Rapid7 Enhances Exposure Command with Runtime Validation and DSPM

Rapid7 Enhances Exposure Command with Runtime Validation and DSPM

First seen 20 Mar 2026, 11:12 UTC SecuritybriefFeeds2.Feedburner 27.9

Article Content

Browse articles
ThreatCluster

Rapid7 has introduced runtime validation and Data Security Posture Management (DSPM) to its Exposure Command platform, enhancing its capabilities for cloud security in hybrid and multi-cloud environments. This update allows organizations to identify and prioritize exploitable vulnerabilities based on real-world attack paths and business impact. The runtime validation feature analyzes live workloads to determine which vulnerabilities are actively exploitable, reducing unnecessary alerts for security teams. The DSPM component continuously discovers and classifies sensitive data, mapping identity access across various environments. These enhancements aim to shift security programs from reactive assessments to proactive exposure reduction. Rapid7's approach combines vulnerability data with runtime behavior and user privileges, allowing for a more accurate risk assessment. The platform also includes automated response actions for confirmed threats, such as pausing or quarantining processes. This update reflects a broader trend in cloud security management as organizations face complex multi-cloud infrastructures.

Key Points: • Rapid7's Exposure Command now includes runtime validation and DSPM for enhanced risk analysis. • The platform prioritizes exploitable vulnerabilities based on real-world attack paths. • Automated response actions are introduced for validated threats to improve incident containment.

Timeline

2026-03-19
Rapid7 announces updates to Exposure Command with runtime validation and DSPM.