
Key Practices to Establish Hybrid Cloud Security Approach
Most businesses are adopting a hybrid or multi-cloud strategy these days for a variety of reasons, including agility, service integration, accelerated innovation, and business continuity.
By
CIO Applications Europe | Wednesday, December 01, 2021

Companies should also have protocols in place for Bluetooth connections, radio frequency-based devices that support closely a dozen different protocols, and hardwired smart devices. Many of these devices communicate with the network via the firewall.
Fremont, CA: Most businesses are adopting a hybrid or multi-cloud strategy these days for a variety of reasons, including agility, service integration, accelerated innovation, and business continuity.
Clearly, the advantages of a hybrid or multi-cloud strategy outweigh the risks, and fortunately, many of the security challenges can be overcome with the right approach. Here are three best practices to help one define one's plan
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
Restricting Access to Need-to-know Basis
Everyone does not need administrator privileges. It is critical to limit user access to what is necessary for them to do their jobs. Companies should think about putting strict limits on which devices can connect to their network. They should also remember that wireless access is limited to a subset of IoT devices.
Companies should also have protocols in place for Bluetooth connections, radio frequency-based devices that support closely a dozen different protocols, and hardwired smart devices. Many of these devices communicate with the network via the firewall.
Making Use of Only What is Needed, and Patch, Patch, Patch
Companies should only use applications that are necessary for business operations, and they should keep them up to date and fully patched. The use of unnecessary applications expands the attack surface and increases the complexity of protecting the environment. They should also regularly check for updates and apply patches as they become available. Companies must also automate as much as possible of the process. End-of-life devices, such as software, must be replaced as the latest versions with improved security become available.
Doing the Fundamentals Right
Security hygiene and simple-to-intermediate controls are possibly the most overlooked aspects of security today, but they are critical, especially when networks and devices are connected to the cloud. Remember to review one's security hygiene protocols on a regular basis, as controls and technology are both perishable. Among these reviews are:
- Instituting IoT security protocols, such as ensuring one's AV and IPS solutions include IoT signatures
- Taking inventory of authorized and unauthorized connected devices within one's environment, including consumer devices such as cellphones and laptops, one has to know what one is protecting.
- Sandboxing to discover unknown malware and compromised devices coming from one's cloud connections
Third-party security certifications (54 percent), integration with security scanner tools (52 percent), and the ability to write custom rules and remediation actions are the most requested capabilities in a cloud security solution (49 percent ). More than three-quarters (78 percent) of those polled said having a single cloud security platform that provides a single dashboard while enabling policy configuration to protect data consistently and comprehensively across the cloud would be very or extremely helpful.
More in News
Weekly Brief
I agree We use cookies on this website to enhance your user experience. By clicking any link on this page you are giving your consent for us to set cookies. More info
Be first to read the latest tech news, Industry Leader's Insights, and CIO interviews of medium and large enterprises exclusively from CIO Applications Europe
THANK YOU FOR SUBSCRIBING


