CyberzSOC

Publication detail
← Back to advisories & guidance

CSI: Secure Data in the Cloud ↗ source

March 7, 2024 NSA Guidance

Summary

Security | Cybersecurity Information As organizations move more of their data into cloud environments, the prevention of unauthorized access to that data is extremely important. Data stored in the cloud can take many forms depending on the needs of the organization. For these reasons, organizations must understand the sensitivity of the data they store in the cloud, select the appropriate storage services, and apply pragmatic security methods to properly protect their data. The purpose of this cybersecurity information sheet is to provide an overview of what cloud storage is and common practices for properly securing and auditing cloud storage systems. The three main types of data storage that cloud service providers (CSP) offer are: via protocols like network file system or server message block protocols. these objects by interacting with the Object storage application programming amounts of hard drive space, ranging from Nonvolatile Memory Express (NVME), Solid State Drive (SSD), and Hard Disk Drive (HDD) speeds and File, Object, and Block storage systems are not only standalone systems, but also are used as the building blocks for cloud-specific platform as a service (PaaS) and software as a service (SaaS) offerings. PaaS instances are on-demand, comprehensive platforms used for deploying custom software in the cloud.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

No CVEs are referenced in this publication.

Vendors Named in This Publication

Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.