frequent. We estimated that support tickets related to unauthorized software decreased by around thirty-five to forty percent, and the time spent investigating suspicious or unknown executables was reduced from several hours to less than thirty minutes because administrators could quickly verify application status through centralized policies and audit records. Routine software approval requests also became more predictable, with most standard requests being completed within one business day instead of taking several days. While we did not reduce the size of the IT team, the time saved allowed administrators to focus on higher-value activities such as security improvements, endpoint life cycle management, and proactive projects instead of repetitive troubleshooting. From a business perspective, avoiding even a single significant malware or ransomware incident would justify much of the investment. The improvements in operational efficiency, security, and risk reduction have made the solution worthwhile for us.
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing model for Airlock Digital Application Control was relatively straightforward and easy to understand compared to some other enterprise security products we evaluated. We licensed the solution based on the size of our endpoint environment, which made it easier to estimate costs during budgeting and future planning. The initial setup cost was reasonable because the deployment did not require significant additional infrastructure beyond what we already had in place. Although we did invest time in planning, policy creation, testing, and administrator training to ensure a smooth rollout, the larger investment was in the implementation effort rather than the software itself, particularly during the early stages when we were building and refining application allow listing policies. Once the environment was stabilized, ongoing licensing and operational costs were predictable and fit within our security budget. The overall value was justified by the increased control over application execution, the reduction in security risks, and the operational improvements we gained. The only area where I think there is room for improvement is providing even greater flexibility in licensing options for organizations with mixed environments or rapidly changing endpoint counts, but overall, we found the commercial model fair and transparent.
Which other solutions did I evaluate?
Before selecting Airlock Digital Application Control, we evaluated a few different approaches, including Microsoft AppLocker, Microsoft Defender Application Control, formerly Windows Defender Application Control, and a couple of other endpoint security solutions that included application control capabilities as a part of a broader endpoint protection platform. Our evaluation focused on how easy each solution was to deploy and manage, the level of policy granularity, reporting, day-to-day administration, and the impact on end users. Airlock Digital stood out because it offered a good balance between strong application allow listing capabilities and operational simplicity, making it a better fit for our team's requirements.
What other advice do I have?
My advice to others looking into using Airlock Digital Application Control would be to spend as much time planning your application control strategy as you do evaluating the product. The technology is only one part of a successful implementation. Having a clear understanding of your software inventory, business-critical software, and an approval process will make the rollout much smoother. I would recommend starting with a pilot group that represents different business functions so you can identify legitimate applications that need to be allowed before expanding the deployment across the organization. It is also important to involve the endpoint management, security, and application owners early in the process so everyone understands how software requests and policy changes will be handled. Once the solution is in production, establish a regular process for reviewing policies, validating new application versions, and removing old rules to keep the environment manageable over time. Application control should not be expected to work as a standalone security measure. It delivers the best results when it is integrated into a comprehensive endpoint security strategy alongside endpoint detection and response, vulnerability management, patching, and user awareness. Approaching implementation with good planning, realistic expectations, and a strong operational process will allow application control to provide effective protection without unnecessary disruption for end users or administrators. I would rate this product an eight out of ten overall.