Overview
Ensure the data in data lakes and application workflows built using AWS storage are free of viruses, ransomware, trojans and other payloads by scanning it with Antivirus for Amazon S3 by Cloud Storage Security.
WHY THIS SOLUTION IS DIFFERENT
- Support for Multiple Data Sources
- Triple Engine Technology
- Multiple Scanning Models
- Static, Dynamic & Forensic Analysis
- Configuration Intelligence
- Simplified Setup
- Security First Approach with In-Tenant Scanning
Data Sources This solution is built for AWS storage and supports Amazon S3, Amazon WorkDocs, Amazon EFS, and Amazon EBS.
Engines Identify malware at petabyte scale across all buckets by leveraging the power of Sophos, CrowdStrike, or ClamAV®. Engines may be used simultaneously to optimize accuracy and performance.
Scanning Models Integrate the method that fits your needs to minimize process interruptions and eliminate service disruptions. Choose from:
- Event - scan new/modified objects in real time when they are dropped into storage (easy to integrate into workflows because minimal code changes are needed)
- Retro - scan existing objects on demand or via schedule (useful to baseline data and for compliance audits)
- API - scan objects inside or outside of AWS in real time via a REST-based API before they are written (useful if you are migrating to/building a new app on AWS and want inline scanning before the file is written or if you initiate a workflow where the scan dictates whether the object should be stored)
Analysis Analyze files in real time without having to execute them or by detonating them in a sandbox using the latest analysis techniques; Static and Dynamic Analysis is powered by the SophosLabs Intelix™ Platform. The solution also assists with Forensic Analysis as files are segmented by bucket and account enabling you to trace where the file entered and into which account it was added.
Configurations Gain visibility into misconfigurations - quickly identify all buckets with secure and insecure permission policies via a single unified dashboard.
Setup Deploy via AWS CloudFormation or Terraform in less than 10 minutes. Initial bucket protection/scanning setup takes less than 5 minutes with just a few clicks of the mouse. Follow the Getting Started Guide: https://help.cloudstoragesec.com/getting-started/summary/ .
Security First The solution installs and runs in your AWS account, so data never leaves your environment or region. Additional ways to further enhance security include centralized security services account deployment with linked accounts and a private VPC endpoint deployment option.
Case Studies https://cloudstoragesec.com/case-studies
WHAT YOU SHOULD EXPECT FROM ANY AV SOLUTION (of course we provide these too)
- Automated serverless architecture
- Real-time & on-demand scanning
- Easy management console, Built-in dashboards & Detailed reporting
- Automatic discovery & scaling across multiple accounts & regions
- XL file scanning
- Problem file remediation (Quarantine, Tag, Delete)
- Robust notifications & integrations - this solution integrates with third party ticketing, Slack, Microsoft Teams, Amazon Chime, SIEM, Amazon SNS, AWS Security Hub, AWS CloudTrail, AWS Control Tower, AWS Transfer Family, and more
ONLY PAY FOR WHAT YOU SCAN Pricing at payment terms that fit with your procurement process. Contact us during your free trial to discuss the best pricing option for you.
BONUS: Reach out to get started with a no-cost trial: https://cloudstoragesec.com/contact
NOT TO MISS ARTICLES ON AWS https://aws.amazon.com/blogs/apn/integrating-amazon-s3-malware-scanning-into-your-application-workflow-with-cloud-storage-security/
Highlights
- Do not be fooled by the name, this solution supports Amazon S3, Amazon WorkDocs, Amazon EFS, and Amazon EBS
- Scan a wide variety of file types with industry-leading virus detection engines Sophos, CrowdStrike, and ClamAV®.
- Have confidence that your data is secure - the solution installs within your AWS account, so data never leaves your environment or region.
Details
Pricing
Vendor refund policy
We do not currently support refunds, but you can cancel at any time.
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Console Deployment and Permission Setup
- Amazon ECS
Container image
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
Version release notes
Additional details
Usage instructions
Subscribing to this product will take you through the sign-up and deployment process. Deployment consists of launching a CloudFormation Template provided to you on the last configuration page of signup (also located in the Help Docs). Once Stack creation is completed, look to the Stack Outputs for the Console access URL and open that in your browser. Any additional deployment and management tasks are performed from within the Console.
For detailed steps on how to subscribe, deploy and use the product, please review: http://help.cloudstoragesec.com/getting-started/how-to-subscribe/
Resources
Vendor resources
Support
Vendor support
If you need help during your 30-day free trial, we are happy to provide email support via support@cloudstoragesec.com . We respond to support requests via email during your 30-day free trial within 24 hours Monday through Friday. We can also provide more in-depth support via phone and web meetings for Proof of Concept (POC) engagements. If you would like more information about initiating a POC, please contact one of our experts at https://cloudstoragesec.com/contact . Cloud Storage Security also offers Premium Support and Professional Service plans for purchase in AWS Marketplace
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.