Cybersecurity Insiders:2023年云安全報告 Cloud Security Report_第1頁
Cybersecurity Insiders:2023年云安全報告 Cloud Security Report_第2頁
Cybersecurity Insiders:2023年云安全報告 Cloud Security Report_第3頁
Cybersecurity Insiders:2023年云安全報告 Cloud Security Report_第4頁
Cybersecurity Insiders:2023年云安全報告 Cloud Security Report_第5頁
已閱讀5頁,還剩46頁未讀 繼續(xù)免費閱讀

下載本文檔

版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進行舉報或認(rèn)領(lǐng)

文檔簡介

2023

CloudSecurity

Report

Introduction

The2023CloudSecurityReporthighlightsthecriticalcybersecurityconcerns,incidents,andtrendsasorganizationsincreasinglyadoptmulti-cloudenvironments.Despitegrowingcloudmaturity,astaggering95%ofsecurityprofessionalsremainconcernedaboutpubliccloudsecurity,emphasizingtheurgentneedforeducation,training,andsolutionsthatkeeppacewithcomplexmulti-cloudenvironmentsandevolvingthreats.

Anongoingchallengefacedbycybersecurityprofessionalsisthelackofqualifiedsecuritystaff(43%).As72%ofrespondentsusetwoormorecloudproviders,topsecurityprioritiessuchaspreventingmisconfigurations,securingcloudapps,andachievingregulatorycompliancebecomeincreasinglychallengingduetotheriseincomplexityandattacksurface-multipliedbythecybersecuritytalentgap.Addressingthetalentshortageissuethroughcybersecuritytrainingandcertificationsemergesasavitalsolutionfororganizations.

Barrierstocloud-basedsecurityareprimarilypeopleandprocess-related,ratherthantechnology-focused.Thelackofcybersecuritystaffexpertiseandtraining(53%)remainsthehighestbarrier,followedbybudgetchallenges(44%)anddataprivacyissues(38%).Thepersistentshortageofqualifiedcybersecuritytalentisalsothemostsignificantbarriertofastercloudadoption(37%),followedbylegalandregulatorycomplianceissues(30%)anddatasecurityandleakagerisks(29%).

Inlightofthesechallenges,amajorityoforganizations(83%)acknowledgethattheirteamsrequireadditionalcloudsecuritytrainingandcertificationstobetteroperateincloudenvironments.Thereportunderscorestheimportanceofaddressingsecurityconcernsandinvestingincybersecuritytrainingandcertificationstotacklethetalentshortageandensureasecureandrobustcloudecosystem.

Wewouldliketothank

(ISC)2

forsupportingthisuniqueresearch.Wehopeyouenjoythisreport.

Thankyou,

HolgerSchulze

HolgerSchulze

CEOandFounder

CybersecurityInsiders

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

2

CloudSecurityConcerns

Despitetheincreasingmaturityofcloudtechnology,95%ofsecurityprofessionalsstillexhibitmoderatetoextremeconcernregardingpubliccloudsecurity.Thispersistenttrendhighlightsthecrucialneedforongoingcloudsecurityeducationandthedevelopmentofsolutionsthatcanadapttotheever-evolvingmulti-cloudenvironmentsandthreatlandscapes.Consequently,organizationsshouldplaceahighpriorityoncloudsecurity,investincomprehensiveprotectionstrategies,andoffercontinuoustrainingtotheirteamstomaintainasecurecloudenvironment.

Howconcernedareyouaboutthesecurityofpublicclouds?

95%

oforganizationsaremoderatelytoextremely

concernedaboutcloudsecurity

35%

Extremelyconcerned

41%

Very

concerned

19%

Moderately

concerned

4%

Slightly

concerned

1%

Notatall

concerned

Howwouldyou

describeyourorganization’scloudmaturitylevel?

23%

Earlyadopter,experimental

Intermediate,repeatable

42%

Advanced,well-architected

24%

Leader,fullyautomated

4%

Nocloudreadiness

7%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

3

CloudSecurityIncidents

Securityincidentshappenfrequently:24%oforganizationsexperiencedapubliccloud-relatedsecurityincidentinthelast12months.Miscon?gurationwastheleadingcause,followedbyaccountcompromiseandexploitedvulnerabilities.

This?ndingsuggeststhatorganizationsshouldprioritizeenhancingtheircloudsecuritymeasuresandimprovingincidentdetectionandreporting.Continuousmonitoringandregularsecurityauditscanhelporganizationsbetterunderstandtheirsecuritypostureandreducetheriskofcloud-relatedsecurityincidents.

Didyourorganizationexperienceapubliccloudrelatedsecurityincidentin

thelast12months?

76%

24%

No

Yes

Withmulti-cloudcomplexityontherise,itisnotsurprisingthat67%ofcybersecurityprofessionalsare,atbest,onlymoderatelycon?dentintheirorganization’scloudsecurityposture.Thesurveyresultsemphasizetheimportanceofcontinuousimprovementincloudsecuritystrategies,ongoingtraining,andtheimplementationofbestpracticestoincreasecon?denceandensurearobustsecuritypostureinthefaceofevolvingthreats.

Howconfidentareyouinyourorganization’scloudsecurityposture?

67%

ofcybersecurityprofessionalsare,atbest,onlymoderatelyconfidentintheirorganization’scloudsecurityposture

13%5%

49%

27%

6%

Extremelyconfident

Notatallconfident

ExtremelyconfidentVeryconfidentModeratelyconfidentSlightlyconfidentNotatallconfident

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

4

CloudSecurityRisk

Howdocloudsecurityprofessionalsfeelabouttherisklevelsofcloudversuson-premiseenvironments?Whileathirdofrespondents(30%)seetherisklevelsaboutequal,43%observeahigherdegreeofriskinthecloud.Aquarterofrespondents(27%)seealowerriskforpubliccloudbreaches.

These?ndingsdemonstratearangeofopinionsamongcybersecurityprofessionalsregardingtheriskofsecuritybreachesinpubliccloudenvironments.Ithighlightstheimportanceofunderstandingthespeci?csecurityrequirementsofanorganizationandimplementingappropriatemeasurestomitigatepotentialrisks,regardlessofthechosenenvironment.

Comparedtotraditional,on-premiseITenvironments,wouldyousaythe

riskofsecuritybreachesinapubliccloudenvironmentishigherorlower?

43%

saypubliccloudisathigherriskthanon-premiseenvironments

7%20%

13%

30%

30%

Significantlylower

Significantlyhigher

SignificantlylowerSomewhatlowerAboutthesameSomewhathigherSignificantlyhigher

Arepubliccloudapps/SaaS(suchasSalesforceandOffice365)moreor

lesssecurethanon-premisesapplications?

41%

24%

35%

Aboutthesame

Publiccloudapps

areMORE

securethan

on-premisesapps

Publiccloudapps

areLESS

securethan

on-premisesapps

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

5

CloudWorkloads

Organizationsarerapidlyshiftingworkloadstothecloud,with39%alreadyhavingmorethanhalfoftheirworkloadsinthecloud.Additionally,58%ofrespondentsplantomakethisshiftwithinthenext12-18months.Notably,organizationswithover50%ofworkloadsinthecloudwillexperiencesigni?cantchanges.Withinthenext12-18months,therewillbeanincreasefrom20%to27%inorganizationshaving51%to75%ofworkloadsinthecloud,andthosewithover75%ofworkloadsinthecloudareexpectedtorisefrom19%to31%.

These?ndingsindicateagrowingrecognitionofthebene?tsofcloudcomputing,leadingorganizationstoplanforfurtherworkloadmigrationtothecloud.Ascloudadoptioncontinuestoexpand,itiscrucialforbusinessestoconsistentlyenhancetheircloudsecuritymeasuresandstrategies.Thisensurestheprotectionofworkloadsandestablishesarobustsecurityposture.

WhatpercentageofyourWhatpercentageofyour

workloadsareinthecloudtoday?workloadswillbeinthecloud

inthenext12-18months?

TODAYNEXT12-18MONTHS

Upto25%

36%

17%

26%-50%

25%

25%

39%

arerunning

morethan

50%ofworkloads

inthecloud

51%-75%

27%

31%

20%

+75%

19%

Shareofworkloadsinthecloud

58%

willberunning

morethan

50%ofworkloads

inthecloud

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

6

72%

oforganizationsthatareinthecloudusetwoormorecloudproviders

MultipleClouds

Theresultsreflectthetrendtowardsmulti-cloudstrategiesthatofferincreasedflexibility,redundancy,andtheabilitytoleveragethestrengthsofdifferentproviders.Thismulti-cloudapproach,however,alsobringsthechallengeofmanagingandsecuringcomplexenvironmentswithmultiplecloudproviders.

With72%ofrespondentsusingtwoormorecloudproviders,topsecuritypriorities(suchaspreventingmiscon?gurations,securingcloudapps,andreachingregulatorycompliance)aremultipliedbytheincreaseincomplexityandattacksurface.

Howmanycloudprovidersdoesyourorganizationcurrentlyuse?

Two

34%

Three

19%

Morethanthree

19%

One

28%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

7

BarrierstoCloudAdoption

Whatisholdingbackorganizationsfromincreasingtheirinvestmentinthecloud?Theongoinglackofquali?edcybersecuritytalentwiththenecessaryknowledgeandexperiencetoeffectivelyimplementandmanagecloudsolutionscontinuestobethemostcriticalbarriertofastercloudadoption(37%).Thisisfollowedbylegalandregulatorycomplianceissues(30%)anddatasecurityandleakagerisks(29%).

Toovercomethesebarriers,organizationsshouldinvestinstafftrainingandcerti?cation,developrobustsecurityandcompliancestrategies,andworkcloselywithcloudserviceproviderstoensureseamlessintegrationandtoaddresssecurityconcerns.

Whatarethebiggestbarriersholdingbackcloudadoptioninyour

organization?

37%

Lackofstaff

resourcesor

expertise

30%

Legal&

regulatory

compliance

29%

Datasecurity,

loss&leakage

risks

27%

Integrationwith

existingIT

environment

24%

Fearofvendor

lock-in

23%

General

securityrisks

22%

Lackof

budget

Cost/lackofROI21%|Internalresistanceandinertia20%|Lossofcontrol19%|Complexitymanagingclouddeployment18%|Lackoftransparencyandvisibility15%|Billing&trackingissues14%|Lackofmaturityofcloudservicemodels13%|

Lackofmanagementbuy-in13%|Dissatisfactionwithcloudserviceofferings/performance/pricing12%|Lackofcustomizability10%|Lackofsupportbycloudprovider8%|Performanceofappsinthecloud8%|Availability8%|Other5%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

8

ChallengesofSecuringMulti-Cloud

Multi-cloudincreasescomplexityandcausesnewsecuritychallenges.Theskillsandexpertisethatmulti-cloudenvironmentsdemandisclearlyhighlightedinthefactthatthreeoutofthefourtopchallengesarerelatedtohavingtherighttalent,alongwithanin-depthunderstandingofeachcloudplatform.

Theongoingskillsgapisclearlythemostsigni?cantchallenge,emphasizingtheimportanceofhavingaskilledworkforcethatcaneffectivelymanageanddeploysecuritysolutionsacrossmultiplecloudplatforms.

Whatareyourbiggestchallengessecuringmulti-cloudenvironments?

58%

Havingtheright

skillstodeploy

andmanagea

completesolution

acrossallcloud

environments

52%

Ensuringdata

protectionand

privacyforeach

environment

49%

Understanding

howdifferent

solutionsfit

together

45%

44%

Lossof

visibility

and

control

Understanding

service

integration

options

Keepingupwiththerateofchange38%|Managingthecostsofdifferentsolutions37%|Providingseamlessaccesstousersbasedontheircredentials37%|Selectingtherightsetofservices36%|Other3%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

9

20%

11%7%

6%

PreferredCloudProviders

Whichprovidersareorganizationsprioritizingfortheirclouduse?Thebignameproviders,suchasMicrosoftAzure(72%)andAmazonWebServices(67%),continuetodominatethemarket.However,predictedfuturecloudadoptionisstrongforGoogleCloudPlatform(21%)andOracleCloud(20%).

WhatcloudIaaSprovider(s)doyoucurrentlyuseorplantouseinthefuture?

CURRENTUSE

72%

67%

40%

FUTUREGROWTH

15%

16%

21%

20%

16%

11%

11%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

10

47%

Managedservicesprovider

CloudSecurityChoices

Whenitcomestothechoiceofcloudsecuritydelivery,themajorityoforganizationsrelyonthenativesecuritytoolsprovidedbytheircloudproviders(74%).Thesebuilt-intoolsofferalevelofprotectionandintegrationtailoredtothespeci?ccloudenvironment,makingthemapopularchoice.

Asigni?cantnumberoforganizations(47%)choosetoworkwithmanagedservicesprovidersfortheircloudsecurityneeds.Byoutsourcingtoamanagedservicesprovider,organizationscanbene?tfromtheprovider’sexpertiseandresources,whichcanhelpthemmanagethecomplexitiesofsecuringtheircloudenvironments.Manyorganizationsalsooptforthird-partycloudsecurityvendorstoenhancetheirsecurityposture(46%).Thesevendorsofferspecializedsolutionsthatcancomplementorextendthecapabilitiesofnativesecuritytoolsprovidedbythecloudproviders.

Howdoyousourcecloudsecurity?

74%

Cloudprovidernative

securitytools

46%

Thirdpartycloud

securityvendor

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

11

NativeSecurityvsThird-Party

Whenaskedhowthird-partysecuritysolutionscomparetonativecloudsecurityplatformsprovidedbythecloudoperator,halfofcybersecurityprofessionalsthinkbothperformsimilarly(50%).Thisisfollowedby44%whothinkdedicatedthird-partysecuritysolutionsperformbetter.

These?ndingssuggestthatthereisageneralbeliefamongcybersecurityprofessionalsthatthird-partysecurityvendorscaneitherprovidesimilaror,insomecases,bettercloudsecuritycomparedtocloudvendors.Thisemphasizestheimportanceofevaluatingsecurityoptionsandchoosingthemostappropriatesolutionforanorganization’sspeci?cneedsandrequirements.

Howdoyouthinkcloudsecurityfroma3rd-partysecurityvendorcompares

withcloudsecurityfromacloudvendor?

44%

thinkthatcloudsecurityfrom

anindependentsecurityvendor

isbetterthancloudvendors

1%

50%

35%

9%

5%

Muchbetter

Muchworse

MuchbetterBetterSimilarWorseMuchworse

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

12

BestNativeCloudSecurity

Howdocybersecurityprofessionalsratethecompletenessoftheircloudproviders’nativesecurity?ThemajorityofrespondentsbelieveAzureoffersthemostsuf?cientnativecloudsecuritycontrolsandservices(73%),reflectinghighcon?denceinMicrosoft’ssecurityfeaturesandcapabilities.AWSisalsohighlyregardedbyrespondentsforitsnativecloudsecuritycontrols(66%),demonstratingstrongtrustinAmazon’ssecurityofferings.ThoughlesspopularcomparedtoAzureandAWS,asigni?cantportionofrespondentsstillconsiderGoogleCloud’snativesecuritycontrolsandservicestobesuf?cient(35%).

Whichofthefollowingplatformsprovidethemostsufficientnativecloud

securitycontrolsandservices?

73%

66%

35%

10%

4%

Alibaba

Cloud

AmazonWebServices(AWS)

OracleGOPCloud

MicrosoftAzure

GoogleCloud

Other4%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

13

BarrierstoCloud-BasedSecurity

Whatarethebiggestbarriersthatslowmigrationtocloud-basedsecurity?Interestingly,thebiggestchallengesorganizationsarefacingarenotprimarilyaboutsecuritytechnology,butaboutpeopleandprocesses.Lackofcybersecuritystaffexpertiseandtraining(53%)continuestorankasthehighestbarriertomigratingtocloud-basedsecuritysolutions.Organizationscontinuetofacechallengesinupskillingtheirteamsandprovidingthemwiththenecessaryknowledgetoeffectivelymanageandsecurecloudenvironments.

Thisisfollowedatadistancebybudgetchallenges(44%)anddataprivacyissues(38%).

Whatarethemainbarrierstomigratingtocloud-basedsecuritysolutions?

53%44%38%36%

Staffexpertise/

training

Budget

Data

privacy

Regulatory

compliance

requirements

34%

Dataresidency

31%

Lackofintegration

withon-premises

securitytechnologies

30%

Solution

maturity

21%

Sunkcostinto

on-premisestools

Integrityofcloudsecurityplatform(DDoSattack,breach)19%|Limitedcontroloverencryptionkeys18%|Scalabilityandperformance14%|Notsure/other9%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

14

OperationalSecurityHeadaches

Overall,thekey?ndingssuggestthatorganizationsfacemultiplechallengesinsecuringtheircloudworkloads,includingashortageofskilledstaff(43%),ensuringcompliance(37%),andvisibilityintotheirinfrastructuresecurity(32%).Addressingtheseissueswillrequireacombinationofimprovedsecuritytoolsandprocesses,andincreasedinvestmentincybersecuritytrainingandworkforcedevelopment.

Whatareyourbiggestoperational,day-to-dayheadachestryingtoprotect

cloudworkloads?

37%

Compliance

43%

Lackofqualifiedstaff

32%

Settingconsistentsecuritypolicies

32%

Visibility

30%

Can’tidentify

misconfigurations

quickly

29%

Automatingand

enforcingsecurity

acrossmultipleclouds

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

15

Useatrusteddevices

23%

allpersonaldevicesfromaccessing

Block

data

accesstoany

Grantdevice

9%

Apply

model

PersonalDeviceSecurity

Personaldevicesareapopularandimportantendpointforemployeesaccessingclouddataandservices–buttheyarealsoaweaklink.Howdoorganizationsprotectclouddatathatisaccessed,used,andstoredonpersonaldevices?

ThemostcommonsecuritymeasureisinstallationofMDMagentsthatmonitoruseofdataandcloudservicesonpersonaldevices(42%),followedbyusingtrusteddevicemodels(23%).And,17%oforganizationsdon’tevenpermitpersonaldeviceaccesstosensitivecloudresources.

Whatdoesyourorganizationdoforsecuringclouddataonemployees’

personaldevices?

Installagents(MDM)onalldevices

42%

17%

9%

DLPatuploadorondownload

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

16

35%

35%

34%

CloudComplianceChallenges

Thetopchallengefacedbyorganizationsinmaintainingcloudcomplianceisthelackofstaffexpertiseandknowledge(55%).Organizationsstruggleto?ndquali?edpersonnelwhocaneffectivelymanageandensurecomplianceincloudenvironments–thisissuehasbeenthetopchallengeforanumberofyears.

Thisisfollowedbythechallengeofcontinuouslystayingincomplianceascloudenvironmentschange(43%)andperformingregularaudit/riskassessments(37%).

Toovercomethesechallenges,organizationsshouldinvestinstafftrainingandcerti?cation,developeffectivecompliancemonitoringprocesses,andstayup-to-dateonregulatorychangesandemergingthreatsinthecloudenvironment.

Whichpartofthecloudcomplianceprocessisthemostchallenging?

Lackofstaffexpertise/knowledge

Continuouslystayingincomplianceascloudenvironmentschange

Goingthroughaudit/riskassessmentwithinthecloudenvironment

Stayinguptodateaboutnew/changingcomplianceandregulatoryrequirements

Monitoringfornewvulnerabilitiesincloudservicesthatmustbesecured

Monitoringforcompliancewithpoliciesandprocedures

55%

43%

37%

Scalingandautomatingcomplianceactivities24%|Dataqualityandintegrityinregulatoryreporting22%|Notsure/other7%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

17

ConfidenceinSecurity

Inwhichcomponentsoftheirbroadercloudenvironmentsarecybersecurityprofessionalsmostcon?dentregardingtheirabilitytosecureinthecloud?Corecloudcomponentssuchasservers(43%),network(37%),andwebapplications(32%)receivedthehighestcon?dencescores,indicatingthatrespondentsfeelmorecomfortablesecuringthesecomponents.Industrialcontrolsystems(ICS)/SCADAdevicesandInternetofThings(IoT)ontheotherhandshowthelowestcon?dencelevelsamongrespondents,indicatingtheseareasmayrequireadditionalattention,education,andresources.

Ofthefollowingcomponents,whichareyoumostconfidentinbeingableto

secureinthecloud?

37%

Network perimeter/DMZ(publicwebservers)

43%

Servers(physicalandvirtual)

32%

Cloudapplications(SaaS)

32%

Websitesand

webapplications

30%

Cloud

infrastructure

(IaaS,PaaS)

29%

Laptops/

notebooks

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

18

ChangingSecurityNeeds

Howdoorganizationsrespondtochangingsecurityneeds?Themostpopularapproachamongorganizationsistoinvestintrainingandcerti?cationfortheirexistingITandinformationsecuritystaff(63%).Thishelpstobridgetheskillsgapandempowersemployeestobetterhandletheuniquesecuritychallengesthatariseinthecloudenvironment.

Thisiscloselyfollowedbyusingnativecloudprovidersecuritytools(61%)–perhapsindicatingcloudprovidersadapttheirplatformsinthefaceofchangingsecurityrisks.Hiringnewcloudsecuritystaffonlyfollowsatadistantthirdspot(35%).

Byinvestingintrainingandcerti?cationfortheirIT/ISstaff,organizationscanbetterhandletheevolvingsecurityneedsoftheircloudenvironmentsandmakethemostofnativecloudprovidersecuritytools.

Whenmovingtothecloud,howdoyouhandleyourchangingsecurityneeds?

Trainand/orcertifyexistingITstaff

Usenativecloudprovidersecuritytools

(e.g.,AzureSecurityCenter,

AWSSecurityHub,GoogleCloudCommandCenter)

Hirestaffdedicatedtocloudsecurity

Partnerwitha ManagedSecurityServicesProvider(MSSP)

Deploysecurity softwarefromindependentvendors

Other2%

63%

61%

35%

34%

31%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

19

CloudBusinessOutcomes

Thesurveyresultsrevealseveralbusinessoutcomesorganizationshaverealizedbymovingtothecloud,highlightingthediversebene?tsofcloudadoption.Organizationsrankresponsivenesstocustomerneeds(52%)asthemostcommonbene?cialoutcometheyreceivedbymovingtothecloud.Thisisfollowedbyacceleratedtimetomarket(48%).Organizationsalsoseeadegreeofriskreduction(42%),closelyfollowedbyreducedcost(41%).

Theseresultsdemonstratethatcloudadoptionnotonlydrivescostsavingsandoperationalef?ciency,butalsofostersinnovation,agility,andmarketcompetitiveness.

Whatbusinessoutcomeshaveyourealizedbymovingtothecloud?

Increaseresponsivenesstocustomerneeds

52%

Acceleratetimetomarket

48%

Reduceriskandimprovesecurity

42%

Savemoney

41%

Expandmarketreachtonewmarkets

23%

Acceleraterevenuegrowthinexistingmarkets

22%

Gainparitywithcompetitors

22%

Other7%

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

20

CloudSecurityTraining

Thesurveyresultshighlightthestrongdemandforcloudsecuritytrainingandcerti?cationsamongrespondents.Alargemajorityofrespondentsbelievethattheyortheirteamwouldbene?tfromcloudsecuritytrainingand/orcerti?cations(83%),indicatingthatthereisasigni?cantneedforskilldevelopmentinordertoeffectivelyoperateincloudenvironments.

Doyouthinkyouoryourteamneedscloudsecuritytrainingand/or

certification(s)tobebetterequippedtooperateincloudenvironments?

7%10%

83%

Yes

NoNotsure

Weaskedcybersecurityprofessionalswhethertheyhaveapreferenceforvendor-speci?corvendor-neutralcloudsecuritycerti?cations.Theresultsindicatethatabalancedapproachtocloudsecuritycerti?cations,incorporatingbothvendor-speci?candvendor-neutralcredentials,ispreferredbythemajorityofrespondents(51%).Thisapproachensuresthatprofessionalsareequippedwithacomprehensiveskillset,enablingthemtoeffectivelynavigateandsecurediversecloudenvironments.

Whenconsideringcloudsecuritycertificationforyourselfand/oryourteam,

doyouconsidermostlyvendorspecificcertificationsorvendorneutralcertifications?

29%

15%

51%

5%

MostlyvendorMostlyvendor

specificneutral

Mixofboth

Notsure

2023CLOUDSECURITYREPORT

?2023

CybersecurityInsiders

All

Rights

Reserved.

21

Methodology&Demographics

The2023CloudSecurityReportisderivedfromanextensivesurveyof823cybersecurityprofessionals,conductedinMarch2023.Thestudyrevealshoworganizationsutilizingcloudservicesareaddressingsecuritythreats,aswellasthetraining,certi?cations,andbestpracticesprioritizedbyITsecurityleaders.Theparticipantsencompassadiverserangeofroles,fromtechnicalexecutivestoITsecuritypractitioners,andrepresentabalancedcross-sectionoforganizationsofvarioussizesandindustries.

CAREERLEVEL

12%

13%

20%

25%

21%

9%

SpecialistManager/SupervisorCTO,CIO,CISCO,CMO,CFO,COOConsultantDirectorOther

DEPARTMENT

17%

50%

7%4%4%4%14%

EngineeringComplianceSecOps

OperationsOther

ITSecurityITOperations

COMPANYSIZE

13%

18%

6%14%

15%

8%26%

Fewerthan1010-99

100-499500-9991,000-4,999

5,000–9,999Over10,000

INDUSTRY

19%

13%

23%

6%6%5%4%4%20%

Technology,Software&InternetFinancialServicesGovernmentHealthcare,Pharmaceuticals&BiotechProfessionalServices

TelecommunicationsEducation&ResearchEnergy&UtilitiesOther

SECURITYCERTIFICATIONSHELD

17%13%11%8%

70%

41%

19%

18%

21%

CISSPCCSPCISMSecurity+CISACEHNetwork+CRISCOther

YEARSOFSECURITYEXPERIENCE

10%

13%

24%

19%

19%

15%

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
  • 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
  • 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
  • 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
  • 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。

最新文檔

評論

0/150

提交評論