6

Most cloud pros saw at least one security incident in last year: survey

 1 year ago
source link: https://itwire.com/business-it-news/cloud/most-cloud-pros-saw-at-least-one-security-incident-in-last-year-survey.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Friday, 23 June 2023 08:07

Most cloud pros saw at least one security incident in last year: survey

By Sam Varghese
Most cloud pros saw at least one security incident in last year: survey

Image by MasterTux from Pixabay

A survey of 501 C-suite to IT professionals in the US, UK and Germany, to gauge industry trends, has found that 88% experienced at least one cloud security incident in the last 12 months.

Germany-based open source vendor SUSE, which carried out the survey, said it had done so to "highlight the state of cloud native adoption, major security concerns, and how to address them".

The company announced the results of the survey at SUSECON, its annual conference which is being held in Munich this week.

The survey found IT decision-makers had experience an average of four cloud-related security incidents in the last year, with the number being five for those in the US and three for those in Germany.

Nearly a third of those surveyed said data stores hosted by cloud vendors or third parties were the top cloud security concern.

Secondary concerns included runtime attacks from threat actors, security policy management, federation, and automation.

The individuals surveyed spent about 36% of their IT budget on cloud native security, with the figure being higher in the US (42%) than in Europe (33%).

When it came to security practices, both security automation and container firewall were widely adopted, each accounting for 38%.

"Similarly, the usage of free or paid observability or security tools is higher among US decision-makers (33%) compared to those in Europe (24%)," the company said.

"The same trend can be observed for PSP (Policy Security Policy) or PSA (Policy Security Automation) policies (31% versus 22%), Kubernetes network policies (32% versus 15%), and free CVE (Common Vulnerabilities and Exposures) or paid scanner (26% to 18%)."

A third of the respondents said increased re-evaluation and prioritisation of goals related to source-code auditability, the process of running tests and manual codebase inspection to detect bugs would become a concern in coming years.

US respondents (45%) placed a higher priority on source-code auditability and SBOM depth/quality/security (36%) to ensure businesses meet supply chain security goals.

Germany and the UK were behind in terms of source-code auditing priorities (just 23% and 26%, respectively), and spent less on cloud native security.

But, European participants (40%) were much more likely to anticipate a re-evaluation of goals on build quality compared to their US counterparts (15%).

SUSE chief technology and product officer Dr Thomas Di Giacomo said: "At SUSE, we recognise that every business is on a journey of digital transformation, a transformation to be vastly accelerated by open source solutions.

"Our 'Securing the Cloud' trend report highlights the perspectives of IT teams grappling with the growing adoption of complex cloud native technologies.

"The global threat landscape is continuously evolving to create new security challenges. We are well positioned to support businesses choosing secure open source solutions for their most mission-critical and innovative workloads as they transform with the cloud."

Read 75 times

Please join our community here and become a VIP.

Subscribe to ITWIRE UPDATE Newsletter here
JOIN our iTWireTV our YouTube Community here
BACK TO LATEST NEWS here


Lead-Machine_pink_600x260.jpg

GARTNER MARKET GUIDE FOR NDR 2022

You probably know that we are big believers in Network Detection and Response (NDR).

Did you realise that Gartner also recommends that security teams prioritise NDR solutions to enhance their detection and response?

Picking the right NDR for your team and process can sometimes be the biggest challenge.

If you want to try out a Network Detection and Response tool, why not start with the best?

Vectra Network Detection and Response is the industry's most advanced AI-driven attack defence for identifying and stopping malicious tactics in your network without noise or the need for decryption.


Download the 2022 Gartner Market Guide for Network Detection and Response (NDR) for recommendations on how Network Detection and Response solutions can expand deeper into existing on-premises networks, and new cloud environments.

DOWNLOAD NOW!

PROMOTE YOUR WEBINAR ON ITWIRE

It's all about Webinars.

Marketing budgets are now focused on Webinars combined with Lead Generation.

If you wish to promote a Webinar we recommend at least a 3 to 4 week campaign prior to your event.

The iTWire campaign will include extensive adverts on our News Site itwire.com and prominent Newsletter promotion https://itwire.com/itwire-update.html and Promotional News & Editorial. Plus a video interview of the key speaker on iTWire TV https://www.youtube.com/c/iTWireTV/videos which will be used in Promotional Posts on the iTWire Home Page.

Now we are coming out of Lockdown iTWire will be focussed to assisting with your webinars and campaigns and assistance via part payments and extended terms, a Webinar Business Booster Pack and other supportive programs. We can also create your adverts and written content plus coordinate your video interview.

We look forward to discussing your campaign goals with you. Please click the button below.

MORE INFO HERE!


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK