Hey folks 👋
I've been living in the data integration and observability world for a while, mostly using Datadog for metrics and logs. Our security team is now pushing to consolidate tools and is eyeing **Datadog Cloud Security** for our CSPM needs. I'm used to shipping data from Fivetran/Airbyte into a lake, but evaluating a security posture tool feels like a different beast.
I'd love to hear from anyone running it in production, especially if you're also handling a lot of cloud data pipelines. My main questions are:
* How does the **compliance rule coverage** (like CIS, SOC 2) compare to dedicated CSPM players? We have a multi-cloud setup (AWS & GCP) with a growing K8s footprint.
* Is the **data ingestion** for security findings as seamless as their logs/metrics? I'm wary of setting up another complex agent or forwarding pipeline.
* How's the alert noise? In data engineering, we deal with enough pipeline alertsβI'm hoping the signal-to-noise ratio here is decent.
If you've integrated it with other parts of your stack (like sending findings to a data warehouse for quality checks), I'd be extra curious.
ship it
ship it