var _hmt = _hmt || []; (function() { var hm = document.createElement("script"); hm.src = "https://hm.baidu.com/hm.js?d387e539c1f2d34f09a9afbac8032280"; var s = document.getElementsByTagName("script")[0]; s.parentNode.insertBefore(hm, s); })();

7x彩票网appDark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Cloud

1/3/2020
10:30 AM
Connect Directly
100%
0%

Organizations May 'Uncloud' Over Security, Budgetary Concerns

While most cloud vendors forecast continued adoption and growth, some customers are taking a harder look at the cloud services they're using

7x彩票网appWith Gartner forecasting cloud revenue to hit  by 2023, and Microsoft highlighting how  in enterprise IT, cloud's momentum looks unstoppable.  But cloud customers are bumping up against some harder realities; according to our most recent , 48% of organizations that store sensitive data in the cloud would consider moving that data back on premises. It's a costly and time-consuming proposition, yet organizations are thinking about it. Why?

7x彩票网appIn most cases, organizations uncloud because they face unexpected issues. Initially the plurality of organizations migrated to the cloud to cut costs (31%) and ensure availability for remote workers (26%). However, the survey results show that organizations are ready to uncloud due to their inability to ensure the desired level of protection (24%).

7x彩票网appAbout one third of the organizations would uncloud because they didn’t achieve the initial goals of cloud migration. Among those who moved their data to the cloud to cut costs, 29% are ready to uncloud due to unexpected high costs. Among those who moved data to the cloud for security reasons, 27% would uncloud due to considerable security concerns.

Let's take a closer look at factors that affect the decision to uncloud, as well as possible best practices that could obviate the challenges. 

Unexpectedly high costs from storing too much data in the cloud
7x彩票网app Prior to a migration, most companies (67%) don't discover and classify all the files which actually need migrated; in fact, 63% simply moved all their data to the cloud. This is likely the driver to the unanticipated high costs of storing data in the cloud.  Moreover, they neglect to take this opportunity to get rid of redundant, old, and trivial (ROT) files which complicates the lives of users and leads to unusually high cloud storage costs.

Best practice: Before moving data to the cloud, find and classify all your data. By doing this, you can be sure that you are migrating only the data required by the business. In addition to keeping a tight grip on your data (deleting or archiving ROT data), this will lower your overall costs associated with storing data in the cloud.

Inability to ensure the security of sensitive data in the cloud
7x彩票网app About half of organizations looking to uncloud had at least one cloud security incident in 2018. This fact is disturbing, since organizations store extremely sensitive data in the cloud: 50% store personally identifying information of customers and clients, 24% store payment data, and 18% store intellectual property. What is even more frightening, 53% of organizations couldn’t determine who was to blame for the security incidents. This means that organizations lack visibility into their cloud environment and cannot investigate security incidents properly, which makes it hard for them to prevent similar incidents in the future and protect their data.

Best practice:7x彩票网app To minimize risk of security incidents and investigate them more efficiently, you should audit your cloud environment to see who did what, when and where, and detect any suspicious activities around sensitive files. Also, don’t forget about data discovery and classification (DDC). "Data classification also allows organizations to focus their security and compliance efforts on sensitive information, to standardize and apply controls commensurate with risk, and to streamline those activities within business processes," Gartner claims in a 2018 report titled . 

The Netwrix study highlights the benefits of DDC and shows that organizations that classify their data have less chance of experiencing an incident. Only 14% of organizations that performed data classification had incidents in 2018 — a rate 3.5 times lower than for organizations that didn’t classify their data.

Lack of financial support and budgetary constraints
It’s hard to protect your data in the cloud if you lack financial support. About 61% of those who plan to uncloud said that their cloud security budgets didn’t increase in 2019, and 38% said that management doesn’t provide any financial support for cloud security initiatives. 

Best practice7x彩票网app: You need to deliver the value of cloud security investments to your management. Specifically, you need to explain to management that a secure cloud is a great way to boost your business, while failure to protect sensitive data like customer PII can have negative financial impact, resulting in business downtime, costly data breaches, lawsuits, bad publicity and fines from regulatory bodies.

The best way to prevent disappointment with your cloud migration is to understand how much data you have, who has access to it and which data is most critical in your IT environment, so you can prioritize your security efforts and protect your data against compromise. Deep understanding of your data will also help you reduce cloud costs, as well as manage data more effectively by carefully choosing which data to migrate, which to leave on premises, and which to delete or destroy.

Related Content:

Check out The Edge, Dark Reading's new section for features, threat data, and in-depth perspectives. Today's top story: "5 Pieces of GDPR Advice for Teams Without Privacy Compliance Staff."

Matt Middleton-Leal is General Manager and Chief Security Strategist is at Netwrix, a software company that enables information security and governance professionals to reclaim control over sensitive, regulated and business-critical data, regardless of where it resides. Matt ... View Full Bio
Comment  | 
Print  | 
More Insights
Webcasts
More Webcasts
White Papers
Reports
More Reports
Comments
Newest First  |  Oldest First  |  Threaded View
Stop Defending Everything
Kevin Kurzawa, Senior Information Security Auditor,  2/12/2020
Small Business Security: 5 Tips on How and Where to Start
Mike Puglia, Chief Strategy Officer at Kaseya,  2/13/2020
5 Common Errors That Allow Attackers to Go Undetected
Matt Middleton-Leal, General Manager and Chief Security Strategist, Netwrix,  2/12/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
6 Emerging Cyber Threats That Enterprises Face in 2020
This Tech Digest gives an in-depth look at six emerging cyber threats that enterprises could face in 2020. Download your copy today!
Flash Poll
The concept of application security is well known, but application security testing and remediation processes remain unbalanced. Most organizations are confident in their approach to AppSec, although others seem to have no approach at all. Read this report to find out more.
7x彩票网app Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database

PUBLISHED: 2020-02-18
SoPlanning 1.45 is vulnerable to SQL Injection in the OrderBy clause, as demonstrated by the projets.php?order=nom_createur&by= substring.

PUBLISHED: 2020-02-18
SOPlanning 1.45 is vulnerable to authenticated SQL Injection that leads to command execution via the users parameter, as demonstrated by export_ical.php.

PUBLISHED: 2020-02-18
ICE Hrm 26.2.0 is vulnerable to CSRF that leads to password reset via service.php.

PUBLISHED: 2020-02-18
ICE Hrm 26.2.0 is vulnerable to CSRF that leads to user creation via service.php.

PUBLISHED: 2020-02-18
phpMyChat-Plus 1.98 is vulnerable to multiple SQL injections against the deluser.php Delete User functionality, as demonstrated by pmc_username.
66?????? 7072???? 7073???? 689????? 963???? 66????? 7073???? 7073???? 66???app 8????app