Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Automated security measures for AWS provide a hands-free approach to gaining insights and implementing remediation for AWS infrastructure. It is crucial to ensure that AWS Config is enabled across all regions to maintain oversight. Additionally, measures should be taken to identify and halt public access to S3 buckets, whether through read, write, or full control permissions. Automatic enforcement of encryption for S3 objects and volumes is also essential. Furthermore, blocking login attempts from unauthorized IP addresses can enhance security. Non-compliant development resources must be curtailed, and it is advisable to remove any unused elastic load balancers. Implementing an IP restriction policy on AWS resources should be done automatically to reinforce security. Newly created internet-facing Elastic Load Balancers (ELBs) should be deleted unless they align with security protocols. Ports should only remain open in accordance with established policies. For RDS, it is necessary to terminate any unencrypted instances that are publicly accessible. Continuous monitoring and remediation against over a hundred rules are vital, ensuring compliance with AWS CIS benchmarks and adherence to best practices in AWS management. This comprehensive approach ensures a robust security posture for your cloud environment.
Description
ConfigOS has been deployed across both classified and unclassified settings, including tactical and weapon system applications, isolated laboratories, and commercial cloud environments. This innovative solution operates without any client software, eliminating the need for installation of software agents. ConfigOS efficiently scans endpoint systems and can rectify hundreds of STIG controls in less than 90 seconds. It also offers automated rollback for remediation processes, alongside detailed compliance reports and outputs from the STIG Viewer Checklist. Designed for efficiency, ConfigOS can fortify every CAT 1/2/3 STIG control based on an application baseline in roughly 60 minutes, significantly reducing the time needed for RMF accreditation from what typically takes weeks or months. The system supports various Microsoft Windows workstation and server operating systems, as well as SQL Server, IIS, Internet Explorer, Chrome, and all components of Microsoft Office. Additionally, it is compatible with Red Hat versions 5, 6, and 7, SUSE, Ubuntu, and Oracle Linux. With over 10,000 STIG and CIS controls within its content, ConfigOS ensures comprehensive coverage across diverse platforms. Furthermore, the latest enhancements in the Command Center feature a patent-pending technology that enhances its operational capabilities.
API Access
Has API
No
API Access
Has API
No
Integrations
AWS CloudTrail
Yes
AWS Config
Yes
AWS Marketplace
No
Amazon GuardDuty
Yes
Amazon Macie
Yes
Amazon Web Services (AWS)
Yes
Slack
Yes
Integrations
AWS CloudTrail
No
AWS Config
No
AWS Marketplace
Yes
Amazon GuardDuty
No
Amazon Macie
No
Amazon Web Services (AWS)
No
Slack
No
Pricing Details
$75 per month
Free Trial
Yes
Free Version
Yes
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Vendor Details
Company Name
Bitcanopy
Founded
2016
Country
United States
Website
www.bitcanopy.com
Vendor Details
Company Name
SteelCloud
Founded
1987
Country
United States
Website
www.steelcloud.com
Product Features
Cloud Management
Access Control
Yes
Billing & Provisioning
No
Capacity Analytics
No
Cost Management
Yes
Demand Monitoring
No
Multi-Cloud Management
No
Performance Analytics
No
SLA Management
No
Supply Monitoring
No
Workflow Approval
No
Cloud Security
Antivirus
No
Application Security
No
Behavioral Analytics
No
Encryption
No
Endpoint Management
No
Incident Management
No
Intrusion Detection System
No
Threat Intelligence
No
Two-Factor Authentication
No
Vulnerability Management
No
Product Features
Compliance
Archiving & Retention
No
Artificial Intelligence (AI)
No
Audit Management
Yes
Compliance Tracking
Yes
Controls Testing
Yes
Environmental Compliance
No
FDA Compliance
No
HIPAA Compliance
No
ISO Compliance
No
Incident Management
No
OSHA Compliance
No
Risk Management
Yes
Sarbanes-Oxley Compliance
No
Surveys & Feedback
No
Version Control
No
Workflow / Process Automation
No
Cybersecurity
AI / Machine Learning
No
Behavioral Analytics
No
Endpoint Management
Yes
IOC Verification
No
Incident Management
Yes
Tokenization
No
Vulnerability Scanning
Yes
Whitelisting / Blacklisting
No
Endpoint Protection
Activity Log
Yes
Antivirus
No
Application Security
Yes
Behavioral Analytics
No
Device Management
No
Encryption
Yes
Signature Matching
Yes
Web Threat Management
Yes
Whitelisting / Blacklisting
No
Network Security
Access Control
Yes
Analytics / Reporting
No
Compliance Reporting
No
Firewalls
No
Internet Usage Monitoring
No
Intrusion Detection System
No
Threat Response
Yes
VPN
Yes
Vulnerability Scanning
Yes
Vulnerability Management
Asset Discovery
No
Asset Tagging
No
Network Scanning
Yes
Patch Management
No
Policy Management
Yes
Prioritization
No
Risk Management
Yes
Vulnerability Assessment
Yes
Web Scanning
No