fitgap

AWS Vertrified Access

Features
Ease of use
Ease of management
Quality of support
Affordability
Market presence
Take the quiz to check if AWS Vertrified Access and its alternatives fit your requirements.
Pricing from
Pay-as-you-go
Free Trial unavailable
Free version unavailable
User corporate size
Small
Medium
Large
User industry
  1. Information technology and software
  2. Public sector and nonprofit organizations
  3. Healthcare and life sciences

What is AWS Vertrified Access

AWS Verified Access is a cloud-based identity-aware access service that controls user access to corporate applications without requiring a traditional VPN. It is used by IT and security teams to publish internal web applications with policy-based access decisions that consider user identity and device security posture. The service integrates with AWS identity services and common SAML/OIDC identity providers, and it is designed to front applications running in AWS and other environments.

pros

Identity-aware, VPN-less access

The service provides application-level access controls that reduce reliance on network-level VPN access for internal web apps. Policies can evaluate user identity and contextual signals before granting access to an application. This model aligns with zero-trust access patterns commonly used for modern workforce access.

Deep AWS ecosystem integration

Verified Access integrates with AWS-native networking and security components, which simplifies deployment for organizations already standardizing on AWS. It works with AWS IAM Identity Center and supports external identity providers via standard federation approaches. Centralized logging and monitoring can be aligned with AWS operational tooling.

Policy-based access decisions

Access decisions are expressed as policies, enabling consistent enforcement across multiple applications. Policies can incorporate device posture signals (for example, from endpoint security integrations) in addition to identity attributes. This supports more granular controls than basic single sign-on alone.

cons

AWS-centric architecture dependency

Organizations with limited AWS footprint may find the service less compelling than vendor-neutral access layers. Some deployment patterns and operational workflows assume familiarity with AWS networking and security constructs. This can increase implementation effort for teams primarily operating outside AWS.

Primarily workforce app access

Verified Access is oriented toward securing employee access to internal applications rather than full customer identity and access management. It does not replace a dedicated CIAM platform for customer registration, profile management, and consent-driven experiences. Buyers may still need separate tooling for customer-facing identity use cases.

Feature scope varies by use case

Compared with broader IAM suites, organizations may need additional services for lifecycle governance, advanced identity analytics, or extensive SaaS access management. Device posture and conditional access capabilities depend on supported integrations and the organization’s endpoint stack. Teams should validate coverage for their specific compliance and access scenarios.

Plan & Pricing

Pricing model: Pay-as-you-go (usage-based)

HTTP(S) applications

  • Application hours (app-hours): $0.27 per app-hour for initial usage (examples show first 148,800 app-hours at $0.27), then $0.20 per app-hour for additional app-hours (tiered pricing as illustrated in AWS examples).
  • Data processing: $0.02 per GB of data processed by Verified Access.
  • Billing notes: Each partial application hour (app-hour) consumed is billed as a full hour.

Non-HTTP(S) applications

  • Non-HTTP endpoint hours: $0.20 per non-HTTP endpoint hour (charged for each hour an endpoint remains active; partial hours are prorated).
  • Connections: Each non-HTTP endpoint includes up to 100 free client connections per hour. Connections above that free allotment are charged $0.001 per connection-hour (partial connection-hours are prorated).

Other notes

  • No upfront commitment or minimum fee; standard AWS data transfer charges also apply.

Example costs (from AWS pricing page)

  • HTTP example (US East - Ohio): 10 app-hours * $0.27 + (10 apps * 0.5 GB * $0.02) = $2.80.
  • Non-HTTP example: 10 non-HTTP endpoint hours * $0.20 = $2.00 (if within free connection allotment).

Discount options:

  • The AWS page shows tiered pricing for app-hours (lower per-hour rate after the first large volume band). No other contract/discount program (e.g., committed use) is listed on the official pricing page.

Seller details

Amazon Web Services, Inc.
Seattle, Washington, USA
2006
Subsidiary
https://aws.amazon.com/
https://x.com/awscloud
https://www.linkedin.com/company/amazon-web-services/

Tools by Amazon Web Services, Inc.

AWS Lambda
AWS Elastic Beanstalk
AWS Serverless Application Repository
AWS Cloud9
AWS Device Farm
AWS AppSync
Amazon API Gateway
AWS Step Functions
AWS Mobile SDK
Amazon Corretto
AWS Amplify
Amazon Pinpoint
AWS App Studio
Honeycode
AWS Batch
AWS CodePipeline
AWS CodeDeploy
AWS CodeStar
AWS CodeBuild
AWS Config

Related stack guides

HR
Route onboarding tasks from new hire to IT provisioning
Step1
Register the new hire and trigger the onboarding workflow
Step2
Generate department-specific task lists from role templates
Step3
Provision application access based on role profile

Popular categories

All categories