About Orca Security

Orca Security is a vulnerability assessment platform that provides businesses with tools to identify potential threats across the system and remediate them accordingly. Professionals can use the built-in SideScanning technology to automatically perform holistic security assessments of all IT assets, including virtual machines, containers and cloud infrastructure resources.

Orca Security allows organizations to capture daily snapshots of the running environment and identify various types of risks, such as malware, misconfigurations, leaked passwords, sensitive data and more. Managers can receive automated alerts about potential vulnerabilities and filter them based on their activity status. Additionally, it lets users ensure compliance with various industry regu...


Read More

Supported Operating System(s):

18 Reviews of Orca Security

Average User Ratings

Overall

4.78 / 5 stars

Ease-of-use

5.0

Value for money

4.5

Customer support

5.0

Functionality

4.5

Ratings Snapshot

5 stars

(14)

14

4 stars

(4)

4

3 stars

(0)

0

2 stars

(0)

0

1 stars

(0)

0

Likelihood to Recommend

Not likely

Very likely

Showing 1 - 5 of 18 results

February 2021

Anonymous

Verified Reviewer

Company Size: 1,001-5,000 employees

Time Used: Less than 12 months

Review Source: Capterra


Ease-of-use

5.0

Value for money

5.0

Customer support

5.0

Functionality

5.0

February 2021

Orca - Scan from the side, 0 user impact

We switched to a custom Linux Kernel that agent based VMS could not support. Orca was the only solution that we found that could solve our use case.

Pros

Orca is an agentless approach to VMS. This means there is 0 user impact or performance degradation. Your Operations team does not have to manage agent roll out, it also does not need to manage upgrades/downtime. This saves you operating costs and allows your Ops team to focus on other security items. Orca is OS agnostic, it does not matter what your development/architecture team decides to pivot to. Orca supports Windows/Linux/Mac/Containerization. It also is Cloud agnostic, have subs in Azure or AWS? Orca can handle them all with a few clicks. The entire roll out took around 10 minutes.

Cons

There are features missing in Orca from a nice to have stand point. The product is fairly new and a lot of these enhancements are being worked on. The Orca team has been very responsive to enhancements thus far.

Reasons for Choosing Orca Security

DivvyCloud is agent based and did not support our Linux distro.

Reasons for Switching to Orca Security

Rapid7 could not be installed on our Linux Kernel.

August 2020

Aaron from Sisense

Company Size: 501-1,000 employees

Industry: Computer Software

Time Used: Less than 12 months

Review Source: Capterra


Ease-of-use

5.0

Value for money

5.0

Customer support

5.0

Functionality

5.0

August 2020

Know your entire cloud sprawl in minutes

Product Integration - It's as easy as they sell it. I had it up and running in multiple accounts in no time. Support - Wonderful support and leadership team that cares about their customers. Open API - Rich and open API that allows you to extend and build on top of the product.

Pros

The extensibility of the product, and how rich the API is. I can find out almost anything about my environment. Using Orca gives me insight into my entire cloud sprawl. I can get information about malware, open-ingress to EC2 instances, and open source vuln management. The only limit to its use is imagination.

Cons

Creating new alerts can be clunky. However, the Orca team is always improving and is currently working on a V2. Navigating the UI can be a bit of a challenge at times when looking for specific info. This is why I often opt for using the API over the UI.

Reasons for Choosing Orca Security

I ended up choosing Dome9 because it's feature-rich, but bells-and-whistles light. It provides to me the most salient alerts and alarms, while not making too much noise. A lot of competitors' products are very opinionated, which can force a security organization to shape their processes around the tool. With Orca it's the opposite, the tool is powerful, lightweight and malleable.

February 2021

Jon from FTI Consulting

Company Size: 501-1,000 employees

Industry: Information Technology and Services

Time Used: Less than 6 months

Review Source: Capterra


Ease-of-use

4.0

Value for money

4.0

Customer support

4.0

Functionality

4.0

February 2021

Orca is a great product

It was a great experience.

Pros

I liked the side scanning technology availab.e

Cons

The price was super high for a new to market tool.

Reasons for Choosing Orca Security

Ease of use

Reasons for Switching to Orca Security

Functionality

February 2021

Paul from ServiceTitan Inc.

Company Size: 1,001-5,000 employees

Industry: Computer Software

Time Used: Less than 12 months

Review Source: Capterra


Ease-of-use

5.0

Value for money

4.0

Customer support

5.0

Functionality

4.0

February 2021

Orca Security Review

The first step to increase the security posture of an environment is to understand it. Orca Security instantly gave me that visibility without the hurdles of an agent.

Pros

The ability to get quick visibility into the cloud assets without going through the technical hurdles of deploying an agent.

Cons

I think the UI could use a bit more improvement. I've been using this software for 6 months and not everything is intuitive. I still forget where things are exactly.

Reasons for Choosing Orca Security

Orca Security has a unique technology that is agentless. The ability to get that type of visibility was a key differentiator.

Reasons for Switching to Orca Security

Not having to deal with agents on a machine was critical due to the various technical hurdles to install it on every cloud resource.

August 2020

Abhinay from GE Healthcare

Company Size: 10,000+ employees

Industry: Hospital & Health Care

Time Used: Less than 6 months

Review Source: Capterra


Ease-of-use

5.0

Value for money

4.0

Customer support

5.0

Functionality

4.0

August 2020

Agent less solution is the future in security vulnerability and container security monitoring.

We were trying to solve container security challenges. Actively monitoring what is going on within container. Benefit of agent less solution is two fold, 1) Do not have to install agents on the host machine. 2) Effective in monitoring workloads running in managed containers. Orca security, ability of side-scanning technology examines block storage out of band via a software-as-a-service (SaaS) platform.

Pros

Agent less no installation required. Simple 3 step process to connect account and start monitoring. Extensive deep insight into installed packages within container. Clear categorization of alerts as Imminent compromises, Hazardous, Informational with color coding for clear visibility. Also builds digital asset inventory for tracking different types cloud based assets ex: S3 buckets, EC2 instances. Easy to connect multiple accounts across AWS, Azure, GCP. Under Vulnerability management some of the key features to highlight are Asset Discovery, Asset Tagging, Network Scanning, Patch Management,Vulnerability Assessment,Web Scanning, Risk Management and Policy Management. Couple of the key cloud security features to highlight are Endpoint Management,Threat Intelligence,Vulnerability Management, Intrusion Detection System, Behavioral Analytics, Encryption and Application Security. Ease of integration was one of the reason to consider Orca security solution.

Cons

Reporting and user interface are immature, but improving, not real time. This is near real time solution depends on frequency of scanning. VM specific details if consolidated as actionable insights will be very helpful to narrow our focus to relevant issues (ex: identified affected packages within a container is great, giving link to specific patches will be very helpful.

Reasons for Choosing Orca Security

Agent less deployment with similar functionality.