{"id":5262,"date":"2023-02-10T14:58:30","date_gmt":"2023-02-10T19:58:30","guid":{"rendered":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/?p=5262"},"modified":"2023-03-06T10:07:17","modified_gmt":"2023-03-06T15:07:17","slug":"cloud-misfiguration-breaches-essentials-to-know","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/","title":{"rendered":"Cloud Misfiguration Breaches: Three Essentials to Know"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-5263 size-full\" src=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg\" alt=\"Cloud Misfiguration Breaches\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg 800w, https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches-300x150.jpg 300w, https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches-768x384.jpg 768w, https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches-540x270.jpg 540w, https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches-162x81.jpg 162w, https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches-360x180.jpg 360w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify;\"><i><strong>Solutions Review\u2019s Expert Insights Series is a collection of contributed articles written by industry experts in enterprise software categories. In this feature, <a href=\"https:\/\/www.seagate.com\/\" target=\"_blank\" rel=\"noopener\">Seagate Technology&#8217;<\/a>s CISO and VP of Information Security Brad Jones offers the essentials of understanding cloud misconfiguration breaches.<\/strong><\/i><\/p>\n<p style=\"text-align: justify;\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-5191 alignleft\" src=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/01\/oie_6194352a4wFeWoG.png\" alt=\"\" width=\"105\" height=\"105\" srcset=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/01\/oie_6194352a4wFeWoG.png 105w, https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/01\/oie_6194352a4wFeWoG-81x81.png 81w\" sizes=\"(max-width: 105px) 100vw, 105px\" \/>Cloud misconfiguration is a key data security and privacy challenge. Even a small configuration error could mean an employee is an accidental click away from exposing an entire database and opening the organization up to regulatory scrutiny, financial repercussions, and reputation damage.<\/p>\n<p style=\"text-align: justify;\">It is more difficult for organizations to maintain data security and privacy if they fail to put the right controls in place at the beginning of their multi-cloud journey. Poor security practices from one cloud can be multiplied and exacerbated across a hybrid or multi-cloud environment, creating a misconception that the cloud is inherently insecure. However, multi-cloud may not be the problem\u2014misconfiguration often is. With comprehensive classification and the right controls, the cloud can be more secure than on-premises storage.<\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"speedbump-1\" href=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/get-free-disaster-recovery-service-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" title=\"DRaaS Buyer's Guide\" src=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2020\/02\/DRaaS_SB_BG_800.gif\" alt=\"Download Link to DRaaS Buyer's Guide\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n<h2><strong>Cloud Misfiguration Breaches: The Essentials<\/strong><\/h2>\n<hr \/>\n<h3><strong>Achieve Full Visibility with Comprehensive Data Classification<\/strong><\/h3>\n<p style=\"text-align: justify;\">A comprehensive data classification strategy is essential for maintaining data privacy, but implementing one is easier. Many organizations do not fully understand where their data is stored, let alone how it should be classified. Organizations should start with the various native features cloud service providers offer for data classification to enable better visibility and help maintain privacy.<\/p>\n<p style=\"text-align: justify;\">This could be as simple as a tag on a server or storage location mapped to the most sensitive level of data that an application contains or a more granular object or database level of classification offered by some platform-as-a-service providers. Organizations starting a new cloud journey should build data classification into the design from the beginning and leverage the platform&#8217;s capabilities. Organizations already in the cloud must take inventory to understand what features they are not yet leveraging and deploy them to maximize control.<\/p>\n<h3><strong>Prevent Exposure with Multiple Security Layers<\/strong><\/h3>\n<p style=\"text-align: justify;\">Companies should leverage several security safeguards to protect their cloud deployments, including cloud-native security, zero trust, and data encryption. Cloud service providers manage the underlying security infrastructure, so companies deploying to a cloud can leverage a shared security model in which they manage services and security on top of the layer supplied by the cloud provider.<\/p>\n<p style=\"text-align: justify;\">Zero trust can help companies stop unauthorized individuals from accessing sensitive data and protect against data breaches. A zero-trust security model continuously verifies who users are and what applications (and therefore what data) they have access to, as well as the device and network they are using. This helps minimize the risk of an external actor accessing critical information or an internal stakeholder mishandling data. Data encryption is a critical layer for data privacy and security that can help ensure data confidentiality and integrity when other controls fail. Organizations should encrypt data while at rest and in flight and should ensure that the keys are maintained securely (and not with the data itself).<\/p>\n<h3><strong>Manage Access and Control While Driving Innovation<\/strong><\/h3>\n<p style=\"text-align: justify;\">Once clear data classification standards and the right security layers are in place, organizations must implement controls that provide appropriate access to the various categories of data. Security teams and key stakeholders from across the organization should collaborate closely. They need to make sure employees have access to all the data they need to be efficient and effective while also maintaining data security. In the cloud, everything ties back into an API so there is a record of all activity, giving the cloud<\/p>\n<p style=\"text-align: justify;\">a competitive edge over on-prem data storage when it comes to maintaining visibility and managing data access. Importantly, the security team can also access the logs of who signed in and from which device and what data they accessed.<\/p>\n<p style=\"text-align: justify;\">Some organizations are concerned that too many processes and controls will impede the free flow of data and delay operations. However, data privacy controls are good for business\u2014and not just because they reduce regulatory scrutiny and risk. Compliance with data security and privacy regulations helps unlock innovation by driving efficiency. The common systems and controls that come with good data security and privacy strategies help enable knowledge sharing across an organization, which gives employees the information they need. With ready access to critical data, employees are more efficient and make more informed decisions, ultimately driving better business outcomes.<\/p>\n<div class=\"hr hr\"><\/div>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"speedbump-3\" href=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/data-protection-vendor-map\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" title=\"Data Protection Vendor Map\" src=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2020\/02\/DP_VM_SB_800.jpg\" alt=\"Download Link to Data Protection Vendor Map\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Solutions Review\u2019s Expert Insights Series is a collection of contributed articles written by industry experts in enterprise software categories. In this feature, Seagate Technology&#8217;s CISO and VP of Information Security Brad Jones offers the essentials of understanding cloud misconfiguration breaches. Cloud misconfiguration is a key data security and privacy challenge. Even a small configuration error [&hellip;]<\/p>\n","protected":false},"author":508,"featured_media":5263,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[1],"tags":[1268,1269],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Cloud Misfiguration Breaches: Three Essentials to Know<\/title>\n<meta name=\"description\" content=\"Seagate Technology&#039;s CISO and VP of Information Security Brad Jones offers the essentials of understanding cloud misconfiguration breaches.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Brad Jones\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/\",\"url\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/\",\"name\":\"Cloud Misfiguration Breaches: Three Essentials to Know\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg\",\"datePublished\":\"2023-02-10T19:58:30+00:00\",\"dateModified\":\"2023-03-06T15:07:17+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#\/schema\/person\/d4d4eea412e50acbcdefb30fda4a18b1\"},\"description\":\"Seagate Technology's CISO and VP of Information Security Brad Jones offers the essentials of understanding cloud misconfiguration breaches.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg\",\"width\":800,\"height\":400,\"caption\":\"Cloud Misfiguration Breaches\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Cloud Misfiguration Breaches: Three Essentials to Know\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#website\",\"url\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/\",\"name\":\"Best Backup and Disaster Recovery Tools, Software, Solutions &amp; Vendors\",\"description\":\"Solutions Review\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#\/schema\/person\/d4d4eea412e50acbcdefb30fda4a18b1\",\"name\":\"Brad Jones\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/09d6db9fa067988f828018f60860bc3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/09d6db9fa067988f828018f60860bc3d?s=96&d=mm&r=g\",\"caption\":\"Brad Jones\"},\"description\":\"Brad Jones is the CISO and vice president of information security at Seagate Technology. He has served in this role for the past five years, with global responsibility for all aspects of information security. He has held similar roles leading information security at Synopsys and SanDisk.\",\"url\":\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/author\/bjones\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cloud Misfiguration Breaches: Three Essentials to Know","description":"Seagate Technology's CISO and VP of Information Security Brad Jones offers the essentials of understanding cloud misconfiguration breaches.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/","twitter_misc":{"Written by":"Brad Jones","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/","url":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/","name":"Cloud Misfiguration Breaches: Three Essentials to Know","isPartOf":{"@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg","datePublished":"2023-02-10T19:58:30+00:00","dateModified":"2023-03-06T15:07:17+00:00","author":{"@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#\/schema\/person\/d4d4eea412e50acbcdefb30fda4a18b1"},"description":"Seagate Technology's CISO and VP of Information Security Brad Jones offers the essentials of understanding cloud misconfiguration breaches.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#primaryimage","url":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg","contentUrl":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/files\/2023\/02\/Cloud-Misconfiguration-Breaches.jpg","width":800,"height":400,"caption":"Cloud Misfiguration Breaches"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/cloud-misfiguration-breaches-essentials-to-know\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/"},{"@type":"ListItem","position":2,"name":"Cloud Misfiguration Breaches: Three Essentials to Know"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#website","url":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/","name":"Best Backup and Disaster Recovery Tools, Software, Solutions &amp; Vendors","description":"Solutions Review","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#\/schema\/person\/d4d4eea412e50acbcdefb30fda4a18b1","name":"Brad Jones","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/09d6db9fa067988f828018f60860bc3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/09d6db9fa067988f828018f60860bc3d?s=96&d=mm&r=g","caption":"Brad Jones"},"description":"Brad Jones is the CISO and vice president of information security at Seagate Technology. He has served in this role for the past five years, with global responsibility for all aspects of information security. He has held similar roles leading information security at Synopsys and SanDisk.","url":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/author\/bjones\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/posts\/5262"}],"collection":[{"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/users\/508"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/comments?post=5262"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/posts\/5262\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/media\/5263"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/media?parent=5262"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/categories?post=5262"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/backup-disaster-recovery\/wp-json\/wp\/v2\/tags?post=5262"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}