Gartner estimates that by 2025, 99% of cloud security failures will be the cloud service customers' fault as described in more detail
here.
It has become essential for incident response teams to take their incident response program to the next level and prepare for incidents in cloud environments. However, when talking to organizations, we oftentimes see that there is a gap where incident response teams find themselves lost when it comes to their cloud environments. It can be a blind spot, where it is too late to learn about it during a crisis where time is critical.
There are several aspects to consider when building a cloud-ready incident response program. It starts off with understanding the
shared responsibility model, establishing internal and external relationships (such as CSPs) as well as escalation procedures. It also includes technical aspects such as gaining visibility and access to your data points. Furthermore, incident handlers need to be trained and response procedures documented. It is essential to understand that there may be differences between traditional response methods and cloud-based responses when it comes to data acquisition and analysis, which also depends on cloud-native security features that an organization may leverage.
I am excited to share that IBM X-Force has announced a menu of proactive services to help organizations plan and prepare for incidents in cloud environments that include assessments, planning, and training. IBM X-Force also provides cloud incident investigation and remediation support.
For more information about this topic please take a look at our latest blog post:
Avoid Blind Spots: Is Your Incident Response Team Cloud Ready?You can also
Schedule a Consult with One of Our X-Force Experts
Thank you,
Markus Schober
Incident Response for Cloud Services Lead
IBM Security X-Force
------------------------------
Markus Schober
------------------------------