Upwind has unveiled its “Open Source Security Model”, heralding a new era of cloud-risk management that emphasises flexibility, ownership and runtime intelligence. The launch coincides with the company’s recognition on the CRN 2025 Stellar Startups list in the Security category.
The model allows security, DevOps and compliance teams to “modify, accept, recast, and snooze” risks directly within the platform, enabling workflows that align more closely with how modern engineering teams operate. In the words of Moshe Hassan, VP of Research at Upwind:
By replacing static alert-lists with evidence-backed, context-aware findings the model is designed to support faster, more accurate remediation and better governance. The approach is built for scale, supporting enterprise environments, multi-cloud workloads and compliance demands.
For the insurance and risk-management sector, this development signals the increasing relevance of cloud-native risk tools. As insurers expand their digital ecosystem—moving into AI, cloud underwriting platforms and distributed data environments—a model that enables decentralised, transparent risk control will be key. Firms should now consider how such frameworks might integrate into their operational risk programmes and underwriting assumptions.
For more details and structured learning, please explore our risk management courses.