Try our new research platform with insights from 80,000+ expert users

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Imperva Application Security Platform provides effective DDoS and bot protection, as well as guards against SQL injection and cross-site scripting attacks.
The platform is highly scalable and can easily be deployed in various environments, including on the cloud and on-premise setups.
Imperva's threat intelligence allows for the differentiation between HTTP and HTTPS traffic, enhancing security measures.
Data masking and dynamic profiling features offer significant value in protecting web applications.
Imperva excels in third-party integration, allowing for seamless operations with tools like Azure and Sentinel.

CONS

Imperva Application Security Platform has limited integration with third-party tools and services, requiring users to manually export and import data, which can be labor-intensive.
Reporting features in Imperva Application Security Platform are lacking, offering limited export formats and not covering desired time periods such as the last day, week, or year.
Security log access through Imperva Application Security Platform is restricted, making it dependent on external tools like SIM for log exploration and analysis.
Imperva Application Security Platform's setup and installation process is complicated, often requiring assistance from support staff at each instance.
Pricing for Imperva Application Security Platform is perceived as high, suggesting an improvement on cost-effectiveness would be beneficial.
 

Imperva Application Security Platform Pros review quotes

it_user162618 - PeerSpot reviewer
Security Consultant at a security firm with 501-1,000 employees
Jan 10, 2018
Gives us the ability to trace each connection, and to have logs to be able to differentiate between a positive and a false-positive intruder action.
it_user316611 - PeerSpot reviewer
Head Of Information Security at IronFX Global Limited
Jan 10, 2018
IncapRules is one of the most valuable features, as you can create your own security and access control rules on top of your security policy. Using IncapRules we were able to easily block Layer 7 DDoS attacks several times.
it_user663045 - PeerSpot reviewer
Cyber and Information Security Officer at a energy/utilities company with 10,001+ employees
Jan 31, 2018
Learning mode and custom policies are helpful features.
Learn what your peers think about Imperva Application Security Platform. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,455 professionals have used our research since 2012.
it_user817755 - PeerSpot reviewer
Information Security Analyst at a tech vendor with 10,001+ employees
Jul 11, 2018
Provides Anti-DDoS protection, as well as other protections like SQL injection, Cross-Site Scripting, and antiscanner. These types of protection are valuable to the business due to the daily attacks on our portals, and that often cannot be seen without a tool like this.
it_user818130 - PeerSpot reviewer
System Administrator at a tech services company with 51-200 employees
Feb 12, 2018
On the site security, I can see which countries have incidents, whether it was a robot attack, a real human user, or non-human user.
OS
Information Security Advisor, CISO & CIO, Docutek Services at Docutek Services
Sep 9, 2018
It has threat intelligence and we are using Incapsula. With threat intelligence, we can separate HTTP and HTTPS traffic. We can use Incapsula to send all the threat intelligence to the WAF.
NV
Specialist Engineer at Entel Networks S.A
Jun 23, 2019
The compliance is the most valuable aspect.
GO
Manager, IS Security & Infrastructure at Fintech Kenya Limited
Aug 6, 2019
It mitigates all of the availabilities of risks around web applications.
JohnTamakloe - PeerSpot reviewer
Solutions Architect at ostec
Aug 13, 2019
There are some features that are configured by default, so even without doing much, it can still provide a level of protection.
BM
Sr Associate Information Security at a tech services company with 51-200 employees
Aug 30, 2019
Scalability is pretty easy on the base platform. You just add another, and you're ready to go.
 

Imperva Application Security Platform Cons review quotes

it_user162618 - PeerSpot reviewer
Security Consultant at a security firm with 501-1,000 employees
Jan 10, 2018
I miss being able to integrate the dashboard with other BI tools we are using. We have to export and import data to be able to present it, and doing so is a lot of work.
it_user316611 - PeerSpot reviewer
Head Of Information Security at IronFX Global Limited
Jan 10, 2018
It would be better if we were able to manage and apply changes to multiple websites/web applications, and search WAF logs for multiple websites, via the Incapsula dashboard.
it_user663045 - PeerSpot reviewer
Cyber and Information Security Officer at a energy/utilities company with 10,001+ employees
Jan 31, 2018
The reporting is missing some features, such as: only two export formats, and the time period does not include the last day, week, year.
Learn what your peers think about Imperva Application Security Platform. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
879,455 professionals have used our research since 2012.
it_user817755 - PeerSpot reviewer
Information Security Analyst at a tech vendor with 10,001+ employees
Jul 11, 2018
Imperva now offers add-ons to add functionality, but I would like to see these included in the product, even if it would cost more.
it_user818130 - PeerSpot reviewer
System Administrator at a tech services company with 51-200 employees
Feb 12, 2018
I am not sure if this application has a policy where you can create your custom policy and run it as our firewall. We should have some ability to also create some custom policy, then run it as a firewall.
OS
Information Security Advisor, CISO & CIO, Docutek Services at Docutek Services
Sep 9, 2018
There could be some limitations that from the converged infrastructure perspective: when you want to converge with everything and you want Imperva to get there easily because it's not a cloud component. For example, when you want to build servers and you're using OneView to manage your software-defined networks, implementing Imperva right away is not that simple. But if you're doing just a simple cloud infrastructure with servers in there, you're good to go. Also, we are not able, with Imperva, to block by signatures. Imperva by itself needs to be complemented with another service to do URL filtering.
NV
Specialist Engineer at Entel Networks S.A
Jun 23, 2019
It's a complicated tool to keep.
GO
Manager, IS Security & Infrastructure at Fintech Kenya Limited
Aug 6, 2019
Their portal is very limited and needs improvement.
JohnTamakloe - PeerSpot reviewer
Solutions Architect at ostec
Aug 13, 2019
It would be helpful to have a "recommended deployment", or even a list of basic features that should either be used or turned on by default.
BM
Sr Associate Information Security at a tech services company with 51-200 employees
Aug 30, 2019
The solution needs to improve Integration with third parties for their on-prem deployment models. The integration is not that good yet.