March 5, 2021 By David Bisson 3 min read

Have your security team members ever made a mistake in the cloud? Human error happens and it can take on many forms. But, none are as serious as failing to understand the way cloud defenses work. 

If a mistake does come to mind, be reassured you’re not alone.

Seven in 10 organizations suffered a public cloud security incident between July 2019 and July 2020, reports Help Net Security. Of those cloud computing security incidents, 66% involved the exposure of cloud-based data as the result of an exploited misconfiguration.

How can you be sure you’re getting the right type and level of protection? Let’s take a look at what you need to know about protecting your cloud security when using the Amazon Web Services (AWS) shared responsibility model.

Why a Cloud Shared Responsibly Model Makes Sense

For many, security goes hand-in-hand with control. One can’t secure something unless one has control over it, the logic goes. It takes a cue from the perimeter-based model. The holder of the data needs to not only own the apps and data but also the base infrastructure itself.

Not so in the cloud. This approach follows the AWS shared responsibility model. In this model, the data holder shares security duties with their cloud service provider (CSP). The latter is always in charge of physically securing the infrastructure. From there, the balance shifts depending on the cloud deployment model in use.

There are a few options when it comes to how to do this. Groups with a software-as-a-service (SaaS) model are solely responsible for the defense of their cloud-based data, for instance. The CSP is at least somewhat on the hook for everything else. In a platform-as-a-service (PaaS) model, organizations need to broaden their duties to focus more on their apps with client and endpoint protection. Lastly, one could use the infrastructure-as-a-service (IaaS) model. Here, customers’ obligations expand even further to share the load for using network controls and securing the host.

This brings us to human error and the AWS shared responsibility model. Most groups dealing with this model don’t understand it. Indeed, an Oracle and KPMG cybersecurity report found just 8% of IT security leaders felt they fully understood the AWS shared security model. Such confusion could lead them to overlook key cloud security functions or AWS shared controls for which they’re at least partially on the hook. It could also result in them doubling up on functions that aren’t theirs to provide, wasting budget and resources.

The Shared Responsibility Model in Action

So, how do you make sure your people understand what they need to do to secure the cloud? A good provider is honest about this potential confusion. For example, in an effort to help make the security balance clearer to its customers, Amazon Web Services published a breakdown of its shared responsibility model on its website.

AWS also partnered with QRadar to deliver free rules and reference sets in order to help customers gain more insight into the cloud. Users can view these and other data points from within the QRadar Console. They don’t have to go looking through piles of alerts in an attempt to understand what’s going on in their cloud networks. This complements AWS’s defense duties without customers needing to look elsewhere for tools, worry about adding third-party products or make cloud defense more complex than it needs to be. They can keep their end of the cloud safe solely through the AWS-QRadar partnership.

Tools as the Answer to Cloud Computing Security Incidents

Human error and misconfigurations can threaten your data in the cloud. That’s even more true when it comes to knowing what exactly you need to secure. In response, consider working with CSPs that are upfront about their shared responsibilities. Remember that sometimes the best solution to human error is the right tools. Using a partnership of solutions such as the AWS shared responsibility model and AWS-QRadar can help to simplify the process of cloud security and give you the insight you need. This will help cut down on misconfigurations in the cloud and keep your assets secure.

More from Cloud Security

Why security orchestration, automation and response (SOAR) is fundamental to a security platform

3 min read - Security teams today are facing increased challenges due to the remote and hybrid workforce expansion in the wake of COVID-19. Teams that were already struggling with too many tools and too much data are finding it even more difficult to collaborate and communicate as employees have moved to a virtual security operations center (SOC) model while addressing an increasing number of threats.  Disconnected teams accelerate the need for an open and connected platform approach to security . Adopting this type of…

Cloud security uncertainty: Do you know where your data is?

3 min read - How well are security leaders sleeping at night? According to a recent Gigamon report, it appears that many cyber professionals are restless and worried.In the report, 50% of IT and security leaders surveyed lack confidence in knowing where their most sensitive data is stored and how it’s secured. Meanwhile, another 56% of respondents say undiscovered blind spots being exploited is the leading concern making them restless.The report reveals the ongoing need for improved cloud and hybrid cloud security. Solutions to…

Cloud security evolution: Years of progress and challenges

7 min read - Over a decade since its advent, cloud computing continues to enable organizational agility through scalability, efficiency and resilience. As clients shift from early experiments to strategic workloads, persistent security gaps demand urgent attention even as providers expand infrastructure safeguards.The prevalence of cloud-native services has grown exponentially over the past decade, with cloud providers consistently introducing a multitude of new services at an impressive pace. Now, the contemporary cloud environment is not only larger but also more diverse. Unfortunately, that size…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today