Freelance Word Punk

[THIS SITE IS NO LONGER BEING UPDATED - IF YOU HAVE ENDED UP HERE YOU ARE IN THE WRONG PLACE, PLEASE CLICK WWW.HAPPYGEEK.COM TO VIEW NEW CONTENT BY DAVEY WINDER]

Monday, January 05, 2015

Achieving defence in depth in a cloud environment

Defence in depth (DiD) is, frankly, nothing new. In fact, it's as old a concept as IT security itself. Any business that considers itself to have a mature security posture will already be applying such an approach within their enterprise security model. The question is can you apply the same thing to a cloud-centric operation? More to the point, can you afford not to? First of all let's consider what we mean by defence in depth in the first place, and for the purposes of this particular application that's simply a risk mitigation construct which employs multiple layers of control throughout the IT environment designed to slow down and protect against the inevitability of attack. In other words, if employed correctly such a strategy can prevent breach and help the enterprise respond effectively to any attack by buying time through its layered approach.
Newer Post Older Post Home

Blog Archive




Co-founder of IT Security Thing Ltd, Davey Winder is a three time winner of the Information Security Journalist of the Year award (2006/2008/2010) and received the prestigious Enigma Award for his lifetime contribution to information security journalism in 2011.



Simple theme. Powered by Blogger.