Infrastructure Code Library Update – Terraform & AWS CDK

k9 Security believes usable and robust infrastructure code libraries are essential in making best practice accessible to application delivery, cloud, and security teams. If every team has to reinvent the automation wheel, you’ll likely end up with an overbudget,...

k9 Security and Knowledge Base Enhancements – 2020q3

The k9 Security team spent the summer learning about Cloud practitioners’ problems with AWS security and building solutions to those problems into k9. We’d like to share the most important enhancements with you, starting with k9 Security services: AWS Security Policy...

Why are good AWS security policies so difficult?

Creating good AWS security policies is difficult for two reasons. First, the powerful AWS security model is complex and difficult to understand. Second, application deployments are changing and growing rapidly. Why is AWS IAM so @!#^$ hard? One of our favorite...

First Look: Automate Least Privilege Access to S3 Bucket

k9 Security is happy to share a new Terraform module to help you protect your data in AWS S3 and go fast, safely. The tf_s3_bucket Terraform module creates an AWS S3 bucket with safe defaults and a least privilege bucket policy built on the k9 access capability model....