Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Hybrid Cloud Security Patterns

You're reading from   Hybrid Cloud Security Patterns Leverage modern repeatable architecture patterns to secure your workloads on the cloud

Arrow left icon
Product type Paperback
Published in Nov 2022
Publisher Packt
ISBN-13 9781803233581
Length 252 pages
Edition 1st Edition
Arrow right icon
Author (1):
Arrow left icon
Sreekanth Iyer Sreekanth Iyer
Author Profile Icon Sreekanth Iyer
Sreekanth Iyer
Arrow right icon
View More author details
Toc

Table of Contents (18) Chapters Close

Preface 1. Part 1: Introduction to Cloud Security
2. Chapter 1: Opportunities and Challenges with Hybrid Multi-cloud Solutions FREE CHAPTER 3. Chapter 2: Understanding Shared Responsibility Model for Cloud Security 4. Part 2: Identity and Access Management Patterns
5. Chapter 3: Cloud Identity and Access Management 6. Chapter 4: Implementing Identity and Access Management for Cloud Applications 7. Part 3: Infrastructure Security Patterns
8. Chapter 5: How to Secure Compute Infrastructure 9. Chapter 6: Implementing Network Isolation, Secure Connectivity, and Protection 10. Part 4: Data and Application Security Patterns
11. Chapter 7: Data Security Patterns 12. Chapter 8: Shift Left Security for DevOps 13. Part 5: Cloud Security Posture Management and Zero Trust Architecture
14. Chapter 9: Managing the Security Posture for Your Cloud Deployments 15. Chapter 10: Building Zero Trust Architecture with Hybrid Cloud Security Patterns 16. Index 17. Other Books You May Enjoy

A strategic approach to cloud security

A strategic approach to cloud security should be driven by a governance and control framework created with the enterprise’s risk appetite in mind.

Enterprise security teams led by the Chief Information Security Officer (CISO) define the policies and controls, as well as managing them against the IT budget. They leverage an IT Governance, Risk, and Compliance (GRC) framework that defines the policies and assesses the controls in place to meet the audit and compliance requirements. The audit and compliance set are based on industry needs and regulatory requirements. The risk management part of the framework continuously assesses the effectiveness of the controls against the business goals. The following diagram shows the GRC control framework, which includes the policies, controls, audit, compliance, and risk management:

Figure 2.1 – GRC for the cloud

This also includes threat management and the continuous...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime
Banner background image