Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
Change is the constant pressure on every SOC. Unplanned Drift quietly breaks detections, while intentional improvements slow to a crawl out of fear of disrupting production. Fig addresses both with Security Operations Resilience - the only approach that keeps detection and response working through any kind of change. Drift is surfaced the moment it occurs, revealing impact and root cause with safe remediation before damage spreads. Planned initiatives can be designed, simulated, and deployed with full control and rollback. The result is operational resilience: a SOC that runs at full capacity as everything around it changes. Teams ship faster without risk, design and deploy from one place across any infrastructure, eliminate endless data plumbing, stay motivated by focusing on real security work, and expand coverage without Drift quietly eroding it. With Security Operations Resilience, Fig is creating a future where change powers the SOC instead of breaking it.
Highlights
Highlighted by the publisher on AWS Marketplace.
For Drift - connect instantly with zero friction. Fig immediately reveals your entire infrastructure end to end for the first time through continuous observability of security data lineage. You see the health of every detection flow at a glance. You are alerted the moment anything threatens your ability to detect or respond. You see the impact and root cause instantly. Then you review the recommended fix, test-drive it safely, and remediate - risk free.
For Planned Change - turn your plans into complete, accurate, safe changes at full speed. You work with the full context of whats in your environment, and you know nothing is going to break. You say what you want to do, and Fig shows you the exact set of changes, simulates them so you know they will behave exactly as expected, and lets you push them to production in one click with full version control and instant rollback.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Compliance
- FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27
Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.
Plans and pricing as listed
3 listed- Units
- Units
- Units
Refund terms
As stated by the publisher on AWS Marketplace.
All sales of Fig on the AWS Marketplace are final, and no refunds will be issued once a subscription period has begun. We encourage customers to review all product information before purchase. If you believe there has been a billing error, please contact our support team immediately. For any billing inquiries or to report a potential error, please contact billing@fig.security
Sources
Publisher resources
2 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

