IaC Security Guide: CloudFormation

You're reading Gomboc's field guide to securing infrastructure as code. The following resources are tactical guides created specifically for platform engineers, devsecops, and cloud security practitioners to leverage in their day to day work.

More guides are on the way! Check back here soon!
Key benefits

What is CloudFormation?

AWS CloudFormation is a powerful service that allows you to define, provision, and manage AWS infrastructure and resources using a declarative language. It enables you to treat your infrastructure as code, providing numerous benefits for cloud resource management.

Drift Detection and Change Sets

Preview proposed changes before applying them to your stack. Identify and track changes made to resources outside of CloudFormation.

Rollback Triggers

Automatically roll back stack operations if specified CloudWatch alarms are triggered

Cross-Account and Cross-Region Management

Provision resources across multiple AWS accounts and regions using StackSets

Reduce your backlog to zero

Make CSPM findings a thing of the past. Integrate Gomboc AI and immediately get remediations pushed to your CI/CD pipeline so DevOps teams can skip the busywork. Never fall out of compliance again. Never deal with cloud misconfigurations. Get to #BacklogZero today.