A system for creating and managing security policies for multiple cloud platforms is configured to generate a security policy, use one or more policy engines to convert the security policy to one or more formats compatible with different cloud platforms, and deploy the security policies to the cloud platforms. The system can also retrieve a security policy from a cloud platform and determine whether the security policy has been modified on the cloud platform but not on the system, which may indicate a misconfiguration of the security policy or that a malicious action has occurred.

