Opens in a new tab
vmblog logo 2024 wht (updated)

Commvault Launches CIS-Hardened Images for Simple, Secure Cloud Deployments

Share: 

David Marshall | Published: February 11, 2025

Commvault announced that the Commvault
Cloud Platform can be easily deployed from major cloud marketplaces utilizing
CIS-hardened images. These CIS-hardened images are pre-configured with
CIS-recommended settings and controls and will be available on the following
marketplaces: Amazon Web Services (AWS), Microsoft Azure, Google Cloud, and
VMware.

CIS-hardened images are software files that are pre-configured to
align with the Center for Internet Security (CIS) Benchmarks. Hardening
helps reduce configuration vulnerabilities, such as overly-permissive network
policies that can create opportunities for malicious actors. In fact,
configuration errors are one of the most common causes of cloud
vulnerabilities, contributing to 23% of cloud infrastructure attacks, according
to industry research.’ Commvault’s CIS-hardened images are designed to reduce
these risks by pre-configuring deployment to meet rigorous security benchmarks
out-of-the-box, bringing confidence to IT and security teams.

With
today’s announcement, Commvault continues to deliver on its cybersecurity
focus, with these deployment options joining other security certifications, such as FedRAMP High Authorized, ISO27001:2013, SOC 2, Type
II, and FIPS 140-2, among others. Customers will be able to use the new
CIS-hardened images to quickly and confidently configure and deploy Commvault
Cloud and benefit from:

  • Pre-built
    Compliance Checks: CIS-hardened images provide organizations with secure,
    hardened environments from the moment of deployment and give customers
    confidence their control plane has been installed and configured using
    industry-recognized best practices.
  • Enhanced
    Cybersecurity: The CIS-hardened images minimize vulnerabilities by
    addressing common misconfiguration risks, offering peace of mind against
    attacker exploitation.
  • Streamlined
    Compliance Mapping: CIS Benchmarks are mapped to key security frameworks
    such as NIST CSF, HIPAA, PCI-DSS, and ISO 27001, simplifying adherence to
    complex regulatory requirements.
  • Broad Marketplace
    Availability: Organizations will be able to deploy Commvault Cloud
    directly from AWS, Azure, Google Cloud, or VMware marketplaces, enabling
    fast and secure installations with minimal effort.

The
timing of this announcement also comes as more and more organizations are
accelerating their move to the cloud. In fact, according to IDC, spending on
public cloud services is expected to double to $1.6 trillion by 2028.’ In the
last year, Commvault has introduced a host of cloud-first offerings designed to
make customers more resilient in the cloud, including Cleanroom Recovery, Cloud Rewind, and Clumio Backtrack. Now, the company is taking
resilience in the cloud to the next level via CIS-hardened images for popular
cloud marketplaces.

“Organizations demand solutions that are not only secure and
compliant but also straightforward to deploy,” said Chris Montgomery, CTO –
Security, Americas at Commvault. “With CIS-hardened images, we can eliminate
the guesswork, providing IT teams with a secure, pre-configured foundation to
accelerate their cyber resilience strategies while meeting industry standards.”

“As a security-first organization, having confidence in how our
solutions are deployed is critical,” said Marek Duranik, Storage & Data
Protection Associate Director at Merck. “Commvault’s CIS-hardened images give
us the assurance that we’re starting from a strong security baseline, allowing
our teams to focus on protecting and recovering critical data.”