Preface
Cloud computing is no longer an emerging option. For most organizations, it is the default operating model for delivering products, running internal business systems, storing data, and integrating with partners. That shift brings real advantages: speed, global reach, elastic capacity, and a steady stream of new managed services. It also changes the security problem in ways that are easy to underestimate. Cloud security is not simply traditional security moved off-premises. It is a different environment with different trust boundaries, different visibility, different control surfaces, and a different balance of responsibilities between providers and customers.
I wrote this book because the most common cloud security failures are rarely caused by mysterious attacks. They are caused by ordinary decisions made under time pressure: an unclear identity model, an over-permissive role, a rushed network design, untracked data flows, unmanaged secrets, missing logs, inconsistent baselines, or a compliance program that cannot produce defensible evidence. These problems are solvable, but only when cloud security is treated as a system that spans architecture, identity, data protection, operations, governance, and engineering culture. The intent of this book is to give you that system—clear enough to teach, practical enough to implement, and durable enough to survive platform change.
This is a principle-driven book rather than a vendor-specific walkthrough. Cloud consoles evolve ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access