For the complete documentation index, see llms.txt. This page is also available as Markdown.

CSPM - Cloud Security Posture Management

CSPM

Cloud Security Posture Management (CSPM) continuously monitors and evaluates the security configuration of your cloud infrastructure. It identifies anomalies and misconfigurations in the cloud resources, such as AWS EC2, VPC, RDS, and IAM.

Adding Integration

To begin, you must integrate your cloud account.

  • Navigate to Integrations and click Add Integration.

  • Click AWS. In the popup add the account name, AWS access key ID, and secret key ID.

  • Click Connect AWS.

  • The AWS account is added.

CSPM Scan

  • The added accounts are displayed as shown:

  • Click Trigger CSPM.

  • The scan is run and the results are displayed as shown:

The services that are scanned, along with the resources, violated rules, and summary of the misconfigurations that may lead to vulnerabilities are displayed.

On clicking any resources, the list of policies against which they are tested are displayed.

On expanding each policy the count of affected resources are displayed.

Blast Radius

On clicking Analysis, we can view the Blast Radius for the selected resource.

Click Remediate to fetch the details from the blast radius and analyse the details.

A very detailed analysis and solutions are provided with giving choice to the user to choose the best solution.

Last updated