Q1 2019
MEAMARKETS / Q1 2019 21 Prioritizing Security in a Multi-Cloud World • Do you have a mechanism for commercial coverage of the organization when things go wrong? Protect your organization and secure the cloud Organizations will often “upgrade” in some areas of basic security (perimeter, basic request hygiene) when making the move to well-known cloud providers. How the overall security posture is affected depends heavily on the level of diligence that goes into onboarding new cloud providers. Implementing critical technical measures like the Cloud Access Security layer and policy around how the cloud is procured and technically implemented should drive basic control requirements. As the number of cloud providers scales in the environment, your organization needs to assess and document them based on how much your organization depends on a given service and the sensitivity of the data those services will hold. Services that are prioritized higher on these two fronts should have increased organizational scrutiny and technical logging integration in order to maintain the overall defensive posture of the company. Finally, as with any other technology trend, the missteps in making the transition to business and consumer cloud services have received outsized coverage. Take the time to dive into the “hows” and “whys” of early cloud breaches to avoid becoming a potential victim— after all, when it comes to security, it is better to learn from someone else’s (unpleasant) experiences!
Made with FlippingBook
RkJQdWJsaXNoZXIy NTY1MjM3