{"id":4735,"date":"2022-09-27T15:55:56","date_gmt":"2022-09-27T19:55:56","guid":{"rendered":"https:\/\/solutionsreview.com\/network-monitoring\/?p=4735"},"modified":"2022-10-05T16:22:09","modified_gmt":"2022-10-05T20:22:09","slug":"dive-deeper-reconsidering-how-to-secure-cloud-infrastructure","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/","title":{"rendered":"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure"},"content":{"rendered":"<p style=\"text-align: justify;\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-4736\" src=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg\" alt=\"Cloud Infrastructure\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg 800w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure-300x150.jpg 300w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure-768x384.jpg 768w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure-640x320.jpg 640w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure-128x64.jpg 128w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure-400x200.jpg 400w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure-180x90.jpg 180w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify;\"><em><strong>As part of Solutions Review\u2019s Premium Content Series\u2014a collection of contributed columns written by industry experts in maturing software categories\u2014 Josh Stella of <a href=\"https:\/\/snyk.io\/\" target=\"_blank\" rel=\"noopener\">Snyk<\/a> says it&#8217;s time to get in the bell and dive deeper into how we secure the cloud infrastructure.<\/strong><\/em><\/p>\n<p style=\"text-align: justify;\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-4368 alignleft\" src=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/02\/SR-Premium-Content.gif\" alt=\"SR Premium Content\" width=\"105\" height=\"110\" srcset=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/02\/SR-Premium-Content.gif 105w, https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/02\/SR-Premium-Content-92x96.gif 92w\" sizes=\"(max-width: 105px) 100vw, 105px\" \/>Verizon recently released its 15th Annual Data Breach Investigations Report (DBIR), documenting another active year in the lives of cyber-criminals. The Verizon team put the state of cyber-crime into context, writing: \u201cFrom very well publicized critical infrastructure attacks to massive supply chain breaches, the financially motivated criminals and nefarious nation-state actors have rarely, if ever, come out swinging the way they did over the last 12 months.\u201d This should give a great many companies pause.<\/p>\n<p style=\"text-align: justify;\">Most organizations remain a step or more behind the \u201cbad guys\u201d despite their best attempts to thwart cyber intruders. Enterprises are bringing knives to a gunfight by applying old tools to a new threat landscape they have yet to grasp thoroughly. Because cloud attackers don\u2019t typically traverse traditional networks that can be monitored and addressed with familiar solutions, security teams are forced to navigate an unfamiliar and rapidly changing cloud environment\u2014 and are over-rotating on one area.<\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"nm-speedbump\" title=\"Download link to Network Monitoring Buyer's Guide\" href=\"https:\/\/solutionsreview.com\/network-monitoring\/get-a-free-network-monitoring-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2021\/04\/Network_Monitoring_Buyers_Guide_Bump_800.gif\" alt=\"Download Link to Data Integration Buyers Guide\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n<h3 style=\"text-align: justify;\"><strong>Beyond the Entry Point<\/strong><\/h3>\n<p style=\"text-align: justify;\">With the majority of new applications and developer workflows now in the cloud, most attackers don\u2019t have to work too hard to find an initial entry point into enterprise systems. They deploy automated technology to scan for any vulnerabilities in apps or infrastructure. In minutes, they can generate an array of options. While technologies to ensure security updates and proper cloud configurations are improving, they\u2019re still not enough\u2014 even when they\u2019re catching hundreds of misconfigurations a day. Sooner or later, someone will slip through and gain access to the cloud API control plane. This is an event for which companies are ill-prepared.<\/p>\n<p style=\"text-align: justify;\">In the cloud, developers use cloud provider APIs to build and manage their cloud environments, often programming these tasks using infrastructure as code (IaC) tools. They\u2019re defining and changing security-critical configurations in real-time, bringing a more significant risk of misconfiguration and, thus, vulnerabilities. In the wrong hands, the collection of APIs used to configure and operate the cloud is a potent and dangerous tool, and preventing this access must be a top priority for every cloud security team.<\/p>\n<h3 style=\"text-align: justify;\"><strong>Securing the Control Plane<\/strong><\/h3>\n<p style=\"text-align: justify;\">Here are the top steps teams should take to reduce risk at the control plane, where architecture is most vulnerable.<\/p>\n<ul style=\"text-align: justify;\">\n<li><strong>Expand your definition of cloud misconfiguration.<\/strong> Security teams must consider misconfigurations of the whole environment involving multiple resources and how they relate to each other. So, when security teams assess the blast radius of any potential penetration event, they need to look at resource access policies as well as identity and access management (IAM) configurations to identify overly permissive settings. Attackers can exploit these for discovery, movement, and data extraction. Once identified, they can collaborate with DevOps teams to rework and address these vulnerabilities. Addressing architectural security in the design and development phases puts a company in a much better position to defend against these attacks.<\/li>\n<li><strong>Adopt policy as code (PaC) to align teams and automate security.<\/strong> Using a PaC approach empowers teams to express security and compliance rules in a programming language that an application can use to check the correctness of configurations and identify unwanted conditions or things that should not be. It also aligns all teams under a single source of truth for security policy, eliminates human error in interpreting and applying that policy, and powers security automation (evaluation, enforcement, etc.) at every stage of the software development life cycle (SDLC), which is pretty cohesive and effective when put in practice.<\/li>\n<li><strong>Use PaC to check cloud security pre-deployment.<\/strong> Engineers are using IaC to express the infrastructure they want and deploy it automatically, providing the opportunity to ensure infrastructure is secure pre-deployment \u2014 rather than just after the fact. Doing so enables teams to design inherently more secure environments by preventing the introduction of misconfiguration to environments and minimizing threats to the control plane. This has the added benefit of reducing the burdens on security teams who are managing misconfiguration alerts and engineering teams tasked with remediating them. It can also help speed up deployment approval processes.<\/li>\n<li><strong>Don\u2019t get overly confident and keep an eye on the running system.<\/strong> You can\u2019t prevent every cloud vulnerability in the development phase, so you need deployment guardrails and continuous monitoring of the running environment. Enterprises should use automated security checks built into the continuous integration and continuous delivery (CI\/CD) pipeline, which can alert the team if there\u2019s an issue \u2014 and even block a build if the issue is critical. And once cloud infrastructure is deployed and running, understand that changes will keep happening, even outside of your approved and automated pipeline. Continuously monitor the state of your environment to identify and remediate any dangerous changes that have been made.<\/li>\n<li><strong>Champion cloud security architecture expertise.<\/strong> The cloud landscape is rapidly changing, and it is imperative that cloud security engineers work closely with developers and DevOps teams to stay on top of new use cases in order to continue improving and securing applications throughout the development process. Ensure you understand the architectures in use, the applications they support, and how data is being used. This collaboration and knowledge is vital for safeguarding the cloud control plane and sensitive data.<\/li>\n<\/ul>\n<p style=\"text-align: justify;\">These steps should help render any attack penetration event moot\u2014 before it occurs. Even if the stealthiest attacker reaches the control plane, he or she will gain nothing from the effort.<\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"nm-speedbump\" title=\"Download link to Network Monitoring Buyer's Guide\" href=\"https:\/\/solutionsreview.com\/network-monitoring\/get-a-free-network-monitoring-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2021\/04\/Network_Monitoring_Buyers_Guide_Bump_800.gif\" alt=\"Download Link to Data Integration Buyers Guide\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>As part of Solutions Review\u2019s Premium Content Series\u2014a collection of contributed columns written by industry experts in maturing software categories\u2014 Josh Stella of Snyk says it&#8217;s time to get in the bell and dive deeper into how we secure the cloud infrastructure. Verizon recently released its 15th Annual Data Breach Investigations Report (DBIR), documenting another [&hellip;]<\/p>\n","protected":false},"author":346,"featured_media":4736,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[1,21],"tags":[1561,1361,1796,1791,449,252,254,1795,29,1803,1801,1800,1802,1793,1798,1797,1799,1794,1792],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Dive Deeper: Reconsidering How to Secure Cloud Infrastructure<\/title>\n<meta name=\"description\" content=\"Josh Stella of Snyk says it&#039;s time to get in the bell and dive deeper into how we secure the cloud infrastructure.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure\" \/>\n<meta property=\"og:description\" content=\"Josh Stella of Snyk says it&#039;s time to get in the bell and dive deeper into how we secure the cloud infrastructure.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Network Monitoring Vendors, Software, Tools and Performance Solutions\" \/>\n<meta property=\"article:published_time\" content=\"2022-09-27T19:55:56+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-10-05T20:22:09+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Josh Stella\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Josh Stella\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/\",\"url\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/\",\"name\":\"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg\",\"datePublished\":\"2022-09-27T19:55:56+00:00\",\"dateModified\":\"2022-10-05T20:22:09+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/#\/schema\/person\/8279436452b7fffec748a447edfb3931\"},\"description\":\"Josh Stella of Snyk says it's time to get in the bell and dive deeper into how we secure the cloud infrastructure.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg\",\"width\":800,\"height\":400,\"caption\":\"Cloud Infrastructure\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/network-monitoring\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/#website\",\"url\":\"https:\/\/solutionsreview.com\/network-monitoring\/\",\"name\":\"Best Network Monitoring Vendors, Software, Tools and Performance Solutions\",\"description\":\"Solutions Review Network Monitoring\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/network-monitoring\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/#\/schema\/person\/8279436452b7fffec748a447edfb3931\",\"name\":\"Josh Stella\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/network-monitoring\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/698b3614b7fd0735b17431638a9f3b54?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/698b3614b7fd0735b17431638a9f3b54?s=96&d=mm&r=g\",\"caption\":\"Josh Stella\"},\"description\":\"Josh Stella is vice president and chief architect at Snyk and a technical authority on cloud security. Josh brings 25 years of IT and security expertise as founding CEO at Fugue, principal solutions architect at Amazon Web Services, and advisor to the U.S. intelligence community. Josh\u2019s personal mission is to help organizations understand how cloud configuration is the new attack surface and how companies need to move from a defensive to a preventive posture to secure their cloud infrastructure. He wrote the first book on \u201cImmutable Infrastructure\u201d (published by O\u2019Reilly), holds numerous cloud security technology patents, and hosts an educational Cloud Security Masterclass series.\",\"url\":\"https:\/\/solutionsreview.com\/network-monitoring\/author\/jstella\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure","description":"Josh Stella of Snyk says it's time to get in the bell and dive deeper into how we secure the cloud infrastructure.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/","og_locale":"en_US","og_type":"article","og_title":"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure","og_description":"Josh Stella of Snyk says it's time to get in the bell and dive deeper into how we secure the cloud infrastructure.","og_url":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/","og_site_name":"Best Network Monitoring Vendors, Software, Tools and Performance Solutions","article_published_time":"2022-09-27T19:55:56+00:00","article_modified_time":"2022-10-05T20:22:09+00:00","og_image":[{"width":800,"height":400,"url":"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg","type":"image\/jpeg"}],"author":"Josh Stella","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Josh Stella","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/","url":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/","name":"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure","isPartOf":{"@id":"https:\/\/solutionsreview.com\/network-monitoring\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg","datePublished":"2022-09-27T19:55:56+00:00","dateModified":"2022-10-05T20:22:09+00:00","author":{"@id":"https:\/\/solutionsreview.com\/network-monitoring\/#\/schema\/person\/8279436452b7fffec748a447edfb3931"},"description":"Josh Stella of Snyk says it's time to get in the bell and dive deeper into how we secure the cloud infrastructure.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#primaryimage","url":"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg","contentUrl":"https:\/\/solutionsreview.com\/network-monitoring\/files\/2022\/10\/Reconsidering-How-to-Secure-Cloud-Infrastructure.jpg","width":800,"height":400,"caption":"Cloud Infrastructure"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/network-monitoring\/dive-deeper-reconsidering-how-to-secure-cloud-infrastructure\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/network-monitoring\/"},{"@type":"ListItem","position":2,"name":"Dive Deeper: Reconsidering How to Secure Cloud Infrastructure"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/network-monitoring\/#website","url":"https:\/\/solutionsreview.com\/network-monitoring\/","name":"Best Network Monitoring Vendors, Software, Tools and Performance Solutions","description":"Solutions Review Network Monitoring","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/network-monitoring\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/network-monitoring\/#\/schema\/person\/8279436452b7fffec748a447edfb3931","name":"Josh Stella","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/network-monitoring\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/698b3614b7fd0735b17431638a9f3b54?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/698b3614b7fd0735b17431638a9f3b54?s=96&d=mm&r=g","caption":"Josh Stella"},"description":"Josh Stella is vice president and chief architect at Snyk and a technical authority on cloud security. Josh brings 25 years of IT and security expertise as founding CEO at Fugue, principal solutions architect at Amazon Web Services, and advisor to the U.S. intelligence community. Josh\u2019s personal mission is to help organizations understand how cloud configuration is the new attack surface and how companies need to move from a defensive to a preventive posture to secure their cloud infrastructure. He wrote the first book on \u201cImmutable Infrastructure\u201d (published by O\u2019Reilly), holds numerous cloud security technology patents, and hosts an educational Cloud Security Masterclass series.","url":"https:\/\/solutionsreview.com\/network-monitoring\/author\/jstella\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/posts\/4735"}],"collection":[{"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/users\/346"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/comments?post=4735"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/posts\/4735\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/media\/4736"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/media?parent=4735"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/categories?post=4735"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/network-monitoring\/wp-json\/wp\/v2\/tags?post=4735"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}