Cloud Assets

Tenable One Attack Surface Management collects data from all integrated sources, enriches it with additional details and sends this data to Tenable One Vulnerability Management. After integration with cloud providers, all the cloud assets appear on the Assets page in Tenable One Vulnerability Management. The unified asset view offers you several benefits, such as:

  • Obtain a complete view of the external surface of the cloud assets within Tenable One Vulnerability Management.

  • Prioritize remediation of high-risk externally exposed assets.

  • Leverage existing platform capabilities to enrich asset context with Tenable One Attack Surface Management's derived indicators.

  • Gain visibility into cloud assets not tracked in internal inventories.

  • Gain insight into assets known to the platform versus the assets discovered and publicly exposed by Tenable One Attack Surface Management.

View Cloud Assets

View all assets from cloud providers in the Assets page of Tenable One Vulnerability Management.

Before you begin

  • Integrate with Tenable One Vulnerability Management and Tenable One Web App Scanning.

  • Integrate with your AWS, Azure, or Google Cloud Platform account and add the provider as a source.

    For more information about integration, see Manage Integrations.

Tip: To ingest only cloud assets, in the Ingestion filters box for Tenable One Vulnerability Management and Tenable One Web App Scanning Integration, provide the filter as Record Type is Cloud.

To view cloud assets:

  1. Use the Workspace button to navigate to Tenable One Vulnerability Management.

  2. In the left navigation bar, click the Assets icon.

    The Assets page appears.

    For all assets from Tenable One Attack Surface Management, the identifier External Asset appears in the Source column. Additionally, cloud assets include the ASM CloudAsset tag and their corresponding inventory name in the Tags column.

    Note: The tags for cloud assets may take some time to appear in the Assets table.

You can use the ASM:CloudAsset tag to trigger a scan specifically on all the external cloud assets. For more information about creating scans, see Manage Scans in the Tenable One Vulnerability Management User Guide.