Commvault launches CIS-hardened images

Commvault Cloud enables easy, secure, CIS-hardened deployment across all major cloud hyperscaler marketplaces.

  • Wednesday, 12th February 2025 Posted 11 months ago in by Phil Alsop

Commvault says that the Commvault Cloud Platform can be easily deployed from major cloud marketplaces utilizing CIS-hardened images. These CIS-hardened images are pre-configured with CIS-recommended settings and controls will be available on the following marketplaces: Amazon Web Services (AWS), Microsoft Azure, Google Cloud, and VMware.

CIS-hardened images are software files that are pre-configured to align with the Center for Internet Security (CIS) Benchmarks. Hardening helps reduce configuration vulnerabilities, such as overly-permissive network policies that can create opportunities for malicious actors. In fact, configuration errors are one of the most common causes of cloud vulnerabilities, contributing to 23% of cloud infrastructure attacks, according to industry research.1 Commvault’s CIS-hardened images are designed to reduce these risks by pre-configuring deployment to meet rigorous security benchmarks out-of-the-box, bringing confidence to IT and security teams.

With today’s announcement, Commvault continues to deliver on its cybersecurity focus, with these deployment options joining other security certifications, such as FedRAMP® High Authorized, ISO27001:2013, SOC 2, Type II, and FIPS 140-2, among others. Customers will be able to use the new CIS-hardened images to quickly and confidently configure and deploy Commvault Cloud and benefit from:

Pre-built Compliance Checks: CIS-hardened images provide organizations with secure, hardened environments from the moment of deployment and give customers confidence their control plane has been installed and configured using industry-recognized best practices.

Enhanced Cybersecurity: The CIS-hardened images minimize vulnerabilities by addressing common misconfiguration risks, offering peace of mind against attacker exploitation.

Streamlined Compliance Mapping: CIS Benchmarks are mapped to key security frameworks such as NIST CSF, HIPAA, PCI-DSS, and ISO 27001, simplifying adherence to complex regulatory requirements.

Broad Marketplace Availability: Organizations will be able to deploy Commvault Cloud directly from AWS, Azure, Google Cloud, or VMware marketplaces, enabling fast and secure installations with minimal effort.

The timing of this announcement also comes as more and more organizations are accelerating their move to the cloud. In fact, according to IDC, spending on public cloud services is expected to double to $1.6 trillion by 2028.2 In the last year, Commvault has introduced a host of cloud-first offerings designed to make customers more resilient in the cloud, including Cleanroom Recovery, Cloud Rewind, and Clumio Backtrack. Now, the company is taking resilience in the cloud to the next level via CIS-hardened images for popular cloud marketplaces.

“Organizations demand solutions that are not only secure and compliant but also straightforward to deploy,” said Chris Montgomery, CTO – Security, Americas at Commvault. “With CIS-hardened images, we can eliminate the guesswork, providing IT teams with a secure, pre-configured foundation to accelerate their cyber resilience strategies while meeting industry standards.”

“As a security-first organization, having confidence in how our solutions are deployed is critical,” said Marek Duranik, Storage & Data Protection Associate Director at Merck. “Commvault’s CIS-hardened images give us the assurance that we’re starting from a strong security baseline, allowing our teams to focus on protecting and recovering critical data.” 

Keepit's channel expansion: partner-first approach

Posted 18 hours ago by Sophie Milburn
Keepit aims to strengthen its global channel team, focusing on partner-led strategies to drive SaaS data protection globally.

Collaboration for enhanced network cyber resilience

Posted 1 day ago by Sophie Milburn
BackBox partners with Nomios, aiming to enhance network visibility and automation to help manage complex network environments
Survey finds that executives worldwide are focusing on AI and automation as budget constraints and talent shortages create pressure
Ping Identity enhances its platform with Keyless' Zero-Knowledge Biometrics to help combat AI-driven attacks, providing secure digital experiences.
TGT Global highlights its continued emphasis on IT vendor partnerships with Susara appointed to a leadership role.

Snowflake acquires Observe for AI-powered observability

Posted 3 days ago by Sophie Milburn
Snowflake announce plans to acquire Observe, aiming to enhance their AI Data Cloud with observability solutions.
ArmorPoint LLC announces Stephan Tallent as its new CSO, aiming to build growth and enhance customer and partner success.

Cybersecurity services expand into North America

Posted 6 days ago by Sophie Milburn
Integrity360 acquires Canadian cybersecurity firm Advantus360, establishing a presence in the North American market and supporting its global...