Cloud Security: Multi-Cloud Foundations
Cross-cloud 28 automated checks
Cross-cloud security rules that apply to multi-cloud resources
Compute Security
Encryption in Transit
General
- Object storage must have encryption at rest enabled
- Block storage volumes must be encrypted
- Relational database security hardening
- NoSQL database security hardening
- File storage must be encrypted
- Cache service security hardening
- Cache services must enforce TLS encryption in transit
- Databases must not be publicly accessible
- Kubernetes clusters must restrict public API access
- Container registry security hardening
- Key management service security hardening
- Database authentication must use managed identities
- Load balancers must have access logging enabled
- Databases must have deletion protection enabled
- EC2 instances must use IMDSv2
- Container services must enable container insights
Identity & Access
Monitoring & Logging
Network Security
Resilience
Security Services
Measure your Cloud Security: Multi-Cloud Foundations posture
CGPulse maps live Azure and AWS findings to these controls and tracks drift over time.