GenAI has fundamentally disrupted how we work and how we deliver value to customers. Today, Orca is proud to announce our latest innovations to Orca AI, making cloud security easier, and new sensitive data detections to secure AI in your cloud native applications.
Your ally, Orca AI, to command your cloud
Orca AI is your newest team member built to be your eyes and ears in the cloud, the scholar of all security and infrastructure telemetry in the Orca Platform, and advisor to fortifying your defenses. Orca AI is the driving force behind natural language search and remediation recommendations within the Orca Platform, simplifying how to find what you are looking for and determine proper next steps to resolve security and compliance gaps.
Our customers often rave about the depth of data in the Unified Data Model that the Orca Platform delivers. This opinionated data model provides the foundation to surface relevant, granular data for investigation, effectively reducing time to build the case to prioritize an issue and fix it.
Orca AI makes all of this intelligence accessible and actionable in a simple, intuitive, chat-like experience. As your resident cloud security analyst, powered by GenAI, anyone can ask Orca AI simple questions like, “What are my most critical alerts?” and get quick summaries for reduced time to insight.

Cloud security teams can collaborate with Orca AI to assess the potential impact of an alert and recommend the appropriate mitigating controls.

The beauty of the in-app experience is that Orca AI maintains context of the alert or asset when engaging in a conversation.

Application security teams can also explore more complex problems like, “Why is this code commit producing a critical alert and how do I fix it?” Orca AI will explain the issue in plain English and then recommend code snippets to fix the security gap, extending Orca’s AI-driven remediation capabilities into the chatbot experience.
Orca AI is your ally and resident cloud security analyst, here to make securing your cloud native applications easier.
New sensitive data detections for AI-SPM
As we continue to innovate and deliver an impactful GenAI experience, we also build on how we protect the AI that powers our customers’ cloud native applications. Today, Orca delivers an inventory of AI and machine learning assets like Azure OpenAI, Amazon Bedrock, Amazon SageMaker, and Google Vertex AI. The Orca Platform scans for any security gaps that would put these assets at risk of data exposure and data poisoning, including any misconfigurations or exposed third-party AI keys and tokens identified in code repositories. Soon you can expect these capabilities to be available for more cloud managed AI services offered in the AWS, Azure, and Google Cloud ecosystems.

We also have new detections coming for sensitive data in training models, risk of data poisoning due to editable or replaceable AI training data, and advanced AI misconfigurations mapped to the OWASP LLM Top 10 and OWASP ML Top 10.

Add a new widget to the dashboard to quickly understand at a glance which assets contain sensitive data with new graph visualizations for AI-SPM.

These new training model detections will first be made available for Azure Open AI, with AWS Sagemaker and Google Cloud’s Vertex AI soon after.
About the Orca Cloud Security Platform
Orca offers a unified and comprehensive cloud security platform that identifies, prioritizes, and remediates security risks and compliance issues across AWS, Azure, Google Cloud, Oracle Cloud, Alibaba Cloud, and Kubernetes. The Orca Cloud Security Platform leverages Orca’s patented SideScanning™ technology to provide complete coverage and comprehensive risk detection.
Learn More
Interested in asking Orca AI a few questions or exploring the new AI-SPM capabilities in the Orca Platform? Schedule a personalized 1:1 demo.