GCP or AWS or Azure Security Audit
Security can never be an afterthought. From inspecting your existing IAM, Networking and Service controls implementation to going through a checklist of over a 100 security focused items, here is partial list of what the GCP Security Audit or AWS Security Audit contains:
- Review of Identity and Access Management to Cloud Resources, including custom roles, Custom Service Accounts, IAM Policy Bindings, gSuite and OAuth based authentication and more.
- Review of Infrastructure Security – Hybrid DNS, Automated Non Compliance Detection, Cloud Armor, Firewall Rules, private endpoints and application monitoring and network intrusion monitoring.
- Review of Logging, Monitoring, Alerting, Incident Response Configuration of all services and hosted assets. Advanced Monitoring Strategies, including Cloud Run based event notifications (introduced in 2020).
- Review of Data Protection – Cloud Managed DEKs and KEKs, CMEKs , CSEKs, Certificates Management, Existing HSM products feasibility to connecting with a cloud HSM. Automated Certificate Provisioning using open source tools.
- Review of Layer 7 Security – Cloud WAFs, 3rd Party NextGen Firewall Appliances on the cloud, Stackdriver and Cloudwatch agents based monitoring of app layer metrics.
Start the conversation today. Security cannot be an afterthought (™).
Leave a Reply