Listing Thumbnail

    JupiterOne Cyber Asset Management Platform

     Info
    Sold by: JupiterOne 
    Deployed on AWS
    Vendor Insights
    JupiterOne provides cloud native cyber asset collection, monitoring, security and governance. Automate the continuous collection of cyber asset infrastructure and security configuration data to provide an always up to date, easy to query, system of record for your cyber asset universe.
    4.7

    Overview

    JupiterOne is a cyber asset analysis platform every modern security team needs to collect and transform asset data into actionable insights to secure their attack surface. JupiterOne makes security as simple as asking a question and getting the right answer back, to make context driven decisions. With JupiterOne, organizations are able to see all asset data in a single place, improve confidence in choosing their priorities, and optimize their infrastructure and policies.

    The main use-cases that the JupiterOne platform provides are: Asset Management and analysis through relationship mapping Vulnerability Prioritization by introducing business context Attack surface and security posture management Automated evidence collection and continuous monitoring across industry benchmarks such as PCI-DSS, SOC2, FedRamp, ISO 27001, CIS and more Visualize blast radius of a compromised user endpoint or workload speeding up remediation of incidents

    To read more please go to: https://www.jupiterone.com/ 

    JupiterOne provides custom pricing for customers via Private Offer. Please contact aws-jupiterone-marketplace@jupiterone.com  for a better understanding of our pricing model and platform.

    Highlights

    • Complete asset visibility with agentless discovery - pull in all assets (both IP based and software defined) via read-only APIs for more than 80+ AWS native services and 200+ 3rd party applications
    • Visualize relationships between assets and reduce your attack surface by discovering complex attack paths across clouds and platforms
    • Interrogate your assets through natural language queries to answer questions that take hours in seconds and set up automated alerts

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Vendor Insights

     Info
    Skip the manual risk assessment. Get verified and regularly updated security info on this product with Vendor Insights.
    Security credentials achieved
    (1)

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    JupiterOne Cyber Asset Management Platform

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (4)

     Info
    Dimension
    Description
    Cost/12 months
    AWS Marketplace Private Offer
    Contact JupiterOne Sales Team for a custom quote
    $0.00
    SMB
    Organizations under 500 employees. Please contact sales for a custom quote.
    $24,000.00
    Mid-Market
    Organizations between 500 and 2000 employees. Please contact sales for a custom quote.
    $100,000.00
    Enterprise
    Organizations above 2000 employees. Please contact sales for a custom quote.
    $350,000.00

    Vendor refund policy

    JupiterOne does not offer refund. All purchases are final.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    JupiterOne offers email, slack, and ticket submission based support. All support options are included with your purchase. We encourage all customers to join our community slack channel and submit questions and support requests through that system or via email. support@jupiterone.com 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    25
    In Infrastructure as Code, Network Infrastructure
    Top
    100
    In Security
    Top
    10
    In Vulnerability and Patch Management, Data Governance

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    7 reviews
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Agentless Asset Discovery
    Collects assets from over 80 AWS native services and 200+ third-party applications through read-only APIs without requiring agent deployment
    Asset Relationship Mapping
    Visualizes relationships between assets and identifies complex attack paths across multiple clouds and platforms
    Natural Language Query Interface
    Enables interrogation of asset data through natural language queries with automated alert configuration capabilities
    Continuous Compliance Monitoring
    Automates evidence collection and continuous monitoring across industry benchmarks including PCI-DSS, SOC2, FedRamp, ISO 27001, and CIS
    Attack Surface Visualization
    Displays blast radius analysis of compromised user endpoints or workloads to accelerate incident remediation
    Cloud Access Security Broker
    Unified cloud access security broker (CASB) functionality providing visibility and control over access to managed and unmanaged cloud services with conditional, granular policy enforcement.
    Secure Web Gateway
    Next generation secure web gateway (SWG) capabilities delivering comprehensive threat protection for cloud and web services with context-aware access control.
    Data Loss Prevention
    Data-at-rest and data-in-motion inspection with DLP violation detection, malware scanning in cloud storage, and data exfiltration prevention to unmanaged cloud infrastructure.
    Cloud Infrastructure Monitoring
    Continuous security assessment monitoring of cloud infrastructure for risky misconfigurations including data exposure across AWS and other cloud providers with inventory and configuration visibility.
    Compliance and Remediation Automation
    Pre-defined compliance profiles aligned with CIS, PCI, and NIST standards, advanced RBAC, scheduled reporting, alert notifications, exception handling, and automated remediation capabilities accessible via REST APIs.
    Attack Surface Management
    Aggregates comprehensive attack surface visibility across hybrid environments with external attack surface scans to provide 360-degree view of entire attack surface
    Vulnerability Management
    Delivers complete visibility across on-premise and remote endpoints to identify, communicate, and remediate vulnerabilities, misconfigurations, and risks
    Cloud Security
    Provides code-to-cloud protection for cloud-native applications with seamless CI/CD pipeline integration and agentless risk assessment based on reachability, exploitability, and potential impact
    Next-Generation SIEM and XDR
    Delivers accelerated detection and response with SaaS deployment, intuitive interface, out-of-the-box detections informed by MDR SOC, and built-in automation capabilities
    Threat Intelligence
    Delivers high-fidelity actionable threat intelligence infused with proprietary threat and vulnerability research from Rapid7 Labs and community-driven tools

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    -
    -
    -
    -
    -
    No security profile
    No security profile

    Contract

     Info
    Standard contract
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    4.7
    8 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    75%
    25%
    0%
    0%
    0%
    1 AWS reviews
    |
    7 external reviews
    External reviews are from G2  and PeerSpot .
    Chijioke Okoye

    Unified asset visibility has improved investigations and now simplifies tracking security assets

    Reviewed on Feb 16, 2026
    Review from a verified AWS customer

    What is our primary use case?

    Our main use case for JupiterOne  is as an asset catalog tool where we document all our assets that are integrated from different platforms such as Device42 , Qualys, Microsoft M365, and Defender. We are aggregating all our assets from different tools into JupiterOne .

    A specific example of how we use JupiterOne day-to-day is being able to draw a network flow of how network traffic travels through the network, starting from the edge devices to the internal devices. We are also using JupiterOne to track assets that are being brought in and assets that are leaving the environment. Additionally, we are using JupiterOne as the source of truth for many other things that we are doing. Some of my other teammates in areas such as data are tapping into it for asset categorization.

    How has it helped my organization?

    JupiterOne has had a significant impact on our organization. Previously, when looking at security alerts, we would need to examine different tools separately. Now, we often take the IP address or the FQDN and input it into JupiterOne, which usually tells us what that asset is. We are ingesting data from places such as AWS , Azure , Device42 , Qualys, Defender, and Trend Micro. These are different tools that, on a good day without JupiterOne, we would have to look at separately to determine where a particular asset is. JupiterOne helps us aggregate all those things on one single platform, allowing us to quickly identify what environment that asset lives in and what type of asset it is.

    One feature we also value is the ability to enter custom tags so we can create asset types or asset locations and detail who owns the asset. These features have positively impacted us at Landmark Information Group.

    What is most valuable?

    I think one of the best features JupiterOne offers is blast radius, being able to see assets that could be directly or indirectly affected by any cyber incident or to see how some assets communicate with other assets and some do not communicate with other assets. I also think it is easy to query assets and find assets using queries and build out graphs that often make it easy for us to drill down on certain types of assets or categories of assets.

    The blast radius feature has helped our team because, in security operations, one of the first places we look when investigating an alert is JupiterOne. We might enter the IP address or the FQDN of the server to find out where it is, who owns it, and what it does. At that point in time, we identify other assets that might be in the same environment or the same place where that asset lives, which helps us when we are doing security operations and investigating alerts.

    What needs improvement?

    There are some features that I have shared with our customer service manager. One of them that is relevant to us at this time is the need for better determination of unified devices. Currently, JupiterOne uses hostname weights, MAC addresses, or IP addresses to tie devices together, but we have actually requested a way for us to make those determinations ourselves. For example, when externally scanning a device using Qualys, internally it gives an IP address or FQDN, while externally it might be different. We want to be able to decide ourselves that these two devices are the same device even when they have different names and IP addresses for external and internal use. The unified devices feature is valuable and did not used to exist, and it has been fantastic. However, I believe more can be done regarding unified devices, and giving users the privilege to tie them together would be a good addition to the platform.

    One of the other things that interest us in JupiterOne and why we really wanted to use the tool is the compliance feature. We wanted to use it to track our compliance since we are ISO 27001 certified. However, the compliance module has not worked well, and we have had to continue tracking our compliance manually with the tools we use. Although there are some works in progress to improve the compliance part of the tool, I think if they can get it up to speed, that would be a really good improvement.

    For how long have I used the solution?

    I have been using JupiterOne for three years. I was initially recruited with Landmark Group to be a subject matter expert for JupiterOne.

    What other advice do I have?

    JupiterOne has many features. Although none comes to mind almost immediately, I know it often depends on how we are able to write or craft the queries. JupiterOne has been very instrumental to me in my work. Being the subject matter expert for JupiterOne at Landmark, I think it has been very beneficial for me.

    JupiterOne has been quite helpful to us, especially in information security. One of the things it helps us with is housekeeping, allowing us to see where there are duplicates and address those.

    I would rate JupiterOne an eight. JupiterOne is a strong tool, and there are some issues that need to be addressed, but overall, I think it is a good tool. The reason I am giving it an eight is that there are features that are not its strengths, which is understandable, but it performs very well in the aggregation of assets from different platforms.

    I would definitely recommend JupiterOne because some of the features I have mentioned here are part of what makes it strong. The aggregation of tools from different platforms into one single repository allows you to easily query assets by typing their IP address, hostname, or FQDN. I believe that is JupiterOne's greatest strength. Additionally, you can create dashboards or widgets for a high-level overview, and JupiterOne can track trends over time, telling you if something is increasing, decreasing, or remaining stable. Those are part of the great features that JupiterOne has, and I would recommend it to anyone needing a single cyber asset tool.

    Verified User in Financial Services

    Good application

    Reviewed on Apr 08, 2025
    Review provided by G2
    What do you like best about the product?
    Cloud native cyber asset, security configuration
    What do you dislike about the product?
    Nothing to dis like about this. Good application
    What problems is the product solving and how is that benefiting you?
    problems related to cybersecurity asset visibility and management, providing a platform to aggregate and analyze data from various sources to gain a comprehensive view of an organization's digital assets and attack surface
    Prakhar Pandey

    An user friendly solution for writing queries with intuitive flow

    Reviewed on Sep 13, 2023
    Review provided by PeerSpot

    What is our primary use case?

    We use the solution for writing all the queries. There is a lot of variation for machine learning projects like data processing, data analysis, and pipeline creation. It has the flexibility to work on different kinds of things like ML projects and clustering algorithms like regression analysis.

    What is most valuable?

    The product’s UI is pretty decent and fast. You can increase GPUs and other features like importing files and everything, which is tricky in Google Collab but better in Jupiter.

    What needs improvement?

    There should be more integration or an update to the visualization part of the charts or other graphs we plot. Currently, it integrates from your local directive with your local PC. If it is integrated into other platforms, that would be great. You can only write Python queries in Jupiter, not other languages, like, SQL or PySpark. Databricks is a software that provides writing queries in different languages. Jupiter should allow us to write in different languages.

    For how long have I used the solution?

    I have been using JupiterOne for more than three years. We are using the latest version of the solution.

    What do I think about the stability of the solution?

    The product is stable. I rate the solution’s stability an eight out of ten.

    What do I think about the scalability of the solution?

    We have 50+ users using this solution. I rate the solution’s scalability a seven out of ten.

    How are customer service and support?

    There is not much support needed for the software.

    Which solution did I use previously and why did I switch?

    I’ve used PyCharm before, but I switched to Jupiter because of its interface, query writing, and sequence capabilities. I find it better to write short-form notebooks, as these are easier to see and understand. The flow is also more intuitive, and the output certificate is displayed on the same line.

    How was the initial setup?

    The initial setup is decent and takes a minute to deploy. It would have taken maybe 15 to 30 minutes for the first time, but it’s not a difficult job to do. One person is enough for setup and maintenance. I rate the initial setup an eight, where one is difficult, and ten is easy.

    What other advice do I have?

    Overall, I rate the solution an eight out of ten.

    Syed K.

    Fantastic automated solution for compliance, Cyber security posture, and more.

    Reviewed on Feb 01, 2023
    Review provided by G2
    What do you like best about the product?
    I love how easy it is to set up integrations across different applications. Every aspect of JupiterOne encourages smooth automation and visual presentation through its insights tab. As an auditor, I highly appreciate JupiterOne's ability to update and reuse evidence automatically across different security frameworks - cutting down the tedious work of evidence submission/review by around 80%.
    What do you dislike about the product?
    I wished there was more documentation on how to pull more information from the raw data. More short instructional videos on how to use J1QL. The inability to edit controls on the compliance page, and finally, dark mode 😄
    What problems is the product solving and how is that benefiting you?
    Cutting down costs and time involving compliance and security posture.
    Computer Software

    J1 makes it ridiculously easy to find assets for complex queries and know how they connect to others

    Reviewed on Sep 08, 2022
    Review provided by G2
    What do you like best about the product?
    The query syntax for finding assets matching filters
    What do you dislike about the product?
    There's a significant barrier to entry in learning all the different features because it's got so much.
    What problems is the product solving and how is that benefiting you?
    Finding assets in a large production environment and identifying security risks. J1 also makes completing audits a breeze.
    View all reviews