Qualys Expands Serverless Security with Vulnerability Scanning for AWS Lambda
Key Takeaways Qualys now delivers automated AWS Lambda vulnerability scanning, extending serverless security beyond posture checks (CSPM) into workload-level risk visibility. CSPM alone only catches misconfigurations (excessive permissions, exposure, logging, encryption) — it can’t detect vulnerable open-source packages or outdated libraries inside function code. Lambda’s granular permissions model, dynamic execution environments, and lack of persistent infrastructure make traditional security…
AWS US