Back close

Amazon Web Services Cloud Compliance Automation with Open Policy Agent

Publication Type : Conference Paper

Publisher : IEEE

Source : 2024 International Conference on Expert Clouds and Applications (ICOECA)

Url : https://doi.org/10.1109/icoeca62351.2024.00063

Campus : Chennai

School : School of Computing

Department : Computer Science and Engineering

Year : 2024

Abstract :

The security challenges posed by Infrastructure as code (IaC) are outgrowing established security procedures in an era of rapidly adopting cloud computing and DevOps methodologies. Using security principles to be integrated into the CI/CD pipeline for continuous validation and remediation, this research work proposes a DevSecOps approach to enable cloud environment IaC security. The proposed architecture evaluates CloudFormation Template file to the specified security policy by utilizing Open Policy Agent (OPA). Any violations are flagged by OPA, which may force the deployment process to stop. By incorporating security and compliance considerations into the development pipeline, this method guarantees that vulnerabilities are kept out of production systems. Organizations can improve the overall security posture of their cloud systems by proactively identifying and remediating security problems by implementing a DevSecOps approach. By ensuring that IaC deployments adhere to specified security policies based on the compliance requirements, OPA's continuous security validation reduces the possibility of misconfigurations and security flaws.

Cite this Research Publication : Alen Paul, Rishi Manoj, Udhayakumar S, Amazon Web Services Cloud Compliance Automation with Open Policy Agent, 2024 International Conference on Expert Clouds and Applications (ICOECA), IEEE, 2024, https://doi.org/10.1109/icoeca62351.2024.00063

Admissions Apply Now