SlideShare a Scribd company logo
DivvyCloud
Continuous Security & Compliance for the Cloud
DivvyCloud protects cloud and
container environments from:
● Misconfigurations
● Policy violations
● Threats
● IAM challenges
Cloud and
Container
Security
How does it work?
Harvest Unify
Analysis Action
Pervasively harvest
data using cloud
native API endpoints
Convert infrastructure
data into unified
multicloud resource
data model
Analyze unified data
and identify change in
cloud environment
Take action to notify,
record, and ultimately
remediate non-
compliant resources
Immediate
Impact
● PCI DSS
● HIPAA
● GDPR
● SOC 2
● ISO 27001
● NIST 800-53
● NIST CSF
● FedRAMP CCM
● CSA CCM
● CIS for AWS
● CIS for Azure
● CIS for GCP
● CIS for Kubernetes
“DivvyCloud has been the most
successful security product roll-out
in our history.”
Customers
Love and
Trust
DivvyCloud
© 2019 DivvyCloud; Private & Confidential; shared under NDA
Putting
DivvyCloud to
the Test
Proof of Concept
How DivvyCloud will help
● Document sharing
● PoC Kickoff Call
● Requirements tracking
● Pre Deployment configuration
● Deployment of DivvyCloud
● Training
● Onsite workshop
● Regular working sessions
● Exec presentation on POC results
● Roadmap review
Automating security in aws with divvy cloud
Freedom To
Innovate
Data Layers
Events
Identity
Application
Infrastructure
Hosting Options: Best of both worlds
Customer-hosted DivvyCloud hosted
Installation Customer-deployed via Terraform or CloudFormation in
customer’s cloud
Dedicated account & VPC in cloud provider of customer’s
choosing
Maintenance Performed by customer Performed by DivvyCloud
DivvyCloud administration Customer only Customer, with option to include DivvyCloud admin support at
customer’s request
Security & Compliance Full feature set Full feature set
Cloud support All public and private Public only
Extensibility REST API, Plugins, DB-layer REST API, select plugins
Plugins No limitations Only DivvyCloud approved
SSO & RBAC Full feature set Full feature set
Bot remediation Full feature set Alerting, reporting, notification
Automation via queue & topics only
SLA Customer’s SLA 99.5% + DivvyCloud enterprise support
The DivvyCloud Platform
Customer Story
● Large-scale cloud
● Moving their products to
cloud-based delivery
● Had run POCs on all other tools
in the market
● On-boarded DivvyCloud + 400
cloud accounts in a single
Terraform in 1 hour
● Finally got visibility into their
cloud footprint for the 1st time
● DivvyCloud + Cloudability
integration for cost control
automated actions
Customer Story
● Highly regulated
● Massive data sets - every
mortgage, deed and tax payer
● Based on success, also spread
to sister org CSS (back-end
securitization software) with
even larger data sets
● Every mortgage in America is
protected by DivvyCloud
Customer Story ● Cloud-native company
● Multi-cloud
● Replaced a competitor
● Needed action
● Needed integration with their
own tooling
● High growth & complexity
● M&A management

More Related Content

What's hot (10)

PPTX
AWS announces the new Amazon Inspector for continual vulnerability management
Dhaval Soni
 
PDF
Meetup ilm virtual emea
Daliya Spasova
 
PDF
From MSP to MSSP using Elastic
Elasticsearch
 
PDF
Combining Logs, Metrics, and Traces for Unified Observability
Elasticsearch
 
PDF
Search for All with Elastic Workplace Search
Elasticsearch
 
PDF
CSA colorado 2016 presentation CloudPassage
Trish McGinity, CCSK
 
PPTX
Shawn Harris - CCSP SAH v2
Trish McGinity, CCSK
 
PDF
Reinventing enterprise defense with the Elastic Stack
Elasticsearch
 
PDF
Keynote
Elasticsearch
 
PDF
Onsite Training - Secure Web Applications with Alibaba Cloud Web Application...
Forster CHIU
 
AWS announces the new Amazon Inspector for continual vulnerability management
Dhaval Soni
 
Meetup ilm virtual emea
Daliya Spasova
 
From MSP to MSSP using Elastic
Elasticsearch
 
Combining Logs, Metrics, and Traces for Unified Observability
Elasticsearch
 
Search for All with Elastic Workplace Search
Elasticsearch
 
CSA colorado 2016 presentation CloudPassage
Trish McGinity, CCSK
 
Shawn Harris - CCSP SAH v2
Trish McGinity, CCSK
 
Reinventing enterprise defense with the Elastic Stack
Elasticsearch
 
Keynote
Elasticsearch
 
Onsite Training - Secure Web Applications with Alibaba Cloud Web Application...
Forster CHIU
 

Similar to Automating security in aws with divvy cloud (20)

PPTX
Best Practices in Secure Cloud Migration
CloudHesive
 
PDF
DivvyCloud BotFactory Webinar | Cloud Automation
Randi Fuller
 
PDF
Security Spotlight: The Coca Cola Company - CSS ATX 2017
Alert Logic
 
PDF
Enterprise Private Cloud Computing
Cisco Canada
 
PPTX
Container Workload Security Solution Ideas by Mandy Sidana.pptx
Mandy Sidana
 
PPTX
CLOUD NATIVE SECURITY
Maganathin Veeraragaloo
 
PDF
Securing The Clouds with The Standard Best Practices-1.pdf
Chinatu Uzuegbu
 
PPTX
Cloud monitoring overview
Dr. Ramkumar Lakshminarayanan
 
PPTX
Cloud monitoring overview
Dr. Ramkumar Lakshminarayanan
 
PDF
Zsl cloud-management-made-easier-with-scm
zslmarketing
 
PPTX
CloudHesive x Datadog Multi Generational Observability
CloudHesive
 
PDF
Why data security manager SaaS?.........
fortanix Inc
 
PPTX
Hybrid Cloud on AWS
Tom Laszewski
 
PPTX
Automating your AWS Security Operations
Evident.io
 
PPTX
Limewood Event - VMware
BlueChipICT
 
PDF
365 Data Centers Presentation for Carriers, Cloud, Content and Channel
365 Data Centers
 
PPTX
Back that *aa s up – bridging multiple clouds for bursting and redundancy
RightScale
 
PPTX
Cloud Security By Dr. Anton Ravindran
GSTF
 
PPTX
Avoid Pitfalls in Cloud Journey.pptx
Raunak Sharan
 
PDF
Best Practices for AWS Cloud Cost Optimization
Cloudyn
 
Best Practices in Secure Cloud Migration
CloudHesive
 
DivvyCloud BotFactory Webinar | Cloud Automation
Randi Fuller
 
Security Spotlight: The Coca Cola Company - CSS ATX 2017
Alert Logic
 
Enterprise Private Cloud Computing
Cisco Canada
 
Container Workload Security Solution Ideas by Mandy Sidana.pptx
Mandy Sidana
 
CLOUD NATIVE SECURITY
Maganathin Veeraragaloo
 
Securing The Clouds with The Standard Best Practices-1.pdf
Chinatu Uzuegbu
 
Cloud monitoring overview
Dr. Ramkumar Lakshminarayanan
 
Cloud monitoring overview
Dr. Ramkumar Lakshminarayanan
 
Zsl cloud-management-made-easier-with-scm
zslmarketing
 
CloudHesive x Datadog Multi Generational Observability
CloudHesive
 
Why data security manager SaaS?.........
fortanix Inc
 
Hybrid Cloud on AWS
Tom Laszewski
 
Automating your AWS Security Operations
Evident.io
 
Limewood Event - VMware
BlueChipICT
 
365 Data Centers Presentation for Carriers, Cloud, Content and Channel
365 Data Centers
 
Back that *aa s up – bridging multiple clouds for bursting and redundancy
RightScale
 
Cloud Security By Dr. Anton Ravindran
GSTF
 
Avoid Pitfalls in Cloud Journey.pptx
Raunak Sharan
 
Best Practices for AWS Cloud Cost Optimization
Cloudyn
 
Ad

More from John Varghese (20)

PPTX
Lessons Learned From Cloud Migrations: Planning is Everything
John Varghese
 
PPTX
Leveraging AWS Cloudfront & S3 Services to Deliver Static Assets of a SPA
John Varghese
 
PPTX
AWS Transit Gateway-Benefits and Best Practices
John Varghese
 
PPTX
Bridging Operations and Development With Observabilty
John Varghese
 
PPTX
Security Observability for Cloud Based Applications
John Varghese
 
PPTX
Who Broke My Crypto
John Varghese
 
PPTX
Building an IoT System to Protect My Lunch
John Varghese
 
PPTX
Building a Highly Secure S3 Bucket
John Varghese
 
PPTX
Reduce Amazon RDS Costs up to 50% with Proxies
John Varghese
 
PPTX
Keynote - Lead the change around you
John Varghese
 
PDF
AWS Systems manager 2019
John Varghese
 
PDF
Acd19 kubertes cluster at scale on aws at intuit
John Varghese
 
PPTX
Emerging job trends and best practices in the aws community
John Varghese
 
PDF
AWS temporary credentials challenges in prevention detection mitigation
John Varghese
 
PDF
Securing aws workloads with embedded application security
John Varghese
 
PPTX
Of CORS thats a thing how CORS in the cloud still kills security
John Varghese
 
PPTX
Native cloud security monitoring
John Varghese
 
PDF
Last year in AWS - 2019
John Varghese
 
PDF
Gpu accelerated BERT deployment on aws
John Varghese
 
PPTX
EKS security best practices
John Varghese
 
Lessons Learned From Cloud Migrations: Planning is Everything
John Varghese
 
Leveraging AWS Cloudfront & S3 Services to Deliver Static Assets of a SPA
John Varghese
 
AWS Transit Gateway-Benefits and Best Practices
John Varghese
 
Bridging Operations and Development With Observabilty
John Varghese
 
Security Observability for Cloud Based Applications
John Varghese
 
Who Broke My Crypto
John Varghese
 
Building an IoT System to Protect My Lunch
John Varghese
 
Building a Highly Secure S3 Bucket
John Varghese
 
Reduce Amazon RDS Costs up to 50% with Proxies
John Varghese
 
Keynote - Lead the change around you
John Varghese
 
AWS Systems manager 2019
John Varghese
 
Acd19 kubertes cluster at scale on aws at intuit
John Varghese
 
Emerging job trends and best practices in the aws community
John Varghese
 
AWS temporary credentials challenges in prevention detection mitigation
John Varghese
 
Securing aws workloads with embedded application security
John Varghese
 
Of CORS thats a thing how CORS in the cloud still kills security
John Varghese
 
Native cloud security monitoring
John Varghese
 
Last year in AWS - 2019
John Varghese
 
Gpu accelerated BERT deployment on aws
John Varghese
 
EKS security best practices
John Varghese
 
Ad

Recently uploaded (20)

PDF
Generative AI vs Predictive AI-The Ultimate Comparison Guide
Lily Clark
 
PPTX
AI Code Generation Risks (Ramkumar Dilli, CIO, Myridius)
Priyanka Aash
 
PPTX
Dev Dives: Automate, test, and deploy in one place—with Unified Developer Exp...
AndreeaTom
 
PPTX
What-is-the-World-Wide-Web -- Introduction
tonifi9488
 
PDF
Market Insight : ETH Dominance Returns
CIFDAQ
 
PPTX
The Future of AI & Machine Learning.pptx
pritsen4700
 
PDF
Researching The Best Chat SDK Providers in 2025
Ray Fields
 
PPTX
Applied-Statistics-Mastering-Data-Driven-Decisions.pptx
parmaryashparmaryash
 
PDF
How ETL Control Logic Keeps Your Pipelines Safe and Reliable.pdf
Stryv Solutions Pvt. Ltd.
 
PDF
Make GenAI investments go further with the Dell AI Factory
Principled Technologies
 
PDF
Research-Fundamentals-and-Topic-Development.pdf
ayesha butalia
 
PDF
Google I/O Extended 2025 Baku - all ppts
HusseinMalikMammadli
 
PPTX
Agile Chennai 18-19 July 2025 | Emerging patterns in Agentic AI by Bharani Su...
AgileNetwork
 
PDF
Presentation about Hardware and Software in Computer
snehamodhawadiya
 
PDF
RAT Builders - How to Catch Them All [DeepSec 2024]
malmoeb
 
PDF
Peak of Data & AI Encore - Real-Time Insights & Scalable Editing with ArcGIS
Safe Software
 
PDF
MASTERDECK GRAPHSUMMIT SYDNEY (Public).pdf
Neo4j
 
PDF
State-Dependent Conformal Perception Bounds for Neuro-Symbolic Verification
Ivan Ruchkin
 
PPTX
cloud computing vai.pptx for the project
vaibhavdobariyal79
 
PPTX
Introduction to Flutter by Ayush Desai.pptx
ayushdesai204
 
Generative AI vs Predictive AI-The Ultimate Comparison Guide
Lily Clark
 
AI Code Generation Risks (Ramkumar Dilli, CIO, Myridius)
Priyanka Aash
 
Dev Dives: Automate, test, and deploy in one place—with Unified Developer Exp...
AndreeaTom
 
What-is-the-World-Wide-Web -- Introduction
tonifi9488
 
Market Insight : ETH Dominance Returns
CIFDAQ
 
The Future of AI & Machine Learning.pptx
pritsen4700
 
Researching The Best Chat SDK Providers in 2025
Ray Fields
 
Applied-Statistics-Mastering-Data-Driven-Decisions.pptx
parmaryashparmaryash
 
How ETL Control Logic Keeps Your Pipelines Safe and Reliable.pdf
Stryv Solutions Pvt. Ltd.
 
Make GenAI investments go further with the Dell AI Factory
Principled Technologies
 
Research-Fundamentals-and-Topic-Development.pdf
ayesha butalia
 
Google I/O Extended 2025 Baku - all ppts
HusseinMalikMammadli
 
Agile Chennai 18-19 July 2025 | Emerging patterns in Agentic AI by Bharani Su...
AgileNetwork
 
Presentation about Hardware and Software in Computer
snehamodhawadiya
 
RAT Builders - How to Catch Them All [DeepSec 2024]
malmoeb
 
Peak of Data & AI Encore - Real-Time Insights & Scalable Editing with ArcGIS
Safe Software
 
MASTERDECK GRAPHSUMMIT SYDNEY (Public).pdf
Neo4j
 
State-Dependent Conformal Perception Bounds for Neuro-Symbolic Verification
Ivan Ruchkin
 
cloud computing vai.pptx for the project
vaibhavdobariyal79
 
Introduction to Flutter by Ayush Desai.pptx
ayushdesai204
 

Automating security in aws with divvy cloud

  • 1. DivvyCloud Continuous Security & Compliance for the Cloud
  • 2. DivvyCloud protects cloud and container environments from: ● Misconfigurations ● Policy violations ● Threats ● IAM challenges Cloud and Container Security
  • 3. How does it work? Harvest Unify Analysis Action Pervasively harvest data using cloud native API endpoints Convert infrastructure data into unified multicloud resource data model Analyze unified data and identify change in cloud environment Take action to notify, record, and ultimately remediate non- compliant resources
  • 4. Immediate Impact ● PCI DSS ● HIPAA ● GDPR ● SOC 2 ● ISO 27001 ● NIST 800-53 ● NIST CSF ● FedRAMP CCM ● CSA CCM ● CIS for AWS ● CIS for Azure ● CIS for GCP ● CIS for Kubernetes
  • 5. “DivvyCloud has been the most successful security product roll-out in our history.” Customers Love and Trust DivvyCloud © 2019 DivvyCloud; Private & Confidential; shared under NDA
  • 6. Putting DivvyCloud to the Test Proof of Concept How DivvyCloud will help ● Document sharing ● PoC Kickoff Call ● Requirements tracking ● Pre Deployment configuration ● Deployment of DivvyCloud ● Training ● Onsite workshop ● Regular working sessions ● Exec presentation on POC results ● Roadmap review
  • 10. Hosting Options: Best of both worlds Customer-hosted DivvyCloud hosted Installation Customer-deployed via Terraform or CloudFormation in customer’s cloud Dedicated account & VPC in cloud provider of customer’s choosing Maintenance Performed by customer Performed by DivvyCloud DivvyCloud administration Customer only Customer, with option to include DivvyCloud admin support at customer’s request Security & Compliance Full feature set Full feature set Cloud support All public and private Public only Extensibility REST API, Plugins, DB-layer REST API, select plugins Plugins No limitations Only DivvyCloud approved SSO & RBAC Full feature set Full feature set Bot remediation Full feature set Alerting, reporting, notification Automation via queue & topics only SLA Customer’s SLA 99.5% + DivvyCloud enterprise support
  • 12. Customer Story ● Large-scale cloud ● Moving their products to cloud-based delivery ● Had run POCs on all other tools in the market ● On-boarded DivvyCloud + 400 cloud accounts in a single Terraform in 1 hour ● Finally got visibility into their cloud footprint for the 1st time ● DivvyCloud + Cloudability integration for cost control automated actions
  • 13. Customer Story ● Highly regulated ● Massive data sets - every mortgage, deed and tax payer ● Based on success, also spread to sister org CSS (back-end securitization software) with even larger data sets ● Every mortgage in America is protected by DivvyCloud
  • 14. Customer Story ● Cloud-native company ● Multi-cloud ● Replaced a competitor ● Needed action ● Needed integration with their own tooling ● High growth & complexity ● M&A management