trustoncloud Profile Banner
TrustOnCloud Profile
TrustOnCloud

@trustoncloud

Followers
241
Following
107
Media
67
Statuses
165

TrustOnCloud provide cloud control catalogs for each Cloud service; based on threat models, audit-ready, and always up-to-date.

Joined January 2021
Don't wanna be here? Send us removal request.
@trustoncloud
TrustOnCloud
29 days
We’re proud to support fwd:cloudsec 2025 - where cloud security practitioners meet, share, and raise the bar together. We’re giving away tickets to this year’s conference. Want in? Learn more → #fwdcloudsec25
Tweet media one
0
0
0
@trustoncloud
TrustOnCloud
1 month
3/ Key takeaways: .• Model cloud services, not just apps .• Prioritize by data criticality .|• Stay current—new features = better defenses .• Annual assessments won't catch everything. 🎧 Full insights here:
Tweet media one
trustoncloud.com
Essential guide on Threat Modeling for your Cloud Environment. Listen to our CTO Tyson Garrett on the Cloud Security Podcast.
0
0
1
@trustoncloud
TrustOnCloud
1 month
2/ Team set out to model a new cloud service 🔁 Checked the old one it was replacing 🔍.Found. nothing. No model ever existed 😬. Dev-launched service. No ownership. No visibility. "Grandfathered in" and forgotten.
1
0
1
@trustoncloud
TrustOnCloud
1 month
🧠 Security leaders ask: "What should cloud threat modeling look like for my team?" . TrustOnCloud CTO #TysonGarrett breaks it down on @CloudSecPod with a story that'll make you check your own cloud services. 🧵 . #CloudSecurity #ThreatModeling
1
0
1
@trustoncloud
TrustOnCloud
1 month
𝗧𝗿𝗮𝗰𝗸 𝗔𝗪𝗦 𝗔𝗣𝗜 𝗰𝗵𝗮𝗻𝗴𝗲𝘀—𝗱𝗮𝗶𝗹𝘆, 𝗮𝗹𝗹 𝗶𝗻 𝗼𝗻𝗲 𝗽𝗹𝗮𝗰𝗲. gives you a live changelog of AWS service API updates. New methods, parameter edits, removals—captured and summarized without the doc-digging. 🔹 Human-readable summaries
Tweet media one
0
0
1
@trustoncloud
TrustOnCloud
1 month
✳️ Refining threats to match your IAM policy?. Try IAM Threat Analyzer:.📥 Input a policy.🔎 See the related threats. This helps you 𝗻𝗮𝗿𝗿𝗼𝘄 𝗱𝗼𝘄𝗻 𝘄𝗵𝗮𝘁 𝗮𝗰𝘁𝘂𝗮𝗹𝗹𝘆 𝗮𝗽𝗽𝗹𝗶𝗲𝘀 — not just a generic list of risks. 🔗 #IAMSecurity
0
0
1
@trustoncloud
TrustOnCloud
2 months
More controls ≠ better security. Some threat models have 400+ controls. But which ones should you implement?. Ask yourself:.✔️ What’s the ROI?.✔️ How hard is it to operate?.✔️ What’s the impact on the threat?. 🔗 #CloudSecurity #ThreatModeling
0
0
0
@trustoncloud
TrustOnCloud
2 months
RT @fwdcloudsec: We're happy to announce TrustOnCloud is a Bronze sponsor for fwd:cloudsec North America 2025! @trustoncloud .
0
1
0
@trustoncloud
TrustOnCloud
2 months
𝗡𝗘𝗪: 𝗥𝗲𝗴𝘂𝗹𝗮𝗿𝗹𝘆 𝘂𝗽𝗱𝗮𝘁𝗲𝗱 𝗱𝗶𝗿𝗲𝗰𝘁𝗼𝗿𝘆 𝗼𝗳 𝗔𝗺𝗮𝘇𝗼𝗻 𝗚𝘂𝗮𝗿𝗱𝗗𝘂𝘁𝘆 𝗳𝗶𝗻𝗱𝗶𝗻𝗴 𝘁𝘆𝗽𝗲𝘀. ✔️ Scraped from AWS docs.🔁 Updated weekly via GitHub Actions.📂 Output: findings.json (structured + automation-ready).🔗 ⭐.
Tweet media one
github.com
Regularly-updated directory of all finding types available in Amazon GuardDuty - trustoncloud/aws-guardduty-findings-directory
0
1
2
@trustoncloud
TrustOnCloud
2 months
🎥 What makes a “good” control in cloud security?. It’s not just what it does—it’s how you use it. Every control objective can include:. 🔐 Preventative – blocks threats (e.g. IAM policy).👀 Detective – logs activity (e.g. CloudTrail).📘 Directive – defines process/policy.🛠
1
1
1
@trustoncloud
TrustOnCloud
2 months
Understand the threat. Then ask: what are we trying to achieve?. That’s the role of a control objective — a high-level outcome behind a set of controls. It brings structure to your threat model. Next: breaking them down even further. 👇.🔗
0
0
2
@trustoncloud
TrustOnCloud
2 months
🚨 We’re sponsoring @fwdcloudsec North America!.📍 Denver | 🗓 June 30–July 1.📌 Embassy Suites Downtown.Catch us at the TrustOnCloud booth — let’s talk threat models, cloud onboarding, or grab some swag 👋. 🔗 #cloudsecurity #infosec #TrustOnCloud.
Tweet media one
trustoncloud.com
Join TrustOnCloud at fwd:cloudsec 2025 North America as we discuss events, sponsoring, and more. Book a meeting with our research team to enhance your Google Cloud security today.
0
1
2
@trustoncloud
TrustOnCloud
2 months
MITRE ATT&CK gives security teams a shared language to understand threats — not just what happened, but why. But most tools stop at labels. You’re left stitching together context across AWS, Azure, and GCP. At TrustOnCloud, every threat is structured the same way:. 🔹 What the
0
1
2
@trustoncloud
TrustOnCloud
2 months
🪣Think your S3 buckets are locked down?. Think again. Our CTO breaks down every identity path that can reach your data and explains how to move from tribal knowledge to governed, repeatable access control. ▶️ Watch the demo: #CloudSecurity #S3Security
0
1
2
@trustoncloud
TrustOnCloud
3 months
🛡️ We’ve updated our #ThreatModel coverage on AWS Marketplace. ✔️ Implement best practices for optimal security and efficiency .✔️ Tailor controls to match your specific applications and risk tolerance .✔️ Facilitate seamless onboarding for large enterprises and agencies
Tweet media one
0
1
2
@trustoncloud
TrustOnCloud
3 months
☁️@googlecloud #APIs change constantly. New methods. Deprecations. Breaking changes. We built the GCP API Change Log to help you: .✅ Track method-level changes across GCP services.✅ Compare what's new vs. what's removed.✅ Subscribe via RSS. 🔗Explore today's changes:
Tweet media one
0
1
1
@trustoncloud
TrustOnCloud
3 months
Cloud services create endless possibilities — and endless threats. TrustOnCloud maps risks and controls across 220+ AWS, Azure & GCP services — in human-readable (PDF, DOCX) and machine-readable (#JSON) formats. 🎥 Watch the 7-minute demo →
0
1
3
@trustoncloud
TrustOnCloud
3 months
Too many controls. Not enough context. 🎥 In 7 mins, see how TrustOnCloud maps cloud threats to the right controls—based on your risk appetite & usage. ✅ AWS, Azure, GCP threats.✅ MITRE ATT&CK views.✅ ROI-focused control prioritization. 🔗 Watch now →
Tweet media one
0
0
2
@trustoncloud
TrustOnCloud
4 months
🚀@Google BigQuery #ThreatModel – Simplify secure adoption & usage with the right controls under the shared responsibility model. ✔️ Best Practices – Optimize security vs. effort.✔️ Compliance Mappings – Align with PCI DSS & more . 🔗 Download now →
Tweet media one
0
0
1