New updates to Prisma Cloud, Palo Alto Networks’ Cloud Security Posture Management (CSPM) solution, helps eliminate dangerous cloud blind spots and free security teams from the burden of alert fatigue. These critical features are available to the 2,000+ enterprises that trust Prisma Cloud, as well as future customers.

Cloud environments are growing ever more complex as organisations add more cloud providers, users, applications and resources.

Prisma Cloud CSPM

Companies don’t want to slow down to secure the Cloud, and they shouldn’t have to"

Most security solutions are not designed for this new world and lack the end-to-end visibility needed to accurately assess risks and alert security teams of advanced attacks, leaving them to deal with both unsecured cloud resources and the cacophony of false-positive alerts. Prisma Cloud CSPM updates help security teams address these issues.

Companies don’t want to slow down to secure the Cloud, and they shouldn’t have to,” said Varun Badhwar, Senior Vice President for Prisma Cloud at Palo Alto Networks.

Efficient cyber-threat detection

Varun adds, “An ideal CSPM solution needs to offer coverage for all cloud resources, should stay up to date as new resources are introduced, and must effectively detect real attacks, while minimising unnecessary false positives. Prisma Cloud addresses these issues and allows organisations to move quickly, while staying secure.”

The five new features of Prisma Cloud are:

  • True Internet Exposure

Legacy CSPM solutions generate alerts for any overly permissive security group, even if the security group is not publicly exposed. True Internet Exposure provides end-to-end network path visibility between any source and destination, eliminating needless alerts associated with unexposed cloud instances and security groups.

  • Visibility-as-Code

Cloud service providers release and update hundreds of new services for their platforms each year. When organisations use these new services before their CSPM solution supports them, they are left with security blind spots. With Visibility-as-Code, Prisma Cloud can now support new cloud services in days, providing development teams with the freedom to take advantage of the latest cloud services, while giving the security teams the security measures that they need.

  • Network Data Exfiltration Detection

Many basic security solutions solely focus on detecting misconfigurations based on static rules, so they may not be effective when it comes to real security attack objectives, such as data exfiltration.

Prisma Cloud uses Machine Learning to analyse vast amounts of network flow logs and understand the typical traffic pattern of each customer, which is then used to detect and alert on abnormal egress traffic to any IP address, including TOR exit nodes. This allows security teams to focus their remediation efforts on the most dangerous data exfiltration attacks and avoid unnecessary alert storms.

  • Anomalous Compute Provisioning Detection

Security teams need an effective way to detect crypto jacking and other abnormal provisioning of compute resources. Anomalous Compute Provisioning Detection can identify the provisioning of an abnormal number of VMs, which can often be attributable to either crypto jacking or resource misuse. The Machine Learning-based policy also alerts security teams if a user appears to jump from one location to another or tries to hide behind a TOR exit node.

  • Customizable Object-Level Scanning for AWS S3

Prisma Cloud assesses resource configuration and enables customers to scan objects in their S3 buckets for public exposure, identify sensitive data and detect malware. Customizable Object-Level Scanning now gives customers a la carte scanning, freeing them to self-select specific scanning capabilities. This saves time and cost, while also reducing the volume of alerts.

Identifying cloud infrastructure threats

Gaining visibility into misconfigurations and identifying cloud infrastructure threats across dynamic public cloud environments is a continued challenge for organisations,” said Enterprise Strategy Group’s (ESG) Vice President and Group Director, Cyber Security, Doug Cahill.

Doug adds, “The new capabilities in Prisma Cloud allow security teams to do this with greater breadth than before and lessen the overall amount of alerts that must be addressed by security teams.

Stay ahead in the era of intelligent security systems powered by Artificial Intelligence with our special e-magazine on AI in security.

In case you missed it

How can physical security systems make schools safer?
How can physical security systems make schools safer?

Students deserve a safe and positive environment where they can learn and thrive. Teachers and administrators should be able to focus on their primary role of educating students be...

DNAKE smart intercom elevates Dickensa 27 security
DNAKE smart intercom elevates Dickensa 27 security

Dickensa 27, a modern residential complex in Warsaw, Poland, sought to enhance its security, communication, and convenience for residents through advanced intercom solutions. ...

Anviz transforms traditional property management into a smart reality, making digitisation more than just talk
Anviz transforms traditional property management into a smart reality, making digitisation more than just talk

The Middle East has recently expanded its real estate market as the region's economy grows and urbanisation accelerates. This trend has led to an increasing demand for smart securi...

Quick poll
How likely is it that companies will invest in cloud-based physical security solutions in the next 5 years?