Skip to content
Tenable Cloud Security logo

Tenable Cloud Security

TI y Seguridad · www.tenable.com/products/tenable-cloud-security

¿Es tu herramienta? Reclama esta ficha →

Resumen

Tenable Cloud Security (formerly Tenable.cs, built on Tenable's 2023 acquisition of CNAPP vendor Ermetic) is a Cloud-Native Application Protection Platform covering cloud security posture management (CSPM), cloud infrastructure entitlement management (CIEM), infrastructure-as-code scanning, and vulnerability management across AWS, Azure, and Google Cloud. It is a product line within Tenable's broader Exposure Management platform. It gives security and DevOps teams a single view of misconfigurations, excessive identity permissions, exposed sensitive data, and vulnerabilities across multi-cloud environments.

El problema que resuelve Tenable Cloud Security

Security teams running workloads across AWS, Azure, and GCP typically end up stitching together separate CSPM, CIEM, and IaC-scanning tools just to get a coherent picture of misconfigurations and identity risk. Tenable Cloud Security solves that by combining posture management, entitlement analysis, and infrastructure-as-code scanning into one CNAPP, so teams can find and prioritize cloud exposures from build time through runtime without juggling multiple point products.

Contexto para decidir

Usa estos puntos para comprobar si el producto encaja con tu operación, no solo con la lista de funciones.

  • Precio de entrada publicado: Custom pricing. Confirma límites de usuarios, uso y funciones por plan.
  • Despliegue: cloud. Comprueba requisitos de seguridad, residencia de datos y acceso para todos los equipos que lo utilizarán.
  • Integraciones verificadas: Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform, Terraform, AWS CloudFormation, Kubernetes. Valida el sentido de sincronización y los límites del plan elegido.
  • La ficha se comprobó por última vez el 31/7/2026; los precios y las funciones pueden cambiar.

Cómo evaluar Tenable Cloud Security

Una ficha ayuda a crear una lista corta; una prueba con el flujo real del equipo decide si la herramienta encaja. Usa esta lectura junto con los datos estructurados y confirma cualquier cambio con el proveedor.

Encaje de flujo

El registro la considera especialmente adecuada para Security teams needing unified visibility across AWS, Azure, and GCP misconfigurations and identity risk, Organizations already using Tenable's vulnerability management stack who want cloud posture in the same platform, Enterprises and regulated mid-market companies needing CIS/NIST/PCI compliance reporting for cloud environments. Comprueba que ese contexto coincide con el volumen, los roles y los procesos que debe soportar tu equipo.

Preguntas del piloto

  • ¿Puede Tenable Cloud Security completar el flujo crítico sin trabajo manual fuera de la herramienta?
  • ¿Las conexiones registradas (Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform, Terraform) cubren el sentido de sincronización, los permisos y el volumen que necesitamos?
  • ¿Qué límites de usuarios, uso, almacenamiento, soporte o seguridad aparecen después del precio inicial?

Evidencia y vigencia

Esta ficha se comprobó el 31/7/2026. La fecha indica cuándo se revisó el registro, no una garantía de que el proveedor no haya cambiado sus condiciones después.

Ideal para

  • Security teams needing unified visibility across AWS, Azure, and GCP misconfigurations and identity risk
  • Organizations already using Tenable's vulnerability management stack who want cloud posture in the same platform
  • Enterprises and regulated mid-market companies needing CIS/NIST/PCI compliance reporting for cloud environments

No encaja si

  • Small teams or startups wanting transparent self-serve pricing rather than a custom sales quote
  • Teams that need deep, standalone patch/vulnerability remediation workflows beyond cloud posture and entitlements

Por qué está listada

  • Established CNAPP vendor (via Tenable's Ermetic acquisition) covering CSPM, CIEM, IaC, and vulnerability management in one product
  • Gartner Peer Insights 2025 Customers' Choice for Cloud-Native Application Protection Platforms
  • FedRAMP Ready designation, making it viable for U.S. public-sector cloud security buyers

Precios

Tenable Cloud Security (Custom Quote)

Custom pricing

Single edition priced per organization based on the number of billable cloud resources across connected accounts; no published list pricing.

  • CSPM across AWS, Azure, and Google Cloud
  • CIEM with just-in-time and least-privilege access controls
  • IaC scanning for Terraform, CloudFormation, and Kubernetes manifests
  • Container and Kubernetes workload scanning
  • Sensitive data discovery and classification (DSPM)

Funciones

Self-hosting / on-premDelivered as cloud/SaaS only
SCIM / directory provisioningSSO/SAML with identity providers documented; explicit SCIM auto-provisioning not confirmed
Audit logsPlatform provides activity/audit logging consistent with other Tenable products
Compliance reportingOut-of-the-box mapping and reporting against CIS Controls, NIST CSF, and PCI DSS
Device managementNot an endpoint/device (MDM) management product
Multi-factor authenticationLogin supports SSO/IdP-enforced MFA via Okta, Entra ID, and other supported identity providers
Privileged access managementOffers CIEM and just-in-time (JIT) least-privilege access controls, not a full traditional PAM/vaulting solution
Public APITenable exposes REST APIs used for its integrations (ticketing, SIEM, CI/CD)
Role-based access controlRole-based access control is configurable, including via SAML role-mapping claims
SSO / SAMLSAML 2.0 SSO supported with Okta, Microsoft Entra ID, OneLogin, Ping Identity, and other IdPs

Integraciones

Amazon Web Services (AWS)Microsoft AzureGoogle Cloud PlatformTerraformAWS CloudFormationKubernetesJenkinsGitHubGitLabBitbucketCircleCIJiraServiceNowSlackOktaMicrosoft Entra IDSplunk

Seguridad y cumplimiento

FedRAMP Ready (Moderate)

Pros y contras

Pros

  • Strong multi-cloud visibility with a unified dashboard across AWS, Azure, and Google Cloud
  • Rated easier to set up and administer than several CNAPP competitors in G2 comparison data
  • Solid ticketing/ITSM integrations (Jira, ServiceNow) for automated remediation workflows
  • Large, frequently updated vulnerability database drawn from Tenable's broader exposure management platform

Contras

  • Initial setup and configuration can be complex and time-consuming for larger environments
  • Licensing/pricing structure is unclear to some users regarding VMs, containers, and Kubernetes resources
  • Slower performance on ad-hoc queries and report generation across large server/resource sets
  • Fewer built-in patch-management capabilities compared to some competing platforms

Qué muestra el registro

4.6/5
37 reviews agregadasÚltima comprobación 2026-07-31

Rated 4.6/5 on G2 (37 reviews, mostly mid-market) and 4.2/5 on PeerSpot (12 reviews, 77% would recommend); reviewers consistently cite strong multi-cloud visibility and ease of administration versus competitors, with setup complexity and licensing clarity flagged as friction points.

Resumen y puntuación agregados de plataformas públicas de reseñas. Enlazamos a las reseñas originales en lugar de reproducirlas — lee la fuente antes de decidir.

Reseñas de usuarios

Escritas por cuentas de Audyense · moderadas antes de publicarse

Todavía no hay reseñas de usuarios.

¿Has usado Tenable Cloud Security? Sé el primero en contarles a otros compradores qué funcionó de verdad.