Onboard in four minutes
Connect an organisation, management group or folder with a read-only role and Sentinel enumerates every account beneath it, including the ones nobody told the security team about.
Cloud-native application protection
Guardian Sentinel unifies posture management, entitlement analysis, workload runtime protection, Kubernetes security and infrastructure-as-code scanning into one CNAPP. The same finding is traceable from the Terraform line that created it to the process that exploited it — because both live in the same data layer.
CNAPP
CSPM told you the bucket was public. CWPP told you a process was suspicious. CIEM told you the role was over-permissioned. None of them told you they were the same incident. Sentinel treats the lifecycle as one continuum with one risk model.
Scroll horizontally to see the full chart on a small screen.
Multi-cloud coverage
Coverage claims are easy; parity is not. This is what Sentinel does natively on each platform, including how workloads are inspected without you installing anything.
| Provider | Services with posture rules | Agentless workload scan | Runtime protection | Entitlement analysis | Managed Kubernetes |
|---|---|---|---|---|---|
| Amazon Web Services | 812 | EBS snapshot scanning, Lambda layers | EC2, ECS, EKS, Fargate, Lambda | IAM, SCP, permission boundaries, Identity Center | EKS, EKS Anywhere |
| Microsoft Azure | 604 | Managed disk snapshots, Functions | VMs, AKS, Container Apps, Functions | Entra ID, RBAC, PIM, managed identities | AKS, Azure Arc clusters |
| Google Cloud | 418 | Persistent disk snapshots, Cloud Run | Compute Engine, GKE, Cloud Run | IAM, org policy, service accounts, Workload Identity | GKE, GKE on-prem |
| Oracle Cloud Infrastructure | 76 | Block volume snapshots | Compute, OKE | IAM policies and compartments | OKE |
| Self-managed Kubernetes | 30 CIS benchmarks | Via node agent | Any CNCF-conformant distribution | RBAC, service accounts, admission policy | OpenShift, Rancher, Talos, kubeadm |
| Private cloud & virtualisation | 42 | Via node agent | VMware vSphere, Nutanix, Proxmox, KVM | Not applicable | Any conformant cluster |
Scroll the table horizontally to see every column.
Connect an organisation, management group or folder with a read-only role and Sentinel enumerates every account beneath it, including the ones nobody told the security team about.
CIEM resolves the full chain — role, policy, boundary, SCP, group, trust relationship — to answer the only question that matters: what can this principal actually do today?
Snapshot scanning gives vulnerability and secret coverage on day one with nothing installed. Add the runtime sensor only where you need behavioural detection and blocking.
Containers & Kubernetes
Kubernetes fails in two places: what you let in, and what happens after. Sentinel covers both with a validating admission webhook that can block a deployment, and a node-level eBPF sensor that watches every syscall a container makes.
Scroll horizontally to see the full diagram on a small screen.
Namespace and cgroup manipulation, /proc abuse, kernel module
loading and privileged socket creation, caught at the syscall boundary in a median of 3.1 seconds.
Containers should be immutable. Any binary that appears in a running container but not in its image is flagged within five seconds and optionally killed on sight.
Admission verifies image signatures, SLSA provenance and SBOM presence, and refuses anything built outside your approved pipelines.
Observed pod-to-pod communication becomes a proposed network policy you can simulate against real traffic before enforcing.
Shift left
Sentinel scans Terraform, OpenTofu, CloudFormation, Bicep, Pulumi, Helm charts and raw Kubernetes manifests in the pipeline, and comments on the exact line that will create the exposure. Once teams see the finding at review time, 86% of criticals never reach an account.
Public access block disabled on a bucket receiving billing exports
resource "aws_s3_bucket" "billing_exports" {
bucket = "acme-billing-exports"
}
resource "aws_s3_bucket_public_access_block" "exports" {
bucket = aws_s3_bucket.billing_exports.id
block_public_acls = false # ← finding
ignore_public_acls = false # ← finding
restrict_public_buckets = false # ← finding
}
Why this matters here: Sentinel resolved the downstream data classification for this bucket from the fabric — it receives cost and usage reports containing account identifiers, so the finding is rated critical rather than the default high.
Shift left is not a substitute for runtime. Roughly 40% of real cloud incidents involve resources that were compliant at deploy time and drifted afterwards, or credentials that were valid and then stolen. Both halves are necessary.
Posture in the console
Findings are ranked by exploitability on the actual asset — its exposure, its identity reach, its data classification and whether anything is currently attacking it — not by a severity label copied from a CVE feed.
Scroll horizontally to see the full dashboard on a small screen.
Compliance
Every posture check maps to the control it satisfies across 32 frameworks. Auditors get a live, timestamped evidence trail; engineers get one backlog instead of one per framework.
Each control shows current pass rate, the assets failing it and the exact remediation, refreshed on every scan rather than at quarter end.
Every accepted risk carries an owner, a justification, a compensating control and a date. Sentinel reopens the finding automatically when the date passes, and reports on exception debt by team.
Open exceptions
Produce a signed evidence pack per framework, per scope and per date range, including the raw check results and the change history for every asset in scope.
We had a CSPM tool, a container security tool and an EDR that all disagreed about which workloads existed. Sentinel gave us one asset inventory that engineering actually trusts, and that trust is what finally moved our remediation numbers.
No. Sentinel creates a snapshot using the provider's own API, mounts and analyses it inside your account and region, then deletes it. Only findings and metadata leave — never volume contents, never a copy of a disk, never cross-region.
Read-only by default: the provider's security-audit role plus snapshot creation for agentless scanning. Write permissions are optional and scoped per action — you choose whether Sentinel may quarantine an instance, revoke a key or update a security group, and each is separately grantable and separately audited.
Assets are identified by workload identity rather than by instance ID, so a pod that lives for 40 seconds still produces a complete, attributable record. Findings persist against the deployment, image and owning team even after the individual instance is gone.
The eBPF sensor is measured at under 1% of node CPU and roughly 110 MB of memory per node under production load. It runs unprivileged with a scoped capability set, never as a privileged container, and it fails open — a sensor fault degrades to logging, never to a blocked workload.
Yes — cloud security is licensable on its own and integrates with an existing SIEM or ticketing workflow. It gets substantially better alongside identity protection and endpoint security, because that is what turns a posture finding into a confirmed attack path.
Lambda, Azure Functions and Cloud Run are covered for posture, package vulnerabilities, secret exposure and invocation-level anomaly detection. Managed platform services such as RDS, Cosmos DB and BigQuery are covered by posture, entitlement and data-plane access analysis rather than runtime instrumentation.
A read-only connector produces a full inventory, posture score and prioritised finding list in under an hour. Keep the report whether or not you go further.