Skip to main content

KDefend

Kscope KDefend combines application, cloud, and data security into a single, unified view. It integrates four security domains — CSPM, DSPM, ASPM, and AISPM — into one platform powered by the context graph.


Architecture

Data Sources

  • AWS / Azure / GCP
  • GitHub / Bitbucket
  • Databases
  • Snyk / Wiz / Checkmarx
  • Kubernetes

Korweave Context Graph

  • Context Graph
  • Enrichment & Correlation

KDefend Domains

  • CSPM
  • DSPM
  • ASPM
  • AISPM

Insight Feeds & Dashboards


Security Domains

DomainWhat it coversKey analyzersLearn more
CSPMCloud infrastructure misconfigurations, IAM risks, network exposure, compliance postureAWS IAM, Azure IAM, GCP IAM, AWS Compute, AWS Network, KubernetesDetails →
DSPMDatabase access, storage encryption, sensitive data exposure, public bucket detectionAWS Storage, Azure Storage, GCP Storage, AWS RDS, DatabaseDetails →
ASPMCode vulnerabilities, SBOMs, secrets, IaC misconfigurations, CI/CD pipeline securityApplication, Code, SCA, IaC, GCP DevOpsDetails →
AISPMAI model security, agent permissions, prompt vulnerabilities, training data integrityAI IAM, AI SAST, AI DAST, Azure AI, GCP AIDetails →

Key Capabilities

CapabilityDescription
Live Inventory & SBOMDynamically maps all applications, APIs, libraries, and infrastructure — generating real-time Software Bill of Materials
Business-Aware Risk PrioritizationPrioritizes vulnerabilities by operational impact and business criticality, not just CVSS scores
API & Dependency MappingDiscovers APIs, maps communication patterns, and visualizes attack surfaces
Cross-Domain CorrelationConnects findings from code, cloud, and data domains into unified insights via the context graph
Sensitive Data Flow ProtectionTracks how PII, PHI, and PCI data flows across services and identifies exposure zones
Blast Radius ModelingMaps architectural dependencies and simulates the impact of outages or breaches

KDefend Dashboard

The KDefend landing page provides at-a-glance KPIs and trend charts across all four domains. See the Landing Page guide for a full walkthrough of dashboard widgets including:


Getting Started

  1. Connect Blueprints — Set up read-only integrations for your cloud accounts, SCM tools, and security scanners via the Blueprint catalog
  2. Review Analyzers — Each domain activates specific analyzers that process ingested data through the context graph
  3. Monitor Insight Feeds — Prioritized findings appear in Insight Feeds, scored by business impact
  4. Explore with KAI — Ask natural language questions about your security posture via KAI

Need Help?

Contact support at support@kscope.ai or use the in-app KAI assistant.