Security builder & leader

Top 10 Cloud Security Risks

Ten cloud-specific risks: lack of risk management framework, infrastructure sharing compromises, inconsistent controls in changing environments, loss of direct control, hypervisor exploitation, cross-VM inference attacks, misconfiguration vulnerabilities, unclear GRC programs, responsibility gaps between parties, and limited visibility into cloud operations.

Like any model of IT services, the cloud introduces several security challenges specific to this paradigm of computing.

Below are my top 10 cloud-specific risks that customers should understand and address when adopting cloud services. This is a summary of the key aspects of my earlier post on the topic.

If you found this useful, you might like my other cloud security posts.

Update: For a follow-up to this post, see my note on Cloud Risks and the Security Risks.

About the Author

Lenny Zeltser is a cybersecurity executive with deep technical roots, product management experience, and a business mindset. As CISO at Axonius, he leads the security and IT program, focusing on trust and growth. He is also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. Lenny shares his perspectives on security leadership and technology at zeltser.com.

Learn more →