Join our next Live Demo on June 8th!

Resource Blog News Customers Stories

Updated: May 27, 2026 Upd: 27.05.26

5 min read

Zscaler Backup and Recovery Support

Zack Bentolila

Zack Bentolila

Marketing Director

Zscaler Backup and Recovery Support

Many teams depend on Zscaler to enforce access, inspection, and traffic control policies across distributed environments. But when those policies are changed, deleted, or misconfigured, the impact can be immediate: broken access, weakened security posture, and operational disruption.

ControlMonkey now supports Zscaler Backup and Restoration, helping teams protect critical Zscaler configurations with automated backup, change visibility, and fast recovery.

Billboard asking “Can you recover your Zscaler configs?” for ControlMonkey Zscaler disaster recovery.

Introducing Zscaler Backup and Recovery

With ControlMonkey, teams can now protect key Zscaler configurations, including:

  • Firewall filtering rules
    Back up and recover traffic filtering policies that control allowed and blocked connections.
  • Browser access policies
    Protect the policies that define secure browser access across users, apps, and environments.
  • SSL inspection policies
    Recover inspection settings that are critical for visibility, compliance, and threat prevention.
  • Configuration change visibility
    Track how Zscaler security policies change over time and identify risky or unintended modifications.
  • Fast recovery from mistakes or incidents
    Restore critical Zscaler configurations after accidental deletions, misconfigurations, cyber incidents, or AI-driven changes.

Why Do You Need a Resilience Solution for Zscaler?

Zscaler policies sit directly in the path of user access, internet traffic, and security enforcement. That means even small configuration errors can create a major business impact.

  • Deleted firewall rules can block critical services. 
  • changed browser access policy can disrupt employee access.
  •  Misconfigured SSL inspection policy can reduce security visibility or break application traffic.

For teams operating at scale, Zscaler configuration is not just a security setting. It is part of the cloud control plane.

ControlMonkey helps ensure these configurations are continuously backed up, versioned, and recoverable as part of a broader infrastructure resilience strategy.

There are several risk vectors to consider:

  • an honest mistake by an employee
  • a malicious actor attempting to disrupt your office operations
  • an over-permissioned AI agent making changes it shouldn’t.

How Does It Work Back and Recovery works?

  1. ControlMonkey connects to your Zscaler environment using secure API access and continuously scans supported configuration types.
  2. It captures configuration states over time, tracks changes, and maintains recoverable snapshots of critical policies. If a configuration is accidentally deleted, changed incorrectly, or impacted by an incident, teams can review previous states and restore the required configuration.
  3. This helps Security and Network teams reduce recovery time, maintain policy continuity, and avoid manual rebuilds during high-pressure incidents.

Why Zscaler Native Backup Is Not Enough for Full Configuration Resilience

Zscaler policies often work alongside cloud infrastructure, identity providers, DNS, networking, CI/CD systems, and SaaS platforms. When an incident happens, teams need more than a point-in-time restore inside Zscaler. They need visibility into what changed, how it relates to the rest of the environment, and how to recover critical configurations quickly and safely.

ControlMonkey extends Zscaler backup and recovery into a broader configuration resilience strategy.

By protecting Zscaler policies alongside the rest of the cloud control plane, teams can reduce manual recovery work, improve change visibility, and maintain business continuity across connected systems. 

Native Zscaler BackupControlMonkey Zscaler Backup and Recovery
Focused on Zscaler configurationsProtects Zscaler as part of the broader cloud and SaaS control plane
Useful for platform-level restoreDesigned for cross-platform configuration resilience
Helps recover Zscaler policy stateHelps teams understand, track, and recover critical configuration changes
Limited to the Zscaler environmentConnects Zscaler recovery to cloud, identity, network, and SaaS resilience
Restores one or few selected Zscaler configuration statesProvides ongoing snapshots, change visibility, and recovery across connected cloud and SaaS systems

Stay Ahead with Zscaler Backup and Recovery

Security configurations are now part of modern infrastructure operations. They define who can access what, how traffic is inspected, and how organizations enforce policy across cloud and SaaS environments.

By extending backup and recovery to Zscaler, ControlMonkey helps teams:

  • Improve visibility into security policy changes
  • Reduce risk from accidental or unauthorized configuration updates
  • Strengthen resilience across cloud and SaaS control planes
  • Recover faster from configuration mistakes and cyber incidents
  • Scale security governance with confidence

Zscaler protects access and traffic.
ControlMonkey protects the configuration behind it.

Ready to protect your Zscaler configuration?

Explore Zscaler Backup and Recovery with ControlMonkey today.

Reference Table: Key Zscaler Configurations for Backup and Recovery

ConfigurationDescriptionExample
Firewall Filtering RulesConfigurations that define which traffic is allowed, blocked, or controlled across users, apps, services, and destinations.Allow/block rulesSource and destination conditionsService-based rulesUser/group-based rulesApplication-based rules
Browser Access PoliciesConfigurations that control secure browser-based access to applications and resources.Browser access rules
Private app browser access
Browser-based access conditions
User access logic
Application access controlsPrivate app browser accessBrowser-based access conditionsUser access logicApplication access controls
SSL Inspection PoliciesConfigurations that define how encrypted traffic is inspected, bypassed, or controlled.SSL inspection rules
SSL bypass settings
Inspection exceptions
Certificate-related settings
App-specific inspection logic
URL Filtering RulesConfigurations that control access to websites, categories, and web destinations.URL filtering rules
Custom URL categories
Blocked categories
Allowed categories
Web access policies
ZPA Access Policy RulesConfigurations that define who can access private applications through Zscaler Private Access.Access policy rules
User/group access conditions
Device posture conditions
Identity-based access logic
Rule order
Application SegmentsConfigurations that define private applications protected by ZPA and how users reach them.Application segments
Browser access app segments
Inspection app segments
Segment groups
Server groups
DLP RulesConfigurations that detect and control sensitive data movement across web and cloud applications.DLP rules
DLP dictionaries
DLP engines
Data matching patterns
Notification templates
Cloud App Control RulesConfigurations that govern user actions across SaaS and cloud applications.App control rules
CASB DLP rules
CASB malware rules
Tenant restrictions
Cloud app policies
Threat Protection PoliciesConfigurations that enforce protection against malware, malicious URLs, file-based threats, and risky content.Advanced threat settings
ATP malware policies
Sandbox rules
Security exceptions
Malicious URL policies
Traffic Forwarding SettingsConfigurations that define how traffic is routed into and through Zscaler.Forwarding rules
GRE tunnels
VPN credentials
Static IP forwarding
Forwarding control policies
Admin Roles & UsersConfigurations that define who can manage Zscaler and what permissions they have.Admin users
Admin roles
Permission scopes
Role assignments
Governance settings
Logging & SIEM IntegrationsConfigurations that support visibility, audit, and security monitoring.NSS feeds
NSS servers
LSS log configurations
Log forwarding settings
SIEM integrations
Bottom CTA Background

A 30-min meeting will save your team 1000s of hours

A 30-min meeting will save your team 1000s of hours

Book Intro Call

Author

Zack Bentolila

Zack Bentolila

Marketing Director

Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

    Sounds Interesting?

    Request a Demo

    Resource Blog News Customers Stories

    Updated: May 15, 2026 Upd: 15.05.26

    3 min read

    See Exactly What Changed in Your Cloud – Over Time

    Zack Bentolila

    Zack Bentolila

    Marketing Director

    See Exactly What Changed in Your Cloud – Over Time

    ControlMonkey now introduces Snapshot Changes Over Time a historical diff layer for your cloud, Configuration, SaaS, Network and their dependencies

    ControlMonkey now compares point-in-time snapshots of your infrastructure and shows exactly what changed between them: what was created, modified, or deleted. You can drill down to the resource level, view side-by-side differences, and understand how your environment evolved over time.

    Why Change Visibility Matters

    As cloud environments scale, so does the volume of change. Multiple teams are constantly updating infrastructure – some through IaC, others manually. Some changes are planned. Others are not. And many go untracked.

    When incidents happen, teams are left without clear answers:

    • What changed?
    • When did it change?
    • Which version of the environment was stable?

    Without this visibility, recovery becomes guesswork.

    Teams need a reliable way to trace changes over time: both to investigate issues and to understand which point in time they can safely recover to. Just as importantly, they need a clear control layer to understand how their environment is evolving day by day.

    The new feature works across all of your vendors: AWS, Azure, GCP, Datadog, Akamai, Cloudflare, Snowflake, Databriks, Launch Darkly and more. You have a single location to track them all.

    How Snapshot Changes Over Time Works

    From snapshot capture to side-by-side comparison, ControlMonkey helps teams understand exactly how their infrastructure changed over time.

    Snapshot and Capture

    ControlMonkey continuously captures deterministic snapshots of your infrastructure state.
    This creates a reliable historical record of your environment across cloud, network, and SaaS systems.

    Compare Changes Between Snapshots

    ControlMonkey calculates the diff between two points in time and shows exactly what changed.
    Teams can instantly see what was created, modified, or deleted between snapshots.

    Drill Down to the Resource Level

    Users can click into a specific resource to inspect detailed changes over time.
    This includes side-by-side comparison of older and newer states, making it easy to understand the exact configuration delta.

    Investigate with Context

    Teams can explore change activity through a timeline view, spot unusual spikes or patterns, and understand when changes occurred.
    This helps investigate incidents, trace unexpected changes, and understand how dependencies evolved.

    Summarize with AI

    ControlMonkey KomoAI generates an AI summary of the differences between snapshots. This gives teams a faster way to understand what changed without manually reviewing every line. Even if they’re not Infrastruccture expert.

    Review and Govern

    By turning infrastructure history into an explorable change record, ControlMonkey gives platform teams a clearer control layer for governance, investigation, and recovery decisions.
    Teams can use this visibility to detect unauthorized changes, support audits, and identify the right recovery point with more confidence.

    Stay Ahead with Cloud Governance and Change Control

    As more teams, tools, and automation layers interact with your cloud, the volume of changes increases. Some are planned. Others are not. Without a clear view of how your environment evolves over time, teams are left reacting to incidents without understanding their root cause.

    ControlMonkey gives you a deterministic, historical view of your infrastructure, across all of your vendors – so you can see exactly what changed, when, and how. By turning snapshots into an explorable change history, teams can investigate incidents faster, detect unauthorized changes, and confidently decide where to recover from.

    Ready to take control? Explore Snapshot Changes Over Time today.

    Bottom CTA Background

    A 30-min meeting will save your team 1000s of hours

    A 30-min meeting will save your team 1000s of hours

    Book Intro Call

    Author

    Zack Bentolila

    Zack Bentolila

    Marketing Director

    Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

      Sounds Interesting?

      Request a Demo

      Resource Blog News Customers Stories

      Updated: May 06, 2026 Upd: 06.05.26

      3 min read

      Configuration Disaster Recovery to GitHub

      Zack Bentolila

      Zack Bentolila

      Marketing Director

      Configuration Disaster Recovery to GitHub

      ControlMonkey now supports GitHub Configuration Backup and Recovery, enabling teams to automatically back up and restore critical GitHub configurations, including repository settings, branch protection rules, permissions, and workflows.

      GitHub controls how code is shipped, who can access it, and how pipelines operate – yet its configuration layer is rarely protected by a resilience solution.

      Introducing GitHub Configuration Backup and Recovery

      • Protect repository configurations, access controls, and branch rules
      • Continuously capture workflows, policies, and configuration states
      • Restore GitHub environments quickly after incidents or misconfigurations
      • Reduce risk from human error, automation failures, or malicious changes
      • Extend disaster recovery to your software delivery control plane

      Examples of protected GitHub configurations include:

      • Repository settings that define collaboration and visibility
      • Branch protection rules enforcing code quality and deployment safety
      • Permissions and access controls across teams and users
      • GitHub Actions workflows powering CI/CD pipelines
      • Webhooks and integrations connecting GitHub to external systems 

      Why Do You Need a Resilience Solution for GitHub?

      GitHub is deeply embedded in your production delivery pipeline – meaning misconfigurations or compromises can immediately impact deployments, access control, and development velocity.

      Here are some of the key risks teams face:

      • Ransomware or account takeover – What happens if your GitHub organization is compromised? Attackers could modify repositories, remove protections, or disrupt pipelines.
      • Cyber attacks / malicious actors – Unauthorized changes to workflows, permissions, or integrations can expose code, bypass controls, or break delivery processes.
      • Human error – Even experienced engineers make mistakes—removing branch protection, misconfiguring access, or altering workflows in the wrong repository.
      • Over-permissive AI agents – As AI-driven automation expands in CI/CD, agents with broad permissions can unintentionally introduce risky or large-scale configuration changes.

      ControlMonkey helps teams safeguard GitHub by protecting the configuration layer that defines how code is managed, how pipelines run, and who has access.

      Stay Ahead with GitHub Backup and Recovery

      GitHub is no longer just a code repository – it is a critical layer in your infrastructure and application delivery pipeline. When configuration is lost or altered, pipelines break, access control is compromised, and recovery becomes manual and slow.

      ControlMonkey brings GitHub into your Cloud Configuration Disaster Recovery strategy by continuously backing up configuration states and enabling fast, reliable restoration. This ensures that delivery workflows, governance policies, and access structures remain intact—even during outages or security incidents.

      With full visibility into configuration changes and the ability to recover instantly, teams can reduce risk, maintain IaC alignment, and scale operations without losing control.

      Bottom CTA Background

      A 30-min meeting will save your team 1000s of hours

      A 30-min meeting will save your team 1000s of hours

      Book Intro Call

      Author

      Zack Bentolila

      Zack Bentolila

      Marketing Director

      Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

        Sounds Interesting?

        Request a Demo

        Resource Blog News Customers Stories

        Updated: May 13, 2026 Upd: 13.05.26

        4 min read

        Identity Providers Disaster Recovery

        Aharon Twizer

        Aharon Twizer

        CEO & Co-founder

        Identity Providers Disaster Recovery

        ControlMonkey now extends Cloud Configuration Disaster Recovery to identity providers, protecting identity environments across Okta, Microsoft Entra ID, OneLogin, Ping Identity, and JumpCloud.

        Modern cloud operations rely heavily on identity providers. During daily operations and incidents, SSO, MFA policies, and access rules control how users interact with infrastructure, SaaS applications, and internal systems.

        Yet the configurations behind these systems – authentication policies, app assignments, roles, and access controls – are rarely protected by a solution for disaster recovery.

        Identity DR Key capabilities:

        ControlMonkey automatically captures daily snapshots of identity configurations so teams can restore access environments and maintain operational continuity during incidents.

        Protect access control configuration
        Backup SSO settings, MFA policies, app assignments, roles, and identity rules created over time.

        Restore identity environments quickly
        Recover identity configurations from versioned snapshots instead of rebuilding access policies manually.

        Detect configuration drift in identity systems
        Track changes across IDP platforms and identify unexpected or unauthorized modifications.

        Preserve identity-to-system relationships
        Maintain consistency between identity policies, application access, and infrastructure during recovery.

        Extend disaster recovery beyond infrastructure
        Protect the broader cloud control plane including infrastructure, network, observability, and identity configuration.

        Identity is not just another system – it’s the layer that connects users to everything else. Recovering identity in isolation doesn’t work. You need to restore it together with the infrastructure and applications it controls.

        Aharon Twizer

        Aharon Twizer

        CEO & Co-Founder

        How does Identity Configuration Disaster Recovery work?

        ControlMonkey Cloud DR solution continuously captures configuration snapshots from supported identity providers.

        Each snapshot records the structure and settings of identity environments, including:

        • SSO and federation configurations
        • MFA and authentication policies
        • Application assignments and integrations
        • Roles, groups, and permissions
        • Directory and access control structures

        These configurations are versioned and stored securely, allowing teams to compare changes over time and restore previous configurations when needed.

        If access policies are misconfigured, applications are disconnected, or identity rules break and and cause an incident –  teams can restore identity configurations directly from a previous snapshot – without manually rebuilding/configuring access environments.

        Why Disaster Recovery for the Identity Layer?

        Traditional disaster recovery focuses on restoring data and storage.
        But modern cloud environments depend on access.

        The identity layer connects users to infrastructure, SaaS applications, and internal systems – making it a critical part of the cloud control plane.

        With ControlMonkey, teams can:

        • Maintain versioned backups of identity environments
        • Detect configuration changes and drift
        • Restore identity systems quickly during incidents
        • Ensure DR visibility with a clear Resilience Score

         At scale, restoring access quickly remains a challenge. Identity configurations are complex, frequently changing, and tightly connected to other systems.

        By extending configuration disaster recovery to identity providers, ControlMonkey helps teams maintain operational continuity across both systems and access.

        Cross-layer recovery: identity + infrastructure + SaaS

        Identity does not operate in isolation.

        ControlMonkey preserves and restores the relationships between identity, infrastructure, SaaS applications, and cloud resources — ensuring systems and access remain aligned after a  recovery.

        This prevents scenarios where identity is restored but underlying systems are not – or vice versa.

        Ready to be Cyber Resilient?

        Explore Cloud Configuration Disaster Recovery for Identity Providers or schedule a demo today.

        Reference Table: Key Identity Provider Configurations Protected by ControlMonkeyenvironment.

        Real-World Impact: Datadog dashboards, monitors, and alerting policies

        Our Datadog dashboards, monitors, and alerting policies represent years of operational knowledge and tuning. Losing that configuration during an incident would significantly impact our ability to diagnose issues quickly. With ControlMonkey, we know our observability configurations are versioned and recoverable, ensuring we maintain visibility when it matters most

        Doron Honeybook

        Doron Gutman

        Director of DevOps and DevSecOps

        Ready to be Cyber Resilient?

        Explore Cloud Configuration Disaster Recovery for Observability or schedule a demo today.

        Reference Table: Key Identity Provider Configurations Protected by ControlMonkey

        ConfigurationDescriptionExamples
        SSO & Federation SettingsConfigurations that define how users authenticate across systems and external identity providers.SAML configurations
        OIDC settings
        Federation trust relationships
        Identity provider routing rules
        Domain verification
        Authentication & MFA PoliciesRules that control how users authenticate and what security factors are required.MFA policies
        Conditional access rules
        Password policies
        Adaptive authentication
        Device trust policies
        Application Integrations & AssignmentsConfigurations that manage access between users and connected applications.App integrations (SaaS, internal)
        User-to-app assignments
        Group-based access
        Provisioning settings (SCIM)SSO app mappings
        Users, Groups & Directory StructureIdentity objects and their relationships within the organization.User accounts
        Groups and roles
        Group memberships
        Directory attributes
        Organizational units
        Roles & Access Control PoliciesDefinitions of permissions and administrative access across the environment.Admin rolesRBAC policies
        Privilege assignments
        Access scopes
        Delegated admin controls
        Identity Lifecycle & ProvisioningRules governing user onboarding, updates, and deprovisioning.User provisioning workflowsDeprovisioning rules
        SCIM sync settings
        Lifecycle policies
        Joiner/mover/leaver flows
        API & Integration ConfigurationsSettings enabling integrations between identity providers and external systems.API tokens
        Webhook configurationsIntegration endpoints
        Service accounts
        Automation connectors
        Security & Risk PoliciesConfigurations that enforce identity security and detect anomalies.Risk-based policiesLogin anomaly detection
        Geo/location restrictionsSession policies
        Threat protection rules
        Audit & Logging SettingsConfigurations defining how identity activity is tracked and monitored.Audit logs configuration
        Event tracking settings
        Log retention policies
        SIEM integrations
        Branding & User Experience SettingsConfigurations that control the user-facing authentication experience.Login pagesCustom domains
        Email templates
        User flows
        Self-service settings
        Bottom CTA Background

        A 30-min meeting will save your team 1000s of hours

        A 30-min meeting will save your team 1000s of hours

        Book Intro Call

        Author

        Aharon Twizer

        Aharon Twizer

        CEO & Co-founder

        Co-Founder and CEO of ControlMonkey. He has over 20 years of experience in software development. He was the CTO of Spot.io, which was bought by NetApp for more than $400 million. There, he led important tech innovations in cloud optimization and Kubernetes. He later joined AWS as a Principal Solutions Architect, helping global partners solve complex cloud challenges. In 2022, he started ControlMonkey to help DevOps teams discover, manage, and scale their cloud infrastructure with Infrastructure as Code. Aharon loves creating tools that help engineering teams. These tools make it easier to manage the complexity of modern cloud environments.

          Sounds Interesting?

          Request a Demo

          Resource Blog News Customers Stories

          Updated: Apr 03, 2026 Upd: 03.04.26

          3 min read

          Introducing LaunchDarkly Disaster Recovery

          Zack Bentolila

          Zack Bentolila

          Marketing Director

          Introducing LaunchDarkly Disaster Recovery

          ControlMonkey now supports LaunchDarkly Disaster Recovery, enabling teams to automatically back up and restore critical LaunchDarkly configurations, including feature flags, segments, and views.

          LaunchDarkly controls feature rollout and targeting rules in real time, yet its configuration layer is rarely protected by a resilience solution.

          Why do you need a resilience solution for LaunchDarkly? 

          Feature flag platforms like LaunchDarkly are deeply embedded in your production environment meaning misconfigurations or compromises can have immediate, widespread impact.

           Here are some of the key risks teams face:

          • Ransomware or account takeover –  What happens if your LaunchDarkly account is compromised? An attacker could modify or disable critical flags, impacting availability and user experience. 
          • Cyber attacks / malicious actors – Unauthorized changes to feature flags can be used to expose functionality, bypass controls, or disrupt your application. 
          • Human error –  Even experienced engineers can make mistakes – accidentally toggling the wrong flag or applying changes to the wrong environment. 
          • Over-permissive AI agents – With the rise of AI-assisted workflows (e.g., LaunchDarkly MCP server), agents operating with admin-level permissions can unintentionally introduce risky or large-scale changes.

          ControlMonkey helps teams safeguard LaunchDarkly by protecting the operational logic that defines how features are released, who sees them, and how changes are rolled out.

          Examples of protected LaunchDarkly configurations include:

          • Feature flags controlling runtime application behavior
          • Targeting rules defining rollout logic and user exposure
          • Segments used for user targeting and progressive delivery
          • Views organizing feature management workflows

          With this capability, teams can:

          • Automatically back up LaunchDarkly configurations
          • Track changes to feature flags and targeting over time
          • Recover quickly from accidental changes or deletions
          • Reduce risk across production release processes
          • Restore feature flags and targeting logic without manual reconstruction

          How LaunchDarkly Disaster Recovery Works

          From discovery to recovery, ControlMonkey ensures LaunchDarkly configurations are always backed up, versioned, and ready to restore in minutes. Here is the full process:

          Snapshot and Backup

          • ControlMonkey continuously captures the state of LaunchDarkly configurations and creates versioned snapshots.
          • This provides a reliable historical record of feature flags, segments, and targeting logic across environments.

          Recover – Feature Flags, Segments, and Views

          • If configurations are deleted or misconfigured, teams can restore them from a known-good snapshot in minutes.
          • This eliminates manual rebuilding of feature flags and targeting rules—reducing recovery time and avoiding errors.

          Review & Govern

          • The ControlMonkey Cloud Resilience Dashboard provides visibility into disaster recovery readiness across infrastructure and SaaS platforms like LaunchDarkly.
          • Teams can monitor protection coverage and identify resilience gaps before incidents occur.

          Stay Ahead with Darkly Disaster Recovery

          Feature management platforms like LaunchDarkly are critical to modern software delivery. Yet while organizations focus on application code and infrastructure, the configuration layer that controls feature rollout and targeting often remains unprotected.

          ControlMonkey ensures LaunchDarkly configurations are protected alongside infrastructure and SaaS platforms. By continuously backing up configuration states and enabling rapid restoration, teams can recover quickly from outages, misconfigurations, and unintended changes—and maintain control over production behavior.

          Ready to take control? Explore LaunchDarkly Disaster Recovery today.

          FQA – About Darkly and Backup

          ControlMonkey backs up LaunchDarkly feature flags, segments, and views, including the targeting logic that controls feature rollout.

          Teams can restore feature flags, segments, and targeting logic from a known-good snapshot in minutes, reducing downtime and avoiding manual reconstruction.

          Bottom CTA Background

          A 30-min meeting will save your team 1000s of hours

          A 30-min meeting will save your team 1000s of hours

          Book Intro Call

          Author

          Zack Bentolila

          Zack Bentolila

          Marketing Director

          Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

            Sounds Interesting?

            Request a Demo

            Resource Blog News Customers Stories

            Updated: Mar 20, 2026 Upd: 20.03.26

            2 min read

            Snowflake Disaster Recovery

            Zack Bentolila

            Zack Bentolila

            Marketing Director

            Snowflake Disaster Recovery

            ControlMonkey now supports Snowflake Disaster Recovery, enabling teams to automatically back up and restore critical Snowflake configurations including roles, warehouses, schemas, and access policies when mistakes or incidents occur.

            Snowflake powers some of the most critical data workloads in the cloud, yet its configuration layer is rarely protected by a cyber resilience solution.

            Introducing Snowflake Configuration Disaster Recovery

            ControlMonkey helps teams safeguard Snowflake environments by protecting the operational configuration that keeps data platforms running.

            Examples of protected Snowflake configurations include:

            • Roles and grants controlling data access
            • Warehouses powering compute workloads
            • Databases and schemas organizing data environments
            • Resource monitors and policies managing usage and governance
            • Platform configuration settings critical to operational stability

            With this capability, teams can:

            • Automatically back up Snowflake configuration
            • Track configuration changes over time
            • Recover quickly from accidental changes or deletions
            • Reduce operational risk across data infrastructure
            • Restore Snowflake environments without manual reconstruction

            How Snowflake Disaster Recovery Works

            ControlMonkey connects to Snowflake using secure APIs and automatically discovers configuration assets across the Snowflake environment. This discovery process maps the operational structure of the data platform, including access controls, compute resources, and governance settings.

            These configurations define how Snowflake environments operate and are essential for governance, access control, and workload management.

            Snapshot and Backup

            ControlMonkey continuously captures the configuration state of Snowflake resources and creates versioned snapshots of those configurations.

            This provides a reliable historical, good-know state record of Snowflake configurations.

            Recover – Roles, Warehouses, Schemas, and Policies

            If roles, warehouses, schemas, or policies are deleted or misconfigured, teams can quickly restore them from a known-good snapshot, recovering Snowflake configuration in minutes.

            This eliminates the need for manual reconstruction of complex platform settings.

            Review & Govern

            The ControlMonkey Cloud Resilience Dashboard provides visibility into disaster recovery readiness across cloud infrastructure, observability platforms, and SaaS tools like Snowflake.

            Teams can monitor protection coverage and identify resilience gaps before incidents occur.

            Stay Ahead with Snowflake Disaster Recovery

            Data platforms like Snowflake are critical to modern cloud operations. Yet while organizations protect data, the configuration layer often remains vulnerable.

            ControlMonkey ensures Snowflake configurations are protected alongside infrastructure and SaaS platforms. By continuously backing up configuration states and enabling rapid restoration, teams can recover quickly from ransomware, cyber attacks, AI agents and configuration mistakes and maintain operational continuity.

            Ready to be Cyber Resilient?

            Explore Snowflake Disaster Recovery with ControlMonkey today.

            Bottom CTA Background

            A 30-min meeting will save your team 1000s of hours

            A 30-min meeting will save your team 1000s of hours

            Book Intro Call

            Author

            Zack Bentolila

            Zack Bentolila

            Marketing Director

            Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

              Sounds Interesting?

              Request a Demo

              Resource Blog News Customers Stories

              Updated: Mar 25, 2026 Upd: 25.03.26

              3 min read

              Disaster Recovery for Observability: Dashboards, Alerts, and Monitors

              Zack Bentolila

              Zack Bentolila

              Marketing Director

              Disaster Recovery for Observability: Dashboards, Alerts, and Monitors

              Observability Disaster Recovery is the new addtioan to Controlmonkey DR Soultion. Modern cloud operations rely heavily on observability. During incidents, dashboards, alerts, and monitoring rules are often the first place engineers turn to understand what’s happening.

              Yet the configurations behind these systems – dashboards, alert policies, monitors, and escalation rules – are rarely protected by disaster recovery.

              Introducing Observability Configuration Disaster Recovery

              ControlMonkey now extends Cloud Configuration Disaster Recovery to observability platforms, protecting monitoring environments across Datadog, New Relic, Dynatrace, Grafana Cloud, and Splunk.

              ControlMonkey automatically captures daily snapshots of observability configurations so teams can restore monitoring environments and maintain operational visibility during incidents.

              Observability DR Key capabilities:

              • Protect operational knowledge
                Backup dashboards, monitors, alert rules, and escalation policies created over years of operational tuning.
              • Restore monitoring environments quickly
                Recover observability configurations from versioned snapshots instead of rebuilding manually.
              • Detect configuration drift in monitoring systems
                Track changes across observability platforms and identify unexpected modifications.
              • Ensure monitoring visibility during incidents
                Maintain access to critical dashboards and alerts when diagnosing outages.
              • Extend disaster recovery beyond infrastructure
                Protect the broader cloud control plane including infrastructure, network, and observability configuration.

              How does Observability Configuration Disaster Recovery Works?

              ControlMonkey Cloud DR solution continuously captures configuration snapshots from supported observability platforms.

              Each snapshot records the structure and settings of monitoring environments, including:

              • Dashboards and visualizations
              • Alert rules and alert routing policies
              • Monitors across metrics, logs, and traces
              • Notification channels and escalation policies
              • Service monitoring and APM configurations
              • Click on the image to enlarge


              These configurations are versioned and stored securely, allowing teams to compare changes over time and restore previous configurations when needed.

              If dashboards are deleted, alerts are misconfigured, or monitoring rules break during an incident, engineers can restore observability configurations directly from a previous snapshot – without manually rebuilding monitoring environments.

              Why Disaster Recovery for the Observability Layer?

              Traditional disaster recovery focuses on restoring data, storage, and infrastructure.

              But modern cloud environments rely on far more than compute resources. The cloud control plane – including monitoring configuration – contains the operational knowledge engineers depend on to diagnose and resolve incidents.

              With ControlMonkey, teams can:

              • Maintain versioned backups of observability environments
              • Detect configuration changes and drift
              • Restore monitoring systems quickly during incidents
              • Ensure DR visibility by having clear Resilience Score

              By extending configuration disaster recovery to observability, ControlMonkey helps teams maintain operational continuity across the entire cloud environment.

              During incidents, engineers rely on monitoring systems to understand what’s happening – yet observability configurations themselves are rarely protected by disaster recovery. As a CTO, I know firsthand how valuable it would have been to restore dashboards and monitoring environments instantly instead of rebuilding them under pressure.

              Ori Yemini - ControlMonkey CTO Headshot Photo

              Ori Yemini

              CTO

              Real-World Impact: Datadog dashboards, monitors, and alerting policies

              Our Datadog dashboards, monitors, and alerting policies represent years of operational knowledge and tuning. Losing that configuration during an incident would significantly impact our ability to diagnose issues quickly. With ControlMonkey, we know our observability configurations are versioned and recoverable, ensuring we maintain visibility when it matters most<br />

              Doron Honeybook

              Doron Gutman

              Director of DevOps and DevSecOps

              Ready to be Cyber Resilient?

              Explore Cloud Configuration Disaster Recovery for Observability or schedule a demo today.

              Reference Table: Key APM Configurations Used in Observability Platforms

              ConfigurationDescriptionExample
              Dashboards & VisualizationsConfigurations that define how telemetry data is displayed.Dashboards
              Saved views
              Dashboard layouts
              Panels / widgets
              Visualization settings
              Graph queries
              Dashboard variables
              Alerts & Alerting RulesConfigurations that trigger notifications when conditions are met.Alert rules
              Alert thresholds
              Alert policies
              Alert conditions
              Alert templates
              Alert routing rules
              Alert severity levels
              Alert suppression rules
              Alert deduplication settings
              MonitorsDefinitions that evaluate metrics, logs, or traces.
              Metric monitors
              Log monitors
              Trace monitors
              Synthetic monitors
              Service health monitors
              SLO monitors
              Infrastructure monitors
              Notification & Escalation PoliciesConfigurations controlling how incidents are communicated.Notification channels
              Escalation policies
              PagerDuty integrations
              Slack / Teams alert routing
              Email notification rules
              On-call schedules
              Service & Application MonitoringConfigurations defining what services are observed.Service definitions
              Service maps
              Application performance monitoring (APM) settings
              Dependency maps
              Service tags / metadata
              Environment tags
              Metrics ConfigurationHow metrics are collected, stored, and analyzed.Custom metrics definitions
              Metric queries
              Metric tagging rules
              Metric retention policies
              Metric filters
              Metric rollups / aggregations
              Synthetic MonitoringTesting and uptime monitoring configurations.Synthetic tests
              API tests
              Browser tests
              Uptime monitors
              Test schedules
              Test locations
              Table: Core APM configurations used to manage observability, monitoring, and incident response
              Bottom CTA Background

              A 30-min meeting will save your team 1000s of hours

              A 30-min meeting will save your team 1000s of hours

              Book Intro Call

              Author

              Zack Bentolila

              Zack Bentolila

              Marketing Director

              Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

                Sounds Interesting?

                Request a Demo

                Resource Blog News Customers Stories

                Updated: Mar 25, 2026 Upd: 25.03.26

                2 min read

                Dynatrace Disaster Recovery

                Zack Bentolila

                Zack Bentolila

                Marketing Director

                Dynatrace Disaster Recovery

                Modern cloud operations rely on observability platforms like Dynatrace to detect incidents and maintain service reliability. But while infrastructure and data may be protected, monitoring configurations themselves are often not recoverable.

                With ControlMonkey, teams can now extend Cloud Disaster Recovery to Dynatrace configuration backup – ensuring dashboards, alerts, monitors, and metrics can be restored instantly in case of incidents, misconfigurations, or ransomware.

                Introducing Dynatrace Configuration Backup & Recovery

                ControlMonkey now protects critical Dynatrace configurations as part of its Cloud Disaster Recovery platform.

                Key capabilities include:

                • Automated backup of Dynatrace dashboards, metrics, monitors, and alerts
                • Versioned snapshots of monitoring configurations
                • Rapid recovery of observability environments after incidents
                • Resilience Score across monitoring platforms
                • Unified disaster recovery method across cloud infrastructure and SaaS tools

                How Dynatrace Disaster Recovery Works

                ControlMonkey continuously protects Dynatrace configuration so teams can restore their monitoring environment to a known-good state when incidents occur.

                Discover Dynatrace configurations

                ControlMonkey connects to Dynatrace using secure APIs and automatically discovers configuration assets including dashboards, monitors, alerts, and metrics.

                Snapshot and Backup

                On a continuous basis, ControlMonkey captures the exact configuration state of Dynatrace resources and creates versioned snapshots of those configurations.

                Recover 

                If dashboards, monitors, or alerts are deleted or misconfigured, teams can quickly restore them from a good known snapshot – recovering observability environments in minutes.

                Review & Govern

                The ControlMonkey Cloud Resilience Dashboard provides visibility into DR readiness across cloud infrastructure and SaaS tools, helping teams identify gaps before incidents occur.

                Stay Ahead with Dynatrace Disaster Recovery

                As a CTO, I’m proud to introduce this capability. In my previous roles, having the ability to quickly recover from mistakes and investigate configuration changes would have saved days of troubleshooting and manual work

                Ori Yemini - ControlMonkey CTO Headshot Photo

                Ori Yemini

                CTO

                Observability platforms are critical for detecting and resolving incidents. If monitoring configurations are lost during an outage or attack, recovery becomes significantly harder.

                ControlMonkey ensures Dynatrace configurations are protected alongside infrastructure and SaaS platforms. By continuously backing up configuration states and enabling rapid restoration, teams can maintain operational visibility even during critical incidents.

                This extends disaster recovery beyond data and infrastructure – ensuring the monitoring systems themselves are resilient.

                Ready to be Cyber Resilient?

                Explore Dynatrace Disaster Recovery with ControlMonkey today.

                Bottom CTA Background

                A 30-min meeting will save your team 1000s of hours

                A 30-min meeting will save your team 1000s of hours

                Book Intro Call

                Author

                Zack Bentolila

                Zack Bentolila

                Marketing Director

                Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

                  Sounds Interesting?

                  Request a Demo

                  Resource Blog News Customers Stories

                  Updated: Mar 08, 2026 Upd: 08.03.26

                  2 min read

                  Cloud Resilience Dashboard

                  Zack Bentolila

                  Zack Bentolila

                  Marketing Director

                  Cloud Resilience Dashboard

                  Cloud Resilience Dashboard gives organizations a measurable view of their configuration disaster recovery posture across cloud accounts and 3rd party services.

                  It introduces a single, actionable metric – Resilience Score – representing the percentage of discovered resources that are backed up and recoverable from a known-good snapshot.

                  For the 1st time Cloud executives can understand their resilience score in a single view.

                  Introducing the Cloud Resilience Dashboard

                  The dashboard is designed to answer critical operational and executive questions instantly:

                  • What percentage of our cloud infrastructure is actually DR-ready?
                  • Where are our configuration blind spots?
                  • Did our DR coverage regress this week? Why?
                  • Are unmanaged (non-IaC) resources included in DR coverage?
                  • Are our 3rd party vendors (e.g Datadog, Cloudflare, Okta) configurations ready for DR?

                  The Resilience Score reflects continuous discovery and snapshot coverage across:

                  • Cloud infrastructure (AWS, Azure, GCP) –  Infrastructure environments with DR enabled
                  • 3rd Party Accounts — SaaS and external platforms with DR enabled
                    • Network configurations
                    • Identity providers
                    • Monitoring platforms
                    • More

                  If a resource does not have a recoverable snapshot, it lowers the score. Gaps are immediately visible.

                  From Snapshot to Measurable Resilience

                  ControlMonkey daily snapshots guarantee resilience across cloud and 3rd parties. But as a CIO/CISO, you need a metric you can report back to your risk committee/board of directors. What matters is coverage, consistency, and visibility.The Cloud Resilience Dashboard connects snapshot activity to a measurable outcome – your Resilience Score.

                  Benefits of the dashboard for CIO and CISO:

                  • Quantify the percentage of infrastructure that is truly recoverable
                  • Detect newly added resources that are not yet protected
                  • Identify partial DR configurations at the account level
                  • Monitor coverage trends over time
                  • Validate that unmanaged (non-IaC) resources are included

                  You can also search and filters (Vendor, DR Status, Labels) allow teams to quickly locate exposed accounts and prioritize action.

                  Configuration recovery becomes measurable and governed – you have a clear idea of your RTO and RPO of your cloud.

                  Built for Governance and Executive Reporting

                  The Cloud Resilience Dashboard transforms configuration disaster recovery into a tracked governance metric.

                  Ready to measure your configuration DR readiness? Explore the Cloud Resilience Dashboard today.

                  Bottom CTA Background

                  A 30-min meeting will save your team 1000s of hours

                  A 30-min meeting will save your team 1000s of hours

                  Book Intro Call

                  Author

                  Zack Bentolila

                  Zack Bentolila

                  Marketing Director

                  Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

                    Sounds Interesting?

                    Request a Demo

                    Resource Blog News Customers Stories

                    Updated: Feb 26, 2026 Upd: 26.02.26

                    3 min read

                    ControlMonkey Expands Cloud Disaster Recovery to the Network Layer

                    Zack Bentolila

                    Zack Bentolila

                    Marketing Director

                    ControlMonkey Expands Cloud Disaster Recovery to the Network Layer

                    ControlMonkey now extends Cloud Configuration Disaster Recovery to leading network vendors, including Cloudflare, Fastly, Akamai, and F5 – bringing visibility and automated recovery to routing, DNS, and edge configurations.

                    As cloud environments scale, disaster recovery can’t stop at data. While organizations invest heavily in data backup and ransomware protection, network configuration often remains outside formal disaster recovery strategies.

                    In November 2025, an internal configuration change led to a global withdrawal of routing prefixes, disrupting Cloudflare’s 1.1.1.1 DNS resolver worldwide. Applications became unreachable — even though data and workloads remained intact. The failure wasn’t infrastructure. It was network configuration.

                    Introducing Network Configuration Disaster Recovery

                    With ControlMonkey, teams can restore networking policies and routing configurations directly from versioned configuration snapshots  significantly reducing manual rebuild efforts and accelerating recovery time.

                    Additional capabilities include:

                    • Automated configuration recovery: Restore routing tables, security groups, DNS records, firewall rules, and edge policies from versioned snapshots.
                    • Time machine for Networking configuration: easily track changes over time, restore previous configuration with a click of a button.
                    • Real-time drift detection:Continuously monitor cloud and network configuration changes to prevent risky modifications from escalating into outages.
                    • Recovery readiness visibility:Centralized insight into configuration coverage and restore capability across cloud and edge environments.
                    • Improved RTO/RPO confidence: Reduce downtime caused by manual network rebuilds and accelerate restoration of reachable production environments.
                    Network Configuration Disaster Recovery and Network Disaster Recovery coverage across Akamai, Fastly, Cloudflare, and F5 platforms.

                    How It Works – Network Configuration Backup

                    To protect backup configurations, ControlMonkey uses a structured Cloud disaster recovery process: Discover existing configurations, Snapshot them as versioned recovery points, Recover when incidents occur, and continuously Review readiness.

                    1) Discover

                    Using read-only API access, ControlMonkey continuously discovers routing rules, DNS records, firewall policies, CDN configurations, and edge definitions across supported vendors.

                    2) Snapshot

                    Exact configuration states are captured daily and converted into versioned, deployable definitions. Each snapshot represents a deterministic recovery point.

                    3) Recover

                    When incidents occur, teams can restore specific routing tables, DNS zones, firewall rules, or full network environments – manually or automatically.

                    4) Review & Govern

                    Executives and DevOps leaders gain a single view of DR readiness across cloud, SaaS, identity, and network control planes.

                    With ControlMonkey, network resilience becomes measurable.

                    How Does 
it work - Network DR
                    End to End Network Config Protaction

                    Why This Matters? Network Configuration Disaster Recovery

                    Most cloud disaster recovery strategies stop at data backup. But when routing policies change or DNS records are deleted:

                    • Teams don’t know exactly what existed
                    • Recovery depends on tribal knowledge
                    • Manual rebuilds extend RTO and RPO
                    • Applications remain unreachable despite healthy infrastructure

                    Customer Perspective

                    As a SaaS platform, our availability depends heavily on Cloudflare and our network configuration. Traditional backup solutions didn’t address how we would recover routing policies or edge configurations in the event of an incident. ControlMonkey gives us confidence that our Cloudflare configurations are backed up and recoverable.

                    Doron Honeybook

                    Doron Gutman

                    Director of DevOps and DevSecOps

                    Stay Ahead with Control-Plane Disaster Recovery

                    If you or your team back up your data, don’t leave your network configuration exposed. Your Disaster recovery plan is not complete until you can answer:
                    What is our RTO and RPO for network  configuration?

                    With ControlMonkey Network Disaster Recovery you can:

                    • Gain measurable visibility into cloud, SaaS, identity, and network DR readiness
                    • Eliminate configuration blind spots across routing, DNS, and edge layers
                    • Reduce outage risk caused by misconfiguration and manual rebuilds
                    • Improve RTO and RPO confidence with deterministic, versioned recovery points
                    • Ensure reachability – not just data recovery  during incidents

                    Ready to close the network recovery gap

                    Get a free cloud DR Assessment to review your network configuration in case of incident

                    Bottom CTA Background

                    A 30-min meeting will save your team 1000s of hours

                    A 30-min meeting will save your team 1000s of hours

                    Book Intro Call

                    Author

                    Zack Bentolila

                    Zack Bentolila

                    Marketing Director

                    Zack is the Marketing Director at ControlMonkey, with a strong focus on DevOps and DevSecOps. He was the Senior Director of Partner Marketing and Field Marketing Manager at Checkmarx. There, he helped with global security projects. With over 10 years in marketing, Zack specializes in content strategy, technical messaging, and go-to-market alignment. He loves turning complex cloud and security ideas into clear, useful insights for engineering, DevOps, and security leaders.

                      Sounds Interesting?

                      Request a Demo
                      Cookies banner

                      We use cookies to enhance site navigation, analyze usage, and support marketing efforts. For more information, please read our. Privacy Policy