cloud computing's notorious nine-

16

Click here to load reader

Upload: nikki-alexander

Post on 27-May-2015

193 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Cloud computing's  notorious nine-

Cloud Computing's "Notorious Nine" Risks for

Business: What's Up (and Down)

For 2013

Page 2: Cloud computing's  notorious nine-

The Cloud Security Alliance researches best practices and releases

reports on "The Notorious Nine”

cloud threats.

Page 3: Cloud computing's  notorious nine-

This year, the top threats are mostly due

sophisticated hacking (it’s big business now!) and

decreased company diligence.

Page 4: Cloud computing's  notorious nine-

On the other hand, threats related to stability

and more mature technology are down.

Page 5: Cloud computing's  notorious nine-

Overall, data in the cloud is now less secure, partly

due to the explosive growth of BYOD.

Here’s the “Notorious Nine” list for 2013:

Page 6: Cloud computing's  notorious nine-

#1 Data Breaches: Your data is infiltrated

because there's profit to be made from stealing it.

Page 7: Cloud computing's  notorious nine-

#2 Data Loss: This happens

by mistake (human error), on purpose (sabotage) or by an act of nature (such

as a hurricane).

Page 8: Cloud computing's  notorious nine-

#3 Account or Service Traffic Hijacking: The credentials of

someone on your team are stolen and used.

Page 9: Cloud computing's  notorious nine-

# 4 Insecure Interfaces and APIs:

Weak security in third-party technology allows

infiltration.

Page 10: Cloud computing's  notorious nine-

# 5 Denial of Service: Your customers can't access your services

because an attacker has overwhelmed your

system's resources.

Page 11: Cloud computing's  notorious nine-

# 6 Malicious insiders: A team member turns on

you.

Page 12: Cloud computing's  notorious nine-

# 7 Abuse of Cloud Services:

Your provider is affected by another tenant who is using the cloud you share for undesirable purposes.

Page 13: Cloud computing's  notorious nine-

# 8 Insufficient Due Diligence:

Your company is using the cloud in ways that put

your data at risk.

Page 14: Cloud computing's  notorious nine-

#9 Sharing Technology Vulnerabilities:

Your cloud provider's infrastructure isn’t handling isolation

requirements properly.

Page 16: Cloud computing's  notorious nine-

Stay safe up there!SM

(LFS ID stuff)