Cloud Security
Audience: Cloud Security Engineers, Platform Engineers, and Security Operations teams.
Scope: This section covers cloud security governance, posture management, and compliance using Kion.
Quick Links
| Resource | Purpose |
|---|---|
| Kion Portal | Cloud governance platform |
| Kion Support | Official documentation |
| AIP Request Form | New account requests |
Kion Overview
Kion is a Cloud Posture Security Management (CPSM) platform that provides:
- Single pane of glass for multi-cloud security posture
- Financial tracking and budget management
- Compliance tracking with customizable standards
- Cloud Access Roles (CARs) for federated access
- Automated remediation capabilities
Supported Platforms
| Platform | Status |
|---|---|
| AWS | ✅ Active |
| Microsoft Azure | 🔄 Coming Soon |
| Google Cloud | 🔄 Coming Soon |
Documentation Sections
Kion Administration
- Login & Authentication — Azure AD SSO integration
- Account Federation — Accessing cloud accounts via CARs
- User Groups — Managing access and permissions
Account Workflow
- AIP Request Form — Customer-facing request process
- ServiceNow Integration — Request processing pipeline
- Terraform Modules — Infrastructure as Code for account creation
AWS Security
- Service Control Policies — Testing and deploying SCPs
- Cloud Rules — Compliance enforcement
Account Workflow Overview
GitHub Repositories
| Repository | Purpose |
|---|---|
| it-cloud-account-hub | Account definitions and Terraform orchestration |
| it-ae-tfmod-aws-account | AWS account creation module |
| it-ae-tfmod-kion-account | Kion resource creation module |
| it-ae-svc-kion-config | Kion configuration and SCPs |