Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

ActiveState delivers Intelligent Remediation for vulnerability management, which enables DevSecOps teams to not only identify vulnerabilities in open source packages, but also to automatically prioritize, remediate, and deploy fixes into production without breaking changes, ensuring that applications are truly secured. We do this by helping you: - Understand your vulnerability blast radius so you can see every vulnerabilities’ true impact across your organization. This is driven by our proprietary catalog of 40M+ open source components that’s been built and tested for over 25 years. - Intelligently prioritize remediations so you can turn risks into action. We help teams move away from alert overload with AI-powered analysis that detects breaking changes, streamlines remediation workflows, and accelerates security processes. - Precisely remediate what matters - unlike other solutions, ActiveState doesn’t just suggest what you should do, we enable you to deploy fixed artifacts or document exceptions so you can truly drive down vulnerabilities and secure your software supply chain. The ActiveState platform centers on open source languages packaged as runtimes that can be deployed in various form factors. Low-to-no CVE container images are also available for plug-in and play needs.

Description

Fidelis Halo, a SaaS-based cloud security platform, automates cloud computing security controls. It also provides compliance across containers, servers, and IaaS within any public, private or hybrid cloud environment. Halo's extensive automation capabilities allow for faster workflows between InfoSec (DevOps) and Halo with over 20,000 pre-configured policies and more than 150 policy templates. These templates cover standards like PCI, CIS and HIPAA. The comprehensive, bidirectional Halo API, SDK, and toolkit automate security and compliance controls in your DevOps toolchain. This allows you to identify and correct critical vulnerabilities before they go into production. Free Halo Cloud Secure edition includes full access to the Halo Cloud Secure CSPM Service for up to 10 cloud service account across any mix of AWS and Azure. Get started now to automate your cloud security journey!

API Access

Has API Yes 

API Access

Has API Yes 

Screenshots View All

Screenshots View All

Integrations

Docker Yes 
Git Yes 
Kubernetes Yes 
Slack Yes 
Amazon EC2 No 
Apache Mesos No 
Cloudera Yes 
Go Yes 
Google Cloud Platform No 
Google Compute Engine No 
IBM Apptio No 
JavaScript Yes 
Jenkins No 
Jira Yes 
Okta No 
PHP Yes 
Ping Identity No 
Splunk SOAR No 
Tcl Yes 
Trivy Yes 

Integrations

Docker Yes 
Git Yes 
Kubernetes Yes 
Slack Yes 
Amazon EC2 Yes 
Apache Mesos Yes 
Cloudera No 
Go No 
Google Cloud Platform Yes 
Google Compute Engine Yes 
IBM Apptio Yes 
JavaScript No 
Jenkins Yes 
Jira No 
Okta Yes 
PHP No 
Ping Identity Yes 
Splunk SOAR Yes 
Tcl No 
Trivy No 

Pricing Details

$25,000
SMB. Start with one or two languages. $25,000. < 100 employees Per Language / Year

Mid-Market. Already running multiple languages in production. $50,000. 100–999 employees Per Language / Year

Enterprise. Securing open source across multiple business units. $150,000. 1,000+ employees Per Language / Year

Enterprise+. For engineering orgs large enough that whole-catalog access is standard. Talk to our team. 1,000+ developers Per Language / Year
Free Trial No 
Free Version No 

Pricing Details

Free
Free full-featured Cloud Secure CSPM service for up to 10 IaaS accounts across any mix of supported cloud service providers. Includes one API key.

Free 15-day trial of the complete Halo platform and its add-on services for those considering Halo Essentials or Enterprise.
Free Trial Yes 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App Yes 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support No 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) Yes 
In Person Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

ActiveState

Founded

1997

Country

Canada

Website

www.activestate.com

Vendor Details

Company Name

Fidelis Security

Founded

2002

Country

United States

Website

fidelissecurity.com/platforms/fidelis-halo/

Product Features

Application Security

Analytics / Reporting Yes 
Open Source Component Monitoring Yes 
Source Code Analysis Yes 
Third-Party Tools Integration Yes 
Training Resources Yes 
Vulnerability Detection Yes 
Vulnerability Remediation Yes 

Container Security

Access Roles / Permissions No 
Application Performance Tracking No 
Centralized Policy Management No 
Container Stack Scanning No 
Image Vulnerability Detection No 
Reporting No 
Testing No 
View Container Metadata No 

Vulnerability Management

Asset Discovery No 
Asset Tagging No 
Network Scanning No 
Patch Management No 
Policy Management No 
Prioritization No 
Risk Management No 
Vulnerability Assessment No 
Web Scanning No 

Product Features

Application Security

Analytics / Reporting No 
Open Source Component Monitoring No 
Source Code Analysis No 
Third-Party Tools Integration Yes 
Training Resources No 
Vulnerability Detection Yes 
Vulnerability Remediation Yes 

Audit

Alerts / Notifications Yes 
Audit Planning No 
Compliance Management Yes 
Dashboard Yes 
Exceptions Management No 
Forms Management No 
Issue Management Yes 
Mobile Access No 
Multi-Year Planning No 
Risk Assessment No 
Workflow Management No 

Cloud Security

Antivirus No 
Application Security Yes 
Behavioral Analytics Yes 
Encryption No 
Endpoint Management No 
Incident Management No 
Intrusion Detection System Yes 
Threat Intelligence Yes 
Two-Factor Authentication Yes 
Vulnerability Management Yes 

Cloud Workload Protection

Anomaly Detection No 
Asset Discovery No 
Cloud Gap Analysis No 
Cloud Registry No 
Data Loss Prevention (DLP) No 
Data Security No 
Governance No 
Logging & Reporting No 
Machine Learning No 
Security Audit No 
Workload Diversity No 

Container Security

Access Roles / Permissions No 
Application Performance Tracking No 
Centralized Policy Management Yes 
Container Stack Scanning Yes 
Image Vulnerability Detection Yes 
Reporting No 
Testing No 
View Container Metadata Yes 

Vulnerability Management

Asset Discovery Yes 
Asset Tagging No 
Network Scanning Yes 
Patch Management No 
Policy Management Yes 
Prioritization Yes 
Risk Management No 
Vulnerability Assessment Yes 
Web Scanning No 

Alternatives

Alternatives

Runecast  Reviews

Runecast

Runecast Solutions
DisruptOps Reviews

DisruptOps

FireMon
Tenable One Reviews

Tenable One

Tenable