Red Hat Advanced Cluster Security

OpenShiftSecurity

Kubernetes-native runtime threat detection, vulnerability management, and supply-chain security (formerly StackRox) covering build, deploy, and runtime phases

Jurisdictional exposure

Provider HQ
USRaleigh, USA

Subject to CLOUD Act, FISA-702, DPF

Sovereign option
No sovereign-flagged regions in the catalogue for this service.

Sub-services (3)

Runtime Detection

Behavioural detection of anomalous container activity

Vulnerability Management

CVE scanning across images, deployed workloads, and node OS

Network Policy Generation

Auto-generated NetworkPolicies based on observed traffic

Compliance & Certifications

This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.

Tags

Equivalent services on other platforms

Alibaba Security CenterAlibaba

Unified security operations platform covering vulnerability management, malware detection, baseline configuration scanning, log audit, container image scanning, and compliance posture across Alibaba Cloud and hybrid workloads

Amazon GuardDutyAWS

Intelligent threat detection service that continuously monitors CloudTrail, VPC flow logs, and DNS logs using ML and curated threat intelligence feeds

Amazon InspectorAWS

Automated vulnerability management service that continually scans EC2, Lambda, and container images for software vulnerabilities and unintended network exposure, delivering prioritised findings with contextual risk scoring

AWS Security HubAWS

Cloud security posture management service that aggregates, prioritises, and responds to findings from GuardDuty, Inspector, Macie, IAM Access Analyzer, and 60+ third-party partners against CIS, PCI DSS, and AWS Foundational best practices

Microsoft Defender for CloudAzure

Unified cloud security posture management (CSPM) and cloud workload protection (CWPP) platform with compliance dashboards, secure score, and regulatory standards assessments

Microsoft SentinelAzure

Cloud-native SIEM and security orchestration platform (now Microsoft Sentinel) with ML-based threat detection, hunting queries, playbook automation, and 100+ data connectors

Security Command CenterGCP

Centralised security and risk management platform for GCP with asset inventory, vulnerability scanning, threat detection, compliance reporting, and security posture dashboards

IBM Cloud Security and Compliance CenterIBM

Unified CSPM and compliance posture service covering IBM Cloud and hybrid-cloud estates, with built-in scans against CIS Benchmark, FS Cloud Controls, NIST 800-53, and custom profiles, plus findings aggregation into IBM QRadar

OCI Data SafeOracle

Unified database security management for Oracle databases on OCI, on-prem, and other clouds, covering security assessment, user risk assessment, activity auditing, data discovery and masking, and SQL firewall policies — included with Autonomous Database

OCI Threat IntelligenceOracle

Managed threat-intelligence feed aggregating IoCs (malicious IPs, domains, file hashes, TTPs) from Oracle-curated and third-party sources, consumable via SDK / API and integrated with OCI Logging + Cloud Guard for detection rules

Pricing

Pricing model:subscription-per-node