Data security findings: A technical deep dive
Blog post from Sysdig
Sysdig Secure has introduced a new data security feature that integrates sensitive data discovery into its existing platform, enhancing the ability to detect and prioritize security risks without introducing additional complexity or moving sensitive data out of the cloud environment. By leveraging Bedrock Security's AI-powered classification and detection, sensitive data within cloud storage like S3 buckets can be analyzed in place, with only classification results and metadata sent to Sysdig for further processing. This approach not only maintains data within its original environment but also enriches Sysdig's risk model by correlating data with other security signals such as vulnerabilities and misconfigurations. The feature supports querying through SysQL for automated or custom alerting, allowing security teams to quickly identify and address high-risk resources and streamline policy enforcement. This integration strengthens Sysdig's Cloud Native Application Protection Platform (CNAPP) by providing a comprehensive view of business risk and enhancing compliance capabilities, ultimately aiming to reduce the Mean Time to Remediate (MTTR) for risks associated with sensitive data findings.