Imperva RASP provides runtime application protection that integrates with Imperva’s broader security platform, including their industry-leading Web Application Firewall (WAF).
What is Imperva RASP?
Imperva RASP is a runtime application self-protection solution that embeds security directly into applications.
It works alongside Imperva’s WAF and other security products to provide defense-in-depth protection.
The key differentiator is the tight integration with Imperva’s existing security ecosystem, making it attractive for organizations already invested in Imperva products.
Key Features
WAF Integration
Imperva RASP shares intelligence with Imperva WAF:
- Attack patterns detected by RASP inform WAF rules
- Coordinated blocking across network and application layers
- Unified dashboard for security visibility
Runtime Protection
The RASP agent protects against:
- SQL injection
- Cross-site scripting (XSS)
- Remote code execution
- Authentication bypasses
- Business logic attacks
Attack Analytics
Imperva provides detailed attack analytics:
- Attack visualization and timelines
- Attacker profiling
- Threat intelligence correlation
- Incident response workflows
How It Works
Imperva RASP uses an agent-based approach:
Application Server
└── Imperva RASP Agent
├── Monitors application execution
├── Detects attack patterns
├── Reports to Imperva Cloud
└── Blocks malicious requests
The agent instruments the application runtime to monitor security-sensitive operations without requiring code changes.
Integration with Imperva Ecosystem
Imperva RASP integrates with:
- Imperva WAF - Shared threat intelligence
- Imperva DDoS Protection - Coordinated response
- Imperva API Security - API-level protection
- Imperva Data Security - Database protection
Deployment Options
Imperva RASP supports multiple deployment models:
| Model | Description |
|---|---|
| Cloud | Managed service with Imperva Cloud |
| On-Premises | Self-hosted deployment |
| Hybrid | Combination of cloud and on-prem |
When to Use Imperva RASP
Imperva RASP is ideal for organizations that:
- Already use Imperva WAF or other Imperva products
- Want unified security visibility
- Need enterprise-grade support and SLAs
- Require compliance-ready reporting
Note: Evolution of Prevoty acquisition
