Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
The Fugue Platform equips teams with the essential tools to construct, implement, and uphold cloud security throughout all phases of the development lifecycle. We are so sure that Fugue will provide you with immediate benefits that we offer a guarantee. Utilizing the open-source Open Policy Agent (OPA) standard, Fugue integrates policy as code for Infrastructure as Code (IaC) and cloud infrastructure. Incorporate IaC checks seamlessly into your git workflows and CI/CD pipelines with Regula, an open-source utility driven by OPA. You can also create tailored rules, including checks that span multiple resources, with Rego, the straightforward yet powerful open-source language of OPA. Manage your IaC security for cloud resources, Kubernetes, and containers from a single platform, ensuring uniform policy enforcement throughout the development process. Assess the outcomes of security and compliance evaluations on IaC across your entire organization, and gain the ability to access and export comprehensive tenant-wide reports specific to IaC security and compliance. This streamlined approach not only enhances security but also simplifies compliance efforts across teams.
Description
Mondoo serves as a comprehensive platform for security and compliance, aiming to significantly mitigate critical vulnerabilities within businesses by merging complete asset visibility, risk assessment, and proactive remediation. It catalogs a thorough inventory of all types of assets, including cloud services, on-premises systems, SaaS applications, endpoints, network devices, and developer pipelines, while consistently evaluating their configurations, vulnerabilities, and interrelations. By incorporating business relevance, such as the importance of an asset, potential exploitation risks, and deviations from established policies, it effectively scores and identifies the most pressing threats. Users are provided with options for guided remediation through pre-tested code snippets and playbooks, or they can opt for autonomous remediation facilitated by orchestration pipelines, which include features for tracking, ticket generation, and verification. Additionally, Mondoo allows for the integration of third-party findings, works seamlessly with DevSecOps toolchains including CI/CD, Infrastructure as Code (IaC), and container registries, and boasts over 300 compliance frameworks and benchmark templates to ensure a thorough approach to security. Its robust functionality not only enhances organizational resilience but also streamlines compliance processes, offering a holistic solution for modern security challenges.
API Access
Has API
No
API Access
Has API
Yes
Integrations
AWS CloudFormation
No
Amazon Web Services (AWS)
No
Arista Networks
No
Atlassian Insight
No
Azure Blob Storage
No
Azure Container Registry
No
Azure DevOps
No
CloudLinux
No
Git
No
GitHub
No
Integrations
AWS CloudFormation
Yes
Amazon Web Services (AWS)
Yes
Arista Networks
Yes
Atlassian Insight
Yes
Azure Blob Storage
Yes
Azure Container Registry
Yes
Azure DevOps
Yes
CloudLinux
Yes
Git
Yes
GitHub
Yes
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
Yes
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
No
In Person
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Vendor Details
Company Name
Fugue
Country
United States
Website
www.fugue.co
Vendor Details
Company Name
Mondoo
Founded
2020
Country
United States
Website
mondoo.com
Product Features
Cloud Security
Antivirus
No
Application Security
No
Behavioral Analytics
No
Encryption
No
Endpoint Management
No
Incident Management
No
Intrusion Detection System
No
Threat Intelligence
No
Two-Factor Authentication
No
Vulnerability Management
No
Product Features
Vulnerability Management
Asset Discovery
No
Asset Tagging
No
Network Scanning
No
Patch Management
No
Policy Management
No
Prioritization
No
Risk Management
No
Vulnerability Assessment
No
Web Scanning
No