Onam Security
CNAPP

What is our overall cloud security posture, in one number?

Seven pillars. One score. No spreadsheet required.

CNAPP is the unified view across everything Onam runs — CSPM, CIEM, CWPP, DSPM, network, threat and AppSec — each scored as a pillar, rolled into a single posture score that a board can read and an engineer can drill into.

10,000+
security rules
7
cloud providers
< 5 min
to first finding
100%
agentless
Why this matters

Every security tool reports its own number.

Posture says 74. The vulnerability scanner says 12,000 open CVEs. The compliance tool says 88% CIS. The identity tool says 400 over-privileged roles. None of them are wrong and none of them combine, so the answer to 'are we getting better' becomes a quarterly slide someone assembles by hand from four exports.

The risk of not knowing

If it is not surfaced today, it is exposed today. Attackers do not wait for your quarterly review — and neither do auditors.

Real-time detection, not periodic audits
How does it actually work?

The mechanism, not the marketing

  1. 1

    Each of the seven pillars — CSPM, CIEM, CWPP, DSPM, network, threat and AppSec — is scored from the findings its engines produced, on a common 0–100 scale.

  2. 2

    Pillar scores are weighted by severity and by exposure, so a critical finding on an internet-reachable resource moves the score more than the same finding on an isolated one.

  3. 3

    Scores roll into one overall posture score with a risk band, trended over time so improvement is measurable rather than asserted.

  4. 4

    Every score decomposes — click a pillar to see the findings behind it, click a finding to see the resource and the remediation.

  5. 5

    Because all pillars read the same findings model, the same resource is never counted twice or scored inconsistently between views.

What do you actually get?

Specific outputs, measurable outcomes

One posture score with a risk band, trended over time
Seven pillar scores
CSPM, CIEM, CWPP, DSPM, network, threat, AppSec
Severity- and exposure-weighted scoring rather than raw finding counts
Full decomposition
score to pillar to finding to resource
Trend analysis showing whether posture is improving or degrading
Executive reporting that does not require manual assembly
Per-account and per-environment score breakdown
Consistent scoring across every engine on one findings model
See it live

CNAPP in the real console.

Not a mockup — the actual Onam console on a live demo account, showing exactly what your team sees.

Dashboard
Run Scan
0
Risk Score
▲ +4 this week
0
Critical Findings
▲ 3 new today
0
Cloud Assets
▲ 231 discovered
0%
Compliance Score
CIS · NIST · SOC 2
Engine Status
IAM
Network
Compliance
CDR
Risk
Encryption
Container
Data Sec
Vuln
Finding Severity
Critical12
High89
Medium234
Low512
Info1,204
Top Critical Findings
Correlating findings…
A
G
A
Your whole cloud on one screen
Risk score, engines, severity and connected clouds — 12,481 assets live
Clip length
12s
Data
Demo account
FAQ

Questions we get a lot

Each pillar scores its own findings on a 0–100 scale weighted by severity and by exposure, and those pillar scores roll into an overall score with a risk band. The calculation is transparent — every score decomposes to the findings behind it.
Ready to see it live

Ready to see CNAPP in your cloud?

Connect a read-only role in three minutes. Your first findings surface in under five.