2026 Edition • Free • No scoring or rankings

The 2026 Cybersecurity
Tool Landscape Report

147 tools across 25 categories. Pricing, deployment, standards, and reported pros and considerations, side by side. As a downloadable spreadsheet (CSV).

No spam. Unsubscribe any time. Or scroll down and browse the listings free.

Inside the report

  • ✓ Downloadable spreadsheet (CSV) you can sort and filter
  • 147 tools listed alphabetically per category
  • ✓ Public pricing per tool (free tiers, per-seat, enterprise)
  • ✓ Reported pros and considerations from practitioner discussions
  • ✓ Deployment model, standards, and certifications

147

Tools listed

25

Categories covered

0

Scoring weights

0

Hidden placements

What's inside

1

Alphabetical category listings

Every tool in every category, in alphabetical order. No editorial scoring, no “Top 5”. Just the listings, side by side.

2

Aggregated public pricing

Free tiers, per-seat costs, and enterprise ranges pulled from official vendor pages and what practitioners report paying. Verify with the vendor before any purchase.

3

Reported pros and considerations

What real practitioners say on Reddit, Hacker News, Stack Overflow, and verified review sites. Not vendor marketing. We report; we don't verdict.

AI Agent Security

See all 9 tools →

Tools that secure AI agents and LLM applications: the guardrails, gateways and controls that sit between a model and the actions it can take. They intercept tool and MCP calls, file access and shell c

ToolBest fit forPricing model
HiddenLayerLarge enterprises and government buyers that want agent runtime enforcement, red teaming and model scanning from one platform with self-hosted and air-gapped options.Subscription (annual contract via AWS Marketplace; private offers)
HOL GuardOSSDevelopers and teams using AI coding agents who want local pre-execution controls on risky actions without sending data to a cloud service.Open source (Apache-2.0) with optional paid cloud subscription
LakeraEnterprises that want runtime guardrails, agent tool governance and red teaming from a vendor now inside a large security platform (Check Point).Contact sales (free account sign-up offered, tiers not published)
Lasso SecurityEnterprises deploying agents across platforms such as Bedrock, Vertex AI, Microsoft Copilot and Salesforce Agentforce that want one gateway-level policy and detection layer.Subscription (annual contract via AWS Marketplace; private offers)
Noma SecurityEnterprises that want one independent platform spanning agent posture, MCP and tool permissions, runtime detection and red teaming across SaaS, homegrown and endpoint agents.Contact sales
Pillar SecuritySecurity teams that want one inventory and policy layer across agents, MCP servers and skills, with the option to run it inside their own cloud account.Contact sales

Application Security

See all 4 tools →

Application security testing tools for finding and fixing vulnerabilities in code, dependencies, and containers. Compare SCA, SAST, and open-source application security solutions.

ToolBest fit forPricing model
AISafe LabsDevelopment teams wanting on-demand AI-driven code audits and web application pentests without a traditional engagement.Freemium
SnykDeveloper-first application security platform for finding and fixing vulnerabilities in code, dependencies, containers, and IaCPer-developer (monthly)
VulertSmall and mid-sized teams that want continuous open-source dependency and licence monitoring without granting a scanner access to their repositories.Per-tier subscription capped by number of applications and users, billed monthly or annually, with extra applications charged monthly. Add-on modules are priced per application per month, including licence compliance, SBOM, container and Docker SBOM export.
WebSlurpOSSWeb and API testers who want quick capture, edit and replay of a page's own requests without standing up an intercepting proxy.Free and open source

Automotive Cybersecurity

See all 5 tools →

Automotive cybersecurity companies protect connected and software-defined vehicles across their lifecycle. From ECUs, in-vehicle networks, and telematics to cloud backends, fleets, and EV charging. Th

ToolBest fit forPricing model
PCA Cyber SecurityPayment-device makers and operators wanting offensive, real-world security testing of terminals beyond baseline PCI PTS certificationProject-based engagements
Upstream SecurityOEMs and fleet operators that want cloud-scale detection, response, and a managed Vehicle SOC for connected fleetsSubscription (custom)
Vector InformatikAutomotive OEMs and Tier 1 suppliers needing production-grade ECU security software and ISO 21434 verification tooling inside an existing AUTOSAR toolchain.Quote-based licensing for embedded software and tools, with separate fees for consulting and training
VicOneOEMs and suppliers wanting a broad, lifecycle automotive security portfolio backed by an established cybersecurity parentSubscription (custom)
VxLabsOEM and Tier 1 teams wanting an integrated TARA, SBOM and compliance evidence workspace, or project-based automotive security engineering.Subscription for the ThreatZ platform; time and materials, fixed price or retainer for engineering services

Cloud Security & CNAPP

See all 0 tools →

Cloud-native application protection platforms for securing cloud workloads, containers, and infrastructure. Compare CNAPP, agentless cloud security, and cloud workload protection solutions.

ToolBest fit forPricing model

Cyber Resilience Act Compliance

See all 8 tools →

Companies that help manufacturers comply with the EU Cyber Resilience Act (Regulation 2024/2847), the mandatory cybersecurity rules for products with digital elements sold in the EU. From hands-on emb

ToolBest fit forPricing model
pi3gSME manufacturers of embedded-Linux and IoT products that need hands-on engineering help to reach CRA compliance, not just an auditConsulting + engineering engagements
Bureau VeritasManufacturers wanting one TIC partner spanning hands-on pen testing, RED/IEC 62443 testing, and CRA conformity advisoryConsulting + testing + certification
ConformOpsSmall software teams that want a first, evidence-led CRA readiness pass on a repository at a fixed published price.One-off assessment plus subscription, with free preview tier
CVD PortalEU manufacturers, importers and distributors that need an Article 13 disclosure contact and Article 14 reporting workflow in place before the 11 September 2026 deadline.Freemium subscription with a permanent free tier and three paid tiers
DEKRAManufacturers planning ahead for CRA conformity assessment who want an EUCC-accredited evaluator and future notified bodyTraining + evaluation + certification
ONEKEYDevice manufacturers wanting automated SBOM, vulnerability management, and CRA evidence generation across the product lifecyclePlatform subscription + advisory

Data Security & Governance

See all 2 tools →

Data security and governance platforms for discovering, classifying, and protecting sensitive data across your organization. Compare enterprise DLP, cloud data security, and data discovery solutions.

ToolBest fit forPricing model
Lepide Data Security PlatformOrganisations wanting unstructured-data security, access governance and auditing across AD, Microsoft 365 and file servers, as a per-user alternative to Varonis or NetwrixQuote-based (per user, per year, by platform)
VaronisData security and governance platform for access visibility, insider threat detection, and sensitive data protectionSubscription (per-user or per-TB)

Email Security

See all 3 tools →

Email security platforms for protecting against phishing, BEC, malware, and other email-borne threats. Compare cloud email security, AI-powered, enterprise gateway, and email encryption solutions.

ToolBest fit forPricing model
MailinblackFrench and European organisations wanting email filtering, awareness training and password management from a single locally registered vendor.Subscription, quote on request
ProofpointEnterprise email security platform for advanced threat protection, compliance, and data loss preventionPer-user subscription
veriBIMIBrands that want a managed DMARC audit and VMC or CMC application handled for a fixed fee rather than dealing with the certificate authority directly.One-off professional service fees plus certificate authority fee

Endpoint & EDR

See all 2 tools →

Endpoint detection and response platforms for protecting devices against malware, ransomware, and advanced threats. Compare enterprise EDR, XDR, and SMB endpoint solutions.

ToolBest fit forPricing model
Acronis Cyber ProtectTeams and MSPs that want backup, disaster recovery, and endpoint security (anti-ransomware, EDR) in one platformSubscription (per workload or per GB; MSP consumption-based)
CrowdStrikeCloud-native endpoint protection platform with AI-powered threat detectionPer-device subscription

Firewall & NGFW

See all 1 tools →

Next-generation firewall platforms for network security, intrusion prevention, and application-layer protection. Compare enterprise NGFW, cloud firewalls, and SMB solutions.

ToolBest fit forPricing model
Palo Alto NetworksEnterprise next-generation firewall platform with advanced threat prevention, application visibility, and centralized managementAppliance purchase + annual subscription licenses per feature

Identity & Access Management

See all 9 tools →

Managing who can access what across cloud apps, internal tools, and infrastructure. Whether you need enterprise SSO with thousands of integrations, developer-friendly CIAM for your SaaS app, or open-s

ToolBest fit forPricing model
Auth0SaaS teams that need customer login with a great developer experiencePer monthly active user (MAU)
Cloudflare AccessTeams replacing a VPN with zero trust access to internal appsPer-user (free tier + paid tiers)
JumpCloudSMBs and mid-market teams wanting IAM plus MDM without buying bothPer-user (billed annually)
KeycloakOSSTeams that need full control, auditability, and zero license costOpen Source + Enterprise Subscription
Microsoft Entra IDOrganizations already committed to Microsoft 365 and AzurePer-user (bundled with Microsoft licenses)
Okta Workforce IdentityEnterprises with large SaaS portfolios needing a proven, broadly-integrated IAM backbonePer-user tiers (billed annually)

Managed Security Service Providers

See all 7 tools →

Managed Security Service Providers and MDR firms compared on services, EDR-stack neutrality, transparency posture, and delivery model. From vendor-neutral cloud-native MDR to traditional 24/7 SOC outs

ToolBest fit forPricing model
UnderDefenseMid-market organisations that want a 24/7 outsourced SOC layered onto security tools they already own, often alongside SOC 2 or ISO 27001 readiness work.Per device or asset per month on an annual contract, plus project fees for penetration testing and compliance work
Arctic WolfOrganizations without in-house security expertise wanting fully managed vulnerability scanning and prioritized remediation guidancePer-asset managed service (annual contract)
Critical StartMid-market and enterprise teams that already own EDR/XDR and want managed response with strong noise reductionSubscription per integrated surface
eSentireFinancial services, legal, and insurance firms that want a mature MDR partner with deep vertical playbooksSubscription tiers (Atlas Essentials / Advanced / Complete)
ExpelTeams that already own a quality EDR/SIEM/cloud stack and want a transparent, vendor-neutral SOC layered on topSubscription per integrated surface
Red Canary (a Zscaler company)Microsoft-centric organisations wanting Defender / Sentinel telemetry analysed by a high-fidelity detection-engineering teamSubscription per managed surface

Network Detection & Response (NDR)

See all 7 tools →

Network detection and response (NDR) tools monitor network traffic to detect, investigate, and respond to threats that bypass endpoint and perimeter controls. This directory lists NDR tools and vendor

ToolBest fit forPricing model
Arista NDROrganizations wanting agentless, AI-assisted network detectionSubscription
CorelightOSSTeams wanting open, Zeek-based network evidence and forensicsOpen source + Enterprise subscription
DarktraceOrganizations wanting AI-driven detection of unknown threats across hybrid environmentsEnterprise
ExtraHopOrganizations needing deep network visibility and forensics across hybrid environmentsSaaS / Appliance
Fidelis NetworkGovernment and enterprise buyers wanting deep session inspection NDRAppliance + Subscription
Stamus NetworksOSSTeams wanting Suricata-based NDR with an open-source editionOpen source + Enterprise

Observability Pipelines

See all 7 tools →

General-purpose telemetry pipelines that route, filter and transform logs, metrics and traces before they reach a backend. These tools carry security data but are not sold specifically for security op

ToolBest fit forPricing model
Azure Data ExplorerMicrosoft-centric organizations wanting a scalable security data lake with powerful KQL analytics at lower cost than SIEMConsumption-based (compute + storage)
Datadog Observability PipelinesOrganizations already using Datadog that want managed pipeline capabilities with enterprise support and monitoringVolume-based (per GB processed)
FluentdOSSCloud-native teams wanting a lightweight, proven open-source data collector with a massive plugin ecosystemOpen source
MezmoTeams wanting combined log management and pipeline capabilities with a developer-friendly experienceIngest-based (per GB)
SawmillsTeams on Datadog, Splunk or similar that want to cut observability cost by filtering and optimising telemetry before ingestionUsage-based (ingest volume; annual commitment)
Splunk Data Stream ProcessorExisting Splunk customers wanting to optimize data flows and reduce ingest costs within the Splunk ecosystemBundled with Splunk licensing

PCI PTS Compliance Testing Companies

See all 6 tools →

Companies involved in PCI PTS compliance for payment devices, split into two distinct roles. PCI Recognized evaluation laboratories perform the formal PCI PTS POI and HSM evaluations (and related EMVC

ToolBest fit forPricing model
PCA Cyber SecurityPayment-device makers and operators wanting offensive, real-world security testing of terminals beyond baseline PCI PTS certificationProject-based engagements
Keysight (Riscure Device Security)Payment device, terminal and mobile payment vendors needing accredited EMVCo or PCI security evaluation of hardware and secure elementsProject-based engagements
SERMA Safety & SecurityManufacturers needing PCI PTS and payment-acceptance device evaluation from an accredited European labProject-based engagements
SGS BrightsightPayment terminal and HSM manufacturers needing formal PCI PTS, EMVCo or Common Criteria evaluationProject-based engagements
SRC Security Research & ConsultingManufacturers needing PCI PTS plus German DK/OSeC/JTEMS terminal evaluationProject-based engagements
UL SolutionsManufacturers needing PCI PTS and EMVCo evaluation from a large, globally accredited labProject-based engagements

Penetration Testing Firms

See all 8 tools →

Independent penetration testing firms compared on services, specialisms, delivery model, and standards coverage. From global FTSE 250 consultancies to boutique research-driven firms.

ToolBest fit forPricing model
A-LIGNCompanies running testing alongside a formal audit who want one accredited firm across bothProject-based testing + audit engagements
SBS CyberSecurityCommunity banks, credit unions and other regulated financial institutions that want testing, audit and governance from one firm, plus organizations preparing for a CMMC Level 1 or Level 2 assessmentProject-based testing and advisory engagements
Bishop FoxMid-to-large enterprises wanting continuous offensive testing rather than annual point-in-time pentestsProject + Cosmos subscription
IOActive, Inc.OEMs, semiconductor vendors, automotive, and critical-infrastructure operators that need silicon-to-cloud security expertiseProject-based engagements
Mandiant (part of Google Cloud)Enterprises needing top-tier incident response, nation-state threat intelligence, or board-defensible breach engagementProject-based engagements
NCC GroupRegulated enterprises and public-sector buyers wanting CREST-accredited testing, MDR, and software escrow under one global vendorProject + retainer + managed services

Privileged Access Management

See all 13 tools →

Controlling who can access privileged accounts, servers, databases, and cloud infrastructure. PAM is what you reach for when secrets management alone is not enough: when you need session recording, ju

ToolBest fit forPricing model
Delinea Secret ServerEnterprises focused on privileged access management and complianceAnnual license
SplitSecureHighest-sensitivity accounts, regulated industries, and MSPs needing zero vendor dependencyTiered (free / per-seat / enterprise)
BeyondTrust Password SafeEnterprises with mixed Unix/Linux/Windows estates needing unified privilege managementEnterprise (contact sales)
CyberArkEnterprise privileged access management and identity security platformPer-user subscription + modules
CyberArk ConjurOSSLarge enterprises with complex compliance and PAM requirementsEnterprise license
CyberArk Privilege CloudLarge enterprises and government agencies with complex legacy environments and compliance requirementsEnterprise (contact sales)

Product Threat Intelligence Providers

See all 5 tools →

Companies that provide threat intelligence focused on specific products and devices, rather than general enterprise or network threat intelligence. This covers vulnerability intelligence tailored to a

ToolBest fit forPricing model
PCA Cyber SecurityPayment-device makers and operators wanting offensive, real-world security testing of terminals beyond baseline PCI PTS certificationProject-based engagements
EclypsiumBanks needing firmware-level integrity assurance across a large estate of laptops, servers and network devicesEnterprise subscription
Finite StateManufacturers of connected devices across IoT, automotive, medical, and industrial sectors needing firmware-level vulnerability and exploit intelligence tied to compliance evidence.Not publicly disclosed
Upstream SecurityOEMs and fleet operators that want cloud-scale detection, response, and a managed Vehicle SOC for connected fleetsSubscription (custom)
VicOneOEMs and suppliers wanting a broad, lifecycle automotive security portfolio backed by an established cybersecurity parentSubscription (custom)

SASE & Zero Trust

See all 0 tools →

Secure access service edge and zero trust platforms for securing distributed workforces and cloud applications. Compare enterprise SASE, cloud-native, and SMB zero trust solutions.

ToolBest fit forPricing model

SBOM Analysis

See all 9 tools →

Tools and providers that build, validate or act on a software bill of materials. They differ most in what they start from: some read source code, manifests or an existing SBOM, while others reconstruc

ToolBest fit forPricing model
PCA Cyber SecurityPayment-device makers and operators wanting offensive, real-world security testing of terminals beyond baseline PCI PTS certificationProject-based engagements
Black DuckEnterprises needing the deepest open-source detection including undeclared components, M&A due diligence, and regulatory compliance for software supply chainEnterprise license (project-based)
Finite StateManufacturers of connected devices across IoT, automotive, medical, and industrial sectors needing firmware-level vulnerability and exploit intelligence tied to compliance evidence.Not publicly disclosed
NetRiseFinancial institutions and device makers needing a binary-derived component inventory where source code is not availableEnterprise subscription
ONEKEYDevice manufacturers wanting automated SBOM, vulnerability management, and CRA evidence generation across the product lifecyclePlatform subscription + advisory
TrivyOSSDevOps and platform engineering teams that need a fast, open-source vulnerability scanner for containers and Kubernetes environments with zero configuration overheadOpen source with commercial Aqua Platform

Secrets Management

See all 19 tools →

Managing API keys, database credentials, certificates, and machine identities across CI/CD pipelines, Kubernetes clusters, and cloud infrastructure. Whether you need enterprise-grade compliance, open-

ToolBest fit forPricing model
Bitwarden (Business)OSSSecurity-conscious organizations wanting an affordable, auditable, and self-hostable password managerPer-user
Delinea Secret ServerEnterprises focused on privileged access management and complianceAnnual license
HashiCorp VaultOSSTeams needing flexible, self-hosted secrets management with extensive plugin ecosystemOpen Source + Enterprise
Keeper (Business)Compliance-focused enterprises needing zero-knowledge security and dark web monitoringPer-user
SplitSecureHighest-sensitivity accounts, regulated industries, and MSPs needing zero vendor dependencyTiered (free / per-seat / enterprise)
1Password (Business)Teams wanting combined password management and developer secrets automationPer-user

Security Data Pipeline

See all 4 tools →

Platforms built specifically for security telemetry: collecting, filtering, normalising and routing security data before it reaches a SIEM or data lake. This category covers tools their own vendors po

ToolBest fit forPricing model
Realm.SecuritySecurity teams wanting a purpose-built security data fabric with centralized visibility and policy-based routing across their entire security stackCustom
CeTuSecurity teams seeking an AI-driven, no-code approach to managing and optimizing security data pipelines without dedicated data engineering resourcesCustom
CriblSecurity data pipeline platform for routing, reducing, and transforming observability dataVolume-based (daily throughput)
TenzirOSSSecurity teams wanting an open-source, security-native data pipeline with transparent code and no vendor lock-inOpen source with commercial support

SIEM & Security Analytics

See all 1 tools →

Security information and event management platforms for log analysis, threat detection, and incident response. Compare enterprise, cloud, and open-source SIEM solutions.

ToolBest fit forPricing model
SplunkEnterprise SIEM and security analytics platform for threat detection and incident responseWorkload-based or ingest-based

Tier 1 SOC Automation

See all 8 tools →

Platforms that automate tier 1 security operations work: alert triage, enrichment, investigation, and first-line escalation. These tools ingest alerts from SIEM, EDR, email, identity, and cloud source

ToolBest fit forPricing model
Legion SecuritySOC teams that want to automate their existing analyst workflows without building or maintaining API integrations..
Dropzone AISOC teams that want to offload tier-1 alert triage and investigation to an AI analyst working across their existing tool stack.Subscription, priced by investigation volume
IntezerEnterprise SOC teams and MSSPs that want forensic-depth automated alert investigation on top of existing detection stacks.Subscription priced by endpoint, Starter and Complete tiers, custom quote
Prophet SecuritySecurity teams that want autonomous alert investigation with visible reasoning layered onto their existing SIEM, EDR and identity stack..
Qevlar AISOC teams and MSSPs that want alert investigations automated on top of an existing detection stack, including EU-based organizations..
Radiant SecuritySOC teams that want automated triage and investigation layered over existing detection tools, with optional log management.Flat-rate subscription, custom quote

Tier 2 SOC Automation

See all 5 tools →

Platforms that automate tier 2 security operations work: the investigation that follows an escalation. These tools take an incident that triage has judged real, pull evidence across endpoint, identity

ToolBest fit forPricing model
Legion SecuritySOC teams that want to automate their existing analyst workflows without building or maintaining API integrations..
Andesite AIRegulated and public-sector SOCs needing investigation, hunting and response automation with FedRAMP High and air-gapped options.Contact sales (outcome-based, vendor-stated)
AtlasCyberCritical infrastructure and OT-adjacent operators, especially utilities and municipal government, that need detection and investigation to run on-premises or fully air-gapped.Enterprise, quote on request
Conifers.aiEnterprises and MSSPs wanting agentic multi-tier investigation with blast-radius scoping and reviewable remediation over an existing stack.Contact sales
ExaforceCloud and SaaS-heavy enterprises that want agent-driven investigation and hunting with automated containment behind approval gates.Contact sales

Vulnerability Management

See all 5 tools →

Vulnerability scanning and management platforms for identifying, prioritizing, and remediating security weaknesses. Compare enterprise, cloud, and open-source vulnerability management tools.

ToolBest fit forPricing model
GuardNestOrganisations using WorkNest Secure for penetration testing who want continuous scanning, live reporting, and retesting in the same platformSubscription
RoboShadowSmall and mid-sized organisations and MSPs running Microsoft-centric estates that want vulnerability scanning and automated third-party patching from a single console, with a usable free tier for evaluation.Freemium with a paid subscription tier priced per account plus per-agent overage, and a quoted enterprise tier
CVETodoSmall teams and MSPs that want CVE alerting tied to a live software inventory without an enterprise scannerFreemium; monthly or annual subscription
KUMOOSSSecurity researchers and pentesters who want fast, free domain reconnaissance from the command line.Open Source
TenableVulnerability management platform with Nessus scanning, cloud-native VM, and exposure managementPer-asset (annual subscription)

Get the full 2026 report

All 147tool listings, pricing, and deployment notes in one downloadable spreadsheet (CSV) you can sort and filter. We'll email you the download link.

You'll also get future editions as we add categories. No spam, unsubscribe any time.

Frequently asked questions

Yes. We don't charge for the report. The report lists organic listings alphabetically and we don't score or rank them; any featured listing on the site is a paid placement that is always clearly labelled. We give the email copy away because we want to send future updates, not because we need to charge for it. The full directory is also available free right here on the site.

We re-read each listing on a regular cadence and update pricing when a vendor changes a tier. If you sign up via email, you'll get refreshed editions whenever we ship one.

We add categories as the directory grows. Subscribe above to get notified when new ones ship.