Last night I dreamed our S3 buckets were public again.
Woke up sweating, checked CloudTrail, saw 4,000 unauthorized GET
... from myself testing permissions.
The intern said, "Don't worry Todd, we've got GuardDuty".
I said, "That's what I told the board".
Spent the morning writing a 42-page remediation plan.
By noon we had 3 new vendors, 2 NDAs, and one dinner reservation with Palo Alto.
Security posture unchanged, but morale? Through the roof.