Top 3 Challenges for Cloud Security
What are the top 3 challenges that make security on cloud a difficult task? I have had the opportunity to interact with several customers around cloud security and I have tried to boil the issues down to top 3. Let's start in the reverse order
#3 Knowledge
Cloud environments allow granular controls for security but to successfully leverage them, IT Teams need deep skills on cloud. Then there is also the question of how to map them to regulatory and enterprise requirements. While it is wholly possible for organisations to build such a knowledge base in house, It is particularly challenging to keep this up to date with new services and offerings being added with great alacrity. Knowledge or certainly gaps in knowledge is number 3 on this list.
#2 Time
While cloud has made it possible to shrink the time it takes to roll out new applications and updates, it has also taken a toll on IT teams that now need to do more with less. Fully knowing the risks, many organisations keep delaying remediation of known security issues and findings. Time or the lack of it is a major hurdle for IT teams. Ironically time is abundantly available to hackers who can target cloud environments for long durations to get to their prized assets.
#1 Assumption
This is the biggest problem - Public (Cloud) Enemy No 1
Assuming that your cloud provider is responsible for the security of your cloud environment, Assuming that your network security groups are exactly as you designed them, Assuming that everything is OK since alarm bells have not gone off.
What do you think are the top 3?
Web3 Builder | C Suite | Strategic Partnerships | Explosive Growth Leader | ex Microsoft, Check Point, IBM
4 年Well written Ashish Tandon I like the way you put them on the page in reverse order. I was working with Sharon Tan earlier today as we're putting together a digital campaign for cloud security and we were discussing these exact points. Thank you very much for sharing.
De-commoditizing Tech I Long Distance Runner
4 年Ashish Tandon nicely captured. The behaviour of cloud security professionals could be another. Especially when it comes to accessing resources on cloud, security has to be air tight to prevent compromises.
Head of Product Marketing, CyberProof
4 年Great, succinct and to the point! What about "Change"? So many changes happening all the time on so many levels that it is difficult to keep up with them all. And keep ahead of them all...