Secure Multi-Cloud / Hybrid Cloud Integration Without Secrets

Опубликовано: 21 Февраль 2026
на канале: SANS Cloud Security
351
7

Industry is heading towards multi cloud. With that comes various forms of security risks especially of client/secret and or service account keys. These secrets pose imminent threat to security posture of the organization. They are long lived and easy to leak. The leaks present threats due to risk of bot mining and cryptocurrency attacks. Enterprises only realize that their secrets have been leaked when they see a huge spike in cloud bills.

Why not get away from using secrets all together?

Using Workload Identity Federation, you can use native cloud identity assertions to use in token exchange with other clouds. This presentation and a demo will show you how to federate the leading cloud providers (AWS, Google Cloud and Azure) so that your multi cloud integration will be secure than ever. The same principle can be applied to Hybrid cloud integration to reduce the risk of secrets exposures in the on-prem environment.

About the Speaker
Prashant is part of Google Cloud Security & Compliance Sales Engineering. He works with leading enterprises in FIS, Retail, Media to guide them for secure cloud migrations. He has 21 years of experience in Enterprise Security and a GIAC certified Cloud Security automation expert.


SANS Cloud Security focuses the deep resources of SANS on the growing threats to The Cloud by providing training, GIAC certification, research, and community initiatives to help security professionals build, deploy and manage secure cloud infrastructure, platforms, and applications.

View upcoming Summits: http://www.sans.org/u/DuS
Download the presentation slides (SANS account required) at https://www.sans.org/u/1iaE

SANS Cloud Security Curriculum: www.sans.org/cloud-security
Follow us on social:
SANS Cloud Security on Twitter: @SANSCloudSec
SANS Cloud Security on LinkedIn:   / sanscloudsec  
SANS Cloud Security on YouTube:    / sanscloudsecurity