Global Top 10 for Any Service
10 things you should know about cybersecurity in the cloud to prevent cloud security threats
Written by: David Henderson on Mar 05, 2021
10 things you should know about cybersecurity in the cloud to prevent cloud security threats
Written by: David Henderson on Mar 05, 2021
<5 min read> Cloud computing is a necessary business strategy, and that, in turn, makes cloud security necessary as well. We’ve pulled together what you should know about cybersecurity in the cloud to prevent cloud security threats.
1. Implement good password policies where possible e.g. Cloud, E-Mail
2. Enable Multi Factor Authentication (MFA) for all accounts
3. Block and discourage any legacy connections, applications, functionality
4. Enable phishing detection and external banners for e-mail clients and providers
5. Provide access based on the principle of least privilege
6. Never hard code credentials, API keys, secrets or other sensitive details
7. Utilise Monitoring, Logging and Alerting tools
8. Limit accessibility on a technical level between services and application
9. Develop and Maintain solutions instead of Fire and Forget
10. Implement centralised management where possible e.g. Devices, Anti-Virus, Updates, Encryption
Get in touch ([email protected]) if you'd like the Vertical Structure team to check the configuration of your cloud infrastructure / account / service.
This Spring we're launching a Cyber Foundations training course to cover this topic. Its objective is to help organisations (especially those responsible for securing their data and mission-critical applications in the cloud) successfully navigate the security challenges presented by cloud services.
The course is designed for those involved in securing cloud services and with a higher level of technical knowledge than the participants of our basic Cyber Security & Social Engineering Awareness training. It looks at securing Azure, AWS, Office365 and Google Suite environments.
It’s not as much of a technical deep dive as our Threat Modelling & Web Application Security, and Cloud Application Security training courses but these would be a great follow on. Please get in touch if you'd like to find out more!
(As an aside - we've successfully transitioned training and workshops to online delivery over the last year.)
Email Us
email hidden; JavaScript is required
Call Us
+ 4428 9099 5777
Or send us a quick message