惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Vercel News
Vercel News
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Apple Machine Learning Research
Apple Machine Learning Research
T
Tailwind CSS Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
人人都是产品经理
人人都是产品经理
V
V2EX
量子位
Last Week in AI
Last Week in AI
Jina AI
Jina AI
博客园 - 【当耐特】
爱范儿
爱范儿
宝玉的分享
宝玉的分享
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Hugging Face - Blog
Hugging Face - Blog
博客园 - 三生石上(FineUI控件)
有赞技术团队
有赞技术团队
小众软件
小众软件
IT之家
IT之家
博客园_首页
博客园 - 聂微东
S
SegmentFault 最新的问题
阮一峰的网络日志
阮一峰的网络日志
博客园 - 叶小钗

Datadog | The Monitor blog

Introducing our open source AI-native SAST Instrument and monitor Boomi integration flows with OpenTelemetry and Datadog Not all index scans are equal: How we cut query latency by over 99% Platform engineering metrics: What to measure and what to ignore Integrate Recorded Future threat intelligence with Datadog Cloud SIEM CI/CD security: threat modeling using a MITRE-style threat matrix CI/CD security: How to secure your GitHub ecosystem Ingress NGINX is EOL: A practical guide for migrating to Kubernetes Gateway API Operating agentic AI with Amazon Bedrock AgentCore and Datadog LLM Observability: Lessons from NTT DATA Introducing the Datadog Code Security MCP Capture and analyze custom heatmaps in Session Replay Understand session replays faster with AI summaries and smart chapters Monitor ClickHouse query performance with Datadog Database Monitoring How we designed empathetic alert sounds for on-call engineers Search and act across Datadog to resolve issues faster with Bits Assistant Measure the business impact of every product change with Datadog Experiments Analyzing round trip query latency Configuring JavaScript caches for better performance Introducing Bits AI Dev Agent for Code Security Datadog achieves ISO 42001 certification for responsible AI Monitor Nutanix clusters, hosts, and VMs with Datadog Monitor Juniper Mist in Datadog A new Host Map for modern infrastructure Annotate traces to improve LLM quality with Datadog LLM Observability What’s new in Cloud SIEM: AI-powered investigations, enhanced threat intelligence, and scalable security operations Explore Kubernetes with native OpenTelemetry data Monitor Oracle Fusion Cloud Applications with Datadog Announcing the Datadog Terraform provider v4.0.0 Scaling Kubernetes workloads on custom metrics How to design cloud environments for AI-powered threat analysis
Monitor the security and compliance posture of your Azure...
2022-02-28 · via Datadog | The Monitor blog

Governance, risk, and compliance (GRC) management presents some unique challenges for organizations that deploy a myriad of cloud resources, services, and accounts. Simple misconfigurations in any of these assets can lead to a serious data breach, and compliance issues become even more prevalent as organizations try to inventory and manage assets across multiple cloud platforms and security and auditing tools. Datadog Cloud Security Misconfigurations enables you to address these gaps in coverage by providing a single place where you can track the compliance posture of your cloud environments, automate evidence collection for audits, and catch misconfigurations that leave your organization vulnerable to attacks.

We’re excited to announce that we’ve expanded our Cloud Security Misconfigurations offering to the Azure platform. Now, you can:

  • Get a high-level overview of your Azure environment’s security and compliance posture with tailored reports
  • Detect drift from compliance controls for Azure resources
  • Correlate findings with other security issues and infrastructure data

Regardless of whether you are running apps in Azure exclusively or leveraging a multi-cloud infrastructure, Cloud Security Misconfigurations offers a complete picture of the state of your resources. And with support for industry-standard frameworks like PCI DSS, SOC 2, GDPR, HIPAA, and CIS, you can easily verify that your cloud and multi-cloud environments follow best practices promoted by the latest compliance and security standards.

Review the compliance posture of Azure resources with curated reports

Datadog’s expert-built security posture dashboard offers a high-level overview of your cloud environments, including Azure. The dashboard also gives you access to compliance reports that are available within minutes of integrating your Azure account with Datadog. These reports are tailored to all of our supported frameworks, enabling you to easily evaluate Azure resources against critical benchmarks. For example, the CIS for Azure report gives you insight into which CIS controls are failing in your environment, along with more details about the misconfigured resources. At the top of the report, you can see a summary of which of these violations require your immediate attention.

Review the security posture of your Azure environment with an expert-built report

This data helps you prioritize the most critical violations and save time on searching for resources that are not compliant, such as those that are potentially accessible to the public internet via methods like SSH or RDP. Restricting access to these methods can protect your resources—and networked devices outside of your Azure environment—from malicious activity and reduce the risk of data breaches.

Detect drift from compliance controls for Azure resources

Datadog Cloud Security Misconfigurations runs over 250 security and compliance rules against your Azure cloud and multi-cloud resources, which enable you to quickly detect when an asset’s configuration deviates from standard compliance controls. For instance, you can spot:

  • a key vault that does not consistently rotate passwords, API keys, and other secrets
  • a SQL Database instance that allows all ingress traffic
  • an App Service web application that does not use the latest version of TLS

When Datadog identifies a violation, it will generate a finding with more information about the associated compliance control, all affected resources, and detailed remediation steps to resolve the issue. Cloud Security Misconfigurations findings also incorporate the infrastructure data that you already collect from Azure via Datadog’s integration, enabling you to contextualize a violation in terms of the affected subscriptions, services, and resource groups. You can review a finding by clicking on a relevant compliance control in any report or by searching for specific Azure resources and compliance controls in the Findings Explorer.

Review compliance violations with Datadog Cloud Security Misconfigurations findings

In the example above, Datadog Cloud Security Misconfigurations identified five Azure SQL servers that allowed all traffic to associated database instances, which can result in an attacker accessing and exposing sensitive data. You can mitigate this issue by updating firewall policies to only allow connections from an approved list of authorized IP addresses.

Correlate findings with other security issues and infrastructure data

Datadog Cloud Security Misconfigurations is a part of the Datadog Cloud Security Platform, which identifies and alerts you to unusual or potentially malicious activity in your environment. You can review findings alongside generated security signals in the platform’s Security Explorer, enabling you to trace activity back to a misconfiguration in an Azure resource.

You can also build team dashboards that incorporate security, compliance, and infrastructure data from all of your Azure resources, allowing you to quickly see an issue’s overall impact. Dashboards are shareable, so you can collaborate with other engineering and GRC teams to resolve a compliance violation.

Build dashboards to review Cloud Security Misconfigurations findings alongside other infrastructure data

Maintain compliance in your Azure environment

Datadog Cloud Security Misconfigurations provides critical insight into the compliance status of your Azure environment while leveraging our existing Azure integration to place that information in context. Cloud Security Misconfigurations is also part of the Datadog Cloud Security Platform, which offers a full-stack solution for threat detection, along with workload and application security. Check out our documentation to learn more, or self-enroll to get started—compliance reports are available within minutes of enrolling. If you don’t already have a Datadog account, you can sign up for a free 14-day trial today.