ONAM
–Security
Security Posture
CSPM
Misconfigurations across all clouds
CIEM
Identity & entitlement analysis
IAM Security
Policies, users, and privilege risk
Threat & Attack
Attack Path
Crown jewels, toxic combos, attack graphs
CDR — Detection
L1/L2/L3 behavioral threat detection
Threat Detection
MITRE ATT&CK–mapped attack chains
Network & Data
Network Security
7-layer topology analysis
Data Security
Where your sensitive data lives
AI Security
SageMaker, Bedrock, and AI/ML risk
Workloads & Code
Container Security
EKS, ECS, and image scanning
Vulnerability Mgmt
CVEs in context, not just CVSS
Code Security
SAST, DAST, SCA, IaC — 2,852 rules
Risk & Governance
Risk Quantification
FAIR model — dollar-value exposure
Compliance
13 frameworks, always audit-ready
Technology Engine
34 technologies, runtime discovery
By cloud
AWS
Amazon Web Services
Azure
Microsoft Azure
Google Cloud
GCP posture & threats
Oracle Cloud (OCI)
OCI security
Alibaba Cloud
AliCloud coverage
IBM Cloud
Enterprise workloads
Kubernetes / EKS
Cluster hardening
By industry
Financial Services
PCI-DSS, SOX-ready
Healthcare
HIPAA-first controls
Government
FedRAMP alignment
CompliancePricingResources
Log inRequest demo
Getting Started
  • Introduction
  • Quickstart
  • Core Concepts
Onboarding
  • AWS
  • Azure
  • Google Cloud
  • Oracle Cloud (OCI)
  • Alibaba Cloud
  • IBM Cloud
  • Kubernetes
Features
  • CSPM
  • CIEM
  • IAM Security
  • Attack Path
  • Threat Detection
  • CDR
  • SecOps
  • Network Security
  • Data Security
  • Vulnerability Management
  • Container Security
  • IaC Scanning
  • Compliance
  • Risk Quantification
Architecture
  • Overview
  • Scanning Engine
  • Data Security
Compliance
  • Framework Coverage
Trust
  • Trust Center
  • Data Retention
  • SLA & SLO
Reference
  • API
  • Finding Schema
  • Integration Catalog
  • RBAC & SSO
Release Notes
  • Release Notes
Documentation

Welcome to Onam docs

Everything you need to connect a cloud, tune findings, and integrate Onam into the tools your team already uses.

Quickstart

Connect your first cloud in under 5 minutes

Deploy a read-only CloudFormation stack, paste the Role ARN into Onam, and watch the first scan roll in.

Start with AWS →

Browse the docs

Getting Started

  • Introduction
  • Quickstart
  • Core Concepts

Onboarding

  • AWS
  • Azure
  • Google Cloud
  • Oracle Cloud (OCI)
  • Alibaba Cloud
  • IBM Cloud
  • Kubernetes

Features

  • CSPM
  • CIEM
  • IAM Security
  • Attack Path
  • Threat Detection
  • CDR
  • SecOps
  • Network Security
  • Data Security
  • Vulnerability Management
  • Container Security
  • IaC Scanning
  • Compliance
  • Risk Quantification

Architecture

  • Overview
  • Scanning Engine
  • Data Security

Compliance

  • Framework Coverage

Trust

  • Trust Center
  • Data Retention
  • SLA & SLO

Reference

  • API
  • Finding Schema
  • Integration Catalog
  • RBAC & SSO

Release Notes

  • Release Notes
Platform
  • CSPM
  • CIEM
  • IAM Security
  • Attack Path
  • Threat Detection
  • CDR
  • Network Security
  • Data Security
  • Risk Quantification
  • Vulnerability Mgmt
  • Container Security
  • AI Security
  • Code Security
  • Compliance
By cloud
  • AWS
  • Azure
  • Google Cloud
  • Oracle Cloud
  • Alibaba Cloud
  • Kubernetes
By industry
  • Financial Services
  • Healthcare
  • Government
Resources
  • Documentation
  • Blog
  • All Resources
Company
  • About
  • Careers
  • Contact
  • Security
  • Pricing
  • Privacy
  • Terms
ONAM
–Security
© 2026 Onam Security, Inc.
SOC 2 Type II
ISO 27001