Resource Matrix

InsightCloudSec uses standardized language (aka normalized terminology) to describe virtual/software-defined resources across public and private cloud technologies. The table below includes the name of each Resource as it appears in the InsightCloudSec platform, the category of resource, and the CSP-specific name (where applicable).

Supported Services & Regions

In general, InsightCloudSec provides support for the resources listed below for all regions in which they are available. In some scenarios some resources or services may not be available in certain regions. This is typically the result of restrictions related to the region itself or otherwise imposed by the CSP (e.g., AWS) to comply with regional policies. We recommend that you refer to the CSP-specific documentation on those specific regions for official details.

(For example, refer to the table for AWS services in China here.)

If you have other questions related to regions, or specific services and their support, contact us through the Customer Support Portal with any questions.

Azure Data Lake Storage Gen1 Retired

As of February 29, 2024, Azure has retired the Data Lake Storage Gen1 service. The Data Lake Storage resource type has been disabled until InsightCloudSec is able to officially support Azure Data Lake Storage Gen2. Contact support for any questions or issues.

Resource TypeCategoryAmazon Web Services (AWS)AWS GovCloudMicrosoft AzureGoogle Cloud Platform (GCP)Alibaba CloudKubernetesOracle (OCI)
Access AnalyzerIdentity & ManagementAWS IAM Access Analyzer
Access ListNetworkNACL / Security GroupNACL / Security GroupNetwork Security GroupNetwork FirewallSecurity GroupNetwork Security Group/Security List
Access List Flow LogNetworkNSG (Network Security Group) Flow Log
Access List RuleNetworkRulesRulesSecurity RulesFirewall RulesRulesNetwork Security Group Rule/Security List Rule
Activity Log AlertIdentity & ManagementActivity Log Alert
Airflow EnvironmentComputeManaged Airflow EnvironmentCloud Composer
API Access KeyIdentity & ManagementAccess key IDAccess key IDApplication CredentialsService Account KeyAccess Key ID
API Accounting ConfigIdentity & ManagementCloudTrailCloudTrailN/ALogs StorageActionTrail
API Key Usage PlanNetworkAPI Key Usage PlanAPI Key Usage Plan
App ConfigurationComputeApp Configuration
App Engine ServiceComputeApp Engine Service
App Engine Service VersionComputeApp Engine Service Version
App Run ServiceContainersAWS App RunnerCloud Run
App ServerComputeApp Service Plan
App Stream FleetComputeAppStream 2.0AppStream 2.0
Application GatewayNetworkAPI GatewayAPI Management Service
Application Gateway DomainNetworkAPI Gateway Domain
Application KeyNetworkAPI Gateway Key
Application StageNetworkAPI Gateway Stage
Artifact RegistryContainersArtifact Registry
Automation AccountMachine Learning & AIAutomation Account
Autoscaling GroupComputeAutoscaling GroupAutoscaling GroupVirtual Machine Scale SetsAutoscalersN/A
Autoscaling Launch ConfigurationComputeLaunch ConfigurationsN/AN/AN/AN/A
Azure PolicyIdentity & ManagementAzure Policy
Backend ServicesComputeLoad Balancer Backend Services
Backup GatewayStorageBackup GatewayBackup Gateway
Backup VaultStorageBackup VaultN/A
Bastion HostNetworkBastion Host
Batch EnvironmentComputeBatch Compute EnvironmentBatch Compute EnvironmentBatch Account
Batch PoolComputeBatch Pool
Bedrock Training JobMachine Learning & AIBedrock Job
Big Data InstanceComputeRedshiftRedshift
Big Data Serverless NamespaceComputeRedshift Serverless Namespace
Big Data Serverless WorkgroupComputeRedshift Serverless Workgroup
Big Data SnapshotStorageRedshift SnapshotRedshift SnapshotN/AN/AN/A
Big Data WorkspaceComputeAzure Synapse
Bot ServiceMachine Learning & AIBot Service
Build ProjectComputeCodeBuild ProjectCodeBuild
Business Intelligence SubscriptionIdentity & ManagementQuickSightQuickSightN/A
Cache Database ClusterComputeMemoryDBMemoryDB
Cache InstanceComputeElastiCacheElasticacheAzure RedisMemorystoreAsparaDB for Redis
Cache SnapshotStorageElastiCache SnapshotRedis Snapshot
Cassandra TableStorageKeyspaces TableKeyspaces Table
Cloud Access PointIdentity & ManagementS3 Access PointS3 Access Point
Cloud AccountIdentity & ManagementCloud AccountCloud AccountCloud SubscriptionProjectCloud AccountCloud Tenancy
Cloud Advisor CheckIdentity & ManagementTrusted AdvisorTrusted AdvisorSecurity Command Center BaselineN/A
Cloud AlarmIdentity & ManagementCloudWatch AlarmCloudWatch AlarmN/AN/AN/A
Cloud AppIdentity & ManagementAzure App Registration
Cloud CredentialsIdentity & ManagementAPI Keys
Cloud DatasetStorageBigQuery Dataset
Cloud Domain GroupIdentity & ManagementN/AN/AN/ADomain Groups
Cloud Domain UserIdentity & ManagementN/AN/ADomain Users
Cloud Event BusIdentity & ManagementCloudWatch/Event Bridge Event BusCloudWatch/Event Bridge Event Bus
Cloud Event RuleIdentity & ManagementCloudWatch RuleCloudWatch Rule
Cloud Global Access PointStorageS3 Multi-Region Access Point
Cloud GroupIdentity & ManagementIAM GroupIAM GroupGroupGroupRAM GroupGroup
Cloud LimitIdentity & ManagementLimitLimitLimitLimitN/A
Cloud Log DestinationIdentity & ManagementCloudWatch Logs DestinationsCloudWatch Logs Destinations
Cloud OutpostIdentity & ManagementOutpost
Cloud PolicyIdentity & ManagementIAM PolicyIAM PolicyPolicyRole Permission SetRAM Policy
Cloud RegionIdentity & ManagementRegionRegionRegionRegionRegionRegion
Cloud Resource GroupIdentity & ManagementAzure Resource Group
Cloud RoleIdentity & ManagementIAM RoleIAM RoleRoleService AccountRAM Role
Cloud Role AssignmentIdentity & ManagementAzure Role Assignment
Cloud Service CostIdentity & ManagementConsolidated BillConsolidated BillN/ABilling Export
Cloud UserIdentity & ManagementIAM UserIAM UserUserUserRAM UserUser
Cluster RoleContainersCluster Role
ClustersContainersEKS/ECS/Fargate ClusterEKS/ECS/Fargate ClusterKubernetes ServiceGKEKubernetes ClusterKubernetes Cluster
Code RepositoryIdentity & ManagementCode CommitCode Commit
Cognitive SearchMachine Learning & AICognitive Search
Cold StorageStorageGlacierN/AN/AN/AN/A
CollaborationIdentity & ManagementClean RoomsClean Rooms
Computer VisionMachine Learning & AIComputer Vision
ConfigIdentity & ManagementAWS ConfigAWS Config
Config MapContainersConfig MapConfig Map
Connect InstanceComputeAmazon ConnectAmazon Connect
Container ImageContainersContainer Image (ECR)Container Image (ECR)Container ImageContainer Image
Container InstancesContainersContainer Instance (ECS)Container Instance (ECS)Azure Container InstanceNode Instance
Container Node GroupContainersEKS Node GroupEKS Node Group
Container RegistryContainersContainer Registry (ECR)Container Registry (ECR)Container Registry
Container ServiceContainersECS ServiceECS Service
ContainersContainersContainerContainerContainer
Content Delivery NetworkNetworkCloudFrontCloudFrontCDN Profile, Front Door (Standard/Premium)Cloud CDNN/A
Content ModeratorMachine Learning & AIContent Moderator
Control PlaneContainersControl Plane
Control Tower ControlIdentity & ManagementControl Tower ControlControl Tower Control
Control Tower Landing ZoneIdentity & ManagementControl Tower Landing ZoneControl Tower Landing Zone
Cron JobsContainersCron Jobs
DaemonSetContainersDaemonSet
Data Analytics WorkspaceStorageAthena WorkgroupAthena Workgroup
Data FactoryStorageAzure Data FactoryData Fusion
Data StreamStorageKinesisKinesisEvent Hub NamespaceN/AN/A
Data Sync TaskStorageDataSync Task
DatabaseComputeN/AN/ASQL Database / Dedicated SQL PoolCloud SQL Database
Database ClusterComputeRDS Database, Neptune, DocumentDB
Database Event SubscriptionComputeRDS Event Subscription
Database InstanceComputeRDS Database, Neptune, DocumentDBRDS DatabaseAzure Database for Postgres/MySQL/MariaDBCloud SQLAsparaDB for RDSMySQL DB System/Autonomous Data Warehouse
Database Migration InstanceStorageDMS Replication InstanceDMS Replication Instance
Database Migration EndpointNetworkDMS EndpointDMS Endpoint
Database ProxyStorageRDS Database ProxyRDS Database Proxy
Database SnapshotStorageRDS SnapshotRDS SnapshotN/ACloud SQL BackupRDS Snapshot
Databricks WorkspaceStorageDatabricks Workspace
Dataflow JobComputeDataflow Jobs
DDoS ProtectionNetworkShieldDDoS Protection
Delivery StreamStorageFirehoseN/AN/AN/A
Deployments/TasksContainersContainer Pod (ECS/Fargate)Deployment
Diagnostic SettingsIdentity & ManagementDiagnostic Settings
Direct ConnectNetworkDirect ConnectExpress Route CircuitCloud Interconnect
Directory ServiceIdentity & ManagementAWS Directory Service
Distributed TableComputeDynamoDBDynamoDBAzure CosmosDBN/AN/ANoSQL Database
Distributed Table ClusterComputeDynamo DB Accelerator (DAX)N/ABigtableN/A
DLP JobComputeDLP Inspection Job
DNS DomainIdentity & ManagementRoute53 DomainCloud Domain
DNS ZoneNetworkRoute53 DNS ZoneDNS ZoneDNS ZoneN/A
Elastic ClusterStorageDocumentDB Elastic
Elasticsearch InstanceComputeOpenSearchOpenSearchN/AN/AN/A
Elasticsearch Serverless CollectionComputeOpenSearch Collection
Email Service ConfigComputeSimple Email Service Configuration Set (SES)Simple Email Service Configuration Set (SES)
Email Service DomainComputeSimple Email Service (SES)Simple Email Service (SES)N/AN/AN/A
Email Service RuleComputeSimple Email Service Rule (SES)Simple Email Service Rule (SES)
Encryption KeyIdentity & ManagementKMSKMSKey Vault KeyCloud KMS CryptokeyKMS KeyMaster Encryption Key
Encryption Key VaultIdentity & ManagementKey VaultCloud KMS KeyringVault
ETL ConnectionStorageGlue ConnectionGlue Connection
ETL CrawlerStorageGlue CrawlerGlue Crawler
ETL Data CatalogStorageGlue Data CatalogGlue Data Catalog
ETL DatabaseStorageGlue DatabaseGlue Database
ETL JobStorageGlue JobGlue Job
ETL Security ConfigurationStorageGlue Security ConfigurationGlue Security Configuration
Event Grid SubscriptionComputeEvent Grid Subscription
Event Grid System TopicComputeEvent Grid System Topic
Event Grid TopicComputeEvent Grid Topic
Event SubscriptionComputeRDS Event SubscriptionRDS Event Subscription
Federated GroupIdentity & ManagementFederated Azure AD Group
Federated UserIdentity & ManagementFederated Azure AD User
File ShareStorageNFS/SMB File Gateway Share
Forwarding RulesNetworkLoad Balancer Forwarding Rules
Gatekeeper ConstraintContainersConstraint
Gatekeeper ConstraintTemplateContainersConstraintTemplate
Global Load BalancerNetworkGlobal AcceleratorGlobal AcceleratorFront Door
GraphQL APIStorageAppSync APIN/A
HSM ClusterComputeCloudHSMCloudHSM
HypervisorComputeDedicated InstanceDedicated InstanceDedicated HostN/AN/A
Identity ProviderIdentity & ManagementSAML Identity ProviderIdentity Platform Provider
IngressContainersN/AN/AIngress
InstanceComputeEC2 InstanceEC2 InstanceVirtual MachineCompute EngineECS InstanceInstance
Internet GatewayNetworkInternet GatewayInternet GatewayN/AN/AN/A
JobsContainersJobs
K8S SecretContainersSecret
Language ServiceMachine Learning & AILanguage Service
Launch TemplateComputeLaunch TemplateLaunch Template
LightsailComputeAmazon LightsailN/A
Load BalancerNetworkLoad Balancer (ELB/ALB/NLB/Gateway)ELB/ALB/NLBLoad Balancer/Application GatewayLoad BalancerN/A
Logic AppComputeLogic App
Log Analytics WorkspaceIdentity & ManagementLog Analytics Workspace
Log GroupIdentity & ManagementCloudWatch Log Group
Lookout ProjectIdentity & ManagementLookout Equipment/Metrics/VisionN/A
LUIS APIMachine Learning & AILUIS API
Machine Learning InstanceMachine Learning & AISagemaker NotebookSagemaker NotebookAI Platform Notebook
Machine Learning Training JobMachine Learning & AISagemaker Training jobSagemaker Training Job
MapReduce ClusterComputeElastic Mapreduce (EMR)Elastic Mapreduce (EMR)HDInsight ClusterDataprocN/A
Message Broker InstanceComputeMQ
Message QueueComputeSimple Queue Service (SQS)Simple Queue Service (SQS)Service Bus QueueN/AN/A
Message Queue NamespaceComputeService Bus
Mutating Webhook ConfigurationContainersMutating Webhook Configuration
NamespaceContainersNamespace
NAT GatewayNetworkNAT Gateway (VPC)N/ANAT GatewayCloud NATN/A
NetworkNetworkVPCVPCVirtual NetworkVPCVCN
Network Address GroupNetworkManaged Prefix ListManaged Prefix ListIP Group
Network EndpointNetworkVPC Endpoint/PrivateLinkService Endpoint/Service Endpoint Policy/Private Endpoint
Network Endpoint ServiceNetworkVPC Endpoint ServicePrivate Link Service
Network FirewallNetworkNetwork FirewallNetwork FirewallAzure Firewall
Network Firewall RuleNetworkAzure Firewall Rule
Network Firewall Rule ListNetworkAzure Firewall Rule Collection
Network Flow LogNetworkVPC Flow Log (VPC)VPC Flow Log (VPC)Logging Bucket
Network InterfaceNetworkNetwork InterfaceNetwork InterfaceNetwork InterfaceNetwork InterfaceNetwork InterfaceVCS Interface
Network PeerNetworkVPC PeerVPC PeerPeeringsNetwork PeerN/A
Network PolicyContainersNetwork Policy
Notification SubscriptionComputeSNS SubscriptionSNS SubscriptionN/APub / Sub SubscriptionN/ASubscription
Notification TopicComputeSNS TopicSNS TopicN/APub / Sub TopicN/ATopic
Open AIMachine Learning & AIOpen AI
Persistent VolumeContainersPersistent Volume
PersonalizerMachine Learning & AIPersonalizer
Pod Security PoliciesContainersPod Security Policy
PodsContainersTask Definition (ECS)Pod
Private ImageComputeAMI (Private)AMI (Private)ImageImageImage
Private SubnetNetworkVPC SubnetVPC SubnetSubnetSubnetVSwitchVCN Subnet
Public IPNetworkElastic IPElastic IPReserved IPReserved IPElastic IPPublic IP
Query Log ConfigNetworkRoute53 ResolverRoute53 Resolver
RecommendationIdentity & ManagementUnattended Project Recommendations
Recommendation FindingIdentity & ManagementUnattended Project Insights
Recycle Bin RuleStorageRecycle Bin Rule
ReplicaSetContainersReplicaSet
Reserved InstanceComputeReserved InstanceReserved InstanceN/AN/AN/A
Resource ShareIdentity & ManagementRAM (Resource Shares)RAM (Resource Shares)
Resource Share ResourceIdentity & ManagementRAM (Resources)RAM (Resources)
RoleContainersRole
RouteNetworkRouteRoute
Route TableNetworkRoute TableN/ARoute TableRoute TableRoute Table
Search ClusterComputeCloudsearch ClusterCloudsearch Cluster
Search IndexComputeKendra IndexN/A
SecretIdentity & ManagementSecretN/ASecretSecretN/ASecret
Secure File TransferStorageSFTP Server
Security PostureIdentity & ManagementAzure Advisor Recommendations
Serverless ApplicationComputeServerless Application Repository
Serverless FunctionComputeLambdaLambdaFunctionCloud FunctionN/A
Serverless LayerComputeLambda LayerLambda Layer
Service AccountContainersService Account
Service Control PolicyIdentity & ManagementService Control Policy
Service DetectorIdentity & Management
Service Fabric ClusterContainersService Fabric Cluster
Service Health EventIdentity & ManagementHealth DashboardHealth Dashboard
ServicesContainersService
Shared GalleryComputeShared Image Gallery
Shared Gallery ImageComputeImage Definition
Shared Gallery Image VersionComputeImage Version
Shared File SystemStorageEFS, Lustre, FSx, and NetApp ONTAPN/AFile ShareCloud FilestoreN/AFile System
SinkIdentity & ManagementCloudWatch Observability Sink LinkStackdriver Sink
Site-to-Site VPNNetworkSite-to-Site VPN (VPC)VPN Tunnel
SnapshotStorageEBS SnapshotEBS SnapshotSnapshotSnapshotSnapshotBlock Volume Backup
SpannerStorageAurora Global DatabaseAurora Global DatabaseCloud Spanner
Speech ServicesMachine Learning & AISpeech Services
SSH Key PairIdentity & ManagementSSH Key PairSSH Key PairSSH Key PairSSH Key PairSSH Key Pair
SSL CertificateIdentity & ManagementIAM/ACM SSL CertificateIAM/ACM SSL CertificateSSL CertificateSSL CertificateN/ASSL Certificate
SSL Certificate AuthorityIdentity & ManagementACM Private Certificate AuthorityACM Private Certificate AuthorityCertificate Authority Service
SSM AssociationComputeSSM AssociationSSM Association
SSM DocumentComputeSSM DocumentSSM Document
Stack TemplateComputeCloudFormation TemplatesCloudFormation Templates
StatefulSetContainersStatefulSet
Step FunctionComputeStep Function State MachineStep Function State Machine
Storage AccountStorageStorage Account
Storage GatewayStorageStorage GatewayStorage Gateway
Storage ContainerStorageS3 BucketS3 BucketBlob Storage ContainerCloud StorageObject Storage BucketObject Storage Backup
Storage QueueStorageStorage Queue
Storage Sync ServiceStorageStorage Sync Service
Stored ParameterStorageSystems Manager Parameter Store (Parameter)
Stream InstanceComputeMSK Instance
Streaming ApplicationComputeKinesis Analytics ApplicationKinesis Analytics Application
Target ProxiesNetworkLoad Balancer Target Proxies
Task DefinitionsContainerTask Definition (ECS)
Template SpecComputeTemplate Specs
Threat FindingsIdentity & ManagementGuardDuty/MacieMicrosoft Defender for CloudEvent Threat Detection
Timeseries DatabaseStorageAmazon Timestream
Traffic ManagerNetworkTraffic Manager
Traffic Mirror TargetNetworkVPC Traffic Mirror TargetVPC Traffic Mirror Targets
Transcoding PipelineComputeElastic Transcoder Pipeline
Transcription JobComputeTranscription JobTranscription Job
Transit GatewayNetworkTransit Gateway
TranslatorMachine Learning & AITranslator
URL MapNetworkURL Map
User PoolIdentity & ManagementCognito User Pool
Validating Webhook ConfigurationContainersValidating Webhook Configuration
Vertex Custom JobMachine Learning & AIVertex Custom Job
Video StreamStorageKinesis Video Stream
Virtual Private GatewayNetworkVirtual Private GatewayVirtual Network GatewayVPN Gateway
VolumeStorageEBS VolumeEBS VolumeDiskPersistent DiskDiskBlock Volume
Web AppComputeElastic Beanstalk EnvironmentApp Service
Web App GroupComputeElastic Beanstalk Application
Web Application FirewallNetworkWeb Application FirewallWeb Application FirewallWeb Application Firewall PoliciesCloud Armor
Web Application Firewall RuleNetworkWeb Application Firewall RuleWeb Application Firewall Rule
Web Application Firewall GroupNetworkWeb Application Firewall Rule GroupWeb Application Firewall Rule Group
WorkspaceComputeWorkspaceN/AN/AN/AN/A