CloudSec Academy

CloudSec Academy へようこそ。クラウドセキュリティの頭字語と業界用語のアルファベットスープをナビゲートするためのガイドです。 明確で簡潔、かつ専門的に作成されたコンテンツで、基本的なことからベストプラクティスまでをカバーします。

Penetration testing vs. red teaming

Wiz エキスパートチーム

Penetration testing finds exploitable weaknesses; red teaming measures whether attackers can turn those weaknesses into real attacks before your teams detect and stop them.

What is red teaming?

Wiz エキスパートチーム

Red teaming evaluates how well your organization detects, contains, and responds to realistic attacks by using ethical hackers to pursue specific objectives.

12 分間のデモを見る

Wizが即時の可視性を迅速な修復に変える様子をご覧ください。

Wiz がお客様の個人データをどのように取り扱うかについては、当社のプライバシーポリシーをご確認下さい: プライバシーポリシー.

Wiz starWiz starWiz starWiz star

クラウドセキュリティとは (cloud security)?

Wiz エキスパートチーム

クラウドセキュリティとは、クラウドベースのシステム、データ、インフラストラクチャを保護するために連携する一連のポリシー、制御、手順、およびテクノロジーを指します。

CSPMとは何ですか?

クラウド セキュリティ ポスチャ管理 (CSPM) は、クラウド環境とサービス (パブリック読み取りアクセスのある S3 バケットなど) のリスクを継続的に検出して修復するプロセスを表します。CSPM ツールは、業界のベスト プラクティス、規制要件、セキュリティ ポリシーに照らしてクラウド構成を自動的に評価し、クラウド環境が安全で適切に管理されていることを確認します。

Using eBPF in Kubernetes: A security overview

Wiz エキスパートチーム

eBPF provides deep visibility into network traffic and application performance while maintaining safety and efficiency by executing custom code in response to the kernel at runtime.

SAST vs. SCA: What's the Difference?

SAST (Static Application Security Testing) analyzes custom source code to identify potential security vulnerabilities, while SCA (Software Composition Analysis) focuses on assessing third-party and open source components for known vulnerabilities and license compliance.

What is IDOR (Insecure Direct Object Reference)?

Wiz エキスパートチーム

IDOR (insecure direct object reference) is an access control flaw that leaks data when apps skip authorization checks. See how IDOR works and how to prevent it.

What is a CASB (cloud access security broker)?

Wiz エキスパートチーム

A cloud access security broker (CASB) functions as a central policy enforcement point positioned between users and cloud-based applications.