Security News > 2021 > July > 36% of organizations suffered a serious cloud security data leak or a breach in the past year
As cloud adoption accelerates and the scale of cloud environments grows, engineering and security teams say that risks-and the costs of addressing them-are increasing.
The survey of 300 cloud pros found that 36% of organizations suffered a serious cloud security data leak or a breach in the past 12 months, and eight out of ten are worried that they're vulnerable to a major data breach related to cloud misconfiguration.
"The adoption of IaC is a double-edged sword, it puts cloud infrastructure into the hands of developers, but also opens organizations to serious risk associated with misconfiguration." said Matt Howard, EVP, Sonatype.
Traditional security challenges play a significant role in cloud security, such as alert fatigue and false positives, and human error.
The demand for cloud security expertise continues to outpace supply; 36% cite challenges in hiring and retaining the cloud security experts and 35% cite challenges sufficiently training their cloud teams on security.
The adoption of IaC presents cloud teams with the opportunity to check configurations pre-deployment, with half of the teams surveyed investing 50+ engineering hours per week on IaC security.
News URL
http://feedproxy.google.com/~r/HelpNetSecurity/~3/xHA2t1NkFY4/
Related news
- Best CSPM Tools 2025: Top Cloud Security Solutions Compared (source)
- CrowdStrike vs Wiz: Which Offers Better Cloud Security and Value? (source)
- CISA Mandates Cloud Security for Federal Agencies by 2025 Under Binding Directive 25-01 (source)
- Telefónica confirms internal ticketing system breach after data leak (source)
- Clop ransomware threatens 66 Cleo attack victims with data leak (source)
- Ransomware gang leaks data stolen in Rhode Island's RIBridges Breach (source)
- UN aviation agency investigating 'potential' security breach (source)
- Washington state sues T-Mobile over 2021 data breach security failures (source)
- UN aviation agency confirms recruitment database security breach (source)
- How to Bring Zero Trust to Wi-Fi Security with a Cloud-based Captive Portal? (source)