
Explains the design of using Azure's Entra PIM, AWS's IAM Identity Center, and GCP's conditional IAM to make cloud permissions "limited". This is a practical guide to how to prevent privilege bloat and attack surface expansion. |Colorkrew Security

Almost all breaches of AWS are access key leakage, excessive authority, IAM, and S3 misdisclosure. Continuous monitoring combined with CloudTrail and GuardDuty provides a checklist of practices to efficiently close common entry points. |Colorkrew Security

Nice to meet you, my name is Zun. It has been more than 10 years since I came to Japan, and I have been working as a BrSE and PM at an offshore development Nikkei company for about 5 years. In April of this year, I joined Colorkrew as an infrastructure engineer, so I would like to introduce the background and reasons for choosing it. In my previous role, I was BrSE/PM, connecting the Japanese client with the offshore team, managing the implementation and design phases. ...

Streamline security operations with AWS Config, a configuration monitoring service from AWS. By working with Colorkrew's SOC, you can enhance your monitoring, automation, and response! |Colorkrew Security

{{}} On April 5, 2025 I did a live stream on how to run Github Actions Self Hosted Runners on EKS Auto with AWS Heroes Arshad Zackeriya and Jones Zachariah Noel. Disclaimer: 🐶 No Beagles were…
![[Thorough explanation] Professionals explain WAF false positive patterns and causes!](https://ckmediastgstr.blob.core.windows.net/uploads/post_24_02_93ba7a7784.png)
Explain in detail the typical examples and causes of false positives that occur in web application firewalls (WAFs). Learn about false positive patterns that occur in input forms, search queries, and contact forms, effective tuning methods, and operational improvements using SOC services. Colorkrew Security Blog

Learn more about how AWS GuardDuty can be leveraged to streamline your organization's security operations. We also introduced threat detection capabilities, integration with other security services on AWS, and GuardDuty's pricing plans. This is a practical guide for those who want to reduce the burden of SOC operations and strengthen security measures. |Colorkrew Security

Amazon Web Services (AWS) CodePipeline Team has simplified Developer, DevOps engineers operational overhead and streamlined the Deployment process to EKS by introducing an CodePipeline action to…

> Amazon Web Services (AWS) CodePipeline Team has simplified Developer, DevOps engineers operational overhead and streamlined the Deployment process to EC2 by introducing an CodePipeline action to...

During AWS re:Invent 2024 AWS released a new feature to EKS i.e EKS Auto Mode, which I have already covered in detail in my previous blog In this blog we will see **how we can create cluster with EKS...

AWS re:Invent has begun and there are tons of new service and feature announcement from the AWS CEO Matt Garman's Keynote ( check my x/bluesky thread from the keynote updates) In this blog we will...

AWS re:Invent hasn't officially begun, yet there is a game changing new feature to EKS to make you run **Kubernetes like a pro!!!** *In this blog we will investigate what EKS Auto Mode is all about...