Asset ManagementWhich Asset Types Does Scrut Support?

Which Asset Types Does Scrut Support?

The Asset Management module supports the following asset categories:

🖥️ Compute Instances

The asset management module retrieves critical metadata, including resource ID, name, provider, region, and ownership, from virtual machines and compute resources across cloud providers.

Supported Services

ProviderServices
AWSEC2 Instances, EMR Clusters, AMIs (Images)
AzureVirtual Machines, Managed Disks, Snapshots, VM Images
GCPCompute Engine Instances, Snapshots

📦 Container Platforms

Track your container orchestration platforms, container registries, and containerized application deployments. Ensure your container infrastructure meets security and compliance requirements.

Supported Services

ProviderServices
AWSECS Clusters, EKS Clusters, ECR Repositories, ECR Images
AzureApp Service Web Apps
GCPKubernetes Engine (GKE) Clusters

💾 Storage & Databases

Track the encryption status, backup configurations, access controls, and geographical locations of your storage and database assets to ensure compliance with data protection requirements.

Supported Services

ProviderServices
AWSS3 Buckets, DynamoDB Tables, RDS Instances, RDS Snapshots, DocumentDB Clusters, Redshift Clusters, EFS File Systems
AzureStorage Accounts, SQL Database Servers, PostgreSQL Servers, MySQL Servers, Redis Cache
GCPCloud Storage Buckets, Cloud SQL Instances, BigQuery Datasets, Cloud Memorystore (Redis)

🌐 Virtual Networks (VPCs)

By tracking the configurations of virtual private clouds (VPCs) and virtual networks (VNets), including IP ranges, subnets, and gateways, the asset management module helps maintain a secure network architecture.

Supported Services

ProviderServices
AWSVPCs, Subnets, VPC Peering Connections, Network Interfaces
AzureVirtual Networks, Application Gateways
GCPVPC Networks, Subnetworks, DNS Managed Zones

Serverless Functions

By tracking the configurations, triggers, and permissions of event-driven compute resources, this module helps maintain security and operational visibility across your serverless infrastructure.

Supported Services

ProviderServices
AWSLambda Functions
GCPCloud Functions (v1), Cloud Functions (v2)

📊 Monitoring & Logging

Tracking monitoring and logging resources ensures critical systems have appropriate coverage for incident response and compliance requirements.

Supported Services

ProviderServices
AWSCloudTrail Trails, CloudWatch Alarms, CloudWatch Metric Filters
AzureLogging & Monitoring Resources
GCPStackdriver Logging Sinks, Stackdriver Metrics, Stackdriver Uptime Checks, Alert Policies

🔐 Key Management

Track your key management services to manage key rotation and access permissions, maintain data confidentiality, and meet encryption compliance requirements.

Supported Services

ProviderServices
AWSKMS Keys, Secrets Manager Secrets, SSM Parameters
AzureKey Vaults
GCPKMS Key Rings

📱 Mobile Devices

The asset management module collates all the different devices tracked and monitored via Mobile Device Management (MDM) tools and Scrut Agent, including smartphones, tablets, laptops, desktops, and other mobile endpoints.

Supported Services

ProviderServices
MDM Integration / Scrut AgentMDM Devices, Smartphones, Tablets, Laptops, Desktops

👤 Identity Users

Tracking user identities ensures proper authorization, adheres to least-privilege principles, and supports compliance with various security frameworks.

Supported Services

ProviderServices
AWSIAM Users, Cognito Identity Pools, Cognito User Pools
AzureAzure AD Users
GCPIAM Users

🎭 Identity Roles

Track role configurations to ensure proper authorization and access patterns, supporting least-privilege access and compliance requirements.

Supported Services

ProviderServices
AWSIAM Roles
AzureRBAC Roles, Custom Roles

👥 Identity Groups

Track group configurations to manage collective permissions and ensure proper access controls across your organization.

Supported Services

ProviderServices
AWSIAM Groups
AzureAzure AD Groups
GCPIAM Groups

📂 Code Repos

Tracking code repository configurations and access permissions ensures secure development practices and compliance with SDLC (Software Development Lifecycle) security requirements.

Supported Platforms

PlatformDescription
GitHubCode repositories
GitLabCode repositories
BitBucketCode repositories
Azure DevOpsCode repositories

By categorizing and organizing these assets, the asset management module provides comprehensive visibility and management of infrastructure resources across your organization.