IBM Security rolled out a suite of new and expanded cloud services that aim to unify security policy and controls across customers’ hybrid cloud environments.

IBM Security Services for Cloud essentially bundles security technologies with consulting and management services. Additionally, the security services work across multiple clouds — Amazon Web Services, Microsoft Azure, Google Cloud, IBM Cloud, and others. They also use automation to prioritize risks, respond to threats, and connect that data with on-premises security operations.

“The big cloud vendors, including IBM Cloud, are pumping new capabilities at a pace faster than security can keep up,” said Vikram Chhabra, global director of offering management and strategy for IBM Security Services. “So we have to simplify the lifecycle, we have to make it easy for them. And we have to make it consumable in an automated fashion.”

The intent behind offering cloud services as a single package is to “make it simple, help customers define their cloud strategy, align their strategy to their business objectives, and do it in an automated, streamlined fashion,” he added.

IBM Security Services for Cloud

The new cloud security suite covers four primary services: cloud-native security, cloud security posture management (CSPM), container security, and cloud security strategy.

Cloud-native security includes advisory and managed security services that provide centralized visibility, management, and monitoring of native security controls across all cloud environments. IBM security experts will help companies design and implement best practices for cloud-native controls based on specific business and regulatory requirements and provide ongoing monitoring and reporting on how configurations are being optimized.

Under CSPM: IBM will help companies ensure governance and compliance across clouds, including CSPM system integration and managed services. It will also provide recommendations and automation to fix any compliance related issues as well as provide ongoing monitoring and remediation.

IBM’s container security services span consulting and systems integration, to threat and vulnerability management, and managed security services for the full container lifecycle. Additionally, Integration with IBM Security X-Force Red vulnerability management can help identify, analyze, and rank thousands of container-related vulnerabilities and prioritize remediation.

And finally, IBM boosted its advisory services for hybrid- and multi-cloud security assessment and strategy based on industry frameworks such as the Cloud Security Alliance’s Cloud Controls Matrix (CCM). The services can now help organizations assess the security posture of cloud workloads and services and make recommendations to reduce risk.