Cloud Migration Presents Visibility Challenges
As workloads migrate to the cloud, so too must security, which can be easily added each time a user adds a workload, according to Caleb Barlow, IBM Security's vice president of threat intelligence. But cloud doesn't offer the same visibility as a traditional on-premise environment, Barlow said, lacking both a perimeter as well as access to the same fidelity of network data as in a traditional infrastructure.
As recently as a half-decade ago, Barlow said security was expected to be the last thing to move to the cloud, but that has changed as cloud workloads have become more and more accepted. As a result, Barlow said vendors have been focused on moving existing security offerings to the cloud as well as building cloud-native security offerings.
Since cloud security tools often aren't sitting in a traditional network, Barlow said visibility for organizations typically becomes restricted to applications and the endpoint. Companies are additionally dependent on the cloud vendor to provide hooks for ancillary security tools, according to Barlow.