Fleet is an MDM-style solution for monitoring IT assets and security posture across many client companies at once, built for MSP-style operations: a recurring, drift-aware view of a fleet's real posture, not a snapshot taken once a year under audit pressure.
A lightweight agent reports on a schedule from every onboarded host: patch staleness, container hardening drift, unmanaged exposure, privileged containers. The practice sees posture change as it happens instead of rediscovering it at the next manual audit.
Every client host proves its identity with cloud-provider identity verification. No shared credentials, no payload signing, no cross-account access into a client's own environment.
One client's posture data is never visible to another, by structure, not by convention: a strict hierarchy from tenant down to container, enforced at the data layer.
Findings map to CIS Docker and Linux Benchmark control IDs, so what Fleet surfaces is directly usable in the audit and certification work this practice already runs, tracked alongside it in Attestia, not a separate reporting layer bolted on afterward.
Least-privilege on the client host, read-only, outbound-only, and cleanly uninstallable. No env var values collected, no raw log content, no SSH private keys, ever, only what posture monitoring actually needs.
A vCISO practice covering multiple client companies has no recurring, low-friction way to know a client's real docker-hosted infrastructure posture over time, without either invasive tooling or a manual audit repeated from scratch each time.
Performance monitoring tools already exist and stay out of Fleet's way. Fleet is deliberately scoped to security and compliance posture, not CPU and memory graphs, so it doesn't compete with the observability stack a client already runs.
Fleet is how this practice runs its own multi-client audit and certification delivery day to day, the same "we run this ourselves" standard behind hardened-images and Attestia, extended to fleet-wide posture.
Fleet is how continuous.engineering tracks fleet posture across its own audit and certification delivery. Ask what it would take to bring your fleet under the same recurring view.