aster.cloud aster.cloud
  • /
  • Platforms
    • Public Cloud
    • On-Premise
    • Hybrid Cloud
    • Data
  • Architecture
    • Design
    • Solutions
    • Enterprise
  • Engineering
    • Automation
    • Software Engineering
    • Project Management
    • DevOps
  • Programming
    • Learning
  • Tools
  • About
  • /
  • Platforms
    • Public Cloud
    • On-Premise
    • Hybrid Cloud
    • Data
  • Architecture
    • Design
    • Solutions
    • Enterprise
  • Engineering
    • Automation
    • Software Engineering
    • Project Management
    • DevOps
  • Programming
    • Learning
  • Tools
  • About
aster.cloud aster.cloud
  • /
  • Platforms
    • Public Cloud
    • On-Premise
    • Hybrid Cloud
    • Data
  • Architecture
    • Design
    • Solutions
    • Enterprise
  • Engineering
    • Automation
    • Software Engineering
    • Project Management
    • DevOps
  • Programming
    • Learning
  • Tools
  • About
  • Multi-Cloud
  • Practices
  • Tech

Cloud Security In 2022: Stormy Horizons, Shaken Trust, And Lack Of Talent

  • Ackley Wyndam
  • January 3, 2022
  • 5 minute read

The stormy cybersecurity horizon will leave its mark on cloud-based assets next year. However, despite the looming threats, experts see no stopping on migration to the cloud.

2021 was a pivotal year in cybersecurity, with ransomware dominating the headlines. With the upward trend in cybercrime unlikely to change next year, the need to secure cloud-based assets will only increase.


Partner with aster.cloud
for your next big idea.
Let us know here.



From our partners:

CITI.IO :: Business. Institutions. Society. Global Political Economy.
CYBERPOGO.COM :: For the Arts, Sciences, and Technology.
DADAHACKS.COM :: Parenting For The Rest Of Us.
ZEDISTA.COM :: Entertainment. Sports. Culture. Escape.
TAKUMAKU.COM :: For The Hearth And Home.
ASTER.CLOUD :: From The Cloud And Beyond.
LIWAIWAI.COM :: Intelligence, Inside and Outside.
GLOBALCLOUDPLATFORMS.COM :: For The World's Computing Needs.
FIREGULAMAN.COM :: For The Fire In The Belly Of The Coder.
ASTERCASTER.COM :: Supra Astra. Beyond The Stars.
BARTDAY.COM :: Prosperity For Everyone.

As much as 79% of companies have experienced cloud data breaches in the last 18 months, with 43% suffering from ten cloud-based intrusion attempts.

Since studies show over 90% of organizations keep at least some of their digital assets in the cloud, the need for protection will have to become a top priority.

I asked experts to share their insights about what to expect in cloud security next year, and here’s what they said.

“Enterprises realize that they need to incorporate additional cloud security measures, on top of what cloud providers offer.”

-James Campbell, CEO and Co-Founder at Cado Security.

Protecting critical infrastructure

The security landscape is getting ever more complex with governments copying businesses in cloud adoption, Leon Kuperman, CTO and Co-Founder at CAST AI, claims.

Major cloud service providers (CSPs) such as AWS, Azure, GCP, Oracle, and IBM race to lure governments to use their version of secure data centers. Microsoft, for example, talks about ‘top secret’ cloud with others offering their own ‘air gap’ offers to the mix.

“The movement of workloads from private underground facilities to cloud provider-operated data centers has the potential to introduce significant efficiencies but also introduces a security risk. This is a vulnerable transition point that attackers will exploit,” Kuperman told CyberNews.

Buffing up internal security

According to James Campbell, CEO and Co-Founder at Cado Security, 2021 has proven that relying on security tools provided by CSPs is no longer enough.

Read More  Intel, CrowdStrike And Zscaler Unveil Compatible Solutions For Zero Trust Security

First, researchers discovered a major issue with Azure that could have allowed threat actors to get complete control of other users’ data. Later the OMIGOD vulnerability, enabling attackers to escalate to root privileges and remotely execute malicious code, came to light.

Cloud Companies

“Enterprises realize that they need to incorporate additional cloud security measures, on top of what cloud providers offer, as they don’t fully manage the security risks that come with leveraging the cloud,” Campbell wrote in an email.

He thinks that organizations should consider a layered approach to cloud security, knowing what accesses third-party vendors have and don’t have. Businesses need to take responsibility for their security to prevent malicious activity instead of blindly trusting the CSPs.

READ MORE: [button style=’accent’ url=’https://aster.cloud/2021/10/06/to-avoid-cyberattacks-companies-need-to-think-like-hackers/’ target=’_blank’ arrow=’true’ fullwidth=’true’]TO AVOID CYBERATTACKS, COMPANIES NEED TO THINK LIKE HACKERS[/button]

[button style=’accent’ url=’https://aster.cloud/2021/12/21/securing-the-cloud-cyber-risks-and-best-practices-you-need-to-keep-in-mind/’ target=’_blank’ arrow=’true’ fullwidth=’true’]SECURING THE CLOUD: CYBER RISKS AND BEST PRACTICES YOU NEED TO KEEP IN MIND[/button]

On-premise attacks

The pandemic forced many companies to abruptly migrate to the cloud to continue operating. Rapid ascension to the cloud has caused many to cut corners on security, causing COVID ‘hangover’ in the industry.

According to Menachem Shafran, a cybersecurity expert and VP Product at XM Cyber, headaches will continue to trouble many in 2022, as rushed migration left many issues with security.

Security gaps will lead to more attacks that start on-premise and pivot to the cloud to compromise critical assets or vice versa.

“Cyber attackers are increasingly leveraging misconfigurations, overly permissive identities, vulnerabilities, and general human errors to obtain an initial foothold and move laterally through the enterprise network until they are able to breach the cloud environment. This will lead to serious financial and reputational costs in 2022,” Shafran told CyberNews.

“As organizations move to multiple cloud providers, we predict the multi-cloud misconfiguration will become the next source of cloud vulnerabilities and attack surface.”

-Leon Kuperman, CTO and Co-Founder at CAST AI.

Multi-cloud approach

According to Shafran, we will see more companies cherry-picking the best features from multiple vendors next year, driving the need for multi-cloud environment monitoring.

Read More  Rackspace Technology Becomes A Leader For The European Open Science Cloud Marketplace Providing AWS Expertise For European Researchers

Meanwhile, Kuperman suggests that the multi-cloud approach offers some new security challenges. People responsible for securing such an environment will have to understand the intricacies of several cloud platforms, making the task exponentially complex with every new vendor introduced.

“As organizations move to multiple cloud providers, we predict the multi-cloud misconfiguration will become the next source of cloud vulnerabilities and attack surface,” Kuperman explained.

Keith Neilson, Technical Evangelist at CloudSphere, suggests that even though the pace of migration to the cloud is unlikely to decelerate, keeping the data on-premise remains a feasible option to some companies.

“This is especially true for highly sensitive or highly-regulated data sets or situations where keeping the apps and data on-prem better supports integration, performance, reliability, and security,” Neilson wrote.

Server cloud

Need to educate

A staggering 74% of enterprises have experienced security and compliance issues due to insufficient collaboration between local and cloud teams. According to Bob Huber, the Chief Security Officer at Tenable, companies will need to invest in education to avoid miscommunication.

“Detecting and preventing malicious activity in the cloud is a lot different from mitigating it on-prem. And this can be further complicated by the nuances of working with cloud providers, as well as other company stakeholders looking to rapidly adopt new services in the cloud,” Huber told CyberNews.

Ilia Sotnikov, Security Strategist & VP of User Experience at Netwrix, thinks the problem is exacerbated by the multi-cloud approach, as there is a lack of experts able to navigate between different platforms easily.

“Cloud platforms are constantly evolving, meaning the knowledge and experience quickly become outdated unless you constantly sharpen your skills,” Sotnikov explained.

“Cloud platforms are constantly evolving, meaning the knowledge and experience quickly become outdated unless you constantly sharpen your skills.”

-Ilia Sotnikov, Security Strategist & VP of User Experience at Netwrix.

Lack of talent

Many businesses might face issues with finding capable teachers and willing students as well. According to Kuperman, the industry lacks 2.7 million cybersecurity professionals globally, and the lack of talent in 2022 will be even more acute.

Read More  Citrix And Upwork Expand Collaboration To Power The New World Of Work

“We simply do not have the people to keep up with the rising threat, and automation needs to be heavily deployed in an effort to keep up. This is compounded by the stark reality that attackers only have to be right one time to pull off a successful cyber attack,” Kuperman wrote.

With the wave of cybercrime unlikely to recede, the lack of capable cloud security experts will only add to the pile of security problems companies face, claims Dave MacKinnon, Chief Security Officer at N-able,

“A big shift to the cloud, a lack of cloud security expertise across many MSP organizations, plus the continued growth of an increasingly hostile security landscape, is creating a potentially dangerous mixture,” MacKinnon said.


For enquiries, product placements, sponsorships, and collaborations, connect with us at [email protected]. We'd love to hear from you!

Our humans need coffee too! Your support is highly appreciated, thank you!

Ackley Wyndam

Related Topics
  • AWS
  • CyberNews
  • Cybersecurity Cloud security
  • Cyberthreats
  • Data Centers
  • Enterprise
  • google
  • Multi-Cloud
You May Also Like
Getting things done makes her feel amazing
View Post
  • Computing
  • Data
  • Featured
  • Learning
  • Tech
  • Technology

Nurturing Minds in the Digital Revolution

  • April 25, 2025
View Post
  • Tech

Deep dive into AI with Google Cloud’s global generative AI roadshow

  • February 18, 2025
Volvo Group: Confidently ahead at CES
View Post
  • Tech

Volvo Group: Confidently ahead at CES

  • January 8, 2025
zedreviews-ces-2025-social-meta
View Post
  • Featured
  • Gears
  • Tech
  • Technology

What Not to Miss at CES 2025

  • January 6, 2025
View Post
  • Tech

IBM and Pasqal Plan to Expand Quantum-Centric Supercomputing Initiative

  • November 21, 2024
Black Friday Gifts
View Post
  • Tech

Black Friday. How to Choose the Best Gifts for Yourself and Others, Plus Our Top Recommendations.

  • November 16, 2024
View Post
  • Cloud-Native
  • Multi-Cloud

Oracle Expands Multicloud Capabilities with AWS, Google Cloud, and Microsoft Azure

  • September 11, 2024
zedreviews-Apple-iPhone-16-Pro-finish-lineup-240909
View Post
  • Featured
  • Gears
  • Tech
  • Technology
  • Tools

Apple debuts iPhone 16 Pro and iPhone 16 Pro Max

  • September 10, 2024

Stay Connected!
LATEST
  • college-of-cardinals-2025 1
    The Definitive Who’s Who of the 2025 Papal Conclave
    • May 7, 2025
  • conclave-poster-black-smoke 2
    The World Is Revalidating Itself
    • May 6, 2025
  • oracle-ibm 3
    IBM and Oracle Expand Partnership to Advance Agentic AI and Hybrid Cloud
    • May 6, 2025
  • 4
    Conclave: How A New Pope Is Chosen
    • April 25, 2025
  • Getting things done makes her feel amazing 5
    Nurturing Minds in the Digital Revolution
    • April 25, 2025
  • 6
    AI is automating our jobs – but values need to change if we are to be liberated by it
    • April 17, 2025
  • 7
    Canonical Releases Ubuntu 25.04 Plucky Puffin
    • April 17, 2025
  • 8
    United States Army Enterprise Cloud Management Agency Expands its Oracle Defense Cloud Services
    • April 15, 2025
  • 9
    Tokyo Electron and IBM Renew Collaboration for Advanced Semiconductor Technology
    • April 2, 2025
  • 10
    IBM Accelerates Momentum in the as a Service Space with Growing Portfolio of Tools Simplifying Infrastructure Management
    • March 27, 2025
about
Hello World!

We are aster.cloud. We’re created by programmers for programmers.

Our site aims to provide guides, programming tips, reviews, and interesting materials for tech people and those who want to learn in general.

We would like to hear from you.

If you have any feedback, enquiries, or sponsorship request, kindly reach out to us at:

[email protected]
Most Popular
  • 1
    Tariffs, Trump, and Other Things That Start With T – They’re Not The Problem, It’s How We Use Them
    • March 25, 2025
  • 2
    IBM contributes key open-source projects to Linux Foundation to advance AI community participation
    • March 22, 2025
  • 3
    Co-op mode: New partners driving the future of gaming with AI
    • March 22, 2025
  • 4
    Mitsubishi Motors Canada Launches AI-Powered “Intelligent Companion” to Transform the 2025 Outlander Buying Experience
    • March 10, 2025
  • PiPiPi 5
    The Unexpected Pi-Fect Deals This March 14
    • March 13, 2025
  • /
  • Technology
  • Tools
  • About
  • Contact Us

Input your search keywords and press Enter.