
Orca Security, a leader in agentless-first cloud security, announced on July 30, 2025, a major expansion of its Cloud Native Application Protection Platform (CNAPP), introducing the industry’s first comprehensive runtime protection solution for hybrid cloud environments. This enhancement extends Orca’s capabilities beyond public clouds (AWS, Azure, Google Cloud) to private clouds and on-premises infrastructure, addressing critical security challenges in hybrid deployments.
Orca Security extends CNAPP with runtime protection for hybrid and private clouds.
Addresses visibility gaps in hybrid environments, projected to reach 90% adoption by 2027.
Enhanced real-time threat detection for container escapes, privilege escalation, and more.
Introduces Windows-specific runtime protection for servers and workstations.
AI Assistant streamlines threat investigation with natural language workflows.
Supports compliance across 100+ frameworks, including NIST 800-53 and SOC 2.
With Gartner projecting that 90% of organizations will adopt hybrid cloud strategies by 2027, the complexity of securing public, private, and on-premises environments has intensified. Fragmented security tools create visibility gaps, inconsistent policies, and increased breach risks. “Existing security tools have led to security gaps as organizations run their business across a diverse spectrum of environments,” said Gil Geron, CEO and Co-Founder of Orca Security. Orca’s expanded platform unifies security across these environments, leveraging its patented SideScanning™ technology for agentless-first visibility and a lightweight eBPF-based sensor for real-time protection.
The latest updates to Orca Sensor address the growing demand for comprehensive security in hybrid environments, driven by rising concerns over cost, data privacy, and AI-driven threats. Key features include:
Expanded Real-Time Sensor Detections: Enhanced detection for sophisticated attacks like container escapes, privilege escalation, cloud reconnaissance, and “living off the land” techniques, ensuring proactive threat mitigation.
Windows Runtime Protection: Offers real-time malicious process detection for Windows-based servers and workstations, broadening protection for enterprise assets.
AI Assistant for Threat Investigation: Empowers teams with natural language-based, guided Q&A workflows to accelerate incident resolution and reduce mean time to remediation (MTTR).
“As organizations increasingly navigate complex hybrid environments, the need for unified and consistent security has never been more critical,” said Arie Teter, CPO of Orca Security. These enhancements enable customers to maintain robust security postures across diverse infrastructures.
Orca’s CNAPP integrates Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWPP), Cloud Infrastructure Entitlement Management (CIEM), and Data Security Posture Management (DSPM), providing 100% coverage of cloud assets without performance impacts. The platform supports compliance with over 100 frameworks, including NIST 800-53, SOC 2, and ISO 27001, and integrates with tools like Azure Security Center and AWS CloudFormation. Its AI-driven capabilities prioritize critical risks, reducing alert fatigue and enabling rapid remediation by tracing issues to their code origins.
Orca’s agentless-first approach, combined with its lightweight agent for critical workloads, delivers unparalleled visibility and scalability. The platform’s Unified Data Model correlates telemetry across clouds, workloads, and configurations, identifying attack paths to critical assets. “Orca gives us a complete cloud inventory to know about all our assets and workloads for vulnerability management,” said Aaron Brown, Head of Cloud Security at a customer organization. By addressing hybrid cloud challenges, Orca empowers organizations to innovate securely while meeting regulatory and privacy demands.
Orca enables organizations to make cloud security a strategic advantage. With the most comprehensive coverage and visibility across multi-cloud environments, the agentless-first Orca Platform unites teams to eliminate complexities, vulnerabilities and risks. Backed by Temasek, CapitalG, ICONIQ Capital, Redpoint Ventures and others, Orca is trusted by hundreds of organizations, including SAP, Gannett, Autodesk, Unity, Lemonade and Digital Turbine.