May 14, 2022
InfosecGirls Session - 14th May, 2022
Topic: Cloud security fundamentals — shared responsibility, IAM hygiene, and common misconfigurations in object storage and identity.
Summary
- Clarified shared responsibility: what the cloud provider secures vs what customers own.
- IAM hygiene checklist: least privilege, no long-lived keys where avoidable, break-glass patterns.
- Object storage pitfalls: public buckets, weak ACLs, and logging/monitoring gaps.
- Identity federation and org-wide guardrails as scalable controls.