Skip to main content
aitoolsatlas.ai
BlogAbout

Explore

  • All Tools
  • Comparisons
  • Best For Guides
  • Blog

Company

  • About
  • Contact
  • Editorial Policy

Legal

  • Privacy Policy
  • Terms of Service
  • Affiliate Disclosure
Privacy PolicyTerms of ServiceAffiliate DisclosureEditorial PolicyContact

© 2026 aitoolsatlas.ai. All rights reserved.

Find the right AI tool in 2 minutes. Independent reviews and honest comparisons of 885+ AI tools.

  1. Home
  2. Tools
  3. Data & Analytics
  4. Lacework (now FortiCNAPP)
  5. Pricing
OverviewPricingReviewWorth It?Free vs PaidDiscountAlternativesComparePros & ConsIntegrationsTutorialChangelogSecurityAPI
← Back to Lacework (now FortiCNAPP) Overview

Lacework (now FortiCNAPP) Pricing & Plans 2026

Complete pricing guide for Lacework (now FortiCNAPP). Compare all plans, analyze costs, and find the perfect tier for your needs.

Try Lacework (now FortiCNAPP) Free →Compare Plans ↓

Not sure if free is enough? See our Free vs Paid comparison →
Still deciding? Read our full verdict on whether Lacework (now FortiCNAPP) is worth it →

💎1 Paid Plans
⚡No Setup Fees

Choose Your Plan

Enterprise (Quote-based)

Custom

mo

  • ✓Full CNAPP capabilities: CSPM, CWPP, container/Kubernetes security, IaC scanning, vulnerability management, and CIEM
  • ✓Polygraph behavioral threat detection across users, workloads, and network
  • ✓Multi-cloud coverage for AWS, Azure, GCP, and private cloud
  • ✓Compliance reporting for major frameworks (CIS, PCI DSS, HIPAA, SOC 2, NIST, ISO 27001)
  • ✓Integrations with CI/CD, ticketing, SIEM/SOAR, and the Fortinet Security Fabric
  • ✓Enterprise support and onboarding services
Contact Sales →

Pricing sourced from Lacework (now FortiCNAPP) · Last verified March 2026

Is Lacework (now FortiCNAPP) Worth It?

✅ Why Choose Lacework (now FortiCNAPP)

  • • Polygraph behavioral engine automatically baselines normal activity and surfaces anomalies without requiring teams to write and maintain detection rules, dramatically reducing tuning overhead
  • • Unified CNAPP consolidates CSPM, CWPP, CIEM, Kubernetes security, and vulnerability management into a single platform, replacing multiple point tools and their separate licenses
  • • Agentless cloud scanning provides rapid time-to-value across AWS, Azure, and GCP accounts, with deeper eBPF agent-based runtime protection available for critical workloads
  • • Strong attack path analysis correlates vulnerabilities, misconfigurations, and identity risks to prioritize the handful of exposures that actually create exploitable chains
  • • Post-acquisition integration with the Fortinet Security Fabric enables unified visibility between cloud workload telemetry and network/endpoint security data
  • • Continuous compliance automation with prebuilt policy packs for PCI DSS, HIPAA, SOC 2, NIST, and CIS saves significant audit preparation effort

⚠️ Consider This

  • • Enterprise-only pricing with no published tiers or self-serve options makes it inaccessible for smaller teams and creates friction for evaluation
  • • Brand transition from Lacework to FortiCNAPP has created documentation inconsistencies, confusion about product roadmap, and uncertainty for existing customers during integration
  • • Initial deployment and onboarding across multi-cloud environments can be complex, particularly when tuning Polygraph baselines for noisy or highly dynamic workloads
  • • Alert quality improves substantially after several weeks of behavioral learning, meaning early-stage detection can produce false positives before baselines stabilize
  • • UI and query experience, while improved, still lags behind more recent CNAPP entrants like Wiz in terms of intuitive navigation and graph exploration

What Users Say About Lacework (now FortiCNAPP)

👍 What Users Love

  • ✓Polygraph behavioral engine automatically baselines normal activity and surfaces anomalies without requiring teams to write and maintain detection rules, dramatically reducing tuning overhead
  • ✓Unified CNAPP consolidates CSPM, CWPP, CIEM, Kubernetes security, and vulnerability management into a single platform, replacing multiple point tools and their separate licenses
  • ✓Agentless cloud scanning provides rapid time-to-value across AWS, Azure, and GCP accounts, with deeper eBPF agent-based runtime protection available for critical workloads
  • ✓Strong attack path analysis correlates vulnerabilities, misconfigurations, and identity risks to prioritize the handful of exposures that actually create exploitable chains
  • ✓Post-acquisition integration with the Fortinet Security Fabric enables unified visibility between cloud workload telemetry and network/endpoint security data
  • ✓Continuous compliance automation with prebuilt policy packs for PCI DSS, HIPAA, SOC 2, NIST, and CIS saves significant audit preparation effort

👎 Common Concerns

  • ⚠Enterprise-only pricing with no published tiers or self-serve options makes it inaccessible for smaller teams and creates friction for evaluation
  • ⚠Brand transition from Lacework to FortiCNAPP has created documentation inconsistencies, confusion about product roadmap, and uncertainty for existing customers during integration
  • ⚠Initial deployment and onboarding across multi-cloud environments can be complex, particularly when tuning Polygraph baselines for noisy or highly dynamic workloads
  • ⚠Alert quality improves substantially after several weeks of behavioral learning, meaning early-stage detection can produce false positives before baselines stabilize
  • ⚠UI and query experience, while improved, still lags behind more recent CNAPP entrants like Wiz in terms of intuitive navigation and graph exploration

Pricing FAQ

What happened to Lacework — is it still a product?

Lacework was acquired by Fortinet in 2024 and has been rebranded as FortiCNAPP. The underlying Polygraph Data Platform technology remains intact and continues to be developed, but it is now part of Fortinet's Security Fabric portfolio and is being integrated with other Fortinet products such as FortiGate, FortiEDR, and FortiAnalyzer.

How is Lacework/FortiCNAPP different from traditional cloud security tools?

Traditional tools rely on predefined rules and signatures that must be written and maintained by security teams. Lacework's Polygraph engine uses machine learning to automatically build behavioral baselines of every entity in your cloud — users, processes, containers, network flows — and detects deviations as potential threats. This catches zero-day attacks and insider threats that rule-based systems miss.

Which cloud platforms and workloads does it support?

FortiCNAPP supports AWS, Microsoft Azure, Google Cloud Platform, and Oracle Cloud Infrastructure for cloud account scanning. For workloads, it protects Linux and Windows servers, Docker containers, Kubernetes clusters (including EKS, AKS, GKE, and self-managed), serverless functions, and IaC templates including Terraform, CloudFormation, and Kubernetes manifests.

How much does FortiCNAPP cost?

Pricing is enterprise-only and quoted based on factors including cloud account count, workload volume (typically measured in monthly active resources or vCPUs), modules enabled, and contract length. There is no published price list or self-service tier. Most mid-market deployments start in the $50,000–$150,000 annual range, while large enterprise contracts with hundreds of cloud accounts and full module coverage typically reach $250,000–$500,000+ annually. Contact Fortinet sales for a custom quote and to request a proof-of-value engagement.

Can it replace my existing SIEM or EDR?

FortiCNAPP is not a replacement for a SIEM or traditional EDR. It is a cloud-focused CNAPP that covers cloud posture, workload, identity, and Kubernetes security. It complements SIEM platforms by forwarding high-fidelity cloud alerts, and under Fortinet it integrates tightly with FortiEDR for endpoint coverage and FortiAnalyzer for SIEM-like correlation across cloud and network data.

Is there a free trial or proof-of-value option?

FortiCNAPP does not offer a self-service free trial. However, Fortinet sales teams can arrange a proof-of-value (POV) engagement, typically lasting 2–4 weeks, where the platform is deployed in your environment with guided onboarding. This allows teams to evaluate behavioral detection quality and compliance coverage against their specific cloud infrastructure before committing to a contract.

Ready to Get Started?

AI builders and operators use Lacework (now FortiCNAPP) to streamline their workflow.

Try Lacework (now FortiCNAPP) Now →

More about Lacework (now FortiCNAPP)

ReviewAlternativesFree vs PaidPros & ConsWorth It?Tutorial

Compare Lacework (now FortiCNAPP) Pricing with Alternatives

Orca Security Pricing

AI-powered agentless cloud security platform that provides comprehensive vulnerability management and compliance monitoring across multi-cloud environments

Compare Pricing →

Darktrace Pricing

Self-learning AI cybersecurity platform that creates an Enterprise Immune System, autonomously detecting and responding to sophisticated cyber threats without signatures or rules.

Compare Pricing →