Jurisdictional exposure
Attributes
- Agent Based
- Yes
Sub-services (4)
Vulnerability Management
Agent-based OS and application CVE scanning with fix suggestions
Baseline Checks
CIS-aligned configuration auditing across ECS and container workloads
Malware Detection
Runtime threat detection on ECS instances using ML behavioural analysis
Container Scan
Image and runtime scanning for ACK and ACR resources
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Sovereign regions (11)
- China (Hangzhou) · HangzhouAlibaba Cloud China
- China (Beijing) · BeijingAlibaba Cloud China
- China (Shanghai) · ShanghaiAlibaba Cloud China
- China (Shenzhen) · ShenzhenAlibaba Cloud China
- China (Chengdu) · ChengduAlibaba Cloud China
- China (Zhangjiakou) · ZhangjiakouAlibaba Cloud China
- China (Hohhot) · HohhotAlibaba Cloud China
- China (Qingdao) · QingdaoAlibaba Cloud China
- China (Heyuan) · HeyuanAlibaba Cloud China
- China (Ulanqab) · UlanqabAlibaba Cloud China
- China (Wuhan) · WuhanAlibaba Cloud China
Commercial regions (15)
Europe (2)
- Frankfurt
- London
North America (2)
- Silicon Valley
- Virginia
Asia (9)
- Hong Kong
- Mumbai
- Jakarta
- Tokyo
- Kuala Lumpur
- Manila
- Singapore
- Seoul
- Bangkok
Oceania (1)
- Sydney
Middle East (1)
- Dubai
Tags
Equivalent services on other platforms
Intelligent threat detection service that continuously monitors CloudTrail, VPC flow logs, and DNS logs using ML and curated threat intelligence feeds
Automated vulnerability management service that continually scans EC2, Lambda, and container images for software vulnerabilities and unintended network exposure, delivering prioritised findings with contextual risk scoring
Cloud security posture management service that aggregates, prioritises, and responds to findings from GuardDuty, Inspector, Macie, IAM Access Analyzer, and 60+ third-party partners against CIS, PCI DSS, and AWS Foundational best practices
Unified cloud security posture management (CSPM) and cloud workload protection (CWPP) platform with compliance dashboards, secure score, and regulatory standards assessments
Cloud-native SIEM and security orchestration platform (now Microsoft Sentinel) with ML-based threat detection, hunting queries, playbook automation, and 100+ data connectors
Centralised security and risk management platform for GCP with asset inventory, vulnerability scanning, threat detection, compliance reporting, and security posture dashboards
Unified CSPM and compliance posture service covering IBM Cloud and hybrid-cloud estates, with built-in scans against CIS Benchmark, FS Cloud Controls, NIST 800-53, and custom profiles, plus findings aggregation into IBM QRadar
Kubernetes-native runtime threat detection, vulnerability management, and supply-chain security (formerly StackRox) covering build, deploy, and runtime phases
Unified database security management for Oracle databases on OCI, on-prem, and other clouds, covering security assessment, user risk assessment, activity auditing, data discovery and masking, and SQL firewall policies — included with Autonomous Database