Cloud Security Posture & Multi-Cloud Misconfiguration Risk

StreamVault Media 620 Accounts (AWS+GCP) Last scan: 14 min ago
North-Star Metric
8.6 days
Critical Backlog Half-Life
Half-Life (Critical)
8.6d
-2.1d (MoM)
Public Exposure
3
+1 (24h)
IAM Excess Score
0.29
-0.08
IaC Drift Rate
12%
+3%
CSPM Coverage
94%
+2%
Breach Cost Avoided
$1.1M
40 blocked exploits

Multi-Cloud Posture Index (90 days)

Publicly Exposed Resources

Critical Backlog by Service Type

Team Remediation SLA Performance

Team Half-Life (d) Open Critical SLA Attainment Avg Resolution (h) Trend
Platform Engineering 6.1 4
96%
18.3
Cloud Infrastructure 7.8 11
89%
24.1
Data Engineering 11.2 8
78%
36.7
ML/Analytics 14.6 6
71%
48.2
Data Science Sandbox 21.0 19
52%
67.4

IaC Drift Events (30 days)

Container Image Critical CVE Rate

Secrets Exposure Events (7d)

GCP API Key
2 events
AWS Access Key
1 event
DB Password
0 events
3
Total Exposures

Image Scan Pass Rate

87%
1,240 / 1,425 images
No critical CVEs

Insurance Posture Input

Score: 82/100

Longest-Open Critical Misconfiguration

CRITICAL AWS RDS
Open: 19h (resolved)

Public RDS Snapshot Exposure

Account: prod-data-analytics-01
Resource: rds:snapshot/customer-db-backup-2024-01-15
MITRE ATT&CK: T1530 (Data from Cloud Storage)
Impact: 2.4M customer records exposed to public internet for 19 hours. Snapshot contained PII and payment metadata. Detected by CSPM, escalated to exec team, resolved via snapshot deletion + access revocation.
Estimated breach cost if exploited: $680K

Account Risk Ranking (Top 5)

data-science-sandbox
GCP • 19 critical
94
prod-data-analytics-01
AWS • 11 critical
78
ml-training-cluster
GCP • 8 critical
71
staging-k8s-infra
AWS • 6 critical
58
prod-platform-core
AWS • 4 critical
42
CSPM Scan Coverage: 583/620 accounts (94%)
Last Full Org Sync: 2024-01-18 03:42 UTC
Org Hierarchy Version: v2.8.1
Posture data synced