BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

Cloud Computing Security in Public Clouds

Posted February 17, 2011    Peter McCalister

We’ve said before that corporations need to take ownership and responsibility for overseeing and requiring compliance and security policies of their cloud vendors. Well, now it’s official, the industry agrees with us.

Network World published a great security checklist for the cloud, but what’s really awesome is the straight-talk from a writer at IT Business Edge here.

“Cloud service providers, generally, are unaware of the specific security and privacy needs of an organization” – Yes! Ding, ding, ding! And it goes on “so it’s wise to have these needs explicitly documented before engaging with them.”

We’ve covered how security is the top issue related to the cloud according to numerous surveys and reports, yet only 23 percent of cloud customers require proof of compliance from their cloud vendors and only 20 percent of organizations regularly involve the security team in their cloud choices.

With cloud security being such an issue, why aren’t we doing more about it?

At BeyondTrust, our focus is of course on administrative privileges on servers and other assets. Organizations that outsource to a cloud vendor make their choices based on price, instead of security. Often this transition involves multiplying the number of IT admins with access to the company’s data several-fold and without proper admin controls.

So ask your cloud vendor! Ask them how many admins will have access to your data and what policies are in place to protect it. Because trust is not a proper security measure.

Leave a Reply

Additional articles

webinar_ondemand

On Demand Webinar – Why You Still Suck at Patching

Posted March 27, 2015    Lindsay Marsh

On Demand Webinar: Dave Shackleford recounts some of his personal experiences in patch management failure, and breaks down the most critical issues holding many teams back from patching more effectively.

Tags:
,
dave-shackleford-headshot

Why You Still Suck at Patching…and How to Turn Your Life Around

Posted March 25, 2015    Dave Shackleford

Live webinar | March 26, 2015 | 10am PT/1pm ET | Dave Shackleford, SANS Instructor | Why You Still Suck at Patching…and How to Turn Your Life Around

Tags:
, ,
infographic

Privilege Gone Wild 2: Over 25% of Organizations Have No Privileged Access Controls

Posted March 24, 2015    Scott Lang

BeyondTrust recently conducted a survey, with over 700 respondents, to explore how organizations view the risk of misuse from privileged account misuse, as well as trends in addressing and mitigating those risks.

Tags:
,