Cloud Security
CSPM (Cloud Security Posture Management)
Also known as: Cloud posture management
Definition
A category of tools that continuously assess cloud accounts against best-practice and compliance baselines to detect and remediate misconfigurations.
Examples
- Wiz, Prisma Cloud, or Microsoft Defender for Cloud flagging an S3 bucket with public ACLs.
- AWS Security Hub aggregating CIS Foundations Benchmark findings across accounts.
Related terms
Cloud Security
The set of policies, controls, and technologies that protect data, applications, and infrastructure hosted in public, private, or hybrid cloud environments.
Cloud Misconfiguration
Cloud Misconfiguration — definition coming soon.
CNAPP (Cloud-Native Application Protection)
An integrated security platform that combines CSPM, CWPP, CIEM, IaC scanning, and runtime detection to protect cloud-native applications from build to runtime.
CWPP (Cloud Workload Protection Platform)
A platform that protects cloud workloads — virtual machines, containers, and serverless functions — across their entire lifecycle, from build to runtime.
CIEM (Cloud Infrastructure Entitlement Management)
A discipline and tooling category that discovers, analyzes, and right-sizes the identities and permissions that exist inside cloud environments.
Compliance
The discipline of meeting legal, regulatory, contractual, and internal security requirements through documented controls, evidence collection, and ongoing assessment.