Following the Inventory, the next step in your TotalCloud workflow is to Discover Vulnerabilties and Misconfigurations.
Here, TotalCloud provides continuous monitoring of your identified resources. Detect vulnerabilities with six-sigma accuracy and uncover misconfigurations by running scans against CIS Benchmarks.
With Qualys TotalCloud, you get a risk-based cloud-native security solution that provides multi-cloud posture visibility and prioritizes cloud misconfigurations, vulnerabilities, assets, and groups of assets based on risk. Gain visibility and control of ephemeral resources through continuously updated and historical views of your cloud inventory and the relationships of assets and resources across multiple dimensions, including instances, services, accounts, security groups, and network interfaces.
You are given two data points in the 'Discover Vulnerabilities and Misconfigurations' section.
The Cloud Risk score is calculated by assessing the vulnerabilities in all your resources to gauge the security risk out of 100. Vulnerabilities are categorized into Critical, High, Medium and Low.
Read more about cloud risk scores here.
To learn more about how cloud risk scores are calculated, refer here.
The second data point is your overall compliance posture. Your AWS resources are tested against CIS Benchmarks to gauge their compliance score out of 100.
Read more about compliance posture here.
Prioritize Threats using TruRisk