Skip to main content
Sweet Security
Runtime Detection and Response

Cloud Workload Protection (CWPP)

An eBPF (Linux) and Rust (Windows) sensor for containers, Kubernetes, VMs and serverless

Cloud Workload Protection gives a continuous, contextual picture of every workload: containers, Kubernetes clusters (EKS, AKS, GKE, Fargate and self-managed), virtual machines and serverless functions. The lightweight eBPF sensor runs at kernel level and, according to Sweet, does not degrade application performance; on Windows a Rust-based sensor does the work. The sensor profiles processes, network connections and file operations, and the platform shows its CPU and memory use on the dashboard together with machine and cluster coverage. Coverage spans public, private and hybrid clouds, including rare Linux distributions and IBM LinuxONE.

Security

Enterprise-grade protection compliant with regulatory requirements and security standards

Performance

Fast deployment with minimal resource overhead

Support

Dedicated support from a certified partner

Integration

Easy integration with your existing infrastructure

Key features

  • A kernel-level eBPF sensor for Linux and a Rust sensor for Windows in one platform
  • Containers and Kubernetes (EKS, AKS, GKE, Fargate, self-managed), virtual machines (including EC2) and serverless
  • Public, private, hybrid and on-prem environments; rare Linux distributions and IBM LinuxONE
  • Profiling of processes, network connections and file operations, with a process tree in the incident view
  • A sensor performance widget (CPU, memory, 7-day trend) plus machine and cluster coverage per provider

Business benefits

  • Runtime protection with no production performance penalty (Kaltura CISO)
  • One sensor instead of separate agents for containers, VMs and serverless
  • Deployment measured in hours: about 2 hours to secure an entire organization (Sweet data)
  • Full visibility into workload behavior for forensics and incident response
  • Consistent Linux and Windows coverage without a second product in the stack
Sweet Security

Why Sweet Security?

Sweet Security is a Runtime CNAPP that detects and blocks attacks on cloud infrastructure, workloads, applications and AI agents while the attack is still under way. A lightweight eBPF sensor and cloud logs build a behavioral baseline of the environment, and a single detection engine correlates events across every layer to cut MTTR to minutes, according to Sweet Security data.

All products

Need Cloud Workload Protection (CWPP) in your organization?

As a certified Sweet Security partner, we'll help you deploy and configure the solution.

Book a free consultation