Too Fast for Comfort? Cloud-Based App Deployment Outpacing Security Abilities
The 2018 Enterprise Cloud Trends report found that most organizations' IT staff are struggling to keep up with the demand for cost-effective enterprise cloud applications.
April 11, 2018 at 01:35 PM
4 minute read
Organizations are deploying cloud-based applications faster than they can secure them, according to the 2018 Enterprise Cloud Trends report, a survey of 200 IT decision-makers in U.S. corporations with at least 500 employees.
The report, commissioned by IT company iboss, found that the move to cloud-based applications is set to increase in the months and years to come. While an average of only 21 percent of respondents' applications are currently cloud-based, respondents expect that to rise to 28 percent over the next year and 33 percent over the next one to two years.
What's more, though organizations currently spend an average of 26 percent of their IT budget on cloud applications, respondents also expect that to rise to 31 percent over the next year, and 39 percent over the next two years.
Most organizations are able to handle the technical challenges of moving to cloud-based solutions, with 83 percent of IT decision-makers noting they were comfortable with supporting the change. But while they can support cloud applications, securing them is another story. Almost two-thirds, 64 percent, said their organizations' adoption of cloud-based applications is outpacing their ability to properly secure them.
So why are companies moving to cloud-based apps faster than they can potentially secure them? For most, it's about capital. Fifty-five percent of respondents cited cost-savings as the biggest benefit they experience from moving to cloud-based applications, while 54 percent also cited increased revenue.
What's more, almost half, 49 percent, of IT decision-makers said they will make all of their investment back from a cloud-based application, while 35 percent pegged their return on investment (ROI) at 150 percent, and 15 percent expected to double their investment.
To be sure, there are a number of potential security issues facing cloud application deployments, including the prospect of sensitive data being uploaded to, or accessed through, cloud services.
“Employees may not know that they're not allowed to upload [sensitive data] into their sanctioned cloud storage app and cause a compliance violation, or they may share confidential client documents through an unsanctioned app that isn't secure and trigger a violation that way,” Jervis Hui, product marketing manager at Netskope, previously told Legatech News.
Implementing strict access control on all cloud applications, therefore, is pivotal to a company's compliance and security needs. But oftentimes, it is not enough. Given the ability of malware to quickly spread through cloud-connected devices, it is also vital for companies to ensure their cloud provider has significant cybersecurity protocols in place.
However, many will erroneously assume cloud vendors have such security controls in place. “You have this false sense of security when we're using a cloud service provider that they are going to be thinking about security, and oftentimes that is not how it works,” Holly Brady, senior counsel at Altria Client Services, told ALM Media's 2017 cyberSecure conference in New York.
Even large well-known cloud providers, such as Amazon, have experienced breaches in the past. “It seems that not a week goes by that we don't see a headline about an insecure Amazon web service [exploit],” Brady said.
The need for cloud security is essential, given that many organizations use cloud-based apps to store potentially sensitive data. The survey found that almost two-thirds, 63 percent, used or planned to use cloud-based applications for email, while 59 percent used or planned to use them for file sharing, 57 percent for human resources work, and 55 percent for customer relationship management programs.
This content has been archived. It is available through our partners, LexisNexis® and Bloomberg Law.
To view this content, please continue to their sites.
Not a Lexis Subscriber?
Subscribe Now
Not a Bloomberg Law Subscriber?
Subscribe Now
NOT FOR REPRINT
© 2025 ALM Global, LLC, All Rights Reserved. Request academic re-use from www.copyright.com. All other uses, submit a request to [email protected]. For more information visit Asset & Logo Licensing.
You Might Like
View AllTrending Stories
Who Got The Work
J. Brugh Lower of Gibbons has entered an appearance for industrial equipment supplier Devco Corporation in a pending trademark infringement lawsuit. The suit, accusing the defendant of selling knock-off Graco products, was filed Dec. 18 in New Jersey District Court by Rivkin Radler on behalf of Graco Inc. and Graco Minnesota. The case, assigned to U.S. District Judge Zahid N. Quraishi, is 3:24-cv-11294, Graco Inc. et al v. Devco Corporation.
Who Got The Work
Rebecca Maller-Stein and Kent A. Yalowitz of Arnold & Porter Kaye Scholer have entered their appearances for Hanaco Venture Capital and its executives, Lior Prosor and David Frankel, in a pending securities lawsuit. The action, filed on Dec. 24 in New York Southern District Court by Zell, Aron & Co. on behalf of Goldeneye Advisors, accuses the defendants of negligently and fraudulently managing the plaintiff's $1 million investment. The case, assigned to U.S. District Judge Vernon S. Broderick, is 1:24-cv-09918, Goldeneye Advisors, LLC v. Hanaco Venture Capital, Ltd. et al.
Who Got The Work
Attorneys from A&O Shearman has stepped in as defense counsel for Toronto-Dominion Bank and other defendants in a pending securities class action. The suit, filed Dec. 11 in New York Southern District Court by Bleichmar Fonti & Auld, accuses the defendants of concealing the bank's 'pervasive' deficiencies in regards to its compliance with the Bank Secrecy Act and the quality of its anti-money laundering controls. The case, assigned to U.S. District Judge Arun Subramanian, is 1:24-cv-09445, Gonzalez v. The Toronto-Dominion Bank et al.
Who Got The Work
Crown Castle International, a Pennsylvania company providing shared communications infrastructure, has turned to Luke D. Wolf of Gordon Rees Scully Mansukhani to fend off a pending breach-of-contract lawsuit. The court action, filed Nov. 25 in Michigan Eastern District Court by Hooper Hathaway PC on behalf of The Town Residences LLC, accuses Crown Castle of failing to transfer approximately $30,000 in utility payments from T-Mobile in breach of a roof-top lease and assignment agreement. The case, assigned to U.S. District Judge Susan K. Declercq, is 2:24-cv-13131, The Town Residences LLC v. T-Mobile US, Inc. et al.
Who Got The Work
Wilfred P. Coronato and Daniel M. Schwartz of McCarter & English have stepped in as defense counsel to Electrolux Home Products Inc. in a pending product liability lawsuit. The court action, filed Nov. 26 in New York Eastern District Court by Poulos Lopiccolo PC and Nagel Rice LLP on behalf of David Stern, alleges that the defendant's refrigerators’ drawers and shelving repeatedly break and fall apart within months after purchase. The case, assigned to U.S. District Judge Joan M. Azrack, is 2:24-cv-08204, Stern v. Electrolux Home Products, Inc.
Featured Firms
Law Offices of Gary Martin Hays & Associates, P.C.
(470) 294-1674
Law Offices of Mark E. Salomone
(857) 444-6468
Smith & Hassler
(713) 739-1250