Fortinet expands FortiCNAPP with new capabilities for risk management in cloud environments

13/03/2026

Fortinet (NASDAQ: FTNT), a global leader in cybersecurity and the convergence of networking and security, announced new enhancements to the FortiCNAPP platform. The goal of these updates is to help organizations better understand and prioritize risks in cloud environments — something the company says often remains limited in many existing CNAPP solutions.

The new capabilities enable the connection and analysis, within a unified workflow, of key factors such as cloud configurations, exposed identities, vulnerabilities, network security policies, data sensitivity, and system behavior during runtime. In this way, FortiCNAPP helps security teams focus on the risks that truly matter.

According to Nirav Shah, Senior Vice President of Products and Solutions at Fortinet, the challenge in many cloud environments is not the lack of information but the growing complexity. Limited resources and the shortage of specialists make it difficult to manage risk across different cloud infrastructures. By combining network control, data sensitivity, and runtime validation within FortiCNAPP, organizations can move from alert overload to clearly prioritized actions based on real exposure and business impact.

Security challenges in multi-cloud environments

As companies expand into hybrid and multi-cloud environments, security teams are often forced to gather risk information from multiple disconnected tools. This leads to fragmented visibility and delayed responses to incidents.

According to the Fortinet 2026 Cloud Security Report, nearly 70% of organizations cite the proliferation of security tools and the lack of comprehensive visibility as key barriers to effective cloud protection. The new enhancements to FortiCNAPP aim to address this issue by adding protection across key layers of cloud infrastructure — network, data, and runtime environment.

More accurate risk assessment through network context

One of the new capabilities of FortiCNAPP is the inclusion of network security context directly in the risk assessment for cloud workloads.

The main advantages include:

  • Risk assessment with network context – FortiCNAPP detects FortiGate solutions deployed along the internet access path to cloud workloads and includes this protection in the risk analysis. This allows exposure to be evaluated against the actual network security mechanisms in place.
  • Fewer false critical alerts – continuous protection context provides a more realistic picture of risk and allows network and security teams to work with a shared understanding of actual exposure.

Built-in Data Security Posture Management (DSPM)

The platform now includes built-in Data Security Posture Management (DSPM), enabling risk analysis related to sensitive information without requiring the data to be moved or exported.

The main functions include:

  • Visibility into data risk in place – DSPM discovers sensitive data, analyzes access patterns, and detects potential malware while also supporting compliance with privacy and data governance requirements.
  • Prioritization based on business impact – risks affecting sensitive data are automatically assigned higher priority, helping teams focus on issues with the greatest potential effect.

A unified workflow for risk management

FortiCNAPP simplifies cloud security management by bringing together different risk signals in a single operational environment.

Among the key improvements are:

  • Unified risk management – information from cloud configuration, infrastructure access rights, vulnerabilities, DSPM, and network security is combined into a single central view.
  • Prioritization based on real execution – validation of vulnerable program paths helps teams distinguish theoretical issues from truly exploitable vulnerabilities.
  • Faster issue remediation – the combined context of configurations, identities, vulnerabilities, network accessibility, data sensitivity, and runtime behavior enables faster responses with fewer tools.


Smarter cloud security operations

As the complexity of cloud infrastructures grows, effective risk management requires not only detecting misconfigurations or vulnerabilities but also understanding whether protection mechanisms exist, what data is affected, and what the real potential impact is.

The new enhancements to FortiCNAPP help organizations reduce information noise, make more informed decisions, and direct their security efforts toward real risks and available resources.

Practical application in organizations

Many companies already use FortiCNAPP to simplify cloud security operations and gain a clearer view of risks in complex cloud environments by integrating network, data, and runtime context into a single platform.

According to Hugh Lee, Head of Global IT Security and Infrastructure at Monolithic Power Systems, FortiCNAPP provides visibility into identities, workloads, and vulnerabilities, enabling a clear understanding of where risk exists and how it should be addressed.

According to him, the platform functions as a continuous auditor that enables rapid assessment of the state of cloud infrastructure even without deep technical expertise. Combined with Fortinet Security Fabric, it helps organizations proactively reduce risk in their cloud operations.

Fortinet expands FortiCNAPP with new capabilities for risk management in cloud environments
13/03/26

Fortinet (NASDAQ: FTNT), a global leader in cybersecurity and the convergence of networking and security, has announced new enhancements to its ...

Huawei introduces new AI data center solutions at MWC Barcelona 2026
11/03/26

During Mobile World Congress Barcelona 2026, Huawei presented new products and solutions related to AI Data Centers (AI DC). They were announced...

SAP S/4HANA and 2026: Digital transformation requires a clear strategy
09/03/26

In recent years, SAP has consistently encouraged its customers to adopt cloud-based solutions. With initiatives such as “Business Unleashe...

Ubiquiti launches fanless Wi-Fi 7 router and plans additional products in the UniFi Industrial series
06/03/26

Ubiquiti has introduced a new product category within its UniFi ecosystem called UniFi Industrial, expanding further into the professional marke...

HPE introduces AI-ready Juniper networking solutions for operators ahead of Mobile World Congress 2026
04/03/26

Hewlett Packard Enterprise (HPE) has introduced a new generation of networking, compute, and cloud solutions aimed at telecommunications operato...