🛡 Endpoint Security

EDR, XDR, Antivirus – 6 tools
🛡
CrowdStrike Falcon
CrowdStrike
EDR / XDRPaid

Cloud-native endpoint protection with AI-driven threat detection, automated response, and threat hunting. Market leader in MITRE ATT&CK evaluations.

Enterprise pricingBest for: Mid-market & EnterpriseVisit site
🤖
SentinelOne Singularity
SentinelOne
EDR / XDRPaid

Autonomous AI-powered endpoint protection with automated threat response and forensic analysis. Minimal manual intervention required.

From ~$6/endpoint/moBest for: SMB to EnterpriseVisit site
🪟
Microsoft Defender
Microsoft
EDR / XDRFreemium

Integrated endpoint security within Microsoft 365. Free basic antivirus on Windows; advanced EDR features require E5 licensing.

Free (basic) / M365 E5Best for: Microsoft-centric orgsVisit site
📟
Wazuh
Wazuh Inc. (Open Source)
EDR / SIEMOpen Source

Free, open-source security monitoring platform combining EDR, SIEM, and compliance capabilities. Active community with enterprise support available.

Free (self-hosted)Best for: Technical teams, Budget orgsVisit site
🐚
ClamAV
Cisco (Open Source)
AntivirusOpen Source

Open-source antivirus engine for detecting trojans, viruses, malware, and threats. Widely used in email gateways and file scanning pipelines.

FreeBest for: Linux servers, Email scanningVisit site
🧠
Bitdefender GravityZone
Bitdefender
EDR / AntivirusPaid

Layered endpoint protection with risk analytics, ransomware mitigation, and centralized management. Strong value for SMBs.

From $3/endpoint/moBest for: SMBsVisit site

🚧 Network Security

Firewalls, NGFW, IDS/IPS – 5 tools
🧱
Palo Alto NGFW
Palo Alto Networks
Firewall / NGFWPaid

Market-leading next-gen firewall with advanced threat prevention, URL filtering, and Cortex XDR integration.

Enterprise pricingBest for: Mid-market & EnterpriseVisit site
🛡
Fortinet FortiGate
Fortinet
Firewall / NGFWPaid

High-performance NGFW with integrated IPS, SSL inspection, and SD-WAN. Best price-to-performance ratio in the category.

From $300/yrBest for: SMB to EnterpriseVisit site
💻
pfSense CE
Netgate (Open Source)
FirewallOpen Source

Powerful open-source firewall and router based on FreeBSD. VPN, IDS/IPS, traffic shaping, and highly configurable. No licensing fees.

Free (CE edition)Best for: Technical teams, Home labsVisit site
🐫
Snort
Cisco (Open Source)
IDS / IPSOpen Source

The world’s most widely deployed intrusion detection and prevention system. Real-time traffic analysis with extensive rule library.

FreeBest for: Network monitoringVisit site
🐍
Suricata
OISF (Open Source)
IDS / IPS / NSMOpen Source

High-performance network analysis and threat detection engine. Multi-threaded, supports Lua scripting, compatible with Snort rules.

FreeBest for: High-throughput networksVisit site

📊 SIEM & Log Management

5 tools
📊
Splunk Enterprise Security
Cisco / Splunk
SIEMPaid

Industry-leading SIEM with powerful search (SPL), extensive integrations, and enterprise-scale log analysis for mature SOC teams.

From $1,800/yrBest for: Enterprise SOCsVisit site
🔎
Elastic Security
Elastic
SIEMFreemium

Open-source SIEM built on Elasticsearch. Built-in detection rules, ML anomaly detection, and case management. Free self-hosted tier.

Free (self-hosted) / Cloud from $95/moBest for: Technical teamsVisit site
Microsoft Sentinel
Microsoft
SIEMPaid

Cloud-native SIEM with deep Azure integration, automated response via Logic Apps, and pay-as-you-go pricing by data volume.

Pay-per-GB ingestedBest for: Azure-centric orgsVisit site
📟
Wazuh SIEM
Wazuh Inc. (Open Source)
SIEM / XDROpen Source

Free, open-source SIEM with log analysis, intrusion detection, vulnerability detection, and regulatory compliance. Scales to thousands of endpoints.

Free (self-hosted)Best for: Budget-conscious teamsVisit site
📓
Graylog Open
Graylog (Open Source)
Log ManagementOpen Source

Open-source log management platform with powerful search, dashboards, and alerting. Simpler alternative to Elastic for centralized logging.

Free (Open edition)Best for: Log aggregationVisit site

🔐 Identity & Access Management

IAM, SSO, MFA – 4 tools
🔐
Okta
Okta
IAM / SSOPaid

Cloud identity platform with SSO, MFA, lifecycle management, and API access management. Market leader in workforce identity.

From $2/user/moBest for: Mid-market & EnterpriseVisit site
🔑
Keycloak
Red Hat (Open Source)
IAM / SSOOpen Source

Open-source identity and access management with SSO, social login, LDAP/AD integration, and fine-grained authorization.

Free (self-hosted)Best for: Self-hosted / DevelopersVisit site
📱
Cisco Duo
Cisco
MFAFreemium

User-friendly multi-factor authentication. Free tier for up to 10 users, enterprise features for large deployments.

Free (10 users) / From $3/user/moBest for: SMBs starting with MFAVisit site
🏦
CyberArk
CyberArk
PAMPaid

Privileged access management for securing high-risk credentials, secrets, and service accounts across hybrid environments.

Enterprise pricingBest for: Enterprise PAMVisit site

📧 Email Security

Anti-phishing, Secure gateways – 4 tools
📧
Proofpoint
Proofpoint
Email GatewayPaid

Leading cloud email security with advanced threat protection, DLP, and security awareness training integration.

Enterprise pricingVisit site
🧠
Abnormal Security
Abnormal
AI Email SecurityPaid

AI-native email security that detects socially-engineered attacks traditional gateways miss. Behavioral analysis of email patterns.

Enterprise pricingVisit site
📬
MailScanner
Open Source
Email GatewayOpen Source

Open-source email security scanning for spam, viruses, phishing, and malware. Integrates with Postfix, Sendmail, and Exim.

📨
Mimecast
Mimecast
Email SecurityPaid

Cloud email security with threat protection, continuity, archiving, and awareness training. Strong M365 integration.

From $4/user/moVisit site

🔍 Vulnerability Management

Scanners, Patch management – 5 tools
🔍
Tenable Nessus
Tenable
Vuln ScannerFreemium

Industry-standard vulnerability scanner. Nessus Essentials is free for up to 16 IPs. Professional and Expert tiers for production use.

Free (16 IPs) / From $3,390/yrVisit site
💡
OpenVAS (Greenbone)
Greenbone (Open Source)
Vuln ScannerOpen Source

Full-featured open-source vulnerability scanner with 50,000+ network vulnerability tests. Community edition is free.

Free (Community)Visit site
🎯
Qualys VMDR
Qualys
Vuln ManagementPaid

Cloud-based vulnerability management, detection, and response. Asset discovery, prioritization, and automated remediation workflows.

Enterprise pricingVisit site
Nuclei
ProjectDiscovery (Open Source)
Vuln ScannerOpen Source

Fast, template-based vulnerability scanner. Community-driven template library with thousands of checks. CLI-based, highly automatable.

Rapid7 InsightVM
Rapid7
Vuln ManagementPaid

Vulnerability management with real risk scoring, live dashboards, and IT-integrated remediation projects.

From $2/asset/moVisit site

Cloud Security

CSPM, CWPP, CASB – 4 tools
Wiz
Wiz
CNAPPPaid

Agentless cloud security platform for AWS, Azure, GCP. Unified view of risks across VMs, containers, and serverless.

Enterprise pricingVisit site
🐦
Prowler
Prowler (Open Source)
CSPMOpen Source

Open-source security tool for AWS, Azure, GCP, and Kubernetes. 300+ checks across CIS, NIST, PCI-DSS, HIPAA, and more.

Free (CLI) / SaaS from $79/moVisit site
🐳
Trivy
Aqua Security (Open Source)
Container SecurityOpen Source

All-in-one open-source scanner for vulnerabilities, misconfigurations, secrets, and SBOM in containers, Kubernetes, IaC, and repos.

🌊
Orca Security
Orca
CNAPPPaid

Agentless cloud security with unified data model covering vulnerabilities, misconfigs, malware, lateral movement, and sensitive data.

Enterprise pricingVisit site

📡 Threat Intelligence Platforms

4 tools
📡
MISP
MISP Project (Open Source)
TIPOpen Source

Open-source threat intelligence platform for sharing, storing, and correlating indicators of compromise and threat data.

🕸
OpenCTI
Filigran (Open Source)
TIPOpen Source

Open-source cyber threat intelligence platform. STIX2 native, knowledge graph visualization, and automated enrichment.

Free (Community) / Enterprise availableVisit site
🔮
Recorded Future
Recorded Future
TIPPaid

AI-powered threat intelligence with the world’s largest intelligence graph. Real-time alerts, dark web monitoring, and vulnerability intelligence.

From ~$10K/yrVisit site
👾
AlienVault OTX
AT&T Cybersecurity
TIP / CommunityFree

Open threat exchange with community-contributed IOCs, pulses, and threat data. Free API access for integration into security tools.

💾 Backup & Disaster Recovery

3 tools
💾
Veeam Backup
Veeam
Backup & DRFreemium

Industry-leading backup and disaster recovery. Free Community Edition for up to 10 workloads. Immutable backups for ransomware resilience.

Free (10 workloads) / Enterprise availableVisit site
📦
Restic
Open Source
BackupOpen Source

Fast, secure, efficient backup program. Supports multiple cloud storage backends, encryption by default, and deduplication.

🛡
Acronis Cyber Protect
Acronis
Backup + SecurityPaid

Unified backup and cybersecurity with anti-malware, vulnerability assessments, and automated patch management.

From $85/yrVisit site

🔑 Password Management

4 tools
🔑
Bitwarden
Bitwarden
Password ManagerFreemium

Open-source password manager with free personal tier, self-hosting option, and affordable business plans. Audited and transparent.

Free / Business from $4/user/moVisit site
🔒
1Password
1Password
Password ManagerPaid

Premium password manager with Watchtower breach monitoring, travel mode, and seamless team sharing. Best-in-class UX.

From $3/user/moVisit site
🔓
KeePass
Open Source
Password ManagerOpen Source

Free, open-source, lightweight password manager. Local database, strong encryption, plugin ecosystem. No cloud dependency.

💼
Dashlane Business
Dashlane
Password ManagerPaid

Business password manager with built-in VPN, dark web monitoring, and admin console for policy enforcement.

From $8/user/moVisit site

🌐 VPN & Zero Trust Network Access

4 tools
🌐
WireGuard
Open Source
VPNOpen Source

Modern, fast, lean VPN protocol. Built into Linux kernel. Simpler and faster than IPsec/OpenVPN. Minimal attack surface.

Cloudflare Zero Trust
Cloudflare
ZTNAFreemium

Zero Trust network access with DNS filtering, secure web gateway, and browser isolation. Free for up to 50 users.

Free (50 users) / From $7/user/moVisit site
🛡
Zscaler Private Access
Zscaler
ZTNAPaid

Cloud-native zero trust access to private applications without VPN. Micro-segmentation and continuous verification.

Enterprise pricingVisit site
🔗
Tailscale
Tailscale
VPN / MeshFreemium

WireGuard-based mesh VPN. Zero-config networking between devices. Free for personal use with up to 100 devices.

Free (personal) / From $5/user/moVisit site

🎓 Security Awareness Training

3 tools
🎓
KnowBe4
KnowBe4
TrainingPaid

Market-leading security awareness training with phishing simulation, interactive modules, and compliance training library.

From $18/user/yrVisit site
🎣
GoPhish
Open Source
Phishing SimulationOpen Source

Open-source phishing simulation framework. Create and track phishing campaigns to test employee awareness. Self-hosted.

📚
Phished
Phished
Training / AIPaid

AI-driven security awareness training with automated, personalized phishing simulations based on individual risk profiles.

Custom pricingVisit site

🎯 Penetration Testing & Red Team

5 tools
🎯
Metasploit
Rapid7
Pen TestingFreemium

The world’s most used penetration testing framework. Free Community edition for manual exploit testing. Pro for automated assessments.

Free (Community) / Pro from $15K/yrVisit site
🕸
Burp Suite
PortSwigger
Web App TestingFreemium

Industry-standard web application security testing toolkit. Community Edition is free; Pro adds automated scanning and advanced tools.

Free (Community) / Pro $449/yrVisit site
📡
Nmap
Open Source
Network ScannerOpen Source

The gold standard for network discovery and security auditing. Port scanning, service detection, OS fingerprinting, and NSE scripting.

💻
Kali Linux
OffSec (Open Source)
Pen Test OSOpen Source

Debian-based Linux distribution with 600+ pre-installed penetration testing and security auditing tools. The industry standard for ethical hacking.

💥
sqlmap
Open Source
SQL InjectionOpen Source

Automated SQL injection detection and exploitation tool. Database fingerprinting, data extraction, and OS access via injection.

📄 Compliance & GRC

Governance, Risk, Compliance – 3 tools
📄
Drata
Drata
Compliance AutomationPaid

Automated compliance platform for SOC 2, ISO 27001, HIPAA, PCI-DSS, and GDPR. Continuous monitoring with 80+ integrations.

From $10K/yrVisit site
Vanta
Vanta
Compliance AutomationPaid

Trust management platform automating SOC 2, ISO 27001, and HIPAA compliance. Evidence collection and continuous monitoring.

From $10K/yrVisit site
📋
Eramba
Eramba (Open Source)
GRCOpen Source

Open-source GRC platform for managing risk, compliance, and policy. Community edition is free and self-hosted.

Free (Community)Visit site
🤖 Tool descriptions are AI-generated from publicly available vendor information and updated periodically. Pricing is approximate and may vary by region, contract, and deployment size. defend.network does not accept payment for favorable descriptions. Affiliate partnerships, when present, are clearly marked.