The Cloud module provides automated security testing and compliance monitoring of your cloud infrastructure. It supports major cloud providers, including AWS, Azure, and GCP. This article walks you through the recommended workflow for the cloud module.
Step 1: Integrate With Your Cloud Provider
Sign in to Scrut, and navigate to Integrations → Cloud Provider to integrate Scrut with your cloud provider. See here for step-by-step instructions to connect with your cloud provider.
Step 2: Automated Scanning of Your Cloud Infrastructure
Once integrated, Scrut automatically:
Scans your cloud resources daily and runs automated cloud tests across your infrastructure
Identifies non-compliant resources based on your framework requirements
Discovers compliance gaps across your cloud systems
Evaluates configurations against security benchmarks
Identifies deviations and misconfigurations
This helps Scrut to identify non-compliant resources and configurations based on your frameworks and discover compliance gaps across your cloud systems.
Step 3: Review and Resolve Failing Tests
Navigate to the Cloud dashboard to see test statuses. Take action on failing tests with code fixes or AI-powered remediation guidance. See here for step-by-step instructions on working on a test finding.