Jurisdictional exposure
Attributes
- Fs Cloud Compliant
- Yes
Sub-services (3)
Compliance Profiles
Pre-built CIS, FSCP, NIST 800-53, and PCI-DSS profiles plus custom ones
Scan Attachments
Scoped profile runs against specific accounts, resource groups, or workloads
Findings Aggregation
Unified view of misconfigurations, vulnerabilities, and drift across scans
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Sovereign regions (1)
- Frankfurt (Financial Services) · FrankfurtIBM Cloud for Financial Services
Commercial regions (13)
Europe (4)
- Frankfurt
- Frankfurt 2
- Madrid
- London
North America (4)
- Montreal
- Toronto
- Dallas
- Washington DC
South America (1)
- São Paulo
Asia (3)
- Chennai
- Osaka
- Tokyo
Oceania (1)
- Sydney
Tags
Equivalent services on other platforms
Unified security operations platform covering vulnerability management, malware detection, baseline configuration scanning, log audit, container image scanning, and compliance posture across Alibaba Cloud and hybrid workloads
Intelligent threat detection service that continuously monitors CloudTrail, VPC flow logs, and DNS logs using ML and curated threat intelligence feeds
Automated vulnerability management service that continually scans EC2, Lambda, and container images for software vulnerabilities and unintended network exposure, delivering prioritised findings with contextual risk scoring
Cloud security posture management service that aggregates, prioritises, and responds to findings from GuardDuty, Inspector, Macie, IAM Access Analyzer, and 60+ third-party partners against CIS, PCI DSS, and AWS Foundational best practices
Unified cloud security posture management (CSPM) and cloud workload protection (CWPP) platform with compliance dashboards, secure score, and regulatory standards assessments
Cloud-native SIEM and security orchestration platform (now Microsoft Sentinel) with ML-based threat detection, hunting queries, playbook automation, and 100+ data connectors
Centralised security and risk management platform for GCP with asset inventory, vulnerability scanning, threat detection, compliance reporting, and security posture dashboards
Kubernetes-native runtime threat detection, vulnerability management, and supply-chain security (formerly StackRox) covering build, deploy, and runtime phases
Unified database security management for Oracle databases on OCI, on-prem, and other clouds, covering security assessment, user risk assessment, activity auditing, data discovery and masking, and SQL firewall policies — included with Autonomous Database