Sonrai Security
By Sonrai Security
The implementation process for Sonrai Security software, particularly its flagship product Sonrai Dig, involves a series of structured steps designed to ensure seamless integration and deployment within an organization’s cloud environment. The typical process includes:
Subscription and Account Setup: Organizations begin by subscribing to Sonrai Security through platforms like the AWS Marketplace. This step involves completing a subscription wizard, which prompts Sonrai to create a customer tenant. The Sonrai Customer Success team then reaches out to assist with setup and deployment.
Logging In: After account creation, users log into the Sonrai Security portal using the credentials provided during the subscription process.
Connecting to Sonrai Dig: Users generate an API token for the Sonrai Dig platform, ensuring that the user has sufficient permissions to configure collectors and add new accounts. This step is crucial for establishing a secure connection between the organization’s cloud resources and the Sonrai platform.
Deployment of Collectors: The setup Lambda function is executed to deploy a series of stack instances that create necessary IAM roles across all accounts in the organization. Collectors are deployed in a designated security account to report findings back to the Sonrai platform.
Validation of Results: Finally, users validate that all accounts within their organization have been successfully integrated into Sonrai Dig, with appropriate IAM roles established for ongoing monitoring and reporting.
The entire implementation process typically takes two to four weeks, depending on the complexity of the organization’s cloud environment and the number of accounts being integrated.
Sonrai Security software can be customized to fit specific business needs in several ways:
Custom Workflows: Organizations can tailor workflows within the Governance Automation Engine to align with their internal processes for identity management and compliance. This flexibility allows teams to automate remediation tasks based on their unique security policies and operational requirements.
GraphQL API: The availability of a GraphQL API enables organizations to create custom integrations with existing security tools or dashboards, allowing them to pull specific data points or automate actions based on real-time insights from Sonrai Dig.
Custom Alerts and Notifications: Users can configure alerts tailored to their business risks, ensuring that security teams receive notifications relevant to their specific operational context rather than generic alerts that may lead to alert fatigue.
Compliance Frameworks: Organizations can customize compliance reporting frameworks according to their industry standards or regulatory requirements, ensuring that they meet specific compliance obligations without relying solely on pre-configured settings.
While specific pricing details for Sonrai Security software are typically provided upon request or during contract negotiations, there are several potential additional costs associated with its implementation and ongoing use:
Setup Fees: Depending on the complexity of the deployment, there may be initial setup fees associated with onboarding services provided by the Sonrai Customer Success team. These fees can vary based on the size of the organization and the scope of implementation required.
Maintenance Costs: Ongoing maintenance fees may apply as part of the subscription model, which could include regular updates, security patches, and enhancements provided by Sonrai Security throughout the contract duration.
Support Charges: While basic support is often included in subscription plans, organizations may incur additional costs for premium support services or dedicated account management if they require more personalized assistance or faster response times.
Training Costs: Organizations may choose to invest in training sessions for their staff to effectively utilize the platform's features. These training sessions could be offered by Sonrai or third-party providers and might come with associated costs.
Sonrai Security provides a comprehensive training and support program for new users to ensure they can effectively utilize the platform's features. The training offerings include:
Onboarding Sessions: Upon subscription, users receive personalized onboarding sessions facilitated by the Sonrai Customer Success team. These sessions guide users through the initial setup, configuration, and integration of Sonrai Dig into their cloud environments.
Documentation and Resources: Sonrai offers extensive documentation, including user guides, best practices, and FAQs, accessible through their website. This resource library helps users understand various functionalities and troubleshoot common issues independently.
Webinars and Workshops: Regularly scheduled webinars and workshops are conducted to educate users on new features, security best practices, and effective usage of the platform. These sessions often include live demonstrations and Q&A segments.
Continuous Monitoring Support: Sonrai provides ongoing support to monitor the implementation of security measures and compliance with policies. Their support team is available to assist with any questions or challenges that arise during use.
Sonrai Security implements several robust security measures to protect data within its platform:
Data Encryption: All data transmitted between the Sonrai platform and user environments is encrypted using industry-standard protocols such as TLS (Transport Layer Security). This ensures that sensitive information remains secure during transmission.
Access Controls: Sonrai employs strict access control measures, utilizing role-based access controls (RBAC) to ensure that only authorized personnel can access sensitive data and functionalities. This minimizes the risk of unauthorized access or data breaches.
Identity Management: The platform continuously monitors identities and permissions across cloud environments to detect overprivileged access. By enforcing least privilege policies, Sonrai reduces the risk of data exposure due to compromised accounts.
Audit Logging: Comprehensive audit logs are maintained for all actions taken within the platform. This logging capability allows organizations to track changes, monitor user activities, and conduct forensic analysis in case of security incidents.
Vulnerability Scanning: Sonrai includes agentless vulnerability scanning capabilities that identify potential security risks in real-time. This proactive approach enables organizations to address vulnerabilities before they can be exploited by attackers.
Sonrai Security releases updates regularly to enhance its platform's functionality, security, and performance. The update management process includes:
Scheduled Updates: Sonrai typically follows a structured release schedule that includes major updates at least quarterly, along with minor updates or patches as needed. This ensures that users benefit from the latest features and security enhancements without significant downtime.
Automated Deployment: Updates are generally deployed automatically without requiring user intervention. This automation minimizes disruption for users while ensuring that they always have access to the most current version of the software.
User Notifications: Prior to major updates, Sonrai communicates with users through email notifications or in-platform alerts. These notifications inform users about upcoming changes, new features, or critical patches that may require attention.
Feedback Loop: Sonrai actively seeks user feedback on new features or updates through surveys and direct communication channels. This feedback is considered in future development cycles to enhance user experience further.
Sonrai Security maintains a clear policy regarding data ownership and portability, emphasizing the rights of organizations over their data. According to their Privacy Policy, all data processed through the Sonrai platform remains the property of the customer. This means that organizations retain full ownership of their data, including any sensitive information managed within the cloud environments monitored by Sonrai.
In terms of data portability, Sonrai provides mechanisms for customers to access and export their data in a structured, commonly used, machine-readable format. This capability is in line with best practices for data management and compliance with regulations such as the GDPR. Customers can request their personal data at any time, ensuring they have control over how their information is used and stored. Additionally, in the event of a business transaction or transfer of assets, Sonrai commits to making reasonable efforts to ensure that any third party that receives customer data honors the same privacy standards outlined in their policy.
Sonrai Security offers flexible terms for scaling its services up or down based on organizational needs. This adaptability is crucial for businesses that experience fluctuations in cloud usage or security requirements. Key aspects of these terms include:
Subscription Model: Sonrai operates on a subscription-based pricing model, allowing organizations to adjust their plans according to changing needs. This model typically includes options for monthly or annual subscriptions, providing flexibility in financial commitments.
Tiered Pricing: The platform may offer tiered pricing structures based on the number of cloud accounts monitored, the volume of data processed, or specific features utilized. Organizations can choose a tier that aligns with their current requirements and easily upgrade as they grow.
Customizable Features: As business needs evolve, organizations can add or remove features from their subscription package. This customization ensures that companies only pay for what they need at any given time, allowing for cost-effective scaling.
Support for Growth: For organizations looking to expand their cloud security capabilities, Sonrai provides onboarding support and training resources to facilitate a smooth transition as new features or accounts are added.
Sonrai Security has specific terms and conditions regarding contract renewal and cancellation as outlined in their End User License Agreement (EULA). Key points include:
Initial Term and Renewal: The agreement commences on the effective date specified in the Sonrai quotation and continues for an initial term, typically set for one year. Upon conclusion of the initial term, the contract automatically renews for successive one-year renewal terms unless either party provides notice of intent not to renew at least 30 days prior to the expiration of the current term.
Notice for Non-Renewal: To prevent automatic renewal, either party must notify the other in writing of their intention to allow the agreement to expire. This notice must be provided at least 30 days before the end of the current term.
Termination for Breach: Either party may terminate the agreement upon written notice if the other party commits a material breach and fails to cure such breach within 30 days of receiving notice. If the breach pertains to payment obligations, the cure period is shortened to 7 days.
Obligations Upon Termination: Upon termination or expiration of the agreement, Sonrai's obligation to provide services ceases, and the customer must remove any copies of Sonrai's software from their systems. Sonrai retains the right to remove customer data from its systems but may keep aggregated or de-identified data for its use.
Sonrai Security software adheres to several key compliance standards that are critical for organizations operating in regulated environments. These include:
General Data Protection Regulation (GDPR): Sonrai complies with GDPR requirements, ensuring that personal data is processed lawfully, transparently, and securely. This includes provisions for data subject rights, data protection impact assessments, and ensuring appropriate technical measures are in place.
Health Insurance Portability and Accountability Act (HIPAA): For organizations in the healthcare sector, Sonrai meets HIPAA standards by implementing necessary safeguards to protect sensitive patient information. This includes ensuring confidentiality, integrity, and availability of electronic protected health information (ePHI).
Payment Card Industry Data Security Standard (PCI DSS): Sonrai adheres to PCI DSS requirements when handling payment card information. This compliance ensures that organizations can securely process credit card transactions while protecting cardholder data.
Federal Risk and Authorization Management Program (FedRAMP): Sonrai's solutions are designed to meet FedRAMP requirements, which are essential for cloud service providers working with federal agencies. This compliance involves rigorous security assessments and continuous monitoring.
National Institute of Standards and Technology (NIST): The platform aligns with NIST cybersecurity frameworks, providing a structured approach to managing cybersecurity risks through best practices and guidelines.