{"id":123895,"date":"2020-12-01T17:01:38","date_gmt":"2020-12-01T14:01:38","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/can-we-really-trust-the-cloud-with-our-data\/"},"modified":"2020-12-01T17:01:38","modified_gmt":"2020-12-01T14:01:38","slug":"can-we-really-trust-the-cloud-with-our-data","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/can-we-really-trust-the-cloud-with-our-data\/","title":{"rendered":"#Can we really trust the Cloud with our data?"},"content":{"rendered":"<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_84 counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<label for=\"ez-toc-cssicon-toggle-item-6a28a8a8ccc52\" class=\"ez-toc-cssicon-toggle-label\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #dd3333;color:#dd3333\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #dd3333;color:#dd3333\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/label><input type=\"checkbox\"  id=\"ez-toc-cssicon-toggle-item-6a28a8a8ccc52\" checked aria-label=\"Toggle\" \/><nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/buradabiliyorum.com\/en\/can-we-really-trust-the-cloud-with-our-data\/#People_can_be_phished_cloud_cant\" >People can be phished, cloud can\u2019t<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/buradabiliyorum.com\/en\/can-we-really-trust-the-cloud-with-our-data\/#Top-notch_security_features\" >Top-notch security features<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/buradabiliyorum.com\/en\/can-we-really-trust-the-cloud-with-our-data\/#Checked_and_vetted\" >Checked and vetted<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/buradabiliyorum.com\/en\/can-we-really-trust-the-cloud-with-our-data\/#How_could_cloud_be_better\" >How could cloud be better?<\/a><\/li><\/ul><\/nav><\/div>\n<p>&#8220;<strong>#Can we really trust the Cloud with our data?<\/strong>&#8221;<\/p>\n<div>\n                            <span style=\"font-weight: 400;\">It would be great if there were an easy yes or no answer. But it was never going to be that simple.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The truth is, it depends. And with the average time it takes to contain and identify a data breach being just over nine months, and the average cost of a data breach at $3.86M, according to <\/span><a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/www.ibm.com\/uk-en\/security\/data-breach\"><span style=\"font-weight: 400;\">IBM<\/span><\/a><span style=\"font-weight: 400;\">, the stakes depending on it are pretty high.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">It depends on how much you trust the alternative of storage hardware. Your USB sticks, memory cards, external hard drives, network-attached, and other on-prem servers could get lost, stolen, damaged, or have a manufacturer fault that results in the loss of your data. Cloud does not have these potential issues.<\/span><\/p>\n<h2><span class=\"ez-toc-section\" id=\"People_can_be_phished_cloud_cant\"><\/span><strong>People can be phished, cloud can\u2019t<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p><span style=\"font-weight: 400;\">One of the advantages of cloud storage is the lack of human interaction and interference. When cloud data is hacked, the majority of the time, it\u2019s down to human error. Kaspersky Lab published <\/span><a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/www.kaspersky.com\/blog\/understanding-security-of-the-cloud\/?utm_source=CJ&amp;utm_medium=affiliate&amp;utm_campaign=gl_b2b-cloud-mini-report_kk0084_organic&amp;utm_content=link&amp;utm_term=gl_pr-media_organic_kk0084_link_partner_b2b-cloud-mini-report&amp;AID=11552282&amp;PID=8904327&amp;SID=trd-gb-8335653222365727000&amp;campaign=tcid_cj_11552282_8904327_fadcd85729ea11eb83d1000e0a180511_x5&amp;CJ_CID=4829349&amp;CJ_PID=8904327&amp;CJ_CID_NAME=NextCommerce+Pty+Ltd&amp;CJEVENT=fadcd85729ea11eb83d1000e0a180511\"><span style=\"font-weight: 400;\">research<\/span><\/a><span style=\"font-weight: 400;\"> in 2019, which found that 89% of SMBs and 91% of enterprises have experienced a data breach on their public cloud due to a <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/social-mediaa\/\" data-internallinksmanager029f6b8e52c=\"1\" title=\"Social Media\" target=\"_blank\" rel=\"noopener\">social<\/a> engineering attack.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Jonathan Sander, Security Field CTO at Snowflake said he\u2019s noticed a trend in cloud storage towards heavy automation and orchestration. This leaves the human, who is prone to being phished and scammed, out of the loop and thus the data more secure.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u201cRemoving humans from the equation as much as possible is always an excellent security principle,\u201d Sander told TNW. People can mitigate the risk of being the weakest security link, with any type of storage, by using multi-factor authentication, difficult passwords, and a password manager.<\/span><\/p>\n<h2><span class=\"ez-toc-section\" id=\"Top-notch_security_features\"><\/span><strong>Top-notch security features<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p><span style=\"font-weight: 400;\">On the topic of excellent security principles, data cloud storage was designed with embedded security measures. These features include automatic security updates and patches, built-in firewalls, encryption, and AI vulnerability detection. Another reason why those who put their data in the cloud can rest easy is automatic backup, which means if any data is accidentally deleted it can easily be restored and recovered.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Cloud data storage also benefits from economies of scale. Individuals and smaller organizations simply would have a harder time of configuring, monitoring, and maintaining perimeter security by themselves, Camilla Winlo, Director of Consultancy at DQM GRC told The Next Web. This lack of capability may be down to not having the skills and experience to do so. Winlo also said that smaller organizations might not have the resources to assess and monitor asset management by a cloud provider, in which case the third party storage provider would provide a better service than the organization than if the organization were to self-serve on site.<\/span><\/p>\n<h2><span class=\"ez-toc-section\" id=\"Checked_and_vetted\"><\/span><strong>Checked and vetted<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p><span style=\"font-weight: 400;\"\/><span style=\"font-weight: 400;\">Furthermore, there are the external audits which are used by cloud data providers to keep themselves in check. Sander says Snowflake is constantly under audit by third parties to meet governmental, financial, and other institutional standards. Winlo advised that organizations should look for cloud data providers that have current security certifications, such as ISO\/IEC 27001<\/span> <span style=\"font-weight: 400;\">and should also look at the executive summaries of auditors reports, to gain a sense of security before selecting a provider. Unfortunately, these reports are often bound by non-disclosure agreements she added.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">These advantages are numerous but as with anything, there are issues to take into consideration. For 524 organizations around the world analyzed by the <\/span><a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/www.capita.com\/sites\/g\/files\/nginej146\/files\/2020-08\/Ponemon-Global-Cost-of-Data-Breach-Study-2020.pdf\"><span style=\"font-weight: 400;\">IBM Data Breach Report<\/span><\/a><span style=\"font-weight: 400;\">, the root cause of data breaches for 52% was malicious attacks, for 23% it was human error, and one in four caused by system glitches. It should be noted that 19% of the companies that suffered a malicious attack had been infiltrated due to stolen or compromised data for which a human could have been at fault somewhere along the line.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The report also states that for 19% of data breaches caused by malicious attacks the initial threat vector was misconfigured cloud servers. And 16% of data breaches caused by malicious attacks had vulnerability in 3rd party software as a root cause.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Another concern about putting data in the cloud is loss of data governance. Data governance is a <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/watch-movies-tv-seriess\/\" data-internallinksmanager029f6b8e52c=\"8\" title=\"Watch Movies &amp; TV Series\" target=\"_blank\" rel=\"noopener\">series<\/a> of processes and policies that sets out the data strategy, security, regulation, quality, and insight. Handing over part of the data governance responsibility to a third party means an organization loses some control and has to consider the risk of doing so by assessing the level of expertise of the storage provider, said Winlo.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">To Snowflake, data governance is about knowing your data, controlling your data, and streamlining the two. According to Sander, his company has a mature data governance program that is robust enough to pass the audit inspections. \u201cWe promise our customers that we meet governmental, financial, and other institutional standards so we audit on a regular basis. Having mature data governance internally is the only thing that makes it possible for us to do those things,\u201d he said.<\/span><\/p>\n<h2><span class=\"ez-toc-section\" id=\"How_could_cloud_be_better\"><\/span><strong>How could cloud be better?<\/strong><span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p><span style=\"font-weight: 400;\">As with any burgeoning innovation, there is room for improvement among cloud data providers. Winlo explained that improved transparency and better risk assessments would be the biggest changes that would improve the security of cloud storage. The reason for this is: \u201cIt\u2019s difficult for organizations to perform as thorough risk assessments for third party clouds as they can for an on-prem solution \u2013 as third party clouds are essentially black boxes,\u201d she said. However, she added it\u2019s worth bearing in mind that if an organization does not have the skill to perform such risk assessments on the third party, the storage provider probably has a greater security level than the organization could maintain alone.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Organizations end up in a Catch 22. The sophisticated and complex security measures and asset management enacted by the cloud storage provider would put a lot of organizations at ease about store storage. At the same time, the security measures may be so sophisticated and complex that the organization is unable to scrutinize or monitor them for a thorough risk assessment, which could lead to a decrease in trust.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In 2019, 48% of corporate data was stored in the cloud, according to<\/span><a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/www.statista.com\/statistics\/1062879\/worldwide-cloud-storage-of-corporate-data\/\"> <span style=\"font-weight: 400;\">Statista<\/span><\/a><span style=\"font-weight: 400;\">, which was up from 30% in 2015. So just under half of enterprises have enough trust in the cloud to put critical information in the hands of cloud data storage providers. Despite the considerations that need to be taken with cloud data storage, its popularity is growing and it is probably a safe bet to say that trust is keeping pace.<\/span><\/p>\n<div class=\"post-paidNotice post-paidNotice--below\">\n        <a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/www.snowflake.com\/\"><\/p>\n<p>    <img decoding=\"async\" class=\"post-paidNotice-image\" src=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2020\/10\/1200px-Snowflake_Logo.svg_.png\"\/><\/a><\/p>\n<p class=\"post-paidNotice-text\">This article is brought to you by <a rel=\"nofollow noopener noreferrer\" target=\"_blank\" onclick=\"ga('primary.send', 'event', 'Article', 'Sponsored Post', 'Link');\" href=\"https:\/\/www.snowflake.com\/\">Snowflake.io<\/a>.<\/p>\n<\/div><\/div>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more like this article, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/technology\/\" target=\"_blank\" rel=\"noopener noreferrer\">Technology category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/thenextweb.com\/tech\/2020\/12\/01\/can-we-really-trust-the-cloud-with-our-data\/\" target=\"_blank\" rel=\"noopener noreferrer\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#Can we really trust the Cloud with our data?&#8221; It would be great if there were an easy yes or no answer. But it was never going to be that simple.\u00a0 The truth is, it depends. And with the average time it takes to contain and identify a data breach being just over nine months,&#8230;<\/p>\n","protected":false},"author":1,"featured_media":123896,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/img-cdn.tnwcdn.com\/image\/tnw?filter_last=1&fit=1280,640&url=https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2020\/11\/Untitled-design-3-1.png&signature=a802decd027ab74c2636714c6363c565","fifu_image_alt":"","footnotes":""},"categories":[18],"tags":[73636,78306,72366,70934,72287,70759],"class_list":["post-123895","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology","tag-cloud-computing","tag-cloud-storage","tag-data","tag-regulation","tag-security","tag-tech"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/123895","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=123895"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/123895\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/123896"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=123895"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=123895"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=123895"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}