StackRox has simplified compliance for us. We get a view in one place of how well we’re meeting the controls from CIS Benchmarks, NIST, PCI, and HIPAA and SOC-2.
We really needed something for SOC-2 compliance, vulnerability management, IDS, k8s secrets issues, auditing access to customer environments, etc. StackRox ... rocks for this.
Filling in vendor security assessments became much easier after we deployed StackRox. Review collected by and hosted on G2.com.
As a command line person, I would have preferred to have more functionality in the command line tool, but I still have to explore that a bit more. Review collected by and hosted on G2.com.
Simple and easy to get up and running to get to value fast, clean ui. Comes with outbound connectors for a number of products to allow you to get it integrated into your stack quickly as well. Compliance frameworks/controls come with more than just the control but the reference to the original text to let you get back to the word of the framework itself for your own knowledge or interpretation. Review collected by and hosted on G2.com.
Real pain to add users (can't use web interface, have to use CLI which seems like a big miss), no ability to create custom benchmarks to track more than the few frameworks already existing in the product (this is apparently in the works however). Review collected by and hosted on G2.com.
One of the leading things that led us to chose Stackrox is that it is designed for Kubernetes compared to other product where containers and kubernetes feel like an add-on Review collected by and hosted on G2.com.
When I deployed stackrox, there deployment used a combination of bash scripts, raw yaml, and helm charts. While the deployment was easy, I would have preferred something that only used Helm. Review collected by and hosted on G2.com.
Stackrox has provided us the ability to scan thousands of deployments to surface risky configuration details, detect which CVEs our images are impacted by, and alert on any unapproved image details we deem unfit for production. These advancements in visibility have given us the ability to make more informed decisions, keep up with our growing scale, and respond quickly to risky changes. Review collected by and hosted on G2.com.
Lacking strong network profile enforcement rules Review collected by and hosted on G2.com.
StackRox’s feature to automatically compare our k8s setup against best practice and its capability to monitor the system on an ongoing basis is extremely valuable to us. The system helps us to fulfil our security compliance requirements. At the same time StackRox is light weight and minimal intrusive. Review collected by and hosted on G2.com.
We don't have any complaints at the moment. Review collected by and hosted on G2.com.
The install process is simple and the benefits work right out of the box. Its able to give me deep insights into the security posture of our Kubernetes cluster and all of the many moving parts within it. Its been a great product and company to work with, with outstanding support and knowledgable people. Review collected by and hosted on G2.com.
Alert and policy management can be a bit overwhelming. Review collected by and hosted on G2.com.
Stackrox offers K8s native security implementation. It uses underlying k8 tech such as network policies and admission controllers to implement security policies. Also stackrox has various integrations with container registries and ops tool that makes devops like easier to deploy and run container security tool in their environment.
Stackrox is also a great partner that works with us to refine feature set. Their CSM team is knowledgeable who is ready to listen to customer and relay customers asks to engineering team Review collected by and hosted on G2.com.
Stackrox is not yeta true SaaS solution. It would be easier for us if it offered cloud hosted service. Also need a tight integration with ticket management system Review collected by and hosted on G2.com.
Easy integration and quick time to results. Makes it easy to quickly triage security issues in k8s environments. Review collected by and hosted on G2.com.
Requires a decent bit of configuration to get it most effective results. But less so than other products in the space. Review collected by and hosted on G2.com.
At an executive level I am able to assess and report on the health of our SaaS infrastructure thanks to StackRox. The dashboards, graphs and charts help us monitor and then prioritize our infrastructure work. Review collected by and hosted on G2.com.
At first there is a lot of information and it can be overwhelming to sort through. Review collected by and hosted on G2.com.
Deep integrations with Kubernetes means we understand our environment and its risks a lot better Review collected by and hosted on G2.com.
Some pre-defined policies didn't work out of the box Review collected by and hosted on G2.com.