• Login
    View Item 
    •   Home
    • Conference Proceedings
    • International Telemetering Conference
    • International Telemetering Conference Proceedings, Volume 60 (2025)
    • View Item
    •   Home
    • Conference Proceedings
    • International Telemetering Conference
    • International Telemetering Conference Proceedings, Volume 60 (2025)
    • View Item
    JavaScript is disabled for your browser. Some features of this site may not work without it.

    Browse

    All of UA Campus RepositoryCommunitiesTitleAuthorsIssue DateSubmit DateSubjectsPublisherJournalThis CollectionTitleAuthorsIssue DateSubmit DateSubjectsPublisherJournal

    My Account

    LoginRegister

    About

    AboutUA Faculty PublicationsUA DissertationsUA Master's ThesesUA Honors ThesesUA PressUA YearbooksUA CatalogsUA Libraries

    Statistics

    Most Popular ItemsStatistics by CountryMost Popular Authors

    Automating Cloud Security with Policy as Code: A Case Study on AWS S3 Buckets

    • CSV
    • RefMan
    • EndNote
    • BibTex
    • RefWorks
    Thumbnail
    Name:
    ITC_2025_25-08-04.pdf
    Size:
    102.8Kb
    Format:
    PDF
    Download
    Author
    Cox, Katlyn
    Moazzam, Farzad
    Affiliation
    Morgan State University
    Issue Date
    2025-10
    
    Metadata
    Show full item record
    Citation
    Cox, Katlyn, Moazzam, Farzad. (2025.) Automating Cloud Security with Policy as Code: A Case Study on AWS S3 Buckets. International Telemetering Conference Proceedings, 60.
    Publisher
    International Foundation for Telemetering
    Journal
    International Telemetering Conference Proceedings
    URI
    http://hdl.handle.net/10150/679581
    Additional Links
    https://telemetry.org/
    Abstract
    As cloud adoption grows and threats evolve, enforcing consistent and scalable security policies is increasingly challenging. Policy as Code (PaC) ad dresses this by enabling the definition, management, and automation of security policies through code. This paper explores PaC’s role in automating cloud security, with a focus on AWS environments. It high lights how integrating PaC into DevSecOps pipelines reduces misconfigurations, enhances transparency, and supports real-time compliance. Using a case study of AWS S3 buckets—often mis configured in public and government sectors—this research demonstrates how tools like AWS Cloud Formation Guard, Open Policy Agent (OPA), and CI/CD pipelines can enforce policies for secure and compliant configurations. These include checks for public access, encryption, and role-based access. The paper proposes a practical framework for scalable, testable, and auditable cloud governance using Policy as Code.
    Type
    Proceedings
    text
    Language
    en
    ISSN
    0884-5123
    1546-2188
    Sponsors
    International Foundation for Telemetering
    Collections
    International Telemetering Conference Proceedings, Volume 60 (2025)

    entitlement

     
    The University of Arizona Libraries | 1510 E. University Blvd. | Tucson, AZ 85721-0055
    Tel 520-621-6442 | repository@u.library.arizona.edu
    DSpace software copyright © 2002-2017  DuraSpace
    Quick Guide | Contact Us | Send Feedback
    Open Repository is a service operated by 
    Atmire NV
     

    Export search results

    The export option will allow you to export the current search results of the entered query to a file. Different formats are available for download. To export the items, click on the button corresponding with the preferred download format.

    By default, clicking on the export buttons will result in a download of the allowed maximum amount of items.

    To select a subset of the search results, click "Selective Export" button and make a selection of the items you want to export. The amount of items that can be exported at once is similarly restricted as the full export.

    After making a selection, click one of the export format buttons. The amount of items that will be exported is indicated in the bubble next to export format.