Specifications/Technical Information
Application for evaluation machine
- FAQ

Prisma Cloud
Prisma cloud
CWPP (Cloud Workload Protection Platform)
Secure across hosts, containers, serverless, web apps & APIs
Do you have any of these problems?
- Since it is difficult to visualize vulnerabilities in containers on your own, you want to quickly detect and deal with them using tools that comply with the guidelines.
- Suspicious behavior can be detected by the automatic analysis function by "modeling", so countermeasures can be taken at an early stage. (By adding Defender, Host and Serverless are also visualized)
- Security measures in line with industry best practices such as NIST SP 800-190 and CIS benchmarks are possible.

- If a vulnerability is discovered after deployment, it will require a lot of rework, so we want to deal with it as close to the development stage as possible.
- I want to perform a security check before delivery to ensure the quality of the delivery of the development outsourced.
- Scan container images in conjunction with CI/CD tools to identify security issues before deployment and minimize development rework
- Security quality at the time of delivery can be guaranteed by scanning container images at the development stage.

- Since it is difficult to deal with a container environment that rapidly increases and decreases manually, we want to maintain security by automating it as much as possible.
- "Modeling" enables automatic control, enabling protection without the need for administrator intervention even in environments that continue to expand
- It is possible to automatically grasp and limit what kind of communication usually occurs and what kind of process is running by "modeling"

What can Prisma Cloud (CWPP) do?

Prisma Cloud easily integrates security into your CI/CD workflows, registries, and running stacks.
We provide protection for the entire application cycle in public clouds, private clouds, and on-premises environments.
Prisma Cloud × LeanSeeks
Dealing with the large number of vulnerabilities detected by Prisma Cloud starting with the "really high-risk ones" is the key to efficiency.
LeanSeeks (vulnerability triage) SSVC-based triage solution that can immediately prioritize security vulnerabilities that are detected in large numbers and narrow down the vulnerabilities that really need to be dealt with. vulnerability countermeasures.
*SSVC is a vulnerability triage framework based on the presence and maturity of exploits by North American CISA.
https://www.cisa.gov/stakeholder-specific-vulnerability-categorization-ssvc
- Point 1: Triage to determine truly dangerous vulnerabilities is achieved by adding coefficients based on cutting-edge foreign intelligence and unique perspectives to conventional security theory.
- Point 2: In addition to filtering out vulnerabilities that do not need to be addressed, it is possible to find dangerous vulnerabilities buried in low CVSS scores and raise alerts.

Inquiry/Document request
In charge of Macnica DevOps
- TEL:045-476-1972
- E-mail:devops-sales@macnica.co.jp
Weekdays: 9:00-17:00