Cloud Security Compare

CALCULATOR

CNAPP score calculator: re-weight nine cloud security platforms

Cloud Security Compare editors · Matchups reviewed September 2026 · Editorial assessment

The short version

Move the seven sliders to match what your team cares about, and the ranking of nine cloud security platforms recalculates from our published criterion scores. With our weights, Wiz leads at 4.4 and Orca Security is second at 4.2. Weight runtime protection alone and CrowdStrike Falcon Cloud Security and Sysdig Secure move to the top. There is no cost input, because no vendor here publishes a per-unit price we can multiply.

Example weightings (editorial, not recommendations)

Your ranking, recalculated from our criterion scores. Editorial assessment, 0 to 5.
RankVendorYour scoreOur scoreRank changeStrongest criterion on your weightsPublished pricing
1Wiz4.354.4 rank 1no changeRuntime protection depth (4.2)Not published. Contact sales.
2Palo Alto Networks Cortex Cloud (formerly Prisma Cloud)4.144.0 rank 3=up 1Runtime protection depth (4.6)Not published. CNAPP included at no additional cost for Cortex Cloud Runtime Security customers.
3Orca Security4.124.2 rank 2down 1Runtime protection depth (3.8)Not published. Contact sales. The pricing URL returned a 404 when reviewed.
4Upwind4.043.9 rank 5up 1Runtime protection depth (4.7)Not published. Contact sales. The pricing URL returned a 404 when reviewed.
5CrowdStrike Falcon Cloud Security4.013.8 rank 6=up 1Runtime protection depth (4.8)Not published for cloud security. The public pricing page lists endpoint bundles (Falcon Go, Pro, Enterprise, Complete) only.
6Microsoft Defender for Cloud4.004.0 rank 3=down 3Runtime protection depth (4.0)Published per billable resource on the Azure pricing page and cost calculator (for serverless, 8 Lambda functions count as 1 billable unit). Foundational CSPM free. Defender for AI Services billed per 1,000 tokens. Free for the first 30 days.
7SentinelOne Singularity Cloud3.963.8 rank 6=down 1Runtime protection depth (4.5)Not published. Contact sales.
8Sysdig Secure3.903.7 rank 8=no changeRuntime protection depth (4.8)Licensing unit published: number of hosts. Prices by quote.
9Aqua Security3.803.7 rank 8=down 1Runtime protection depth (4.5)Not published. Contact sales.

Compare your top two: Wiz vs Cortex Cloud · Your top three side by side

Your score = (agentless x w1 + runtime x w2 + risk x w3 + code x w4 + AI x w5 + ecosystem x w6 + pricing x w7) / (w1 + w2 + w3 + w4 + w5 + w6 + w7). Criterion scores are 0 to 5 from our matrix; w1 to w7 are your slider values, 0 to 10. With our weights (9, 8, 9, 7, 6, 6, 5) the result equals the matrix total.

Scores are an editorial assessment of public vendor material, last reviewed September 2026. Pricing text is as published on vendor pages when reviewed in September 2026.

How should you use the calculator?

Start with our weights and move only the criteria that are clearly different for your team. A Kubernetes-heavy team that needs to block attacks in containers might push runtime to 10; an Azure-first team with a fixed budget might raise pricing transparency. Then read the head-to-head for your top two, because a weighted score averages away the gaps a decision usually turns on.

The sliders change weights, not scores. Every criterion score and the reason behind it is on the comparison matrix, and the rubric is on How to read these comparisons.

Frequently asked questions

How does the calculator work?

It multiplies each vendor's score on each criterion by the weight you set, adds the results and divides by the sum of your weights. The criterion scores are the same editorial scores used everywhere on this site; only the weights change.

Why is there no seat, host or price input?

No vendor in our matrix publishes a per-unit price we could multiply. Microsoft publishes per-resource pricing for Defender for Cloud on its own Azure pricing page and calculator, and Sysdig publishes its licensing unit (hosts) but not prices. The other seven quote through sales, so we show the published pricing text instead of inventing a cost.

Do my weights change the scores on the rest of the site?

No. Every other page uses our published weights: agentless coverage 18%, runtime 16%, risk prioritization 18%, code-to-cloud 14%, AI workload security 12%, ecosystem 12% and pricing transparency 10%. Your weights live only in this page's address, so you can share a link to them.

Why do two vendors share a rank?

When two scores are equal at two decimal places we show a tie rather than a precision the method does not have. The matrix applies the same rule at one decimal place.

Related pages