Sysdig's MCP server, available on AWS Marketplace, integrates with Amazon Bedrock AgentCore to bring DSPM intelligence into agentic AI security workflows. The architecture runs entirely within AWS, using Bedrock foundation models for reasoning, AgentCore for hosting and orchestrating the MCP server, and OpenCode as the local client. Security teams can query Sysdig Secure's data security findings conversationally to identify publicly exposed S3 buckets containing PII, PHI, or financial data, map findings to regulatory frameworks like HIPAA and PCI DSS, and even draft remediation actions such as scoped-down IAM policies. Each investigation step maps to a discrete tool call, producing a traceable chain of evidence rather than hallucinated summaries.

7m read timeFrom webflow.sysdig.com
Post cover image
Table of contents
The architecture: A native AWS AI security stackOperationalizing the Sysdig MCP serverWorkflows in actionFrom detection to remediationKey takeawaysGet started with headless cloud security
1 Impression