cloud-security

Automate multi-cloud security assessments across AWS, Azure, and GCP.

1|Updated Mar 27, 2026
One-click install
npx skills add https://github.com/devkeni/Skills --skill cloud-security-devkeni
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: cloud-security
Source: https://github.com/devkeni/Skills/tree/main/security/ai-security-arsenal/skills/cloud-security
Command: npx skills add https://github.com/devkeni/Skills --skill cloud-security-devkeni

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This skill simplifies and speeds up cloud-security assessments by orchestrating multi-cloud scans and policy reviews across AWS, Azure, and GCP.

Core Features & Use Cases

  • Automated multi-cloud security assessments across AWS, Azure, and GCP using ScoutSuite, Prowler, and CloudSploit.
  • IAM and permissions analysis to identify overly permissive roles, access keys, and risky policies.
  • Misconfiguration scanning and CIS benchmarking to improve posture and compliance.
  • Use Case: When you need a quick baseline, run a scoped audit to uncover critical misconfigurations and privilege risks, then produce a remediation plan.

Quick Start

Run a mid-scope cloud security assessment across AWS, Azure, and GCP to identify misconfigurations and privilege risks.

Frequently Asked Questions about cloud-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate multi-cloud security assessments across AWS, Azure, and GCP?

Automate multi-cloud security assessments by orchestrating scans through ScoutSuite, Prowler, and CloudSploit to identify misconfigurations and privilege risks across AWS, Azure, and GCP environments.

What is the best way to audit IAM policies for overly permissive roles in cloud environments?

Audit IAM policies for overly permissive roles by running IAM enumeration utilities and policy analysis to detect risky permissions, access keys, and privilege escalation paths across your cloud infrastructure.

How do I check my cloud infrastructure for CIS benchmark compliance and misconfigurations?

Check CIS benchmark compliance and scan for misconfigurations by executing automated assessments that evaluate your cloud posture against baseline standards using tools like Steampipe and Prowler.

Do I need to install external tools like ScoutSuite and Pacu to run cloud security audits with this workflow?

Yes, you need ScoutSuite, Prowler, CloudSploit, Steampipe, Pacu, and IAM enumeration utilities installed, as the workflow orchestrates these dependencies to perform comprehensive multi-cloud security assessments.

Can I test for privilege escalation risks across multiple cloud providers simultaneously?

Yes, you can test for privilege escalation risks across AWS, Azure, and GCP simultaneously by executing scoped security assessments that analyze IAM configurations and identify exploitable permission paths.

What steps are needed to generate a remediation plan after a cloud security audit?

After completing a scoped audit for misconfigurations and privilege risks, use the provided optional scripts and references to guide execution and produce a structured remediation plan for your cloud environment.