About Us | Contact Us
View Cart

A Cloud Security Reminder

By Vigilize | Monday, July 19, 2021 - Leave a Comment

Many organizations still fail to consider the unique risks posed by cloud computing…


An article review.


Last month thousands of Western Digital MyCloud device owners learned about the risks of cloud-based solutions the hard way: their data had been wiped remotely due to a flaw in the internet-facing component of their external hard drives.

While the MyCloud devices were aimed at home users, the incident should highlight the risks we all face when considering whether to move something “into the cloud.”  Whether that something is data storage or simply an application used in your organization, there are additional risks on top of the ones you identified during your prior evaluations.

Making things more problematic, those new risks may not be apparent at first glance.  Take those MyCloud owners as an example:  many never considered the device could pose additional risk, as it was being used for local–not cloud–storage.  Additionally, the online functionality of the drives may not have even been used, making it easy to forget.

If you’re still trying to get your head around the implications of cloud computing, you’re not alone.  The FFIEC recently released an updated Architecture, Infrastructure and Operations IT Examination Handbook, which includes (for the first time) in-depth guidance on cloud applications throughout.

The new FFIEC Guidance will be touched on during our upcoming LIVE workshop at the Indiana Bankers Association. Click on the button below to register!


Original article by Brian Krebs for Krebs on Security.


same_strip_012513


 

Latest News
    How Do We Know What We Know? Making Sure You Can Understand What Happened in an Incident. Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Until I reclined on my front yard, looking at the sky, following the instructions on how not to look […]
    Another awareness poster for YOUR customers (and users).  Now that we have our own employees aware, maybe it’s time to start posting content for our customers! Download the large versions here: Awareness Poster (Portrait) Awareness Poster (Landscape)   You are welcome to print out and distribute this around your office. Interested in one of ours […]
    President Biden recently signed a bill tasking the agency with evaluating the unique risks that schools face… An article review. Taking note of the unique challenges educational institutions face in securing their networks, President Biden has signed a bill into law directing the Cybersecurity and Infrastructure Security Agency (CISA) to look into ways that they can […]
    Thanks for being interested in our Technology Planning Webinars! This year‘s annual update to our annual Technology Planning webinar will include a panel discussion, a review of the previous years’ movies that are already available, and a discussion about alternative tactics that have arisen from recent conferences as well as the impact of the AIO […]
    Welcome Cybersecurity Conference Attendees! Thanks for joining us for the Cybersecurity Conference today! We have created this page for you to have access to the deliverables from Dan’s talk.  
    What you need to know for compliance coast-to-coast. Back in 2020 we posted an article containing links to data breach laws from each state, and it has proven to be one of our more popular posts.  Because laws surrounding the use (and abuse) of technology are always evolving, we thought it was worth taking another […]
    Why It Rhymes With SEEM (And its Not the I Before E Rule) Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . It’s the Gestalt. The idea that the whole is greater than the sum of it’s parts. That’s not something that is often brought […]
    Another awareness poster for YOUR customers (and users).  Now that we have our own employees aware, maybe it’s time to start posting content for our customers! Download the large versions here: Awareness Poster (Portrait) Awareness Poster (Landscape)   You are welcome to print out and distribute this around your office. Interested in one of ours […]
    Questions about China’s new disclosure laws only highlight the uncertainty about disclosure in general… An article review. China recently made waves in the security world by announcing a new set of data security laws, one of which has added new fuel to a long running debate: how and when should security vulnerabilities be disclosed…and to […]