Kanchanjot Kaur Phokela, Kapil Singi, Kuntal Dey, Vikrant S. Kaulgud, Adam P. Burden
{"title":"Framework to Assess Policy Driven Security Misconfiguration Risks in Cloud Native Application","authors":"Kanchanjot Kaur Phokela, Kapil Singi, Kuntal Dey, Vikrant S. Kaulgud, Adam P. Burden","doi":"10.1109/SecDev53368.2022.00023","DOIUrl":null,"url":null,"abstract":"Cloud computing services have facilitated cross border solutions that can cater to a large user base, allows easy maintenance and provides cost efficient solutions. Organizations that are now moving to digital are often faced with challenges of keeping up with the cyber attacks. Cloud and Infrastructure Misconfigurations, often an overlooked yet surging threat can cause loss of reputation and hefty litigation due to non-compliance. In this paper, we propose a framework to secure the configuration files against security vulnerabilities, compliance issues and infrastructure misconfigurations.","PeriodicalId":407946,"journal":{"name":"2022 IEEE Secure Development Conference (SecDev)","volume":"65 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE Secure Development Conference (SecDev)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SecDev53368.2022.00023","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Cloud computing services have facilitated cross border solutions that can cater to a large user base, allows easy maintenance and provides cost efficient solutions. Organizations that are now moving to digital are often faced with challenges of keeping up with the cyber attacks. Cloud and Infrastructure Misconfigurations, often an overlooked yet surging threat can cause loss of reputation and hefty litigation due to non-compliance. In this paper, we propose a framework to secure the configuration files against security vulnerabilities, compliance issues and infrastructure misconfigurations.