Zero-Trust Access Intelligence for Multi-Cloud Enterprises

Authors

  • Benjamin Clark Author

Keywords:

Zero Trust Architecture, Multi-Cloud Security, Access Governance, Identity and Access Management, Federated Identity Management, Identity-Centric Access Control, Insider Threat Detection, Dynamic Micro-Segmentation, Least-Privilege Authorization, Hybrid Cloud Security, Cloud-Native Security, Enterprise Cloud Governance.

Abstract


The rapid adoption of multi-cloud architectures is giving enterprises greater flexibility and cost-efficiency, but it is also making access governance far more complex. On-demand data and workloads, portable application code, and the hosting of SaaS and PaaS applications across public clouds have made securing multi-cloud environments increasingly difficult, and traditional governance approaches can no longer keep pace. Against this evolving threat landscape—compounded by overly permissive access policies—the zero-trust paradigm has emerged as a promising security model. However, applying zero-trust principles to dynamic, hybrid, multi-cloud deployments remains an open challenge: heterogeneous cloud providers use disparate identity management mechanisms, and defining data-sensitive, identity-centric access policies—while detecting and remediating entitlement overprovisioning without disrupting SLAs or productivity—remains difficult in practice.

To address this gap, we propose a framework that autonomously orchestrates and deploys components to detect zero-trust violations across multi-cloud enterprise systems. The design draws on the defense-in-depth model and incorporates a robust insider-threat detection module. Its foundation rests on federated identity management and credential stewardship established during data ingestion and contextualization. Building on this foundation, the framework performs data-sensitive, identity-centric policy definition and entitlement overprovisioning detection and remediation—without compromising SLAs or productivity—to enable identity-driven access enforcement, dynamic micro-segmentation for hybrid network topologies, micro-perimeter activation, and application-layer firewall rule provisioning at ingress and egress gateways. All components are zero-trust-aware and unified into a single framework delivering end-to-end access governance and SLA-based authorization for enterprises and cloud service providers operating PaaS and EaaS microservice deployments.

References

1. Ferretti, L., Magnanini, F., Andreolini, M., & Colajanni, M. (2021). Survivable zero trust for cloud computing environments. Computers & Security, 110, 102419.

2. Buck, C., Olenberger, C., Schweizer, A., Völter, F., & Eymann, T. (2021). Never trust, always verify: A multivocal literature review on current knowledge and research gaps of zero-trust. Computers & Security, 110, 102436.

3. Chandramouli, R., Butcher, Z., & Chetal, A. (2021). Attribute-based access control for microservices-based applications using a service mesh. National Institute of Standards and Technology.

4. Chakilam, C., Suura, S. R., Koppolu, H. K. R., & Recharla, M. (2022). From Data to Cure: Leveraging Artificial Intelligence and Big Data Analytics in Accelerating Disease Research and Treatment Development. Journal of Survey in Fisheries Sciences. https://doi. org/10.53555/sfs. v9i3, 3619.

5. Syed, N. F., Shah, S. W., Shaghaghi, A., Anwar, A., Baig, Z., & Doss, R. (2022). Zero Trust Architecture (ZTA): A comprehensive survey. IEEE Access, 10, 57143–57179.

6. Xiao, Y., Zhang, Y., & Lee, B. (2022). SoK: Context and risk aware access control for zero trust systems. Security and Communication Networks, 2022, 7026779.

7. Kim, H., Shon, T., & Kim, S. (2022). Security of zero trust networks in cloud computing: A comparative review. Sustainability, 14(18), 11213.

8. Shahzad, F., Mannan, A., Javed, A. R., Almadhor, A. S., Baker, T., & Al-Jumeily, D. (2022). Cloud-based multiclass anomaly detection and categorization using ensemble learning. Journal of Cloud Computing, 11, 74.

9. Arshad, H., Johansen, C., & Owe, O. (2022). Semantic attribute-based access control: A review on current status and future perspectives. Journal of Systems Architecture, 129, 102625.

10. Adusupalli, B. (2023). DevOps-Enabled Tax Intelligence: A Scalable Architecture for Real-Time Compliance in Insurance Advisory. Journal for Reattach Therapy and Development Diversities. Green Publication. https://doi. org/10.53555/jrtdd. v6i10s (2), 358.

11. Wu, Q., Li, L., Zhang, L., Mu, Y., & Rezaeibagha, F. (2022). Secure and efficient general circuits attribute-based access control in cloud computing. IEEE Systems Journal, 16(4), 5533–5543.

12. John, C. J., Gupta, A., & Sural, S. (2022). Secure multi-cloud collaboration using data leakage free attribute-based access control policies. International Journal of Information Security.

13. Parthasarathy, K. (2022). Examining cloud computing’s data security problems and solutions: Authentication and access control (AAC). Journal of Science & Technology, 7(12), 35–48.

14. Madani, M. A., Kerkri, A., & Aissaoui, M. (2023). MC-ABAC: An ABAC-based model for collaboration in multi-cloud environment. International Journal of Advanced Computer Science and Applications, 14(6).

15. Chandramouli, R., & Butcher, Z. (2023). A zero trust architecture model for access control in cloud-native applications in multi-location environments. National Institute of Standards and Technology, Special Publication 800-207A.

16. Nandan, B. P. (2021). Enhancing Chip Performance Through Predictive Analytics and Automated Design Verification. Journal of International Crisis and Risk Communication Research, 265-285.

17. Saleem, M., Warsi, M. R., & Islam, S. (2023). Secure information processing for multimedia forensics using zero-trust security model for large scale data analytics in SaaS cloud computing environment. Journal of Information Security and Applications, 72, 103389.

18. Chen, E., Zhu, Y., Liang, K., & Yin, H. (2023). Secure remote cloud file sharing with attribute-based access control and performance optimization. IEEE Transactions on Cloud Computing, 11(1), 579–594.

19. Hu, V. C. (2023). Overview and considerations of access control based on attribute encryption. National Institute of Standards and Technology, NISTIR 8450.

20. Mashetty, S. (2023). View of A Comparative Analysis of Patented Technologies Supporting Mortgage and Housing Finance. Educational Administration: Theory and Practice.

21. Gandikota, S. R. (2023). Zero trust and AI-driven identity and access management for secure multi-cloud enterprise architectures. Journal of Computational Analysis and Applications, 31(4), 2846–2860.

22. Sivaraman, H. (2023). Zero trust identity and access management (IAM) in multi-cloud environments. ESP Journal of Engineering & Technology Advancements, 3(2), 135–139.

23. Raja, K., & Sujith, K. (2023). Securing cloud data: An enhanced approach through attribute-based access control mechanism. International Journal on Recent and Innovation Trends in Computing and Communication, 11(9).

24. Torabi, H., Mirtaheri, S. L., & Greco, S. (2023). Practical autoencoder based anomaly detection by using vector reconstruction error. Cybersecurity, 6, 1.

25. Paleti, S. (2023). Transforming Money Transfers and Financial Inclusion: The Impact of AI-Powered Risk Mitigation and Deep Learning-Based Fraud Prevention in Cross-Border Transactions. Available at SSRN, 5158588.

26. Nangi, P. R., Nala Obannagari, C. K. R., & Settipi, S. (2023). A multi-layered zero-trust security framework for cloud-native and distributed enterprise systems using AI-driven identity and access intelligence. International Journal of Emerging Trends in Computer Science and Information Technology.

27. Nangi, P. R., Nala Obannagari, C. K. R., & Settipi, S. (2023). A federated zero-trust security framework for multi-cloud environments using predictive analytics and AI-driven access control models. International Journal of Emerging Research in Engineering and Technology.

28. John, C. J., Gupta, A., & Sural, S. (2023). Secure and privacy-preserving access control for distributed cloud environments. International Journal of Cloud Applications and Computing.

29. Parthasarathy, K. (2022). Intelligent authentication and access control mechanisms for secure cloud computing environments. Journal of Science & Technology, 7(12), 49–62.

30. Shahzad, F., Javed, A. R., Baker, T., & Al-Jumeily, D. (2022). Machine learning-based intelligent security mechanisms for cloud computing environments. Journal of Cloud Computing, 11.

Additional Files

Published

2024-02-12

How to Cite

Zero-Trust Access Intelligence for Multi-Cloud Enterprises. (2024). European Advanced Journal for Science & Engineering (EAJSE), 2(01). https://esa-research.org/index.php/eajse/article/view/194

Most read articles by the same author(s)

Similar Articles

1-10 of 44

You may also start an advanced similarity search for this article.