03.12.2021 Views

Cyber Defense eMagazine December Edition for 2021

Will you stay one step ahead of Cyber Scrooge this year? Learn new ways to protect your family, job, company & data. December Cyber Defense eMagazine: Cyber Deception Month is here...Defeat Cyber Scrooge! Cyber Defense Magazine December Edition for 2021 in online format #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, International Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES See you at RSA Conference 2022 - Our 10th Year Anniversary - Our 10th Year @RSAC #RSACONFERENCE #USA - Thank you so much!!! - Team CDMG CDMG is a Carbon Negative and Inclusive Media Group.

Will you stay one step ahead of Cyber Scrooge this year? Learn new ways to protect your family, job, company & data. December Cyber Defense eMagazine: Cyber Deception Month is here...Defeat Cyber Scrooge!

Cyber Defense Magazine December Edition for 2021 in online format #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, International Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

See you at RSA Conference 2022 - Our 10th Year Anniversary - Our 10th Year @RSAC #RSACONFERENCE #USA - Thank you so much!!! - Team CDMG

CDMG is a Carbon Negative and Inclusive Media Group.

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

If security controls are not consolidated in one plat<strong>for</strong>m, this leads to the following issues:<br />

• Lack of central visibility: Using different solutions <strong>for</strong> each cloud plat<strong>for</strong>m - and often even<br />

multiple solutions per plat<strong>for</strong>m, such as cloud security posture managers (CSPM) and cloud<br />

workload protection plat<strong>for</strong>ms (CWPP) - makes it nearly impossible to get a centralized overview<br />

of risks. This means that you will not have a clear handle on your overall cloud security posture<br />

and which risks require the most immediate attention.<br />

• High operational costs: Duplicating security policies <strong>for</strong> different cloud security and compliance<br />

tools can quickly become an exhausting drain on your already understaffed cloud security team.<br />

Cloud workload protection plat<strong>for</strong>ms (CWPPs) also require the installation of an agent on every<br />

cloud resource to be monitored. The larger and more diversified your cloud estate, the more time<br />

consuming it is to install and maintain agents <strong>for</strong> every resource.<br />

• Lack of consistency: If you are <strong>for</strong>ced to use several different cloud security tools with each<br />

having different configuration options, it is a complex task to ensure the same security and<br />

compliance checks are per<strong>for</strong>med across all cloud estates.<br />

• Increased chance of errors: The more manual intervention and duplication security policies<br />

require, the more room <strong>for</strong> human error and wrongly configured security controls.<br />

Best Practices <strong>for</strong> Multi-cloud Security and Compliance<br />

To minimize the complexity and overhead of securing a multi-cloud environment, follow these five best<br />

practices:<br />

1. Insist on multi-cloud support: This one is a no-brainer; make sure your cloud security vendor<br />

supports multiple cloud provider plat<strong>for</strong>ms.<br />

2. Consolidate cloud security solutions: Leverage full stack cloud security solutions (CWPP and<br />

CSPM in one - also referred to as a cloud-native application protection plat<strong>for</strong>m -- CNAPP), so<br />

you can reduce the number of point solutions and replace them with a single tool <strong>for</strong> all your cloud<br />

environments.<br />

3. Go agentless: Eliminate resource-heavy agent deployments that reduce nimbleness and hinder<br />

your ability to move applications to other cloud plat<strong>for</strong>ms when needed.<br />

4. Get plat<strong>for</strong>m specific mitigation steps: Use a cloud security solution with contextual intelligence<br />

that prioritizes critical risks and provides plat<strong>for</strong>m specific mitigation instructions to make it easier<br />

<strong>for</strong> practitioners to work on multiple cloud plat<strong>for</strong>ms.<br />

5. Identify cost saving strategies: Make your CISO love you by using a cloud security tool that<br />

allows you to view detailed in<strong>for</strong>mation on each asset on every cloud plat<strong>for</strong>m, including how often<br />

it is used. This enables you to advise on further cost saving strategies, such as moving certain<br />

applications to other cloud plat<strong>for</strong>ms and consolidating or removing redundant services.<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>December</strong> <strong>2021</strong> <strong>Edition</strong> 81<br />

Copyright © <strong>2021</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!