# Lacework vs Rapid7 InsightCloudSec

| Attribute | Lacework | Rapid7 InsightCloudSec |
|---|---|---|
| **Vioscale score** | 60.3 (27% (low)) | 34.5 (26% (low)) |
| deployment.options | - | `{"cloud":true}` |
| description.long | - | Rapid7 Command Platform for exposure management, combining asset discovery, vulnerability management, cloud security, and compliance across multi-cloud environments. |
| features.capabilities | - | `{"ciem":true,"cspm":true,"cwpp":false,"dspm":false,"kspm":true,"iac_scanning":true,"cloud_coverage":"AWS, Azure, GCP, Kubernetes","runtime_protection":false,"compliance_frameworks":"CIS, NIS2, GDPR"}` |
| integrations.count | - | 1 |
| integrations.list | - | `[{"name":"AWS"}]` |
| market.availability | - | `{"hqCountry":"US","primaryMarkets":["DE","EU"],"availabilityScope":"regional","availableCountries":["DE"],"notAvailableCountries":[]}` |
| platform.support | - | `{"web":true}` |
| pricing | - | `{"type":"quote","plans":[{"free":false,"name":"Surface Command","features":["Asset-Erkennung und Inventarisierung","Sichtbarkeit interner und externer Angriffsflächen","Asset-Graph","Analyse Explosionsradius"],"commitment":"annual","description":"Asset discovery, unified inventory, asset graph, exposure visibility","contactSales":true},{"free":false,"name":"Exposure Command Essentials","features":["Alle Funktionen von Surface Command","Schwachstellen-Management","Risikobasierte Priorisierung","Bewertung Konfigurationen"],"commitment":"annual","description":"Asset discovery, vulnerability management, risk-based prioritization, policy assessment","contactSales":true},{"free":false,"name":"Exposure Command Ultimate","features":["Multi-Cloud-Sicherheit","Cloud-Status und Compliance","Angriffspfadanalyse","Identitäts- und Zugriffsrisikoanalyse","IaC-Sicherheit"],"commitment":"annual","description":"Multi-cloud, Kubernetes, cloud posture, compliance, attack path analysis, identity & access risk","contactSales":true}],"summary":"Asset-based, usage-based pricing. Quote required. Annual billing.","freeTier":false,"sourceUrl":"https://www.rapid7.com/de/products/command/pricing/","retrievedAt":"2026-08-13T16:47:18.613Z","billingPeriods":["year"]}` |
| pricing.free_tier | - | no |
| pricing.model | commercial | quote |
| pricing.price_level | - | unknown |
| pricing.transparent | - | no |
| reliability.status_page | yes | yes |
| security.disclosure_policy | - | yes |
| security.gdpr | - | yes |
| security.iso27001 | yes | - |
| security.soc2 | yes | - |

## Capabilities (Cloud Security Software)

| Capability | Lacework | Rapid7 InsightCloudSec |
|---|:--:|:--:|
| **Posture** |  |  |
| CSPM (posture / misconfig) | - | ✓ |
| KSPM (Kubernetes posture) | - | ✓ |
| **Workload** |  |  |
| CWPP (workload protection) | - | ✗ |
| **Entitlements** |  |  |
| CIEM (entitlements) | - | ✓ |
| **Data** |  |  |
| DSPM (data posture) | - | ✗ |
| **Pipeline** |  |  |
| IaC / pipeline scanning | - | ✓ |
| **Architecture** |  |  |
| Agentless scanning | - | - |
| **Runtime** |  |  |
| Runtime protection | - | ✗ |
| **Coverage** |  |  |
| Cloud coverage | - | AWS, Azure, GCP, Kubernetes |
| **Compliance** |  |  |
| Compliance frameworks assessed | - | CIS, NIS2, GDPR |
| **Licensing** |  |  |
| Open-core scanner available | - | - |

*Source: Vioscale. Generated 2026-09-01T16:32:44.197Z. "-" = undocumented, not absent.*
