Managing a Cloud Security Misconfiguration Scan
Overview
DeepTraQ allows security teams to manage and monitor Cloud Security Posture Management (CSPM) scans directly from the scans dashboard. From this interface, users can trigger on-demand scans, schedule periodic scans, monitor scan job status, edit scan configurations, delete scans, and download reports for sharing with stakeholders.
Scans are organized as projects, where each project contains one or more scan jobs that execute security checks against configured cloud targets. The dashboard provides visibility into scan progress, job results, and configuration settings, allowing teams to quickly identify issues, investigate failed jobs, and maintain scan configurations.
These capabilities help organizations maintain continuous visibility into their cloud security posture while ensuring scans run according to operational and compliance requirements.
Supported Platforms
- Cloud Security Posture Management (CSPM) scans
- Cloud environments such as AWS
Prerequisites
- A configured CSPM scan project created in DeepTraQ.
- Valid cloud targets configured for the scan (for example, an AWS environment).
- User permissions to manage scans and access scan results.
Steps
Run a Scan On Demand
- Navigate to the CSPM scans dashboard where all created scans are displayed as projects
- Locate the scan project you want to manage (for example, AWS weekly audit scan)
- Click the Run button to trigger an on-demand security scan
Refresh Scan Status
-
Click the Refresh button to update the scan status
-
Status will display as:
- Running
- Completed
- Failed
Use this to monitor real-time progress.
View Scan Jobs
-
Each scan may create multiple jobs depending on:
- Scan configuration
- Number of targets
-
Review the list of scan jobs generated for the project
-
Each job runs a set of security checks against a group of targets
-
If a job fails, refer to the troubleshooting resources to determine the cause
Edit a Scan
- Click the three-dot menu beside the scan
- Select Edit to modify scan details
- Update scan configuration and timing as needed
- Click Save to apply the changes
Changes apply to future scan runs.
Delete a Scan
- Click the three-dot menu beside the scan
- Select Delete
- Type Delete in the confirmation prompt
- Click Delete to permanently remove the scan and all associated scan data
Download Reports
To share scan results with stakeholders:
- Click the download icon to export the report
- Select the report type
- Choose the format
- Click Download
Navigate to Findings
- Click the project name (underlined link) to navigate to the findings page
- You will land on the Misconfigurations tab, where detected cloud security issues are displayed
- Use the breadcrumb navigation to return to the Cloud Security Misconfigurations project list
Field Reference
| Field | Description | Example |
|---|---|---|
| Run | Triggers an on-demand CSPM scan for the selected project. | Run the AWS weekly audit scan immediately. |
| Refresh | Updates the scan status to display the most recent scan progress. | Refresh to see if the scan has completed. |
| Scan Jobs | Individual scan tasks created for a project based on configuration and targets. | A scan with multiple targets creates multiple jobs. |
| Three-dot menu | Provides additional actions such as editing or deleting a scan. | Open menu and select Edit or Delete. |
| Edit | Opens the scan configuration so you can update details or schedules. | Change scan timing from manual to weekly. |
| Save | Applies changes made while editing a scan configuration. | Save updated scan settings. |
| Delete | Permanently removes the scan and all associated scan data. | Delete a test scan that is no longer needed. |
| Download icon | Allows exporting the scan report for sharing with stakeholders. | Download a report in the selected format. |
| Project name link | Navigates to the findings page for the scan project. | Click AWS weekly audit scan to view results. |
| Misconfigurations tab | Displays detected cloud security misconfigurations discovered during the scan. | View IAM misconfiguration findings. |
| Breadcrumb navigation | Allows navigation back to the CSPM project list. | Select Cloud Security Misconfigurations to return. |