The monitoring and auditing of multi-cloud environments
Monitoring is a crucial part of multi-cloud visibility. It can have multiple layers, such as the following:
- Resource utilization (performance logging)
- Monitoring running applications for errors (application logging)
- Security auditing and logging to detect security incidents
In this section, we will focus on security monitoring. When selecting a security monitoring solution for multi-cloud environments, look for the following capabilities:
- The ability to connect to multiple cloud providers, using the native cloud provider APIs
- The ability to connect to remote APIs using secured protocols (such as TLS 1.2)
- Built-in connectors for multiple cloud solutions (both common Infrastrucure as a Service (IaaS)/Platform as a Service (PaaS) and SaaS)
- The ability to receive feeds from threat detection services such as Amazon GuardDuty, Microsoft Defender for Cloud, and Google Security Command Center...