CybersecurityInsiders:2023年云安全报告(英文版)_26页_2mb
报告摘要
Despite high concern over public cloud security (95% of professionals moderately to extremely concerned), organizations increasingly adopt multi-cloud environments, with 72% using two or more providers. This complexity, coupled with a persistent talent shortage (43% lack qualified staff, and 37% cite it as slowing cloud adoption), creates challenges in preventing misconfigurations and achieving compliance.
Key findings include: 39% of organizations have more than half their workloads in the cloud, driven by benefits like faster time-to-market and cost savings. Security incidents frequently stem from misconfiguration, account compromise, and exploited vulnerabilities, highlighting the need for robust detection and monitoring.
Barriers to adoption are largely people and process-related (e.g., staff expertise at 53%, budget at 44%, and data privacy at 38%). Addressing these requires investments in training, certifications (83% see value in cloud security training), and use of native cloud security tools or third-party vendors.
Recommendations involve upskilling existing IT staff through programs like CCSP, hiring cloud security experts, and collaborating with MSSPs to fill immediate gaps while building internal capabilities. This approach helps mitigate risks and leverage cloud benefits.
Certiification preferences lean toward a mix of vendor-specific and vendor-neutral options for comprehensive skill sets.
Organizations must prioritize continuous training and process improvements to secure their expanding cloud ecosystems.
试读结束,高清完整版pdf/doc/ppt,请点下载