Technical Assurance & Offensive Security
Cloud Security Assessment & Hardening
Your cloud is misconfigured. We find out how badly, and set the baseline that keeps it fixed.
The situation
What the client receives
Schedule of deliverables
- Multi-cloud posture assessment against CIS Benchmarks
- IAM and privilege model review, including cross-account and workload identity
- Network, encryption and key management review
- Container and Kubernetes security assessment
- Landing zone and guardrail design (policy as code)
- Hardening baseline and drift detection recommendations
Frameworks and standards
Assessment is carried out against named references, so a conclusion can be traced back to the requirement it was measured against.
- CIS Benchmarks
- AWS / Azure / GCP well-architected security pillars
- NIST SP 800-53
- CSA CCM
Related services
Discuss this engagement
Tell us about the cloud estate, its accounts and the baseline you want held and we will set out the scope, the method and the reporting format.