Search icon
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
Cloud Auditing Best Practices

You're reading from  Cloud Auditing Best Practices

Product type Book
Published in Jan 2023
Publisher Packt
ISBN-13 9781803243771
Pages 268 pages
Edition 1st Edition
Languages
Authors (2):
Shinesa Cambric Shinesa Cambric
Profile icon Shinesa Cambric
Michael Ratemo Michael Ratemo
Profile icon Michael Ratemo
View More author details

Table of Contents (16) Chapters

Preface 1. Part 1: The Basics of Cloud Architecture and Navigating – Understanding Enterprise Cloud Auditing Essentials
2. Chapter 1: Cloud Architecture and Navigation 3. Chapter 2: Effective Techniques for Preparing to Audit Cloud Environments 4. Part 2: Cloud Security and IT Controls
5. Chapter 3: Identity and Access Management Controls 6. Chapter 4: Network, Infrastructure, and Security Controls 7. Chapter 5: Financial Resource and Change Management Controls 8. Part 3: Executing an Effective Enterprise Cloud Audit Plan
9. Chapter 6: Tips and Techniques for Advanced Auditing 10. Chapter 7: Tools for Monitoring and Assessing 11. Chapter 8: Walk-Through – Assessing IAM Controls 12. Chapter 9: Walk-Through – Assessing Policy Settings and Resource Controls 13. Chapter 10: Walk-Through – Assessing Change Management, Logging, and Monitoring Policies 14. Index 15. Other Books You May Enjoy

Tools for Monitoring and Assessing

Cloud monitoring is one of the keys to ensuring that cloud services and resources remain secure and cost-effective. AWS, Azure, and Google Cloud Platform (GCP) offer native solutions that an IT auditor can leverage to monitor and assess cloud environments. Cloud monitoring is a method of reviewing, observing, and managing the health and security of a cloud. Cloud monitoring is performed with the aim of detecting cyber threats, data breaches, and anomalous behavior. Using monitoring tools, organizations can proactively monitor their cloud environments to identify security events before they become security incidents.

We will cover the following topics in this chapter:

  • Basic cloud auditing tools within AWS
  • Basic cloud auditing tools within Azure
  • Basic cloud auditing tools within GCP

In Chapter 6, Tips and Techniques for Advanced Auditing, we went over tools that an IT auditor can leverage to perform monitoring specifically...

Basic cloud auditing tools within AWS

In the sections that follow, as a prerequisite, you may require a minimum level of view or read access to obtain the test evidence independently. Depending upon your specific organization’s configuration and any additional customizations, you may require additional access rights or group memberships to directly access specific content, or you may be required to work with an administrative point of contact for your organization as you observe them pulling control evidence. For reference, any screenshots in the following sections are based on a user with administrative privileges to the cloud environment. In addition, some of the tools may need to be enabled by the cloud customer, if they have not yet been.

We will begin with the basic cloud auditing tools within the AWS platform.

Amazon CloudWatch

The first tool an IT auditor can leverage in AWS is Amazon CloudWatch. Amazon CloudWatch is an AWS native monitoring and management...

Azure

Now, we will review cloud auditing tools that can be leveraged in the Azure cloud platform.

Azure Monitor

One tool an IT auditor can leverage in the Azure environment is Azure Monitor. As per the Azure documentation, Azure Monitor “helps you maximize performance and availability of your applications and proactively identify problems in seconds.

To launch Azure Monitor, you can easily search for it in a browser or on the Azure console, as seen in Figure 7.16:

Figure 7.16 – Azure Monitor

Figure 7.16 – Azure Monitor

Overview presents the different options that an IT auditor can utilize from Application Insights, Container Insights, VM Insights, and Network Insights, as seen in Figure 7.17:

Figure 7.17 – Azure Monitor Overview

Figure 7.17 – Azure Monitor Overview

A useful feature of Azure Monitor is Activity Log, which displays the last transactions executed in the Azure cloud and who initiated the transaction, as seen in Figure 7.18:

...

GCP

Lastly, we will look at cloud auditing tools that can be leveraged within GCP.

Google Cloud Monitoring

IT auditors can leverage Google Cloud Monitoring to gain real-time visibility into GCP. We can get to Cloud Monitoring by simply searching for it on the Google Cloud console, as shown in Figure 7.23:

Figure 7.23 – Google Cloud Monitoring Overview

Figure 7.23 – Google Cloud Monitoring Overview

A useful feature for an IT auditor is Dashboards. This provides us with dashboards for Disks, Firewalls, Infrastructure Summary, and VM Instances:

Figure 7.24 – Dashboards Overview

Figure 7.24 – Dashboards Overview

One valuable dashboard to review is Firewalls. Let us go to the Firewalls dashboard, as seen in Figure 7.25:

Figure 7.25 – The Firewalls dashboard

Figure 7.25 – The Firewalls dashboard

If we dig deeper, we note that there is an ingress/inbound rule that allows traffic from the internet (0.0.0.0/0). This particular rule should pique an IT auditor’s interest as port 22 (SSH...

Summary

In this chapter, we looked at the tools for monitoring the performance, availability, and security of infrastructure and applications for AWS, Azure, and GCP environments. We covered standard tools and options that exist within each cloud environment, and how an IT auditor can leverage them to monitor and assess the respective clouds.

In our next chapter, we will perform a walk-through demonstrating how to assess identity and access management (IAM) controls.

lock icon The rest of the chapter is locked
You have been reading a chapter from
Cloud Auditing Best Practices
Published in: Jan 2023 Publisher: Packt ISBN-13: 9781803243771
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $15.99/month. Cancel anytime}