Hey folks, just wrapped up a trial with both Braintrust and Qualys for scanning our AWS configs. Career switcher here, so still getting my head around all these tools 😅
Ran them on a test account with some common misconfigurations: S3 buckets open to the public, security groups too permissive.
Braintrust was super fast to set up. Just needed a CloudTrail S3 bucket and an IAM role. Their query language felt like writing PromQL.
```sql
FROM aws_cloudtrail
WHERE eventName = 'CreateBucket'
AND requestParameters.bucketName LIKE '%-logs'
SELECT resourceId, eventTime
```
Qualys felt more heavyweight. Took a day to get the connector provisioned and scanning. The findings were super detailed though, with CIS benchmark numbers.
Biggest difference? Braintrust felt like I'm building my own checks, Qualys felt like I'm getting a compliance report. For my team's size, Braintrust's model might be more flexible. Anyone else compared them for cloud security posture?