At the fourth annual PulumiUP conference, Pulumi recently announced two new security products, Pulumi ESC and Pulumi Insights, expanding its comprehensive platform to automate, secure, and manage cloud infrastructure everywhere. Pulumi also announced The Intelligent Cloud, its vision for AI-powered cloud infrastructure:
“Today is a massive day for Pulumi and our amazing customers,” said Joe Duffy, Co-Founder and CEO of Pulumi, “and marks our evolution into a trusted partner for all things cloud and infrastructure. Pulumi IaC, our flagship open source technology has gained incredible market traction, and powers our entire platform – but Pulumi ESC and Pulumi Insights solve new and pressing security concerns, making security built-in. We’ve tackled them with the trademark Pulumi aesthetic and point-of-view bringing powerful, programmable building blocks that engineers love. We look forward to the amazing things people build with these new products.”
Pulumi’s comprehensive platform unites developers, infrastructure experts, and security teams, improving time to market, ensuring automatic security, and helping tame cloud chaos. Two years ago, it began infusing AI into the platform, while also developing these new products.
Pulumi now offers three products:
- Pulumi IaC (Infrastructure as Code): Productive cloud automation of applications and infrastructure using open source infrastructure as code in any programming language, including Python, Go, TypeScript, .NET, and Java. Pulumi IaC automates the entire cloud infrastructure lifecycle, delivering superior time to market. Unity, Doordash, and Snowflake recently reported greater than 80% faster time going from code to the cloud.
- Pulumi ESC (Environments, Secrets, and Configuration): Automatic cloud security with centralized secrets management that appeals to engineers. Group, secure, tag, and version related secrets and configuration with the concept of environments. ESC makes security best-practices, like dynamic, short-lived credentials, the default. ESC integrates with other popular secret stores, including 1Password, AWS, Azure, Google Cloud, and HashiCorp Vault, delivering a unified workflow and pane of glass into all secrets. ESC works well for infrastructure automation, but is intended for any workload that requires configuration and secrets, including applications and Kubernetes workloads. ESC provides Free, Team, Enterprise, and Business Critical editions, for teams of all sizes.
- Pulumi Insights: Intelligent cloud management delivers a complete cloud asset inventory, with search, analytics, and AI over the cloud, including resources not provisioned by Pulumi IaC such as AWS CloudFormation, Microsoft ARM, HashiCorp Terraform, or even cloud consoles and SDKs. Visualize resource relationships using graphs and pivot tables that surface explicit and automatically inferred dependencies. Pulumi Insights automatically detects security, compliance, and misconfiguration issues with automated remediation, powered by Pulumi CrossGuard. Pulumi Insights can also bring resources under IaC control with the click of a button and in any language. Pulumi Insights is designed to be extensible, with third-party integrations for Snyk and Kubecost already in development.
All Pulumi products support nearly 200 public, private, hybrid, and SaaS clouds, including AWS, Azure, Google Cloud, Kubernetes, Cloudflare, Datadog, Snowflake, and more. They also share access to the foundational pillars of Pulumi Cloud functionality, including: Pulumi Copilot, Pulumi’s generative AI cloud management assistant; Pulumi CrossGuard, its policy as code engine, with flexible compliance support for HITRUST, PCI DSS, and more; Pulumi Deployments, Pulumi’s cloud deployment workflow capability, which can orchestrate sophisticated cloud changes; as well as its common data, REST API, and security models.






