trustoncloud Profile Banner
TrustOnCloud Profile
TrustOnCloud

@trustoncloud

Followers
248
Following
107
Media
80
Statuses
185

TrustOnCloud provide cloud control catalogs for each Cloud service; based on threat models, audit-ready, and always up-to-date.

Joined January 2021
Don't wanna be here? Send us removal request.
@trustoncloud
TrustOnCloud
7 hours
๐—•๐—ฟ๐—ถ๐—ป๐—ด ๐—ฐ๐—ผ๐—ป๐˜€๐—ถ๐˜€๐˜๐—ฒ๐—ป๐—ฐ๐˜†, ๐˜€๐—ฝ๐—ฒ๐—ฒ๐—ฑ, ๐—ฎ๐—ป๐—ฑ ๐—ฐ๐—น๐—ฎ๐—ฟ๐—ถ๐˜๐˜† ๐˜๐—ผ ๐—ฒ๐˜ƒ๐—ฒ๐—ฟ๐˜† ๐—ป๐—ฒ๐˜„ ๐—ฐ๐—น๐—ผ๐˜‚๐—ฑ ๐˜†๐—ผ๐˜‚ ๐—ผ๐—ป๐—ฏ๐—ผ๐—ฎ๐—ฟ๐—ฑ. When youโ€™re asked to support a new cloud provider, the challenges stack up quickly. Each platform has its own controls, compliance rules, and
0
0
0
@trustoncloud
TrustOnCloud
8 days
๐—”๐—ฐ๐—ฐ๐—ฒ๐—น๐—ฒ๐—ฟ๐—ฎ๐˜๐—ถ๐—ป๐—ด ๐—”๐—œ ๐—™๐—ฒ๐—ฎ๐˜๐˜‚๐—ฟ๐—ฒ ๐—ฅ๐—ผ๐—น๐—น๐—ผ๐˜‚๐˜๐˜€ ๐—ช๐—ถ๐˜๐—ต๐—ผ๐˜‚๐˜ ๐—š๐—ผ๐˜ƒ๐—ฒ๐—ฟ๐—ป๐—ฎ๐—ป๐—ฐ๐—ฒ ๐—š๐—ฎ๐—ฝ๐˜€: How one product team got AI features security-approved without the usual red tape. A global systemic bank was ready to ship new AI features on Amazon Bedrock, but security
0
0
1
@trustoncloud
TrustOnCloud
16 days
4/ While we worked with Google Cloud to restore the BigQuery dataset, our research continued uninterrupted because we'd already built redundancy into our research process. Multiple data sources. Continuous validation. Automated gap detection.
1
0
1
@trustoncloud
TrustOnCloud
16 days
3/ Here's the deeper problem we uncovered: #GCP has no single, reliable source for all release notes. Some services only publish to individual doc pages. Others appear in aggregate feeds but not in BigQuery. And some, like Valkey, don't appear in any programmatic feed at all.
1
0
0
@trustoncloud
TrustOnCloud
16 days
2/ For security teams relying on this feed, that meant weeks of blind spots: no visibility into Memorystore Cluster updates, Valkey releases, or Firestore MongoDB compatibility changes.
1
0
0
@trustoncloud
TrustOnCloud
16 days
๐Ÿšจ Our research team found something concerning in Google Cloud. GCPโ€™s BigQuery release notes dataset hadnโ€™t been updated since October 16th. ๐Ÿงต๐Ÿ‘‡
1
0
1
@trustoncloud
TrustOnCloud
24 days
A lean cloud team expanded from AWS to GCP. โšก Audited workloads in GCP in under 6 months ๐ŸŽฏ Unified security across both clouds ๐Ÿš€ No consultants, no chaos See how they did it ๐Ÿ‘‰ https://t.co/NRUcxBDqKA #CloudSecurity #MultiCloud #TrustOnCloud
0
0
1
@trustoncloud
TrustOnCloud
1 month
๐Ÿš€ โ€œBefore TrustOnCloud, every new cloud service felt like a security gamble. Now, we say yes with confidence and ship faster.โ€ - Executive Director, Public Cloud A Fortune 500 turned security bottlenecks into growth: โšก๏ธ 70% faster onboarding ๐ŸŽฏ Controls mapped to threats ๐Ÿงฉ
0
0
2
@trustoncloud
TrustOnCloud
2 months
Think of it as policy-as-code leveled up. Instead of relying only on defaults, you can encode your orgโ€™s best practices directly into GCP: closing misconfig gaps before they turn into incidents.
1
0
1
@trustoncloud
TrustOnCloud
2 months
๐Ÿ“Œ In this post, youโ€™ll learn: โœ… YAML samples for Cloud SQL, GKE, BigQuery & more โœ… Why built-in controls arenโ€™t enough โœ… How to codify best practices as enforceable policy
1
0
0
@trustoncloud
TrustOnCloud
2 months
๐Ÿšจ Misconfigs are still the top cause of cloud breaches. Built-in GCP org policies donโ€™t cover every gap. We just open-sourced custom constraints to help teams lock down environments with granular, preventative controls. https://t.co/YqBTsPy2zO
1
0
1
@trustoncloud
TrustOnCloud
2 months
๐—ง๐—ต๐—ฒ ๐—ผ๐—ป๐—ฒ ๐˜๐—ฟ๐—ถ๐—ฐ๐—ธ ๐˜๐—ต๐—ฎ๐˜ ๐—บ๐—ฎ๐—ธ๐—ฒ๐˜€ ๐—–๐—œ๐—ฆ ๐—ฏ๐—ฒ๐—ป๐—ฐ๐—ต๐—บ๐—ฎ๐—ฟ๐—ธ๐—ถ๐—ป๐—ด ๐—ณ๐—ผ๐—ฟ ๐— ๐—ถ๐—ฐ๐—ฟ๐—ผ๐˜€๐—ผ๐—ณ๐˜ ๐—”๐˜‡๐˜‚๐—ฟ๐—ฒ ๐—ณ๐—ฒ๐—ฒ๐—น ๐—น๐—ฒ๐˜€๐˜€ ๐—บ๐—ฎ๐—ป๐˜‚๐—ฎ๐—น. Mapping to the CIS Microsoft Azure Foundations Benchmark can feel like a checklist chore, especially when your cloud environment
0
0
1
@trustoncloud
TrustOnCloud
2 months
Using RCP in OpenSearch: Odd fit or a glimpse of the future? Read more: https://t.co/KduoRO0Ty7
0
1
1
@trustoncloud
TrustOnCloud
2 months
Defining Cloud Security Controls w/ Tyson Garrett ๐ŸŽง60-sec clip on the โ€œSecurity You Should Know podcastโ€ by the @cisoseries. Listen now: https://t.co/9qMsc34fpI #CloudSecurity #CISOSeries #ThreatModeling #CloudControls #SecurityArchitecture
0
0
0
@trustoncloud
TrustOnCloud
3 months
Making Cloud Threat Modeling Executable Tyson Garrett recently sat down with #SafetyDetectives to share how teams can move beyond static frameworks and bring threat modeling into real engineering workflows. Read now: https://t.co/o9wWua5SRC
0
1
1
@trustoncloud
TrustOnCloud
3 months
TrustOnCloud named a Sample Vendor for Threat Modeling Automation in four 2025 Gartnerยฎ Hype Cycleโ„ข reports: https://t.co/KlxTmTWVeu
0
1
1
@trustoncloud
TrustOnCloud
3 months
๐ŸŽงUnderstanding Cloud Dataflows: 60-sec clip from Security You Should Know @cisoseries Listen now:โ–ถ๏ธ https://t.co/9qMsc34fpI #CloudSecurity #CISOSeries #ThreatModeling
0
1
1
@trustoncloud
TrustOnCloud
4 months
๐ŸŽ™๏ธSecurity You Should Know: Our CTO Tyson Garrett joins Derek Fisher (Temple University) & Davi Ottenheimer (Inrupt) to discuss hidden #Cloud & #SaaS risks + how to tackle them. Listen now:๐ŸŽง https://t.co/9qMsc34fpI #CloudSecurity #CISO
0
1
1