Surface and remediate runtime posture issues with Workload Protection Findings
Blog post from Datadog
Datadog's Workload Protection Findings, now available in Preview, offers a dedicated space for runtime posture monitoring, separating it from threat detection to help security teams manage urgency across different concerns. Findings identifies and tracks risky behaviors that may not be immediately malicious, such as running compilers in production containers, by providing a separate view that allows teams to address these issues proactively. The feature integrates with Case Management, enabling teams to create cases, assign them, and document remediation steps directly within Datadog, facilitating collaboration among security, SRE, and platform teams. By using runtime telemetry data, Findings connects behaviors to specific hosts, containers, pods, and services, offering comprehensive visibility and contributing to a complete posture life cycle from detection to remediation and verification. This approach helps teams maintain focus during incident response while still addressing underlying risks, ensuring a robust security posture without creating visibility gaps.