THREAT BRIEFING · 09.10.2026 DEENFRES

Practice & Implementation

The Cloud Demands New Security Measures

By Tobias Massow · March 12, 2020 · 3 min read

Using virtual storage clouds in enterprises has already proven its value. Yet cloud infrastructure still harbors security gaps that can pose a massive challenge for your organization. Here’s how to protect your data with the right security measures.

Securing your data in the cloud requires far more comprehensive security measures than traditional on-premises systems. Accordingly, methods designed to protect locally stored data cannot simply be transferred to the cloud environment.

Below, you’ll find a concise overview of tools that help safeguard workloads and containers against data loss or cyberattacks.

Protecting Workloads Against Data Loss and System Failures

On one hand, implementing a cloud environment gives enterprises significantly greater flexibility in handling data. At the same time, however, they partially sacrifice control – potentially increasing their exposure to sensitive corporate data.

Built-in workload encryption systems – or flexible, deployable tools that integrate directly into VMs (virtual machines) – offer optimal solutions for securing cloud access. Defined permissions also allow continuous monitoring of security status.
Examples of such agent-based tools that can be embedded into your VM infrastructure include: Cipher Cloud, Dome9, veeam, and Cloud Passage.

Securing Containers via Third-Party Tools

Securing container-generated images is best achieved using specialized, container-native tools. To scan your container images effectively, third-party solutions are recommended – even when cloud providers offer built-in tools – because they deliver superior runtime environments.

Specialized tools from vendors such as Aqua Security, Sysdig, Tenable, and Anchore can significantly enhance your container security posture.

 

Key Facts

Cloud security incidents: 45 percent of data breaches involve cloud environments.

Misconfigurations: 80 percent of cloud security incidents stem from misconfigurations.

Frequently Asked Questions

Every question is locked. A tap unlocks the answer.

Is the cloud inherently safer than on-premises infrastructure?

Not automatically. While cloud providers typically offer stronger physical security and more robust patch management, responsibility for configuration, access governance, and data protection rests with the customer – the so-called Shared Responsibility Model.

What is the Shared Responsibility Model?

Cloud providers secure the underlying infrastructure (hardware, network, data center), while customers are responsible for protecting their data, access controls, and configurations. The precise division of duties varies depending on the service model (IaaS, PaaS, SaaS).

Which cloud certifications should you prioritize?

ISO 27001, SOC 2 Type II, and C5 (BSI) are the most critical. For EU data protection compliance, it’s also essential to verify whether the provider processes data exclusively within the EU – and whether it adheres to the EU-U.S. Data Privacy Framework.

Related Articles

More from the MBF Media Network

cloudmagazinDesigning Secure Cloud Migrations

TL;DR

Translated from the German original using artificial intelligence. The German version is authoritative.

Further reading

A magazine by Evernine Media GmbH