Designing a security-first cloud architecture
Securing cloud infrastructure is quite different from traditional on-premises environments due to some of the following:
- There are fundamental differences in how the cloud environments are provisioned, accessed, and exposed when compared to traditional on-premises environments that are locked in.
- The evolution of modern cloud-native DevSecOps practices democratized application development methodologies such as microservices, containers, and API-first.
- The velocity and variety of cloud services and offerings and how they are consumed.
It is essential for enterprises to build an in-depth defense security strategy to ensure every layer of the cloud stack is fortified. As the availability of public cloud services constantly evolves, enterprise security architecture must periodically evaluate and certify the public cloud services based on a host of security and compliance criteria and publish them internally as a guide...