
Introduction The rapid transition toward serverless architectures has fundamentally shifted the security paradigm from defending physical hardware to protecting the integrity of application code and identity permissions. In this environment, the abstraction of infrastructure management does not eliminate risk; rather, it concentrates it within the logic of the functions and the configurations that govern their access. The objective of this










