Commvault launches CIS-hardened images

Commvault Cloud enables easy, secure, CIS-hardened deployment across all major cloud hyperscaler marketplaces.

  • Wednesday, 12th February 2025 Posted 1 year ago in by Phil Alsop

Commvault says that the Commvault Cloud Platform can be easily deployed from major cloud marketplaces utilizing CIS-hardened images. These CIS-hardened images are pre-configured with CIS-recommended settings and controls will be available on the following marketplaces: Amazon Web Services (AWS), Microsoft Azure, Google Cloud, and VMware.

CIS-hardened images are software files that are pre-configured to align with the Center for Internet Security (CIS) Benchmarks. Hardening helps reduce configuration vulnerabilities, such as overly-permissive network policies that can create opportunities for malicious actors. In fact, configuration errors are one of the most common causes of cloud vulnerabilities, contributing to 23% of cloud infrastructure attacks, according to industry research.1 Commvault’s CIS-hardened images are designed to reduce these risks by pre-configuring deployment to meet rigorous security benchmarks out-of-the-box, bringing confidence to IT and security teams.

With today’s announcement, Commvault continues to deliver on its cybersecurity focus, with these deployment options joining other security certifications, such as FedRAMP® High Authorized, ISO27001:2013, SOC 2, Type II, and FIPS 140-2, among others. Customers will be able to use the new CIS-hardened images to quickly and confidently configure and deploy Commvault Cloud and benefit from:

Pre-built Compliance Checks: CIS-hardened images provide organizations with secure, hardened environments from the moment of deployment and give customers confidence their control plane has been installed and configured using industry-recognized best practices.

Enhanced Cybersecurity: The CIS-hardened images minimize vulnerabilities by addressing common misconfiguration risks, offering peace of mind against attacker exploitation.

Streamlined Compliance Mapping: CIS Benchmarks are mapped to key security frameworks such as NIST CSF, HIPAA, PCI-DSS, and ISO 27001, simplifying adherence to complex regulatory requirements.

Broad Marketplace Availability: Organizations will be able to deploy Commvault Cloud directly from AWS, Azure, Google Cloud, or VMware marketplaces, enabling fast and secure installations with minimal effort.

The timing of this announcement also comes as more and more organizations are accelerating their move to the cloud. In fact, according to IDC, spending on public cloud services is expected to double to $1.6 trillion by 2028.2 In the last year, Commvault has introduced a host of cloud-first offerings designed to make customers more resilient in the cloud, including Cleanroom Recovery, Cloud Rewind, and Clumio Backtrack. Now, the company is taking resilience in the cloud to the next level via CIS-hardened images for popular cloud marketplaces.

“Organizations demand solutions that are not only secure and compliant but also straightforward to deploy,” said Chris Montgomery, CTO – Security, Americas at Commvault. “With CIS-hardened images, we can eliminate the guesswork, providing IT teams with a secure, pre-configured foundation to accelerate their cyber resilience strategies while meeting industry standards.”

“As a security-first organization, having confidence in how our solutions are deployed is critical,” said Marek Duranik, Storage & Data Protection Associate Director at Merck. “Commvault’s CIS-hardened images give us the assurance that we’re starting from a strong security baseline, allowing our teams to focus on protecting and recovering critical data.” 

iManage’s latest report examines the relationship between knowledge management maturity and AI adoption.
Illumio and Armis enhance their collaboration, focusing on improved IT and OT security through expanded platform features and strategic market...

Westcon-Comstor gains proofpoint services authorisation

Posted 4 hours ago by Sophie Milburn
Westcon-Comstor is now the first European distributor for Proofpoint professional services, expanding access to cybersecurity services for its...
Westcon-Comstor expands cybersecurity support, offering enhanced services to partners of CrowdStrike and Zscaler across Europe.
Kong introduces Context Mesh, a tool to seamlessly connect enterprise data with AI agents, aiming to overcome integration barriers.
The shift towards AI adoption in UK workplaces continues amid concerns over organisational readiness and accountability.

MSPs: the increasing targets in supply chain attacks

Posted 4 hours ago by Sophie Milburn
The rise of supply chain attacks highlights the vulnerability of MSPs, underscoring the need for enhanced security protocols across the supply chain.
New research reveals UK IT professionals are ahead in future-proofing for AI, despite challenges limiting full adoption.