Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Automated security measures for AWS provide a hands-free approach to gaining insights and implementing remediation for AWS infrastructure. It is crucial to ensure that AWS Config is enabled across all regions to maintain oversight. Additionally, measures should be taken to identify and halt public access to S3 buckets, whether through read, write, or full control permissions. Automatic enforcement of encryption for S3 objects and volumes is also essential. Furthermore, blocking login attempts from unauthorized IP addresses can enhance security. Non-compliant development resources must be curtailed, and it is advisable to remove any unused elastic load balancers. Implementing an IP restriction policy on AWS resources should be done automatically to reinforce security. Newly created internet-facing Elastic Load Balancers (ELBs) should be deleted unless they align with security protocols. Ports should only remain open in accordance with established policies. For RDS, it is necessary to terminate any unencrypted instances that are publicly accessible. Continuous monitoring and remediation against over a hundred rules are vital, ensuring compliance with AWS CIS benchmarks and adherence to best practices in AWS management. This comprehensive approach ensures a robust security posture for your cloud environment.
Description
Cloud Custodian empowers users to oversee their cloud assets through a system of filtering, tagging, and executing various actions. Utilizing a YAML domain-specific language, it allows for the creation of rules that help maintain a cloud infrastructure which is not only secure but also optimized for cost efficiency. By streamlining the process, it replaces complex cloud-specific scripts with more straightforward syntax, ensuring that policies are effectively applied across your infrastructure. The tool is compatible with major public cloud platforms such as AWS, Azure, and GCP, with additional support for Kubernetes, Tencent Cloud, and OpenStack currently in beta. It actively enforces security measures by seamlessly integrating with the control plane of cloud providers, enabling real-time remediation of issues. In addition, it features comprehensive metrics and reporting capabilities. Users can schedule resources to be turned off during non-peak hours to minimize expenses, while also identifying and removing unused assets by analyzing utilization metrics. Tagging capabilities allow for easy management of underused resources. Furthermore, Cloud Custodian can be executed in various environments, whether locally, on an instance, or in a serverless format through AWS Lambda, providing flexibility in deployment options. This versatility makes it a vital tool for efficient cloud resource management.
API Access
Has API
No
API Access
Has API
No
Integrations
Amazon Web Services (AWS)
Yes
Slack
Yes
AWS CloudTrail
Yes
AWS Config
Yes
AWS Lambda
No
Amazon GuardDuty
Yes
Amazon Macie
Yes
Blink
No
Docker
No
GitHub
No
Integrations
Amazon Web Services (AWS)
Yes
Slack
Yes
AWS CloudTrail
No
AWS Config
No
AWS Lambda
Yes
Amazon GuardDuty
No
Amazon Macie
No
Blink
Yes
Docker
Yes
GitHub
Yes
Pricing Details
$75 per month
Free Trial
Yes
Free Version
Yes
Pricing Details
Free
Free Trial
No
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Bitcanopy
Founded
2016
Country
United States
Website
www.bitcanopy.com
Vendor Details
Company Name
Cloud Custodian
Website
cloudcustodian.io
Product Features
Cloud Management
Access Control
Yes
Billing & Provisioning
No
Capacity Analytics
No
Cost Management
Yes
Demand Monitoring
No
Multi-Cloud Management
No
Performance Analytics
No
SLA Management
No
Supply Monitoring
No
Workflow Approval
No
Cloud Security
Antivirus
No
Application Security
No
Behavioral Analytics
No
Encryption
No
Endpoint Management
No
Incident Management
No
Intrusion Detection System
No
Threat Intelligence
No
Two-Factor Authentication
No
Vulnerability Management
No
Product Features
Cloud Cost Management
Cost Reduction Optimization
No
Dashboard
No
Data Import/Export
No
Data Storage
No
Data Visualization
No
Resource Usage Reporting
No
Roles / Permissions
No
Spend and Cost Reporting
No
Cloud Management
Access Control
No
Billing & Provisioning
No
Capacity Analytics
No
Cost Management
No
Demand Monitoring
No
Multi-Cloud Management
No
Performance Analytics
No
SLA Management
No
Supply Monitoring
No
Workflow Approval
No