Research index
Cloud security topics
Follow the control boundaries that shape identity, evidence, workloads, AI systems, and recovery.
Browse the desk
5 topicsIdentity & access
Trust is a path, not a policy.
Research on effective permissions, federation, workload identity, and the conditions that reshape cloud access.
Detection & response
A detection is only as complete as its evidence path.
Practical analysis of cloud telemetry, detection coverage, investigation quality, and recovery readiness.
Workload security
Runtime context decides whether a control matters.
Field guidance for Kubernetes, machine identity, service boundaries, and modern application infrastructure.
AI systems
AI risk begins before the model endpoint.
Threat modeling for data paths, orchestration identities, model services, and the cloud systems around AI workloads.
Resilience
Recovery starts with an independent control path.
Design and testing guidance for containment, restoration, and control-plane recovery under pressure.
Questions answered
Which research topics does Cloud Security Desk cover?
The research index covers identity and access, detection and response, workload security, AI systems, and resilience.
How are publications assigned to topics?
A publication is assigned to every control boundary that materially matches its evidence and conclusions, so one publication can appear under more than one topic.
What does a topic page provide?
Each topic page defines the control boundary, explains why it matters, and lists the current publications assigned to it.
Where should a new reader begin?
Choose the topic closest to the control decision you need to make, then open the most recent or most directly relevant publication on that page.
Do topic pages replace the publication catalogue?
No. Topic pages provide a focused research path; the catalogue remains the complete, filterable index of public work.
Supporting context
How are cross-cutting cloud risks represented?
Cross-cutting work appears under each relevant topic so readers can follow a risk from identity or workload conditions into detection and resilience outcomes.