Recently I attended a cloud security course and was introduced to Center for Internet Security (https://www.cisecurity.org/). They are a non-profit organisation providing guidance/best practices for securing IT systems again attacks. They have guides which are called "benchmark" and most of the guides are produce by subject matter experts, vendors and the community. These guides are very comprehensive where they explain what you can secure, why you would secure, how you can audit that particular setting, how to remediate /secure the system and what impact it may cause if you do apply the secure settings. There are guides ranging from the traditional Windows/Linux OS/Cisco to cloud (Azure/AWS) to IOS/Android and the likes of Docker/Kubernetes.
Head over to https://www.cisecurity.org/cis-benchmarks/ to see if there are any guides that are useful for you. You will need to provide email address to download these free guides. For VMware 6.0 onwards you will need to go to VMware site to pick up their VMware's guide
No comments:
Post a Comment