What’s New in Tenable Cloud Security: November Updates in Exposure Management
好的,我现在需要帮用户总结一篇文章的内容,控制在100字以内。用户已经给出了文章的详细内容,我得先快速浏览一下,抓住主要信息。 文章主要讲的是Tenable Cloud Security的最新功能,包括统一混合环境的安全管理、扩展漏洞管理到云、增强控制台功能、敏感数据扫描、噪声过滤以及指导用例等。这些都是帮助企业提升云安全的关键点。 接下来,我需要把这些要点浓缩成一句话,确保涵盖主要功能和目标。同时要注意用词简洁,避免重复。比如“统一混合环境”可以简化为“统一安全管理”。 最后,检查字数是否在限制内,并确保描述清晰明了。这样用户就能快速了解文章的核心内容了。 </think> Tenable Cloud Security 提供关键功能,统一混合环境的安全管理,扩展漏洞管理到云,并增强控制台功能、敏感数据扫描、噪声过滤及指导用例,帮助企业提升云安全能力。 2025-12-4 14:0:0 Author: www.tenable.com(查看原文) 阅读量:3 收藏


December 4, 2025

6 Min Read


What’s New in Tenable’s Cloud Exposure Management: November Updates

Tenable Cloud Security delivers critical capabilities to unify security across your entire attack surface. Our latest enhancements let you extend your on-prem vulnerability management program to the cloud; gain granular visibility into external access risk; and discover Snowflake sensitive data.

Key takeaways

  1. Unified hybrid security: Tenable Cloud Vulnerability Management extends traditional on-prem security programs to the cloud, unifying agentless visibility and prioritized risk assessment across hybrid environments.
     
  2. Actionable analytics: Console updates feature customizable dashboards and new widgets for tracking critical metrics like Mean Time to Resolution (MTTR) and quickly identifying trends.
     
  3. Expanded exposure coverage and insights. Deepen DSPM with Snowflake data discovery, gain more granular identity visibility, and improve focus with noise-free Linux vulnerability detection. And accelerate your cloud security maturity through guided use cases for least privilege and reducing the blast radius.

Organizations are running workloads across hybrid environments — on-prem systems, cloud services, and containers. Yet fragmented visibility and endless alerts make it hard to see real risk. Tenable’s latest updates give teams actionable visibility, context, and control across the entire attack surface — starting with today’s cloud needs while paving the way for broader exposure management tomorrow. 

Built on Tenable’s market-leading approach to exposure assessment, these cloud security enhancements help teams continuously spot, prioritize, and reduce exposure across all environments.
 

Video about the latest enhancements to the Tenable Cloud Security CNAPP product

Tenable Cloud Vulnerability Management: Extending your vulnerability management to the cloud

If you’ve built a mature on-prem vulnerability management program, you know the drill: asset discovery, vulnerability prioritization, and actionable reporting. What’s changed is the attack surface. Cloud workloads, containers, and ephemeral resources often remain invisible to traditional VM tools, creating blind spots.

Tenable Cloud Vulnerability Management extends your on-prem vulnerability management program into the cloud, giving you agentless visibility and prioritized remediation in a unified view. This means you can secure hybrid workloads with the same confidence as your on-prem environments – and uncover hidden risks, like a critical EC2 vulnerability whose public exposure through a misconfigured security group turns it into a real attack path.
 

Tenable Cloud Vulnerability Management screenshot

Traditional VM tools often stop at CVEs but Tenable Cloud Vulnerability Management integrates vulnerability management into a broader exposure strategy. This dashboard shows unified vulnerability risk visibility across on-prem, cloud, and hybrid environments.

Why it matters for you

  • Maintain workflow continuity for on-prem vulnerability management teams
  • Eliminate blind spots across multi-cloud and hybrid workloads
  • Lay a foundation for future exposure management

Sharper cloud insights with an enhanced console

Visibility isn’t useful unless you can act on it quickly. This month’s console enhancements make cloud risk easier to read, measure, and explain.

  • New findings widgets: Track trends, MTTR, and response efficiency at a glance. These widgets turn raw vulnerability data into actionable insights, helping teams prioritize risk and measure progress.
  • Smarter, customizable dashboards. Apply filters, compare environments side by side, and reuse widgets to explore different slices of risk. For example, seeing AWS, Azure, and GCP severity trends in one view helps align remediation and communicate multi-cloud posture quickly.
  • Bulk resource labeling: Tag dozens or hundreds of cloud resources in seconds, such as all production EC2 instances. This streamlines filtering, reporting, and operational efficiency, providing a cleaner, more actionable inventory.
     

Tenable Cloud Security screenshot

New findings widgets track trends, MTTR, and response efficiency at a glance, turning raw vulnerability data into actionable insights

Data, workload and identity updates

This month’s updates surface high-risk exposures and deliver more actionable cloud security insights while reducing noise.

  • Snowflake sensitive data-scanning: Tenable Cloud Security now reduces your exposure across this popular cloud data platform. Automatically discover and classify sensitive data, see where it resides, and assess whether it’s exposed.
  • Noise-free Linux vulnerability detection: Getting rid of the noise improves team focus. This enhancement filters out unused kernel versions left after upgrades, reducing false positives to keep the focus on real risk.
  • Identity and access management (IAM) visibility across AWS and Azure: Instantly identify over-permissioned or externally exposed identities and reduce risk before it’s exploited

Guided use cases: Solve real problems, fast

Tenable’s guided use cases help you address urgent cloud security challenges and build an exposure management foundation. This month, we’ve added two high-impact packages:

Each use case package includes a focused solution brief, a guided implementation demo, and a golden demo, which is a ready-to-run, pre-configured, best-practice deployment you can model your secure cloud program on.


Example of a guided workflow that shows how Tenable helps identify and reduce excessive permissions across cloud identities – achieving least privilege.

Insight you can act on

Tenable combines deep cloud research with practical exposure management. Recognized in 2025 by Gartner, Forrester, IDC and Latio for its leadership and vision in exposure management across hybrid environments, our insights help teams stay ahead of evolving threats.

Tenable Research findings feed directly into the Tenable One Exposure Management Platform, improving detection and prioritization for stronger workload security. In November, we continued our focus on AI security, uncovering seven novel AI vulnerabilities in ChatGPT.

Frequently Asked Questions

  1. What is Tenable Cloud Vulnerability Management and why does it matter?
    Tenable Cloud Vulnerability Management brings your on-prem vulnerability management program into cloud and hybrid workloads, providing agentless visibility, unified risk assessment, and actionable remediation. It eliminates blind spots, links vulnerabilities to exposure and identity risks, and helps teams act faster, giving clarity today and a path toward broader exposure management.
  2. What console features help teams act on findings?
    Tenable Cloud Security’s console provides findings insights features and granularity designed to help teams act quickly on security issues; these include:
    • Actionable dashboards: Instant visibility into open and critical finding statuses
    • Trend tracking: Changes in the type and severity of findings over time
    • Resolution metrics: Key operational data like Mean Time to Resolution (MTTR) and detailed resolution status
  3. How do guided use cases help?
    Each package includes a golden demo, guided demo, and solution brief to tackle real-world cloud security challenges immediately.
  4. Other updates to know:
    Sensitive data scanning for Snowflake, noise-free Linux vulnerability detection, and IAM access visibility across AWS and Azure.

Learn more:


Yoel Calderon

Yoel Calderon

Senior Director, Product Management

Yoel Calderon, Senior Director of Product Management at Tenable, leads the Tenable Cloud Security Product Management group. He is a cybersecurity product veteran with 18+ years of experience in designing and delivering enterprise software. Before joining Tenable, Yoel led the Cloud Security product portfolio at Proofpoint and played a key role in building VMware’s cloud services platform and shifting the company toward SaaS products. He holds an MBA (magna cum laude) from Tel Aviv University and is a co-inventor on several patents in cloud storage and data protection.

  • Cloud

Cybersecurity news you can use

Enter your email and never miss timely alerts and security guidance from the experts at Tenable.


文章来源: https://www.tenable.com/blog/cloud-vulnerability-management-hybrid-cloud-security-exposure-management
如有侵权请联系:admin#unsafe.sh