Cloudmarker is a cloud monitoring tool and framework. It can be used as a ready-made tool that audits your Azure or GCP cloud environments as well as a framework that allows you to develop your own cloud monitoring software to audit your clouds. As a monitoring tool, it performs the following actions: Retrieves data about each configured cloud using the cloud APIs. Saves or indexes the retrieved data into each configured storage system or indexing engine. Analyzes the data for potential issues and generates events that represent the detected issues. Saves the events to configured storage or indexing engines as well as sends the events as alerts to alerting destinations. Each of the above four aspects of the tool can be configured via a configuration file. For example, the tool can be configured to pull data from Azure and index its data in Elasticsearch while it also pulls data from GCP and indexes the GCP data in MongoDB. Similarly, it is possible to configure the tool to check for unencrypted disks in Azure, generate events for it, and send them as alerts by email when the disk is unencrypted. For more information, please visit: https://cloudmarker.com/
FEATURES
ALTERNATIVES
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Cloud security project focusing on discovering and protecting privileged entities in AWS and Azure environments.
A fully managed service that securely stores, rotates, and manages sensitive data such as database credentials and API keys.
Cloud security platform that provides configuration monitoring, compliance management, and security analysis across multi-cloud environments.
Grype is a vulnerability scanner for container images and filesystems that scans for known vulnerabilities and supports various image formats.
PINNED

Mandos Brief Newsletter
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

PTJunior
An AI-powered penetration testing platform that autonomously discovers, exploits, and documents vulnerabilities while generating NIST-compliant reports.

CTIChef.com Detection Feeds
A tiered cyber threat intelligence service providing detection rules from public repositories with varying levels of analysis, processing, and guidance for security teams.

ImmuniWeb® Discovery
ImmuniWeb Discovery is an attack surface management platform that continuously monitors an organization's external digital assets for security vulnerabilities, misconfigurations, and threats across domains, applications, cloud resources, and the dark web.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.