How Biden’s Cloud Security Executive Order Stacks Up to Industry Expectations

While we’re seeing the effects of larger, more expensive cyberattacks, those effects also ripple out into government policy. The growth of cloud security needs and products reflects the wider world in two major ways: the rise of remote work and increased U.S. federal interest. A recent executive order aims to improve the U.S. federal government’s visibility into digital threats by encouraging industry innovation. Take a look at how these two aspects work together.
Changes in Cloud Security and the Cybersecurity Industry

Of all the things that slowed down in 2020, worldwide spending on information security wasn’t one of them. And it keeps growing. In May 2021, Gartner projected that organizations will spend $150.4 billion on this area by the end of the year. That will be growth of 12.4% — nearly double the rate for 2020.

https://www.graphicartsmedia.com/advert/direct-match-psg-brest-en-direct-live-free-20-august-2021-today/

https://www.deviantart.com/psg24livetv/journal/Watch-FREE-PSG-vs-Brest-Live-StReam-2021-Free-S-889372238

https://www.deviantart.com/psg24livetv/journal/Watch-PSG-vs-Brest-Live-Stream-Free-889372213

https://www.deviantart.com/psg24livetv/journal/LiVe-Soccer-PSG-vs-Brest-Live-stream-Soccer-TV-889372174

https://www.deviantart.com/psg24livetv/journal/PSG-vs-Brest-live-stream-Soccer-On-20-Aug-2021-889372133

https://www.deviantart.com/psg24livetv/journal/Live-Game-PSG-vs-Brest-Live-Stream-Soccer-TV-889372102

https://www.deviantart.com/psg24livetv/journal/Live-Free-2021-German-Bundesliga-Live-STREAM-889372043

https://www.deviantart.com/psg24livetv/journal/2021-German-Bundesliga-Tv-PSG-vs-Brest-Live-Free-889372001

https://www.deviantart.com/psg24livetv/journal/Watch-PSG-vs-Brest-Live-Stream-Sunday-20-August-889371966

https://www.deviantart.com/psg24livetv/journal/StreamS-reddit-PSG-vs-Brest-Live-Free-Reddit-TV-889371929

https://www.deviantart.com/psg24livetv/journal/PSG-vs-Brest-Live-StReams-FrEe-Reddit-889371741

https://www.deviantart.com/psg24livetv/journal/Soccer-TV-PSG-vs-Brest-Live-Final-Football-Reddit-889371696

https://www.deviantart.com/psg24livetv/journal/HDQ-PSG-vs-Brest-Live-Stream-Free-on-Reddit-TV-889371481

https://www.deviantart.com/psg24livetv/journal/PSG-vs-Brest-Live-2021-German-Bundesliga-Streaming-889371438

https://www.deviantart.com/psg24livetv/journal/Streams-PSG-vs-Brest-Live-Streaming-Reddit-FREE-889371358

https://www.deviantart.com/psg24livetv/journal/Watch-PSG-vs-Brest-Live-Streaming-German-Bundeslig-889371336

https://www.deviantart.com/psg24livetv/journal/WATCH-PSG-vs-Brest-FREE-LIVE-STREAM-8-20-2021-889371293

https://www.deviantart.com/psg24livetv/journal/Carckstreams-PSG-vs-Brest-Live-Reddit-8-20-2021-889371252

https://www.deviantart.com/psg24livetv/journal/Buffstreams-PSG-vs-Brest-Live-Reddit-8-20-2021-889371209

https://www.deviantart.com/psg24livetv/journal/FREE-Streams-PSG-vs-Brest-live-stream-reddit-889371138

https://www.deviantart.com/psg24livetv/journal/LIVESTREAM-Official-PSG-vs-Brest-Live-Streams-889371109

https://www.deviantart.com/psg24livetv/journal/C-rackstreams-PSG-vs-Brest-Live-Streaming-Reddit-889371037

https://www.deviantart.com/psg24livetv/journal/FREE-PSG-vs-Brest-Live-Stream-Reddit-German-Bun-889371018

https://www.deviantart.com/psg24livetv/journal/Watch-LIVE-PSG-vs-Brest-Live-Online-20-August-21-889370986

https://www.deviantart.com/psg24livetv/journal/Watch-PSG-vs-Brest-Live-Stream-Reddit-German-Bu-889370937

Some elements will see even higher rates of growth. For instance, Gartner projected that cloud security spending will rise from $595 million to $841 million, an increase of 41.2%. This was followed by data security, infrastructure protection and identity and access management at 17.5%, 16.8% and 15.6%, respectively.
A Reflection of Reality

Gartner’s predictions reflect the wider world in two ways. First, they reflect the extent to which cloud computing security changed in the era of remote work. This interplay, in turn, disrupted the ways in which security teams approach many of their functions.

Take incident response, for example. Prior to 2020, these team members all worked from a central location, which allowed them to share knowledge. This changed when employees began to access cloud-based assets via personal devices connected to their home networks. If an employee’s home network suffers a compromise, the incident response team can’t go to the employee’s home and check it out. The employee might need to send an infected device to the responder instead, which could give attackers a chance to burrow into the affected group’s network and access other assets hosted in the cloud.

Second, Gartner’s forecast matches the federal government’s view of information security following several supply chain attacks. In the beginning of May, for instance, President Joe Biden released an executive order titled Improving the Nation’s Cybersecurity.

One of the executive order’s sections, “Modernizing Federal Government Security,” aims to improve the U.S. federal government’s visibility into digital threats. It does this by declaring the need to “accelerate movement to secure cloud services, including software as a service (SaaS), infrastructure as a service (IaaS) and platform as a service (PaaS)”.

The section went on to frame the importance of cloud security in the context of other data protection efforts, such as moving towards a zero trust architecture and deploying an endpoint detection and response (EDR) solution.
Realizing Gartner’s Predictions

The security efforts highlighted by the president cohere with Gartner’s projections for the rest of 2021. Take zero trust. Cloud and mobile networks expand as businesses move along in their digital journeys. There are so many devices to manage that security teams can’t track all of their assets by hand. They need automation to verify the security of those assets on an ongoing basis. That’s what they can get with a robust zero trust model.

At the same time, endpoint security efforts have evolved beyond laptops. The fact that businesses and agencies often now manage not one, but several cloud environments means they need to manage their connections across their entire IT landscape. EDR solutions aren’t in a position to do that without weighing defending teams down with alerts they don’t need. In response, many are looking to extended detection and response (XDR) as a means of streamlining many of their existing tasks and freeing up their security teams’ time.
Dispelling Cloud Security as Its Own Island

The discussions above convey how cloud security is not separate from other elements of an organization’s security program. On the contrary, it blends with and supports efforts to implement zero trust, XDR and other security concepts. Organizations can use this fact to allocate their information security spending and build a holistic program for the year ahead.

Contributing Editor

David Bisson is an infosec news junkie and security journalist. He works as Contributing Editor for Graham Cluley Security News and Associate Editor for Trip…

Leave a Reply

Your email address will not be published. Required fields are marked *