Fugue Organization Management Updated with Cloud Security
December 15, 2021

Fugue announced a cloud security platform that enables enterprises to establish centralized security visibility and governance over their cloud environments, while empowering individual business units with the flexibility they need to innovate and compete.

Now, Fugue Organization Management operationalizes cloud security across the entire organization, allowing companies to effectively scale their existing cloud security resources using policy-based automation and help engineering teams eliminate costly delays and deliver secure cloud infrastructure fast.

As enterprises expand cloud usage for more applications, the complexity of keeping their environment secure and in compliance grows. Different applications carry different risks and policy requirements based on use case and locality, and they often use different cloud service providers, system architectures, and tooling. Managed service providers face similar challenges managing cloud security for multiple clients that each bring a variety of unique use cases, policy requirements, and organizational structures. Fugue’s Organization Management streamlines onboarding and security oversight for large and complex cloud operations, improving operational efficiency by as much as 80%.

"Every enterprise is structured differently, with multiple business units making decisions that address their specific use cases, creating massive security and governance challenges," said Josh Stella, Co-founder and CEO of Fugue. "Within hours, Fugue helps IT and security leaders know their cloud environments are secure and adhere to policy at all times, while empowering individual teams to move fast and efficiently while addressing local requirements."

Fugue empowers central security operations teams with real-time visibility into the full state and security posture of cloud environments across business units or customers. Security teams can:

- View consolidated organization-level reports to gain insight into the compliance and security of all cloud environments across cloud providers.

- Access individual cloud environments as needed to investigate vulnerabilities and modify policy settings to meet required security standards for each use case.

- Operationalize cloud security across the organization with business unit or customer reporting for IT chargebacks.

Fugue ensures that policy-driven cloud security controls are consistently interpreted, implemented and enforced across the entire organization. Security teams can:

- Leverage hundreds of pre-built rules mapped to more than a dozen compliance families and develop custom rules that can address complex, multi-resource vulnerabilities.

- Define organization-wide compliance "families" consisting of pre-built and custom rules and send them to cloud engineering teams for implementation.

- Apply organization-wide compliance families to any or all cloud operations to validate the security of their infrastructure as code and runtime environments.

Individual business units or customers have specific needs and requirements. Fugue enables the logical organization and customization of environments to empower individual engineering teams with the flexibility they need to operate with speed and efficiency. Security teams can:

- Enable role-based access controls (RBAC) for each environment to manage permissions and cloud account access for users, groups and API clients.

- Configure security and compliance settings at the organization or environment level so compliance families can be applied to all environments across the board or customize which specific rules apply to each environment.

- Set up notifications to alert the security team when Fugue identifies policy violations or potential misconfiguration vulnerabilities in any environment.

Fugue secures AWS, Microsoft Azure, and Google Cloud environments and pre-deployment infrastructure as code security checks for Terraform, AWS CloudFormation, Kubernetes manifests, and Dockerfiles. Fugue provides turnkey coverage for SOC 2, NIST 800-53, GDPR, PCI, HIPAA, ISO 27001, CSA CCM, CIS Controls, CIS Docker, the AWS Well-Architected Framework, and CIS Foundations Benchmarks. Fugue’s Unified Policy Engine leverages Open Policy Agent (OPA), the open standard for policy as code and a Cloud Native Computing Foundation (CNCF) graduated project.

Share this

Industry News

May 25, 2022

JFrog introduced Project Pyrsia, an open-source software community initiative that utilizes blockchain technology to secure software packages (A.K.A Binaries) from vulnerabilities and malicious code.

May 25, 2022

Kasm Technologies, in partnership with Docker, has developed Kasm Workspaces as a Containerized Desktop Infrastructure platform for streaming remote workspaces directly to your web browser.

May 25, 2022

Cascadeo announced the integration of Amazon DevOps Guru with cascadeo.io, Cascadeo’s cloud monitoring and management platform that provides users with a single view of multi-cloud or hybrid infrastructure environments.

May 24, 2022

Oracle announced the availability of Java 18, the latest version of the programming language and development platform.

May 24, 2022

Docker announced the acquisition of Tilt, makers of a development environment as code for teams on Kubernetes.

May 24, 2022

F5 announced the release of F5 NGINX for Microsoft Azure, an Azure-native service offering developed in partnership with Microsoft, that helps customers deliver modern applications on Azure with just a few clicks.

May 24, 2022

Pegasystems announced a strategic partnership with Google Cloud that will help enable joint clients to accelerate their digital transformations with Pega’s low-code enterprise software on Google Cloud’s highly scalable cloud services.

May 23, 2022

Sauce Labs announced the release of contract testing with mocking on the Sauce Labs API Testing Platform.

May 23, 2022

Pure Storage announced a series of updates to its Portworx portfolio.

May 23, 2022

StackHawk has secured $20.7 million in capital.

May 19, 2022

Jellyfish announced the launch of Jellyfish Benchmarks, a way to add context around engineering metrics and performance by introducing a method for comparison.

May 19, 2022

Solo.io announced the addition and integration of Cilium networking into its Gloo Mesh platform, providing a complete application-networking solution for companies’ cloud-native digital transformation efforts.

May 19, 2022

Aqua Security announced multiple updates to Aqua Trivy, making it a unified scanner for cloud native security.

May 18, 2022

Red Hat unveiled updates across its portfolio of developer tools designed to help organizations build and deliver applications faster and more consistently across Kubernetes-based hybrid and multicloud environments.

May 18, 2022

Armory announced public early access to their new Continuous Deployment-as-a-Service product.