CSPM
As part of having visibility in your multi-cloud environments, over the past couple of years, a new concept has emerged.
There are multiple offers from many third-party CSPM vendors, but the fundamental idea behind all CSPM solutions is to have visibility in misconfigurations – a crucial topic when working in a multi-cloud environment and managing multiple cloud accounts. When selecting a CSPM solution, look for the following capabilities:
- Support for multiple cloud providers and visibility into your entire cloud assets over a multi-cloud environment.
- Visibility into misconfigurations (such as an opened port and publicly accessible object storage).
- Visibility into IAM (such as API keys located in publicly accessible object storage, access keys or passwords that were not rotated in the past 90 days, users’ permissions, and accounts missing MFA).
- The ability to assess risks over your entire multi-cloud environment.
- Get insights into mitigation...