In conjunction with

Automated Security Compliance Across Public And Private Clouds

Cloud Raxak sells automated security compliance for cloud infrastructure, aimed at enterprises, developers folding security into DevOps workflows, and cloud startups that must demonstrate configuration controls are in place. Financial services and healthcare organizations are a stated focus, since regulated buyers carry the heaviest audit burden and the largest manual compliance cost. The company is based in Los Gatos, California, was founded by security and enterprise engineers, and announced its cloud-based compliance service in April 2015.

Its product, Raxak Protect, applies technical control profiles derived from Defense Information Systems Agency and NIST guidance to virtual machines running in private and public clouds. The service scans systems, identifies where a configuration has drifted from the chosen profile, and remediates the gap automatically instead of handing an engineer a report to work through. It runs agentless to limit resource consumption on protected instances and repeats runtime integrity checks so compliance holds after the initial pass.

Coverage spans AWS, Microsoft Azure, Google Cloud, IBM Cloud, and VMware, and the product is delivered either as a SaaS subscription or as an on-premises appliance for organizations that cannot send configuration data outside their perimeter. Cloud Raxak frames the work as one-touch compliance driven through the IT service catalog, so a security profile attaches when a workload is provisioned rather than being retrofitted later. Integrations and partnerships include HP Cloud Service Automation, IBM Cloud, Intel, and the AWS Partner Network.

Market Segment:

Compliance

Categories:

Compliance Management