Emerging Cloud Security Threats

Troy Elsen, Director of Cloud Infrastructure Operations
October 28, 2019

Weak Identity and Access Management Controls

  • Identity and access management (IAM) controls are about securely managing the user account life cycle across one or many organizations. Least access principles should always be followed.
  • Administrative controls such as policies and procedures surrounding authentication and authorization should be in place to ensure industry best practice is followed.
  • Technical controls such as a third-party application that allows for centralized management and integrates with company user directories.  

Cloud provider's role in security

  • As more and more companies take their business to the cloud, there is often a blurred line regarding security roles and responsibilities.
  • Companies and cloud providers must ensure all layers of the company solution are identified and protected by one or both parties. These areas of responsibilities should be addressed during the contractual phase of the service agreement.  

IoT Security

  • The Internet of Things (IoT) continues to grow with technology. Things such as baby monitors, coffee makers, security systems and even cars are now connected to the internet.
  • Reviewing basic security requirements such as default account settings and password reset, encryption, web interface security can help prevent malicious activity.

Account Hijacking

  • Businesses will continue to increase public web transactions and increase the risk of compromise.
  • Cloud applications should have strong authentication methods and use multi-factor authentication whenever possible. Sensitive data should be encrypted in-transit and at-rest. Context-based access controls such as time of day or source location can also be used to improve account security.
Share this post
Troy Elsen, Director of Cloud Infrastructure Operations
October 28, 2019

More Blogs

Projetech Successfully Completes a SOC 2 Assessment to Further Data Security

Projetech Successfully Completes a SOC 2 Assessment to Further Data Security

At Projetech, we continually invest in security best practices to ensure that our client’s data stays safe and secure. As a part of an on-going effort, we are excited to announce that we’ve successfully completed our SOC 2 report.
Read post
A Path to Becoming an IBM Champion

A Path to Becoming an IBM Champion

In today’s rapidly changing technology landscape, business leaders play an important role in shaping the future of technology adoption and community engagement. Representing a passion for technological innovation, community engagement, and educational opportunities, the IBM Champions program rewards thought and innovation leaders for their contributions by expanding their sphere of influence.
Read post
Navigating Control Desk End of Support and Understanding Maximo IT

Navigating Control Desk End of Support and Understanding Maximo IT

On September 19th, 2023, IBM announced that Control Desk would reach End of Support on September 30th, 2025. Since this announcement was made, there has been confusion about what the Control Desk end of support date means, and the options existing Control Desk customers have.
Read post

Become a part of our thriving community with over 4,000 Maximo users.

MORE offers users a platform to discover valuable resources and engage in insightful discussions surrounding the intricacies of Maximo software. Connect with peers and experts to explore the depths of possibilities and enhance your expertise.