• Latest
  • Trending
The Role of Cloud-Based Identities in Cloud Security

The Role of Cloud-Based Identities in Cloud Security

April 6, 2022
Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa

Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa

July 29, 2025
French Telco Orange Hit by Cyber-Attack

French Telco Orange Hit by Cyber-Attack

July 29, 2025
ATC Ghana supports Girls-In-ICT Program

ATC Ghana supports Girls-In-ICT Program

April 25, 2023
Vice President Dr. Bawumia inaugurates  ICT Hub

Vice President Dr. Bawumia inaugurates ICT Hub

April 2, 2023
Co-Creation Hub’s edtech accelerator puts $15M towards African startups

Co-Creation Hub’s edtech accelerator puts $15M towards African startups

February 20, 2023
Data Leak Hits Thousands of NHS Workers

Data Leak Hits Thousands of NHS Workers

February 20, 2023
EU Cybersecurity Agency Warns Against Chinese APTs

EU Cybersecurity Agency Warns Against Chinese APTs

February 20, 2023
How Your Storage System Will Still Be Viable in 5 Years’ Time?

How Your Storage System Will Still Be Viable in 5 Years’ Time?

February 20, 2023
The Broken Promises From Cybersecurity Vendors

Cloud Infrastructure Used By WIP26 For Espionage Attacks on Telcos

February 20, 2023
Instagram and Facebook to get paid-for verification

Instagram and Facebook to get paid-for verification

February 20, 2023
YouTube CEO Susan Wojcicki steps down after nine years

YouTube CEO Susan Wojcicki steps down after nine years

February 20, 2023
Inaugural AfCFTA Conference on Women and Youth in Trade

Inaugural AfCFTA Conference on Women and Youth in Trade

September 6, 2022
  • Consumer Watch
  • Kids Page
  • Directory
  • Events
  • Reviews
Saturday, 27 June, 2026
  • Login
itechnewsonline.com
  • Home
  • Tech
  • Africa Tech
  • InfoSEC
  • Data Science
  • Data Storage
  • Business
  • Opinion
Subscription
Advertise
No Result
View All Result
itechnewsonline.com
No Result
View All Result

The Role of Cloud-Based Identities in Cloud Security

by ITECHNEWS
April 6, 2022
in Leading Stories, Opinion
0 0
0
The Role of Cloud-Based Identities in Cloud Security

Organizations now operate in a multi-cloud world. That allows workers to be more productive and offers the accessibility and scalability that organizations need to keep business operations flowing. But it also creates a challenge—managing large numbers of cloud-based identities. Left unchecked, these can be the cause of vulnerabilities and data leakage that produce security nightmares for the IT and security teams.

The Role of Cloud-Based Identities

As more applications move to the cloud, cloud-based identities are essential to allow organizations to enforce a single source of truth for all users to maintain orderly processes for onboarding and offboarding and to track access to applications and data.

YOU MAY ALSO LIKE

French Telco Orange Hit by Cyber-Attack

ATC Ghana supports Girls-In-ICT Program

Identities in the cloud include humans but also machine identities. “In the cloud, applications are architected from microservices. Just like people, each microservice has an identity, which is granted entitlements to access data or communicate with other microservices,” explained Shai Morag, CEO and co-founder at Ermetic.

“There are tens of thousands of these machine identities in the cloud, and they, too, must be managed securely.”

At a high level, the role of a cloud-based identity is the same as any other electronic form of identity, added Eric Olden, co-founder, chairman and CEO of Strata Identity.

“It is there to link a human to an account that represents them in the digital world,” Olden explained. “The only meaningful difference between a ‘cloud identity’ and something that could be considered an ‘on-premises identity’ is that the identity object and attribute data about that identity are stored in a cloud service, not necessarily on the organization’s traditional data center infrastructure.”

The cloud service, then, provides the necessary mechanisms to use that identity for logging in to services and apps that trust the cloud identity provider. Cloud identities are also often used to access applications, like SaaS apps such as Salesforce.

Cloud Identities and Security

Cloud identities are yet another perimeter that must be defended, but it is a perimeter without physical barriers or a network. Instead, identities have to prove who they are and are given access permissions based on the identity’s function.

Because the majority of breaches start with the compromise of an identity and its associated password credentials, identity plays a fundamental role in an organization’s security strategy.

“Securing identity in an enterprise, especially in a modern cloud/hybrid world, requires a different approach than was common five years ago,” said Olden. “Back then, an organization’s resources had very well-defined perimeters and boundaries. Resources, data, services were all within the direct management and control of the organization. This made managing things like authentication and authorization relatively straightforward.”

Today, in a cloud environment with identity as the new perimeter, a different approach is needed.

“Applying a consistent set of identity policies across innumerable cloud services is one of the biggest challenges for organizations since each cloud platform (AWS, Azure, Google, etc.) uses a proprietary identity system that is incompatible with other providers’ systems,” Olden stated.

Reducing the Risks

It is impossible to completely avoid risk, so there is only mitigation and management of risk under organizations’ control. Organizations are challenged to find the most effective way to use their limited resources to reduce risk. Focusing on protecting cloud-based identities can go a long way toward shoring up an organization’s overall security best practices.

According to Olden, the key things that an organization can do to mitigate the inherent risks of using cloud-based identity services include:

• Enforce authentication to every single application—including legacy applications—through your cloud identity service. There should be no exceptions.
• Migrate away from legacy access management technologies and to a modern identity provider.
• Define and enforce robust identity life cycle and governance practices across all identities—both human and non-human.
• Enforce multifactor, passwordless authentication wherever possible.
• Begin a shift to passwordless authentication technology as soon as possible.
• Apply runtime policy evaluation and enforcement for every application, leveraging security analytics services; i.e. continuous validation of who the user is and their level of risk and authorization. A distributed identity orchestration and policy orchestration platform can provide this service at the application and cloud infrastructure layer.
• Use orchestration as a runtime enforcement layer to implement continuous real-time analysis and enforcement of identity authentication and authorization.
• Encrypt user data at all times; in motion across networks and at rest in databases and vaults.
• Enforce least-privilege access to applications and data; don’t give users access to apps and data that they don’t need. Use just-in-time access provisioning to dynamically provide access on an as-needed basis.
• Classify data and apps to better manage which apps contain sensitive data; manage the geographic storage and access requirements of data so they are aligned with multi-geography and multinational regulations.

Cloud identities are the new security perimeter, so they are an incredibly important part of any organization’s security system. Controls in place to protect the security of identities goes a long way toward protecting the security of the entire multi-cloud universe.

Source: Sue Poremba
Via: Security Boulevard
Tags: Cloud Security
ShareTweet

Get real time update about this post categories directly on your device, subscribe now.

Unsubscribe

Search

No Result
View All Result

Recent News

Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa

Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa

July 29, 2025
French Telco Orange Hit by Cyber-Attack

French Telco Orange Hit by Cyber-Attack

July 29, 2025
ATC Ghana supports Girls-In-ICT Program

ATC Ghana supports Girls-In-ICT Program

April 25, 2023

About What We Do

itechnewsonline.com

We bring you the best Premium Tech News.

Recent News With Image

Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa

Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa

July 29, 2025
French Telco Orange Hit by Cyber-Attack

French Telco Orange Hit by Cyber-Attack

July 29, 2025

Recent News

  • Absa and Visa Extend Strategic Partnership to Advance Growth and Innovation Across Africa July 29, 2025
  • French Telco Orange Hit by Cyber-Attack July 29, 2025
  • ATC Ghana supports Girls-In-ICT Program April 25, 2023
  • Vice President Dr. Bawumia inaugurates ICT Hub April 2, 2023
  • Home
  • InfoSec
  • Opinion
  • Africa Tech
  • Data Storage

© Copyright 2026, All Rights Reserved | iTechNewsOnline.Com - Powered by BackUPDataSystems

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • Tech
  • Africa Tech
  • InfoSEC
  • Data Science
  • Data Storage
  • Business
  • Opinion

© Copyright 2026, All Rights Reserved | iTechNewsOnline.Com - Powered by BackUPDataSystems

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?
Go to mobile version