Demystifying Policy as Code Non Technical Guide Effective Governance

ScaleSec Blog

Steven Adegbenle4 min read

12 Days of Cloud Security Christmas

ScaleSec celebrates the holiday season with 12 gifts users should avoid giving their ...
Start Reading
Eric Evans4 min read

TDD in Your Infrastructure Pipeline

Using TDD can be an effective way to move fast and not break security.
Start Reading
Anthony DiMarco5 min read

Using WAF and CloudFront with Serverless Applications

The third installment of security best practices for serverless applications running on ...
Start Reading
Eric Evans6 min read

Test Driven Development for Secure Infrastructure

Test Driven Development helps keep your infrastructure safe.
Start Reading
Dustin Whited4 min read

PassRole Control

How the iam:PassRole permission can be restricted and monitored in AWS.
Start Reading
John Porter7 min read

Why Your YubiKey Won’t Work With AWS CLI (and the fix)

Set up a YubiKey as two-factor authentication in AWS that will work with the Console, ...
Start Reading
Eric Evans5 min read

Data Loss Prevention on Google Cloud

How to use Cloud DLP to secure batch and streaming data.
Start Reading
Steven Adegbenle5 min read

Make Least Privilege Easier in AWS

Five approaches to making IAM Least Privilege easier within your AWS environments.
Start Reading
Anthony DiMarco7 min read

Shifting Application Security to the Left

Automate and simplify your application security process by shifting it to the left.
Start Reading
Jeanier Anderson4 min read

Threat Detection with AWS GuardDuty

This is a walkthrough of an AWS Security Workshop with scenarios covering threat ...
Start Reading