☁ Cloud Security
Cloud Security Tools
for Indian Professionals
Free AWS, Azure, and GCP security tools — IAM privilege escalation paths, India data localisation requirements, RBI/SEBI compliance, threat detection, and penetration testing.
15
Cloud Security Tools
43
IAM Escalation Paths
6
India Regulators Covered
3
Cloud Providers
🇮🇳
India Regulatory Compliance
India Cloud Data Localisation Reference
RBI, SEBI, DPDP Act, IRDAI, MeitY, TRAI — which data must stay in India, which cloud providers are approved, contractual requirements.
RBI Cloud Guidelines Checklist
Practical checklist from RBI's cloud circular — IT governance, risk assessment, data localisation, vendor management, audit requirements, and exit strategy for banks and NBFCs.
Shared Responsibility Matrix
Interactive matrix — select IaaS/PaaS/SaaS and AWS/Azure/GCP. See what the provider covers vs what you must secure across 15 security domains.
🔐
IAM & Identity Security
Cloud IAM Privilege Escalation Reference
Every known escalation path from limited to admin — AWS (25 paths), Azure (10), GCP (8). Required permission, technique, detection query, and remediation for each.
AWS IAM Policy Analyser
Paste an IAM policy JSON and get instant risk findings — wildcard permissions, overly permissive actions, missing conditions, and recommended fixes.
🛡
Threat Detection & Hunting
Native Cloud Detection Reference
AWS GuardDuty, Microsoft Defender for Cloud, GCP SCC — finding types, what each detects and misses, tuning guidance, and SOC response for every finding category.
Cloud Threat Hunting Queries
KQL (Microsoft Sentinel) and SPL (Splunk) hunting queries for AWS CloudTrail and Azure activity logs. Copy-paste ready.
Cloud Attack Path Visualiser
8 attack paths (5 AWS, 2 Azure, 1 GCP) — step-by-step chain with detection opportunity and mitigation at each stage.
Cloud Incident Response Checklist
Structured IR checklist for cloud incidents across AWS, Azure, and GCP — containment, evidence collection, recovery, CERT-In notification.
⚙️
Configuration & Hardening
Cloud Misconfiguration Reference
AWS (6), Azure (5), GCP (4) misconfiguration cards — collapsible, severity filter, CLI detection + fix commands, MITRE ATT&CK tags.
Cloud Security Checklist
AWS (33), Azure (27), GCP (29) controls — CIS-mapped, persistent progress tracking, reset and PDF export.
Terraform / IaC Security Reference
8 bad-vs-good misconfig pairs, tfsec/Checkov/Terrascan scanning tools, secure module patterns, GitHub Actions CI/CD security gate with OPA policies.
Serverless Security Reference
Lambda, Azure Functions, Cloud Functions — event injection, SSRF→IMDS, env var secrets, dependency confusion, supply chain attacks. IAM least privilege and hardening checklist.
Kubernetes Security Reference
RBAC dangerous permissions, Pod Security Standards, container escape techniques, admission controllers, Kyverno examples, MITRE ATT&CK for Containers.
🔴