Glossary

Security Groups

Security groups are like bouncers at the door of each cloud server - they check every connection and only let approved traffic through.

What is Security Groups?

Virtual firewalls that control inbound and outbound traffic for cloud resources at the instance level.

Why Should You Care?

Overly permissive security groups are a top cloud misconfiguration. They should follow least privilege principles.

Is your business exposed?

Real-World Example

A security group allows SSH only from a bastion host IP, preventing direct internet access to production servers.

How to Protect Against Security Groups

  1. 1.

    Audit security groups for overly permissive rules

  2. 2.

    Remove 0.0.0.0/0 rules except where required

Related Terms

Vpc, Firewall, Nacl

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required