publication2024 · conference

Security Principles in Cloud Computing

Damir Josić, Matej Bašić and Luka Žgrablić. Security Principles in Cloud Computing. Proceedings of the 35th DAAAM International Symposium, 210–215, 2024.

Abstract

This paper provides a comprehensive overview of cloud security principles, highlighting the critical areas of data confidentiality, identity security, access controls, and the role of monitoring and event logging in maintaining secure cloud environments. It addresses organizations' everyday challenges, such as improper identity and access management, insecure APIs, and potential unauthorized access risks. The discussion includes detailed strategies for mitigating these issues, such as implementing robust authentication protocols, network segmentation, continuous security assessments, and robust employee training programs. The paper also highlights the importance of multifactor authentication (MFA) and the innovative use of passwordless authentication to enhance security and user experience. It explores using SIEM (Security Information and Event Management) and SOAR (Security Orchestration Automation and Response) technologies to bolster cybersecurity through real-time analysis and automated incident response.

My contribution

I presented this paper at the 35th DAAAM International Symposium in October 2024, and I built the slide deck and recorded the talk for its virtual edition.