Cloud security: The top tips from the experts

Stuart Sumner
clock • 23 min read

Computing asked the experts for their top tips to help businesses use the cloud securely. Here's what they said

How to find the right cloud provider
Choosing between the myriad services on offer from a huge array of providers is mind boggling. Here are a few tips from the experts on how to select the right offerings for your needs.

Stuart Aston, chief security adviser, Microsoft UK
"Look for a cloud provider that will allow you flexibility over your operating environment and control over your data. A good provider should offer public, hybrid and private hosted cloud options; provide evidence of how the service is governed and managed; and enable you to take your data with you should you decide to leave."

 

Orlando Scott-Cowley, independent cybersecurity and cloud expert
"There's a lot of flat-earthing going on about the cloud; when it was a new concept no one trusted it, but today it's a different story albeit for a few doubters. The majority of technology pros and enterprises trust the cloud, in fact most businesses are using the cloud in one form or another. Even those who don't trust it and don't think they're using it.

"Trusting the cloud is about knowledge, so before you sign on the line make sure you've done the due diligence on your chosen cloud provider so you know exactly how and where your data is stored, how it's encrypted and how much more secure it would be, than if you stored the data yourself. Trust the your cloud service, but only once you've verified it's suitability and reputation.

"The cloud IS secure. Too many organisations still consider the cloud as insecure. The fear of their data being on 'someone else's computer' is often too much and paralyses them into not advancing their technology into the cloud world. In reality, we know now that the cloud is far more secure than equivalent on-premises services, and certainly more available and better protected. So don't fall for this scare tactic; look for reputable cloud vendors who have a long list of ISO certifications, and can demonstrate their security to you in order to overcome the fear paralysis.

"Find the balance. Lots of enterprises are going ‘whole-hog' when it comes to cloud. i.e. shutting down all their on-premises applications and moving everything into the cloud, almost over a weekend. This type of IT bankruptcy might work for you, but can be a challenge to implement in one hit. A better approach is to find the balance between what needs to be in the cloud and what could stay on-premises, with a view to 'on-ramping' everything into the cloud over time. This managed migration approach will also fit with your budget and end users' expectations better."

You may also like
UK business falling short on cybersecurity warns government report

Threats and Risks

A staggering 78% of businesses lack a formal incident response plan

clock 10 April 2024 • 3 min read
Multiple China-linked groups attacking Ivanti vulnerabilities

Threats and Risks

Patches have been made available by Ivanti

clock 08 April 2024 • 2 min read
Lazarus uploading malware to open-source PyPl software repository

Threats and Risks

Supply chain attack leaves developers in Asia at particular risk

clock 12 March 2024 • 3 min read

More on Cloud and Infrastructure

Cloud adoption in 2024: Navigating AI, edge computing and the road beyond

Cloud adoption in 2024: Navigating AI, edge computing and the road beyond

CIOs are pursuing best-fit cloud solutions that avoid vendor lock-in

Eric Helmer
clock 09 April 2024 • 3 min read
WebAssembly heralds 'third wave of cloud computing'

WebAssembly heralds 'third wave of cloud computing'

Wasm: 'Speed and agility is the name of the game'

John Leonard
clock 26 March 2024 • 3 min read
Microsoft the latest to waive cloud egress fees

Microsoft the latest to waive cloud egress fees

TS&CS apply

John Leonard
clock 14 March 2024 • 2 min read