NORMA eResearch @NCI Library

Open-Source Security and Confidentiality Framework for Multi-Cloud Environments

Wagaskar, Anjali Sandeep (2025) Open-Source Security and Confidentiality Framework for Multi-Cloud Environments. Masters thesis, Dublin, National College of Ireland.

[thumbnail of Master of Science]
Preview
PDF (Master of Science)
Download (3MB) | Preview
[thumbnail of Configuration Manual]
Preview
PDF (Configuration Manual)
Download (2MB) | Preview

Abstract

The growing use of multi-cloud has created major concerns in terms of security due to its instability and inconsistency. This thesis shows a novel, strategic integration and implementation of an open-source security ecosystem consisting of four core domains which are directly mapped to the capabilities of the tools, the Open Policy Agent (OPA) for centralised access control, secret management with HashiCorp Vault, scalable object storage with MinIO, and real-time threat detection through Falco. The framework implements role based fine grain, access policies and dynamically issues credentials and monitors storage operations to detect and alert unauthorised activities. Experimental verification confirms the functional rightness of the framework, proving policy enforcement, secure management of credentials and on-going intrusion detection. Low latency and high throughput are shown to be the performance benchmarks of policy evaluation and secret retrieval, which establishes the possibility of the framework being practical. The scalability, policy flexibility and alert integration limitation are discovered. In terms of improving the state of open-source cloud security tools, this study delivers a vendor-neutral security solution that protects multi-cloud systems, addressing the short term needs of cloud security on an industry level.

Item Type: Thesis (Masters)
Supervisors:
Name
Email
Gupta, Punit
UNSPECIFIED
Uncontrolled Keywords: Multi-cloud security; Access control; Open Policy Agent (OPA); HashiCorp Vault; MinIO; Runtime threat detection; Falco; Secrets management; Role-based access control (RBAC); Object storage security; Open-source security framework; Policy enforcement; Performance evaluation
Subjects: T Technology > T Technology (General) > Information Technology > Cloud computing
Q Science > QA Mathematics > Computer software > Computer Security
T Technology > T Technology (General) > Information Technology > Computer software > Computer Security
Divisions: School of Computing > Master of Science in Cloud Computing
Depositing User: Ciara O'Brien
Date Deposited: 31 Mar 2026 12:29
Last Modified: 31 Mar 2026 12:29
URI: https://norma.ncirl.ie/id/eprint/9277

Actions (login required)

View Item View Item