CSPM Vs. CIEM: Demystifying Two Popular Cloud Security Acronyms

Shai Morag for the Forbes Technology Council By Shai Morag for the Forbes Technology Council

In his first article for the Forbes Technology Council, Ermetic CEO and Co-Founder Shai Morag takes a closer look at…

In his first article for the Forbes Technology Council, Ermetic CEO and Co-Founder Shai Morag takes a closer look at cloud security posture management (CSPM) and cloud infrastructure entitlements management (CIEM). These two technologies are often confused with each other but have some key differences.

CSPM, the more established solution, provides key benefits including discovery and identification of cloud workloads and services, generation of alerts when new deployments or changes pose a risk to the cloud environment, hosts or services, and verification that operational activities are being performed as expected.

The newer solution, CIEM, is offered by Ermetic and detects permission gaps between privileges that are required and those that should be removed, graphs and exposes complex overprivileged relationships between identities and roles, provides policy modifications that remove cloud access risks, and detects and alerts on suspicious access activity, privilege escalation and data deletion that may be associated with credential theft or abuse.

Check out the rest of the article on Forbes to find out more about CSPM and CIEM.

***

Forbes Technology Council

Forbes Technology Council is an invitation-only organization for senior-level technology executives. Members are respected tech leaders selected for the council based on their deep knowledge and diverse experience in the industry.