Developer docs
API playgroundTry for free, no card

Search company profiles

Aqua Security

Full company profile

uuid0000ii7

Namestring
Aqua Security
Legal namestring
Aqua Security Software Ltd.
Websiteurl
aquasec.com
Company typeenum
Private
Founded yearint
2015
Descriptiontext

Aqua Security is a private, venture-backed cybersecurity company founded in 2015 and headquartered in Ramat Gan, Israel, with US operations in Burlington, Massachusetts and additional R&D centers in Hyderabad and Singapore. It sells a unified Cloud Native Application Protection Platform (CNAPP) that combines agent-based runtime protection with agentless posture management to secure containers, Kubernetes, serverless functions, virtual machines, and increasingly AI workloads across AWS, Azure, Google Cloud, IBM Cloud, and on-premises environments. The platform is built around a proprietary runtime enforcement engine (patented, eBPF-based via Tracee, covering 330+ Linux syscalls) and is anchored by the Trivy open-source vulnerability scanner, which has accumulated more than 100 million annual downloads and over 27,000 GitHub stars, plus related projects Tracee, kube-bench, and kube-hunter. Commercial modules include Cloud Security Posture Management (CSPM), Kubernetes Security Posture Management (KSPM), Cloud Workload Protection Platform (CWPP), Software Supply Chain Security, Dynamic Threat Analysis, Aqua Secure AI for LLM/GenAI protection, and Aqua Compass, an MCP server that enables AI agents to autonomously investigate and remediate runtime incidents.

The company monetizes primarily through quote-based annual enterprise subscriptions to its Aqua Enterprise platform, with consumption-based procurement available via AWS and GCP Marketplaces. Its go-to-market combines product-led growth from open-source adoption with direct enterprise field sales, and it counts more than 500 large enterprise customers, including 41% of the Fortune 100 and 10 of the top 20 global banks, across financial services, federal government, technology, automotive, and consulting verticals. Notable named customers include Audi, JP Morgan Chase, Microsoft, Adobe, PayPal, Nasdaq, EY, NCR, and GitLab. Aqua has raised roughly $325 million in disclosed venture funding from Insight Partners, Lightspeed Venture Partners, ION Crossover Partners, TLV Partners, StepStone Group, Evolution Equity Partners, M12 (Microsoft's venture fund), Acrew Capital, Greenspring Associates, Phoenix Financial, and Capital One Ventures, with angel participation from Shlomo Kramer (co-founder of Check Point, Imperva, and Cato Networks). Cumulative capital has been deployed against acquisitions of CloudSploit (2019), tfsec (2021), and Argon Security (December 2021), and against compliance milestones including FedRAMP High Authorization achieved in January 2025 and AWS Government Competency in 2025. Recent strategic moves include a July 2024 workforce reduction of approximately 10%, a February 2026 leadership transition under new CEO Mike Dube with a strategic refocus on runtime exposure management, and disclosure of a March 2026 supply chain compromise of its Trivy scanner that prompted a CISA Known Exploited Vulnerabilities listing.

Short descriptiontext

Aqua Security sells a unified CNAPP platform for cloud-native and AI workloads, combining eBPF-based runtime protection with the Trivy open-source scanner to secure containers, Kubernetes, serverless, and VMs for 500+ large enterprises including 41% of the Fortune 100.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
251–500
akta.pro rankint
HeadquartersRamat Gan, Israel
HQ citystring
Ramat Gan
HQ countrystring
Israel
HQ regionstring
Middle East
Markets served

Serves global market

Offices4 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
cloud native security, container security, vulnerability management, runtime threat detection, kubernetes security
Industry2 codes
1CNAPP Platforms (Unified CNAPP)
CodeHDADADAAPrimaryYes
2Cloud-Native Application Protection Platforms (CNAPP)
CodeHDABAHAHPrimaryNo
NAICS code3 codes
  • Computer Systems Design and Related Services5415
  • Computer Systems Design and Related Services54151
  • Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services5182
SIC code2 codes
  • Services-Computer Programming Services7371
  • Services-Computer Integrated Systems Design7373
Product category
Cloud Native Application Protection Platform (CNAPP)
GTM motion3 records

Each record includes

Type, Description, Source

Revenue model1 record
1Enterprise CNAPP Platform Subscription
TypeSubscription Recurring
Description

Full-featured Aqua Cloud Native Application Protection Platform available via subscription for enterprise deployments, with consumption options through AWS Marketplace. Protects containers, Kubernetes, serverless, VMs, and AI workloads across the application lifecycle.

aquasec.com
Marketing channels7 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels4 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Pricing details1 tier
1Enterprise Platform - Full CNAPP capabilities
ModelSubscriptionBilling cadenceAnnual
Notes

Enterprise pricing requires consultation; full platform includes container security, CWPP, CSPM, vulnerability management, and runtime protection

aquasec.com
GTM typeB2B
B2B
Offering typeSoftware
Software
Brand1 of 7 records shown
1Trivy
Description

Open-source vulnerability scanner for container images and applications with over 27,000 GitHub stars and 100 million annual downloads.

aquasec.com
+6 more records
Core offering1 text field

Aqua Security provides a Cloud Native Application Protection Platform (CNAPP) that combines agent-based runtime enforcement with agentless posture and vulnerability scanning to protect containers, Kubernetes, serverless functions, and VMs across the application lifecycle. The platform bundles open-source security tools (Trivy for vulnerability scanning, Tracee for runtime detection via eBPF, kube-bench for CIS benchmarking) with commercial capabilities including Dynamic Threat Analysis (sandbox-based zero-day detection), Drift Prevention, software supply chain security, AI workload protection, and Aqua Compass MCP server for autonomous incident response, delivered to enterprises as an annual subscription or via AWS/GCP marketplaces.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 3 values shown
  • 90% reduction in vulnerability research and detection time
+2 more records
Product overview1 text field

Aqua Security offers a unified Cloud Native Application Protection Platform (CNAPP) designed to secure the entire application lifecycle from code development through runtime production. The platform combines open-source tools (Aqua Trivy for vulnerability scanning, Tracee for runtime threat detection via eBPF, and Kube-bench for Kubernetes CIS compliance) with commercial modules including CSPM for cloud posture management, KSPM for Kubernetes-specific security, CWPP for workload protection, Software Supply Chain Security, DevSecOps pipeline automation, Container Security, Serverless Security, VM Security, Aqua Dynamic Threat Analysis for sandbox-based analysis, Aqua Secure AI for AI application protection, and Aqua Compass as an MCP server for autonomous incident investigation. The open-source components serve as entry points while the commercial Aqua Enterprise platform provides enterprise-grade centralized management, policy enforcement, and advanced threat protection across hybrid and multi-cloud environments.

Product and service7 records
1Aqua Cloud Native Security Platform (CNAPP)
CategoryCloud Native Application Protection Platform (CNAPP)
Description

A unified Cloud Native Application Protection Platform (CNAPP) that secures containers, Kubernetes, serverless functions, and VMs across the application lifecycle, combining agent-based runtime protection, agentless posture management, vulnerability management, and software supply chain security for enterprise cloud-native deployments.

2Aqua Trivy
CategoryVulnerability Scanning
Description

Standalone comprehensive vulnerability scanner for containers, Kubernetes, filesystems, IaC templates, and cloud resources, available as a free open-source tool and as a premium subscription for enterprise-grade consistency across the SDLC.

3Aqua Tracee
CategoryRuntime Threat Detection
Description

Open-source runtime threat detection tool for Linux and Kubernetes that uses extended Berkeley Packet Filter (eBPF) technology to observe system activity from the Linux kernel, collecting security events and identifying suspicious behaviors using behavioral indicators.

4Aqua Kube-bench
CategoryKubernetes Compliance
Description

Open-source Kubernetes compliance tool that checks whether Kubernetes deployments adhere to CIS Kubernetes Benchmarks, used by DevSecOps and platform security teams to validate cluster configurations.

5Aqua Compass
CategoryAI-driven Security Operations
Description

Model Context Protocol (MCP) server that enables AI agents to autonomously investigate, contain, and remediate runtime security incidents in containerized environments, allowing security teams to move from alert to action in seconds by leveraging enterprise knowledge bases.

6Aqua Secure AI
CategoryAI Workload Protection
Description

Integrated product providing full-lifecycle protection for AI applications in cloud-native environments, defending genAI workloads against prompt injection, data leakage, model tampering, and OWASP LLM Top 10 threats with real-time visibility and policy enforcement.

7Aqua Container Security Risk Assessment
CategoryRuntime Risk Assessment
Description

Standalone runtime-driven container security risk assessment tool that uses anomaly detection to identify the small subset of vulnerabilities actually exploitable in production environments, distinct from broad theoretical vulnerability scanning.

Scale indicator5 records

Each record includes

Type, Value, Description, Source

Partnership7 partners
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2025-08-05
Description

Strategic partnership to secure AI in the enterprise combining Aqua's runtime security with Akamai's Firewall for AI. Protects genAI workloads by preventing prompt injection, data leakage, model tampering with real-time visibility and policy enforcement.

Strategic tierCoreTypeTechnology or Integration
Description

Aqua Security provides native security across Red Hat OpenShift container platform with full lifecycle security controls including image scanning, secrets management, and runtime security at scale.

Strategic tierCoreTypeTechnology or Integration
Description

Native security across VMware Tanzu Application Service and Kubernetes Grid with comprehensive cloud native security platform protecting software supply chain, detecting risks, and stopping runtime attacks.

4AWS
Strategic tierCoreTypeTechnology or Integration
Description

Advanced APN member and Container Competency technology partner providing highly-integrated security controls for AWS services including ECS, EKS, Fargate, Lambda, and ECR.

aquasec.com
Strategic tierCoreTypeTechnology or Integration
Description

Protection for cloud native workloads on Google Kubernetes Engine (GKE) from development to production, deployable as Kubernetes App from GCP Marketplace.

Strategic tierCoreTypeTechnology or Integration
Description

Complete security for Azure Container Workloads including AKS, Azure Container Instances, and Azure Functions with full lifecycle protection.

Strategic tierCoreTypeTechnology or Integration
Description

Protection for containerized workloads on IBM LinuxONE and IBM Z mainframes with leading container and Kubernetes security controls from development to production.

Recent move7 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight6 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

Wiz is the leading direct CNAPP competitor, offering an agentless cloud security platform covering CSPM, CWPP, CIEM, and container security. It directly contests Aqua in enterprise evaluations, particularly for posture management and multi-cloud visibility.

TypeBroad incumbent
Description

Prisma Cloud is Palo Alto Networks' CNAPP offering, combining CSPM, CWPP, IaC scanning, and CIEM. As a broad incumbent with a large installed network-security base, it competes with Aqua across enterprise accounts and bundles CNAPP into broader platform deals.

TypeBroad incumbent
Description

CrowdStrike expanded from endpoint into cloud security via Falcon Cloud Security, offering agent-based runtime and posture management. Its single-agent architecture and massive enterprise footprint make it a direct competitor in modern CNAPP deals, particularly where buyers favor consolidation.

TypeDirect peer
Description

Lacework is a CNAPP specialist focused on behavioral anomaly detection for cloud workloads. Following strategic changes in 2023-2024, it competes more narrowly with Aqua in cloud workload protection and behavioral runtime analytics for AWS-centric customers.

TypeDirect peer
Description

Sysdig is a direct competitor in container and Kubernetes security, with a Falco-based open-source runtime detection engine and a CNAPP platform. It directly overlaps Aqua in container runtime protection and is commonly seen alongside Aqua on enterprise shortlists.

TypeDirect peer
Description

Orca offers an agentless CNAPP platform emphasizing side-scanning for cloud workloads. Aqua has a documented technology partnership with Orca, but Orca is also a competitor for CNAPP deals prioritizing agentless posture and vulnerability coverage.

TypeEmerging player
Description

Snyk is a developer security platform with container and IaC scanning that overlaps Aqua's code-to-cloud capabilities. While Snyk's core is SAST/SCA, its container and infrastructure-as-code modules increasingly compete with Aqua in shift-left segments.

TypeBroad incumbent
Description

Tenable is a vulnerability-management incumbent that expanded into cloud security (Tenable Cloud Security, formerly Accurics). It competes with Aqua in vulnerability prioritization and CSPM, and is commonly evaluated in enterprise VM consolidation deals.

TypeBroad incumbent
Description

Defender for Cloud is Microsoft's hyperscaler-native CSPM/CWPP offering, deeply integrated with Azure and increasingly extending to AWS/GCP. It is the default CNAPP option for Microsoft-heavy enterprises and a constant competitor in joint Microsoft-Aqua deals.

10Checkov (Bridgecrew)
TypeEmerging player
Description

Bridgecrew (now part of Palo Alto's Prisma Cloud) created Checkov, an open-source IaC scanner that overlaps Aqua Trivy's IaC and tfsec (acquired by Aqua) capabilities. It represents the IaC scanning competitive lane within CNAPP.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat6 records

Each record includes

Type, Details

Key risks6 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers13 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment4 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
Yes

Docs URL, Description

Integration51 records

Each record includes

Title, Type, Description, Source

AI capability10 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature6 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles7 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

Subsidiaries2 records

Each record includes

Name, Acquired on, Relationship type, Type, Business focus

Compliance8 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds8 records

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors12 records

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A3 records

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Aqua Security

Cloud Native Application Protection Platform (CNAPP)aquasec.com

Aqua Security sells a unified CNAPP platform for cloud-native and AI workloads, combining eBPF-based runtime protection with the Trivy open-source scanner to secure containers, Kubernetes, serverless, and VMs for 500+ large enterprises including 41% of the Fortune 100.

What Aqua Security does

Aqua Security is a private, venture-backed cybersecurity company founded in 2015 and headquartered in Ramat Gan, Israel, with US operations in Burlington, Massachusetts and additional R&D centers in Hyderabad and Singapore. It sells a unified Cloud Native Application Protection Platform (CNAPP) that combines agent-based runtime protection with agentless posture management to secure containers, Kubernetes, serverless functions, virtual machines, and increasingly AI workloads across AWS, Azure, Google Cloud, IBM Cloud, and on-premises environments. The platform is built around a proprietary runtime enforcement engine (patented, eBPF-based via Tracee, covering 330+ Linux syscalls) and is anchored by the Trivy open-source vulnerability scanner, which has accumulated more than 100 million annual downloads and over 27,000 GitHub stars, plus related projects Tracee, kube-bench, and kube-hunter. Commercial modules include Cloud Security Posture Management (CSPM), Kubernetes Security Posture Management (KSPM), Cloud Workload Protection Platform (CWPP), Software Supply Chain Security, Dynamic Threat Analysis, Aqua Secure AI for LLM/GenAI protection, and Aqua Compass, an MCP server that enables AI agents to autonomously investigate and remediate runtime incidents.

The company monetizes primarily through quote-based annual enterprise subscriptions to its Aqua Enterprise platform, with consumption-based procurement available via AWS and GCP Marketplaces. Its go-to-market combines product-led growth from open-source adoption with direct enterprise field sales, and it counts more than 500 large enterprise customers, including 41% of the Fortune 100 and 10 of the top 20 global banks, across financial services, federal government, technology, automotive, and consulting verticals. Notable named customers include Audi, JP Morgan Chase, Microsoft, Adobe, PayPal, Nasdaq, EY, NCR, and GitLab. Aqua has raised roughly $325 million in disclosed venture funding from Insight Partners, Lightspeed Venture Partners, ION Crossover Partners, TLV Partners, StepStone Group, Evolution Equity Partners, M12 (Microsoft's venture fund), Acrew Capital, Greenspring Associates, Phoenix Financial, and Capital One Ventures, with angel participation from Shlomo Kramer (co-founder of Check Point, Imperva, and Cato Networks). Cumulative capital has been deployed against acquisitions of CloudSploit (2019), tfsec (2021), and Argon Security (December 2021), and against compliance milestones including FedRAMP High Authorization achieved in January 2025 and AWS Government Competency in 2025. Recent strategic moves include a July 2024 workforce reduction of approximately 10%, a February 2026 leadership transition under new CEO Mike Dube with a strategic refocus on runtime exposure management, and disclosure of a March 2026 supply chain compromise of its Trivy scanner that prompted a CISA Known Exploited Vulnerabilities listing.

Aqua Security firmographics

Firmographics
Name
Aqua Security
Legal name
Aqua Security Software Ltd.
Website
https://aquasec.com
Company type
Private
Founded year
2015
Operating status
Operating
Headcount range
251–500 employees
Short description
Aqua Security sells a unified CNAPP platform for cloud-native and AI workloads, combining eBPF-based runtime protection with the Trivy open-source scanner to secure containers, Kubernetes, serverless, and VMs for 500+ large enterprises including 41% of the Fortune 100.
Ownership category
akta.pro rank

Aqua Security industry classification

Industry
Product category
Cloud Native Application Protection Platform (CNAPP)
NAICS
Computer Systems Design and Related Services (5415), Computer Systems Design and Related Services (54151), Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (5182)
SIC
Services-Computer Programming Services (7371), Services-Computer Integrated Systems Design (7373)
akta.pro primary industry
CNAPP Platforms (Unified CNAPP) (HDADADAA)
akta.pro secondary industry
Cloud-Native Application Protection Platforms (CNAPP) (HDABAHAH)

Keywords

  • Cloud native security
  • Container security
  • Vulnerability management
  • Runtime threat detection
  • Kubernetes security

Where Aqua Security is headquartered

Location

Headquarters

HQ city
Ramat Gan
HQ country
Israel
HQ region
Middle East

Offices4 records

Markets served

Aqua Security business model

Business model
GTM type
B2B
Offering type
Software
Cost components
Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure

Revenue model

  1. Enterprise CNAPP Platform Subscription: Full-featured Aqua Cloud Native Application Protection Platform available via subscription for enterprise deployments, with consumption options through AWS Marketplace. Protects containers, Kubernetes, serverless, VMs, and AI workloads across the application lifecycle.

Pricing tiers

ModelBillingPrice
SubscriptionAnnualEnterprise Platform - Full CNAPP capabilities

Go-to-market motion3 records

Distribution channels4 records

Marketing channels7 records

Aqua Security product offering

Product offering

Core offering

Aqua Security provides a Cloud Native Application Protection Platform (CNAPP) that combines agent-based runtime enforcement with agentless posture and vulnerability scanning to protect containers, Kubernetes, serverless functions, and VMs across the application lifecycle. The platform bundles open-source security tools (Trivy for vulnerability scanning, Tracee for runtime detection via eBPF, kube-bench for CIS benchmarking) with commercial capabilities including Dynamic Threat Analysis (sandbox-based zero-day detection), Drift Prevention, software supply chain security, AI workload protection, and Aqua Compass MCP server for autonomous incident response, delivered to enterprises as an annual subscription or via AWS/GCP marketplaces.

Product overview

Aqua Security offers a unified Cloud Native Application Protection Platform (CNAPP) designed to secure the entire application lifecycle from code development through runtime production. The platform combines open-source tools (Aqua Trivy for vulnerability scanning, Tracee for runtime threat detection via eBPF, and Kube-bench for Kubernetes CIS compliance) with commercial modules including CSPM for cloud posture management, KSPM for Kubernetes-specific security, CWPP for workload protection, Software Supply Chain Security, DevSecOps pipeline automation, Container Security, Serverless Security, VM Security, Aqua Dynamic Threat Analysis for sandbox-based analysis, Aqua Secure AI for AI application protection, and Aqua Compass as an MCP server for autonomous incident investigation. The open-source components serve as entry points while the commercial Aqua Enterprise platform provides enterprise-grade centralized management, policy enforcement, and advanced threat protection across hybrid and multi-cloud environments.

Differentiator

Problem solved

Functional benefit

Brands

  • Trivy: Open-source vulnerability scanner for container images and applications with over 27,000 GitHub stars and 100 million annual downloads.
  • Tracee
  • Kube-bench
  • Kube-hunter
  • Aqua Trivy
  • Aqua Secure AI
  • Aqua Compass

Products and services

  • Aqua Cloud Native Security Platform (CNAPP) A unified Cloud Native Application Protection Platform (CNAPP) that secures containers, Kubernetes, serverless functions, and VMs across the application lifecycle, combining agent-based runtime protection, agentless posture management, vulnerability management, and software supply chain security for enterprise cloud-native deployments.
  • Aqua Trivy Standalone comprehensive vulnerability scanner for containers, Kubernetes, filesystems, IaC templates, and cloud resources, available as a free open-source tool and as a premium subscription for enterprise-grade consistency across the SDLC.
  • Aqua Tracee Open-source runtime threat detection tool for Linux and Kubernetes that uses extended Berkeley Packet Filter (eBPF) technology to observe system activity from the Linux kernel, collecting security events and identifying suspicious behaviors using behavioral indicators.
  • Aqua Kube-bench Open-source Kubernetes compliance tool that checks whether Kubernetes deployments adhere to CIS Kubernetes Benchmarks, used by DevSecOps and platform security teams to validate cluster configurations.
  • Aqua Compass Model Context Protocol (MCP) server that enables AI agents to autonomously investigate, contain, and remediate runtime security incidents in containerized environments, allowing security teams to move from alert to action in seconds by leveraging enterprise knowledge bases.
  • Aqua Secure AI Integrated product providing full-lifecycle protection for AI applications in cloud-native environments, defending genAI workloads against prompt injection, data leakage, model tampering, and OWASP LLM Top 10 threats with real-time visibility and policy enforcement.
  • Aqua Container Security Risk Assessment Standalone runtime-driven container security risk assessment tool that uses anomaly detection to identify the small subset of vulnerabilities actually exploitable in production environments, distinct from broad theoretical vulnerability scanning.

Quantifiable outcome

  • 90% reduction in vulnerability research and detection time
  • +2 more outcomes

Companies that use Aqua Security

Customer profile

Named customers13 records

Segments4 records

Ideal customer profiles3 records

Aqua Security technology and API

Technology

Technology focussed Yes

API detail

Has API
Yes
API docs
API detail

Core technology

AI maturity

App detail

Integration51 records

AI capability10 records

Feature6 records

Aqua Security partnerships and signals

Strategic signal

Partnerships

Seven partnerships are on record, tiered core.

  • AkamaicoreStrategic or Co-development Partner · 5 August 2025Strategic partnership to secure AI in the enterprise combining Aqua's runtime security with Akamai's Firewall for AI. Protects genAI workloads by preventing prompt injection, data leakage, model tampering with real-time visibility and policy enforcement.
  • Red HatcoreTechnology or IntegrationAqua Security provides native security across Red Hat OpenShift container platform with full lifecycle security controls including image scanning, secrets management, and runtime security at scale.
  • VMware TanzucoreTechnology or IntegrationNative security across VMware Tanzu Application Service and Kubernetes Grid with comprehensive cloud native security platform protecting software supply chain, detecting risks, and stopping runtime attacks.
  • AWScoreTechnology or IntegrationAdvanced APN member and Container Competency technology partner providing highly-integrated security controls for AWS services including ECS, EKS, Fargate, Lambda, and ECR.
  • Google Cloud PlatformcoreTechnology or IntegrationProtection for cloud native workloads on Google Kubernetes Engine (GKE) from development to production, deployable as Kubernetes App from GCP Marketplace.
  • Microsoft AzurecoreTechnology or IntegrationComplete security for Azure Container Workloads including AKS, Azure Container Instances, and Azure Functions with full lifecycle protection.
  • IBMcoreTechnology or IntegrationProtection for containerized workloads on IBM LinuxONE and IBM Z mainframes with leading container and Kubernetes security controls from development to production.

Scale indicators5 records

Recent moves7 records

Expansion highlights6 records

Aqua Security competitors and assessment

Company assessment

Direct peers

  • Wiz: Wiz is the leading direct CNAPP competitor, offering an agentless cloud security platform covering CSPM, CWPP, CIEM, and container security. It directly contests Aqua in enterprise evaluations, particularly for posture management and multi-cloud visibility.
  • Lacework: Lacework is a CNAPP specialist focused on behavioral anomaly detection for cloud workloads. Following strategic changes in 2023-2024, it competes more narrowly with Aqua in cloud workload protection and behavioral runtime analytics for AWS-centric customers.
  • Sysdig: Sysdig is a direct competitor in container and Kubernetes security, with a Falco-based open-source runtime detection engine and a CNAPP platform. It directly overlaps Aqua in container runtime protection and is commonly seen alongside Aqua on enterprise shortlists.
  • Orca Security: Orca offers an agentless CNAPP platform emphasizing side-scanning for cloud workloads. Aqua has a documented technology partnership with Orca, but Orca is also a competitor for CNAPP deals prioritizing agentless posture and vulnerability coverage.

Broad incumbents

  • Palo Alto Networks (Prisma Cloud): Prisma Cloud is Palo Alto Networks' CNAPP offering, combining CSPM, CWPP, IaC scanning, and CIEM. As a broad incumbent with a large installed network-security base, it competes with Aqua across enterprise accounts and bundles CNAPP into broader platform deals.
  • CrowdStrike: CrowdStrike expanded from endpoint into cloud security via Falcon Cloud Security, offering agent-based runtime and posture management. Its single-agent architecture and massive enterprise footprint make it a direct competitor in modern CNAPP deals, particularly where buyers favor consolidation.
  • Tenable: Tenable is a vulnerability-management incumbent that expanded into cloud security (Tenable Cloud Security, formerly Accurics). It competes with Aqua in vulnerability prioritization and CSPM, and is commonly evaluated in enterprise VM consolidation deals.
  • Microsoft Defender for Cloud: Defender for Cloud is Microsoft's hyperscaler-native CSPM/CWPP offering, deeply integrated with Azure and increasingly extending to AWS/GCP. It is the default CNAPP option for Microsoft-heavy enterprises and a constant competitor in joint Microsoft-Aqua deals.

Emerging players

  • Snyk: Snyk is a developer security platform with container and IaC scanning that overlaps Aqua's code-to-cloud capabilities. While Snyk's core is SAST/SCA, its container and infrastructure-as-code modules increasingly compete with Aqua in shift-left segments.
  • Checkov (Bridgecrew): Bridgecrew (now part of Palo Alto's Prisma Cloud) created Checkov, an open-source IaC scanner that overlaps Aqua Trivy's IaC and tfsec (acquired by Aqua) capabilities. It represents the IaC scanning competitive lane within CNAPP.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat6 records

Key risks6 records

Key highlights7 records

Customer concentration

Aqua Security social profiles

Digital presence

Aqua Security compliance and trust

Trust signal

Compliance8 records

Aqua Security financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Aqua Security leadership team

Management profile

Number of profiles

Profiles7 records

Aqua Security subsidiaries and ownership

Company hierarchy

Subsidiaries2 records

Aqua Security funding detail

Funding detail

Funding overview

Funding rounds8 records

Investors12 records

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Aqua Security M&A and investment

M&A and investment

M&A3 records

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Aqua Security

What does Aqua Security do?

Aqua Security provides a Cloud Native Application Protection Platform (CNAPP) that combines agent-based runtime enforcement with agentless posture and vulnerability scanning to protect containers, Kubernetes, serverless functions, and VMs across the application lifecycle. The platform bundles open-source security tools (Trivy for vulnerability scanning, Tracee for runtime detection via eBPF, kube-bench for CIS benchmarking) with commercial capabilities including Dynamic Threat Analysis (sandbox-based zero-day detection), Drift Prevention, software supply chain security, AI workload protection, and Aqua Compass MCP server for autonomous incident response, delivered to enterprises as an annual subscription or via AWS/GCP marketplaces.

Is Aqua Security a public or private company?

Aqua Security is a private company. It is classified as venture growth investor backed and is currently operating.

When was Aqua Security founded?

Aqua Security was founded in 2015. It employs 251 to 500 people.

Where is Aqua Security based?

Aqua Security is headquartered in Ramat Gan, Israel, in the Middle East region.

How does Aqua Security make money?

One revenue line is on record: enterprise CNAPP Platform Subscription.

Who are Aqua Security's main competitors?

Direct peers on record are Wiz, Lacework, Sysdig and Orca Security. Broad incumbents are Palo Alto Networks (Prisma Cloud), CrowdStrike, Tenable and Microsoft Defender for Cloud. Emerging players are Snyk and Checkov (Bridgecrew).

Does Aqua Security have an API?

Yes. Aqua Security offers a Terraform Provider for declarative configuration of the Aqua Enterprise platform. Additionally, Aqua Compass serves as an MCP (Model Context Protocol) server enabling AI agents to investigate and contain runtime security incidents in containerized environments. Developer documentation is at docs.aquasec.com.

What industry is Aqua Security in?

Aqua Security's product category is Cloud Native Application Protection Platform (CNAPP). Its primary akta.pro industry code is HDADADAA, CNAPP Platforms (Unified CNAPP), with a secondary code of HDABAHAH, Cloud-Native Application Protection Platforms (CNAPP). Its NAICS code is 5415 and its SIC code is 7371.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
AiThorityRapidFort and Aqua Security Partner to Enhance Aqua Trivy Scanner with RapidFort Curated Images, Advisories and Remediation DataRapidFort and Aqua Security announced a partnership to integrate RapidFort security advisories into Aqua Trivy, enabling accurate reporting of package status in RapidFort Curated Images. The integration allows Trivy to recognize fixes from other distributions, helping teams start with near-zero CVE images and reduce false positives.Cyber Security NewsTop 10 Best Serverless Security Solutions in 2026Ten serverless security solutions are ranked, with Palo Alto (Prisma Cloud) and Aqua leading, and Snyk owning the code layer. The article notes that standalone serverless security has largely folded into CNAPP, advising buyers to integrate it into existing platforms unless specific app-layer needs exist.iTWireFrom posture to protection: why runtime detection is becoming the next cloud security frontierThe cloud-native application protection platform (CNAPP) market is shifting focus from static posture management to real-time runtime detection, driven by a 30.8% revenue increase to $7.37 billion in 2025. Key vendors including Wiz, Aqua Security, and Falco are integrating eBPF technology to monitor live system behaviors and detect active threats as they unfold. This industry consolidation aims to provide unified platforms that combine configuration context with immediate threat visibility.SecurityWeekTrivy, Not LiteLLM Behind the 2,500 Org CompromiseThe article discusses a supply chain attack that involved over 2,500 organizations, but reports indicate that most of the organizations were actually compromised through Aqua Security's Trivy scanner rather than the LiteLLM software. The attack, attributed to the threat actor TeamPCP, showcased how malicious code could be executed when infected packages were downloaded, leading to extensive credential theft and manipulation of repositories. The cybersecurity analysis reveals a timeline of the attack, with significant data exposed across multiple CI/CD platforms and organizations, particularly affecting Germany, Brazil, and France.GBHackers on SecurityTop 10 Best Cloud Security Providers – 2026 ReviewThis article presents a comparative review of the top 10 cloud security providers for 2026, evaluating companies including SentinelOne, Trend Micro, Tenable, Prisma Cloud, Microsoft Defender, Symantec, Check Point, Cisco, McAfee, and Aqua Security based on their CNAPP capabilities such as CSPM, CWPP, and CIEM features. The review highlights Prisma Cloud as the most comprehensive full-lifecycle CNAPP platform, while noting Microsoft Defender for Cloud as a top choice for organizations heavily invested in Microsoft technologies. The article emphasizes the growing importance of unified cloud security platforms that address threats including misconfigurations, API vulnerabilities, and identity mismanagement in multi-cloud environments.SD TimesSecurity, Trust & Governance: Securing Software That Increasingly Writes Itself: SD Times 100The SD Times 100 2026 Security, Trust & Governance category highlights companies addressing AI-generated code risks, open-source dependencies, and AI governance. Honorees include Aqua Security, ArmorCode, AISLE, Checkmarx, and others, with new additions for secure coding education and AI model observability. The category emphasizes shared security and engineering responsibility and continuous scanning.Help Net SecurityPrompt injection still drives most agentic AI security failures in productionThe OWASP GenAI Security Project's State of Agentic AI Security and Governance report (v2.01) documents real-world security incidents, CVEs, and breach reports tied to agentic AI systems, marking a shift from the prior year's catalog of plausible threats. Prompt injection remains the dominant attack vector, mapped to six of OWASP's Top 10 categories for agentic applications, with coding agents driving most new attack data due to their dominant enterprise adoption. A March 2026 supply chain attack compromised LiteLLM—a language-model gateway used by CrewAI, DSPy, and Microsoft GraphRAG—on PyPI, delivering an autonomous attack bot named hackerbot-claw to approximately 47,000 downloads over three hours, exploiting a stolen publishing token from a compromised Aqua Security GitHub Actions setup.openPR.comMarket Trend Analysis: The Impact of Recent Innovations on the Container Security MarketThe container security market is projected to reach $6.37 billion by 2030, growing at a compound annual growth rate of 21.2%, driven by AI-powered security analytics, cloud container adoption, and zero trust security frameworks. In December 2023, Israel-based Mend.io acquired U.S.-based Atom Security to strengthen its container-level security offerings, while in April 2025, Aqua Security Software Ltd. launched the industry's first Container Security Risk Assessment tool featuring runtime anomaly detection.TipranksAqua Security Unveils AI-Powered Runtime Platform as Offensive AI Threats GrowAqua Security launched Aqua Compass, an AI-driven runtime security platform designed to automate defense against live cloud-native attacks using AI agents that can investigate, contain, and remediate incidents while keeping humans in control. The platform includes runtime risk dashboards that translate vulnerabilities and misconfigurations into monetary exposure metrics, targeting security, risk, and finance leaders seeking clearer ROI and governance reporting. The launch is part of Aqua's broader strategy to position itself at the intersection of AI and cloud workload security, addressing the growing threat of offensive AI in cloud environments.TipranksAqua Security Highlights AI-Driven Exploit Risks and Focus on Runtime Workload ProtectionAqua Security published a LinkedIn post promoting an educational session on AI-driven cybersecurity risks, scheduled for April 30, referencing Anthropic's Claude as an example of AI that can generate exploit paths against real systems. The session focuses on runtime workload protection and reachability assessment in production environments, positioning Aqua Security's thought leadership around emerging AI threat models. The post targets prospects and customers for lead generation, suggesting Aqua Security is seeking to differentiate itself in the crowded cybersecurity market through advanced AI security expertise.