This Final Year Project focuses on developing a static security testing tool for Infrastructure as Code (IaC) deployments.
This project centers on the development of a static security testing tool designed to enhance the security of cloud infrastructures defined through Infrastructure as Code (IaC). The tool scans IaC CloudFormation templates to detect and classify insecure configurations, vulnerabilities, and potential misconfigurations. By surfacing security concerns early in the development cycle, it empowers developers to address risks proactively—before the infrastructure is deployed.
As cloud adoption grows, ensuring the security of infrastructure deployed through code becomes increasingly critical. This tool provides:
The tool is designed to support DevOps teams in maintaining security best practices while accelerating their deployment cycles.
The project leverages modern technologies to deliver a robust security testing solution.
Get in touch for more information about this project.
Dylan Kirk
C00276269
BSc in Cyber Security
C00276269@setu.ie
086 160 6162
South East Technological University, Carlow
Security Testing Tool for Infrastructure as Code
Hisain Elshaffi
2025