What is Argus?
Argus is a Cloud Security Posture Management (CSPM) service. It continuously scans connected cloud accounts against hundreds of security checks and compliance frameworks, turns the results into prioritized findings, and tracks compliance posture over time from a multi-tenant web console.
There is nothing to install in the scanned cloud. Argus connects with read-only credentials and scans from the outside. For AWS, the recommended credential is an assumed role scoped by a per-workspace External ID, which gives Argus short-lived session credentials and never leaves a key behind. Argus never gets write access to the environment. What a connection grants and what the service keeps is set out in Trust & data handling.
How it works
- Connect an account. Register a cloud account with read-only credentials from the Accounts page. AWS is the primary provider and the most complete today. The connect wizard also lists connectors for Azure, Google Cloud, Kubernetes, and more; see the full supported providers catalog.
- Scan. Argus runs the full check suite against the account, on a recurring schedule or on demand. Each scan evaluates hundreds of checks across the services in use.
- Triage findings. Every failed check is a finding ranked by severity, tied to the affected resource, with a risk explanation and step-by-step remediation.
- Track compliance. The same scan results map onto compliance frameworks: CIS, AWS FSBP, NIST 800-53, PCI DSS, SOC 2, ISO/IEC 27001 and HIPAA, each with a score, a per-requirement drill-down, and downloadable reports.
The console pages
| Page | What it shows |
|---|---|
| Overview | Posture at a glance: score with its weekly change, failing findings by severity, compliance watchlist, posture by area, exposure, accounts |
| Accounts | The inventory of connected cloud accounts and provider groups |
| Scans | Every posture scan: in progress, completed, and scheduled runs |
| Findings | Every evaluated check, filterable and ranked by severity |
| Compliance | Framework scores, requirement status, downloadable reports |
| Resources | The discovered asset inventory, each resource linked to its findings |
| Mute rules | Suppressions that keep accepted risks out of active posture |
| Team | Workspace members, roles, and invitations |
| Billing | The Free or Pro plan, usage against limits, and upgrades |