Book description
With their rapidly changing architecture and API-driven automation, cloud platforms come with unique security challenges and opportunities. This hands-on book guides you through security best practices for multivendor cloud environments, whether your company plans to move legacy on-premises projects to the cloud or build a new infrastructure from the ground up.
Developers, IT architects, and security professionals will learn cloud-specific techniques for securing popular cloud platforms such as Amazon Web Services, Microsoft Azure, and IBM Cloud. Chris Dotson—an IBM senior technical staff member—shows you how to establish data asset management, identity and access management, vulnerability management, network security, and incident response in your cloud environment.
Publisher resources
Table of contents
- Preface
- 1. Principles and Concepts
- 2. Data Asset Management and Protection
- 3. Cloud Asset Management and Protection
- 4. Identity and Access Management
-
5. Vulnerability Management
- Differences from Traditional IT
- Vulnerable Areas
-
Finding and Fixing Vulnerabilities
- Network Vulnerability Scanners
- Agentless Scanners and Configuration Management
- Agent-Based Scanners and Configuration Management
- Cloud Provider Security Management Tools
- Container Scanners
- Dynamic Application Scanners (DAST)
- Static Application Scanners (SAST)
- Software Composition Analysis Scanners (SCA)
- Interactive Application Scanners (IAST)
- Runtime Application Self-Protection Scanners (RASP)
- Manual Code Reviews
- Penetration Tests
- User Reports
- Example Tools for Vulnerability and Configuration Management
- Risk Management Processes
- Vulnerability Management Metrics
- Change Management
- Putting It All Together in the Sample Application
- Summary
- 6. Network Security
- 7. Detecting, Responding to, and Recovering from Security Incidents
- Index
Product information
- Title: Practical Cloud Security
- Author(s):
- Release date: March 2019
- Publisher(s): O'Reilly Media, Inc.
- ISBN: 9781492037514
You might also like
book
Practical Cloud Security, 2nd Edition
With rapidly changing architecture and API-driven automation, cloud platforms come with unique security challenges and opportunities. …
book
Cloud Security Handbook
A comprehensive reference guide to securing the basic building blocks of cloud services, with actual examples …
book
Container Security
To facilitate scalability and resilience, many organizations now run applications in cloud native environments using containers …
book
Zero Trust Security: An Enterprise Guide
Understand how Zero Trust security can and should integrate into your organization. This book covers the …