GitGuardian vs. Palo Alto Networks Prisma Cloud

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
GitGuardian
Score 8.8 out of 10
N/A
GitGuardian is an end-to-end NHI security platform designed to help organizations strengthen their Non-Human Identity (NHI) security posture and address compliance standards and regulations. As attackers increasingly target NHIs, such as service accounts, service principals, and applications, protecting and managing these critical assets has become paramount. NHIs rely on “secrets” like API keys and certificates for authentication, and their rapid proliferation has led to significant…
$0
per developer in the perimeter
Palo Alto Networks Prisma Cloud
Score 8.1 out of 10
N/A
Prisma Cloud, from Palo Alto Networks (based on technology acquired with Evident.io, or the Evident Security Platform) is presented as a comprehensive Cloud Native Security Platform (CNSP) that delivers full lifecycle security and full stack protection for multi- and hybrid-cloud environments. The solution is dedicated to reducing attack surface and checking for vulnerabilities against known or custom signatures of threats and provides daily risk reports, and also detects what users were…N/A
Pricing
GitGuardianPalo Alto Networks Prisma Cloud
Editions & Modules
Small Teams - 1-25 developers
$0
per developer in the perimeter
Standard 26-100 developers
$18
per developer in the perimeter
Standard - 26 to 100 developers
$18
developer per month
Enterprise - above 100 developers
adhoc
developer
No answers on this topic
Offerings
Pricing Offerings
GitGuardianPalo Alto Networks Prisma Cloud
Free Trial
YesNo
Free/Freemium Version
YesNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
GitGuardianPalo Alto Networks Prisma Cloud
Considered Both Products
GitGuardian
Chose GitGuardian
GitGuardian Public Monitoring stacks up well against its alternatives and competitors, as it offers some unique and advanced features that make it stand out from the rest. some of these features
include:-
GitGuardian Public Monitoring stacks up well against its alternatives and …
Chose GitGuardian
SnykGitLeaksTruffleHogDetect SecretsOWASP Dependency-CheckGitrobGitLeaksGit-secretsScoutSuiteSecurity Monkey

Chose GitGuardian
GitGuardian Internal Monitoring offers a comprehensive suite of tools to monitor and protect your organization's source code. It provides real-time visibility into
Chose GitGuardian
haven't used any others, I dont really know of any others that do this.
Chose GitGuardian
Did not explore other alternatives.
Chose GitGuardian
Didn't use anything other than GitGuardian so far.
Chose GitGuardian
I've evaluated quite a few other tools, like git-secrets, Git-leaks, scan, and maybe a few more. They're all great but quite surprisingly none of them detected Github OAuth Secrets for us. A lot of the FOSS tools out there focus on much simpler, generic secrets, which is good …
Chose GitGuardian
GitGuardian Internal Monitoring is a highly respected and recommended tool to guard against suspicious Github activities and it is the first choice.
Chose GitGuardian
GitGuardian has more secret type definitions than any similar offering, yet it has an extremely low false-positive rate and won't waste your time.
Chose GitGuardian
We selected GitGuardian because I attended a webinar from them. And they explained excellent which security issues can be in secrets in public/private repositories and to mitigate this risks we decided to use GitGuardian. Also, the free tier is one of the things which are …
Palo Alto Networks Prisma Cloud
Chose Palo Alto Networks Prisma Cloud
Our organization didn't consider any other tool, and so far we are pretty much satisfied with Prisma Cloud.
Chose Palo Alto Networks Prisma Cloud
Prisma Cloud stacks well with other similar Palo Alto products. UI is beautiful, has decent documentation and some trainings as in other platforms.
Chose Palo Alto Networks Prisma Cloud
Each solution has some or the other feature which is USP within that solution but based on our requirement we found Palo Alto Prisma is Meeting most of our requirements since we want to monitor workload/Services hosted on both Cloud/On-Prem.
Chose Palo Alto Networks Prisma Cloud
Palo Alto Networks Prisma Cloud was the first choice made by our organization so far for enhancing security in a multi-cloud environment.
Best Alternatives
GitGuardianPalo Alto Networks Prisma Cloud
Small Businesses
GitLab
GitLab
Score 8.7 out of 10

No answers on this topic

Medium-sized Companies
Veracode
Veracode
Score 8.7 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
Enterprises
Veracode
Veracode
Score 8.7 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
GitGuardianPalo Alto Networks Prisma Cloud
Likelihood to Recommend
8.8
(0 ratings)
9.0
(0 ratings)
Usability
-
(0 ratings)
9.0
(0 ratings)
User Testimonials
GitGuardianPalo Alto Networks Prisma Cloud
Likelihood to Recommend
I do think it'll absolutely fit everyone who codes integrates with another platform or services. We all forget that one credentials one in a while, and especially those who managed public repository, it is important to keep an eye on accidentally committed credentials. While I think you don't really needs it for personal project, it's a nice to have, you don't want to waie up to 50k USD of sudden surcharge on resources you don't use.
Read full review
Vulnerability assessment is a requirement within the solution. Where Organization has on-prem and cloud workload and on-prem workload has to connect locally (on-Prem). Primsa Provide capability of hosting solution on-prem or on cloud-based on organization requirement and license can be shared between both On-Prem/Cloud workload. Where organizations want to have the flexibility of using Twistlock or Redlock (Vulnerability assessment for OS or Monitoring/remediation of cloud workload) with a single license. Prisma Enterprise license provides the capability of using Twistlock or Redlock on a need basis
Read full review
Pros
  • GitGuardian monitors every public or private GitHub commit ( that have GitGuardian installed) and event in real-time for secrets and sensitive data. In a leak scenario it immediately notifies us.
  • It uses sophisticated pattern matching techniques to detect credentials that cannot be strictly defined with a distinctive pattern (like unprefixed credentials)
  • It covers several API providers, database connection strings, private keys, certificates, usernames and passwords etc
  • GitGuardian have high True Positive Rate of around 91% and reduces alert fatigue with smart occurrences regrouping
Read full review
  • Vulnerability assessment using Twistlock
  • Enhancing Security by scanning workload based on different Security standards and provide a compliance report
  • CF template integration with CI/CD pipeline to identify any security issue before workload are deployed
  • IAM/UEBA features additional to enchaining security posture
  • Auto remediation
  • Integration is simple and solution is supported on multiple cloud
  • Customized dashboard/queries
Read full review
Cons
  • Improved user interface: It would be beneficial to have a more intuitive and user-friendly interface for Internal Monitoring on GitGuardian. This would make it easier for users to quickly access the data they need and understand the results of their scans.
  • Automated alerts: It would be helpful to have automated alerts when certain conditions are met, such as when a scan reveals sensitive data or when a new repository is created. This would help users stay informed and take action in a timely manner.
  • More detailed reports: Currently, Internal Monitoring reports are limited in terms of the depth of information they provide. It would be useful to have more detailed reports that include additional metrics, such as the number of repositories scanned and the types of sensitive data found.
  • Faster scan times: Scan times can be slow at times, making it difficult to stay on top of changes in repositories quickly. It would be beneficial to have faster scan times so that users can take action quickly when needed.
Read full review
  • Cloud base Console must be user friendly
  • Local Partner knowledge for this particular product
  • Portfolio License must be easy for the End User
Read full review
Usability
No answers on this topic
It is no doubts about their functionalities and top-notch security features. The Products do really well in their every feature and gives you complete visibility to your valuable Data at all. The Support for the Palo Alto Networks Prisma Cloud is also one of the plus point where you gain the confidence into the product.
Read full review
Alternatives Considered
GitGuardian Internal
Monitoring offers a comprehensive suite of tools to monitor and protect
your organization's source code. It provides real-time visibility into
the security of your code, allowing you to quickly identify and address
potential vulnerabilities before they become a problem. Additionally, it
offers automated security scanning and alerting capabilities, ensuring
that any suspicious activity is quickly identified and addressed.
GitGuardian Internal Monitoring stands out from other solutions due
to its ability to detect potential security issues in real-time, rather
than relying on periodic scans. This allows for more timely detection of
potential vulnerabilities, which helps reduce the risk of data breaches
or other malicious activities
Read full review
Prisma Cloud stacks well with other similar Palo Alto products. UI is beautiful, has decent documentation and some trainings as in other platforms.
Read full review
Return on Investment
  • Can't provide exact numbers due to restrictions but trust me our organization saved a decent amount of money coz there were several instances of secret leaks that is notified by GitGuardian.
  • GitGuardian has helped us identify and remediate secrets leaks in our public GitHub repositories. It has also helped us enforce our internal security policies and educate our developers on the best practices for secrets management
  • GitGuardian has been a great addition to our security toolset. It has helped us monitor our public GitHub repositories for any secrets or sensitive data. It has also integrated well with our existing systems and processes.
Read full review
  • A good amount of positive impact has been brought with this tool--not only increasing the security posture but also helping to make more efficient applications.
Read full review
ScreenShots

GitGuardian Screenshots

Screenshot of GitGuardian Internal Monitoring - Monitoring ScreenScreenshot of GitGuardian Internal Monitoring - Secrets detailsScreenshot of GitGuardian Internal Monitoring - Scanning screen