Hardening Cloud Posture

Proactively harden a cloud account or organization before an incident — prioritizing IAM and identity risk over checkbox findings, closing the exposures that become attack paths (public storage, over-broad roles, missing audit logging, unencrypted data), reading CSPM output critically, and enforcing guardrails at the org level. Use when reviewing a cloud environment's security posture, triaging a Prowler/ScoutSuite/Security Hub report, deciding which misconfigurations actually matter, or setting preventive controls across AWS, Azure, or GCP.

trilwu f4f212d 7.5 KB Updated

File contents

trilwu/secskills/tree/main/secskills-defense/skills/hardening-cloud-posture commit f4f212d45f

Frequently asked questions

npx skillmds add trilwu/hardening-cloud-posture