Release Notes

Release # 04 – August 2, 2019:

Features

  • App Integration
    Cloudnosys provides the facility to get delivery of alerts on your custom apps (Slack, Webhook) in a matter of minutes and without a single line of code. Now, you can Integrate your custom apps to Cloudnosys and get notified of the security risks and alerts in your cloud infrastructure so your team is always up to date with security and compliance posture.
  • Custom Regulation
    Cloudnosys allows users to create new policies or customize provided regulations for your infrastructure with distinguished custom rule sets that can generate reports on specific resources.
  • Azure Signatures
    Cloudnosys has added around 10 new control sets for Azure.

Features Updated

  • Cloudnosys has updated the signature catalogue filter with Azure Categories. You’re now able to view the filtered view of Azure control sets.
  • Cloudnosys has updated the User facing documentation with details of the new feature, Integration.

Bug Fixes

  • This release resolves an issue with the Alerts UI.
  • This release resolves issue with Forget Password Link.
  • This release resolves compliance report bug.
  • This release resolves the issue with CloudEye Alerts.

Release # 03 – June 20, 2019:

Features

  • SOC-2 Services Organization Control
    Cloudnosys has added a new report that is built using the American Institute of CPA (AICPA.org) SOC 2 Controls (2017). AICPA guide on Reporting on Controls as noted as Service Organization Relevant to Security, Availability, Processing Integrity, Confidentiality, or Privacy specifies the components of a SOC 2.
  • GDPR (EU) 2016/679
    Cloudnosys has added The General Data Protection Regulation (EU) 2016/679. It
    is a legal framework that sets guidelines for the data protection, collection and processing of personal information of individuals within the European Union (EU). Superseding the Data Protection Directive 95/46/EC, the regulation contains provisions and requirements pertaining to the processing of personal data of individuals (formally called data subjects in the GDPR) —regardless of its location and the data subjects’ citizenship—that is processing the personal information of data subjects inside the EEA.
  • Cloudnosys Custom Compliance Report
    Added Cloudnosys Custom Compliance Report developed by our experts to evaluate different security parameters such as Audit Log, cryptography, Access Logging, Data Protection, etc.
  • Account Center
    Added billing section in the Cloudnosys environment having details about the licensable resources in user’s account and their instances.
  • Admin Panel
    Users with Administrator access to manage and control cloud accounts. An admin view screen containing a list of all accounts and allowing Admins to edit or update user profile, user package and expiry date from the panel.
  • Region Selector
    Added a region selection step to the Add Account process. Now you must choose a region to create a cloud account.
  • Full-Protection Policy
    Added AWS Full-Protection Policy that vigorously governs the security aspects and impose best practices. This policy quickly mitigate cloud vulnerabilities and misconfiguration and allows one-click remediation.
  • Azure Signatures
    Added 15 new control sets for Azure.

Features Updated

  • Cloudnosys has Improved the dashboard usability by adding a scan date selector. You’re now able to view compliance reports of a particular scan date selected from the selector.
  • Cloudnosys has improved Edit cloud account option by allowing users to change their selected policy.
  • Cloudnosys now includes compliance report after scan completion in email notifications. The compliance report now consists of Risks (failed signatures), Passed signatures and Compliance status.

Bug Fixes

  • This release resolves an issue with the Remediation button on the correlation policy. The Remediation button now displays and works as expected.
  • This release resolves an issue with downloading PDF reports in the Cloudnosys dashboard.
  • This release updates an error message that appears when a read-only user tries to access remediation.
  • This release resolves an issue related to the Risk Alerts emerging after enabling EagleEye.

Release # 02 – December 2, 2018:

Features

  • CIS AWS Benchmark Version 1.0
    Cloudnosys updated the CIS AWS Foundations Benchmark report in the Cloudnosys console of version (1.0) of the CIS AWS Foundations Benchmark. Users can now asses their AWS accounts against the latest CIS AWS Foundations Benchmark guidelines, including multi-factor authentications, AWS Config auditing, review of VPC peering network rules, review of IAM policies, access key rotation, and other improvements. For more information about the CIS AWS Foundations Benchmark report, see CIS Benchmarks .
  • PCI Data Security Standard (PCI DSS 3.2)
    Cloudnosys added a new report, the PCI DSS report that covers technical and operational practices for system components included in or connected to environments with cardholder data.
  • NIST 800-53 Rev 4 – FedRAMP / High
    Cloudnosys has added new report, NIST 800-53 Rev4 that is a publication which recommends security controls for federal information systems and organizations and documents security controls for all federal information systems, except those designed for national security.
  • Alerts UI
    Cloudnosys introduces an Alerts section that pushes notifications of risks and threats in user’s Dashboard.
  • Health Dashboard
    Cloudnosys added the Health dashboard which consist of graphs on the summary of your cloud environment with detailed health statistics about Risks with respect to Groups and Scans.
  • PDF Report
    Added ‘Export PDF’ button that facilitates users to download their complete compliance report with all Risk summaries and Signature level details in PDF format for record keeping.
  • Monitoring/Scheduling
    Cloudnosys provide more control to your scan schedules by automating the span of vulnerability scanning. It allows scheduled scanning with daily, weekly, and monthly intervals.
  • EagleEye
    Cloudnosys provides Real-Time Threat Detection System that monitors your Cloud infrastructure and detects risks with continuous alert notification to User’s Cloudnosys Dashboard.
  • User Account Verification
    Instant email notification on user specified email to verify the new registration on Cloudnosys.
  • Scan Progress Bar
    Cloudnosys has added a progress bar showing the progress of cloud account scanning with scan percentage and time of completion.

Features Updated

  • Cloudnosys has Improved the AWS Audit policy that now actively manages the security groups and grants users to audit and monitor security trails.
  • Cloudnosys has upgraded the usability with the addition of Edit profile facility allowing users to edit their account info and reset password.
  • Cloudnosys has now expedited the Scan Capability which now completes scan and update the whole dashboard within a min.

Bug Fixes

  • This release resolves an issue with Total Risk Count on the Compliance dashboard. All counts are now accurate.
  • This release resolves an issue with filters on the signature catalogue page. All filters appear as intended now.
  • This release resolves a cosmetic issue with the layout of the View Resource drawer.
  • This release resolves an issue related to the no. of resources and status of signature IAM-007.
  • This release resolves an issue related to the scan duration of cloud accounts.

Release # 01 – July 16, 2018:

Features

  • ISO/IEC 27001
    Cloudnosys has added ISO 27001/27002 report which is a widely-adopted global security standard that sets requirements and best practices for a systematic approach to managing company and customer information that is based on periodic risk assessments appropriate to ever-changing threat scenarios.
  • HIPAA Regulatory Citation
    Cloudnosys has added The Health Insurance Portability and Accountability Act of 1996 (HIPAA), sets the standard for sensitive patient data protection. Companies that deal with Protected Health Information (PHI) must have physical, network, and process security measures in place and follow them to ensure HIPAA Compliance
  • Signature Catalogue
    A comprehensive list of signatures used across the dashboard with easily operated filters.
  • AWS Signatures
    Added 25 new signatures for AWS across multiple compliance.
  • Compliance Dashboard
    Comprehensive view of risks in the dashboard with respect to functions along with Total Risks all over the dashboard. Additional field that allows users to select the cloud account they want to see the statistics of.

Bug Fixes

  • This release resolves an issue where metadata was missing on some log sources.

Leverage the Power of CloudEye Security

Cloudnosys-Logo

Cloudnosys platform delivers security, compliance, and DevOps automation. Continually scan your entire AWS services for security and compliance violations for Network Security, IAM Policies, VPC, S3, Cloudtrail etc. Provides DevOps automation and policy driven guided remediation for Azure and AWS. Meet PCI, HIPAA, NIST, ISO27001, SOC2, FISMA, AWS CIS Benchmark compliance quickly.