Saturday, May 10, 2025
News PouroverAI
Visit PourOver.AI
No Result
View All Result
  • Home
  • AI Tech
  • Business
  • Blockchain
  • Data Science & ML
  • Cloud & Programming
  • Automation
  • Front-Tech
  • Marketing
  • Home
  • AI Tech
  • Business
  • Blockchain
  • Data Science & ML
  • Cloud & Programming
  • Automation
  • Front-Tech
  • Marketing
News PouroverAI
No Result
View All Result

How finops can make the cloud more secure

January 12, 2024
in Cloud & Programming
Reading Time: 3 mins read
0 0
A A
0
Share on FacebookShare on Twitter


Cloud finops is the discipline of accounting for and optimizing cloud computing spending. It’s a reaction to years of undisciplined cloud spending or a way to bring order back to using cloud resources. Overall, it is a step in the right direction. However, it’s rarely discussed as a path to enhanced security.

The links to cloud security

Effective cloud finops requires a strong understanding of cloud usage patterns. What occurs during normal operations? By identifying and tracking cloud usage, finops teams can detect anomalies. They can also see most misconfigurations of cloud security and, thus, potential security threats.

The best part is they can do this well before a breach is likely to occur.

Finops tools provide insights into cloud cost management. Unexpected spikes in spending might indicate a data breach, such as CPU saturation due to an attack being underway.

Finops also can help integrate security policies with financial controls. Teams can ensure that only approved resources and configurations are used. This reduces the risk of misconfigurations that might lead to vulnerabilities and data breaches. Show me a deployed cloud; I’ll show you dangerous misconfigurations. Also, the more complex things are, such as with multicloud, the more likely you are to see these misconfigurations.

Attackers with unauthorized access to cloud accounts can manipulate financial settings and launch unauthorized services without the account owner’s knowledge. Policies from finops tools can defend against the unauthorized resource provisioning of machine instances and storage. This reduces the risk of identity theft.

Showback and chargeback data can help pinpoint which teams have misconfigured their cloud services. Also, budget alerts set to spending thresholds can identify potential misconfigurations in cloud services.

Getting finops and cloud security in sync

The current relationship between cloud finops and cloud security is usually nonexistent. Indeed, many see the finops team as those annoying people who send emails asking that cloud instances be shut down or warn that you’re about to exceed your allotted budget for cloud database usage. They sit at different cafeteria tables and go to separate bars after work.

Since each group can benefit the other, how do we get them working better together? I have a few suggestions.

Established finops and cybersecurity teams should evaluate their working relationship annually as part of a continuous improvement effort. I’m seeing significant breaches occur, only to find that the finops team saw the rise in CPU costs, which would have been an indicator that an attack had begun. But it was well under the radar of the cloud security teams for some reason.

Also, cross-train people in the tools. The finops people should have a good understanding of how the security tools function and the security team should be comfortable with the finops tools. Both groups need real-time access to the dashboards they need to carry out their functions, with security having more data points to do their jobs more effectively.

Overall, this speaks to the need for higher levels of observability, including operations, spending, security, governance, etc. Rather than focus on tactical silos of technology, such as within a single cloud provider, deploy tools that exist above the public cloud providers and even above the legacy and traditional on-premises systems. This is the whole idea behind a supercloud or metacloud, which is still growing as a concept and a technology stack.

Until enterprises move to cross-platform observability, at least do the easy things to be more productive and more secure. Having the security team and the finops team talk to each other is a good first step.

Copyright © 2024 IDG Communications, Inc.



Source link

Tags: cloudFinOpsSecure
Previous Post

Meet DeepSeek LLMs: A Series of Open-Source AI Models Trained from Scratch on a Vast Dataset of 2 Trillion Tokens in both English and Chinese

Next Post

Quick Sort in C Guide [With Code]

Related Posts

Top 20 Javascript Libraries You Should Know in 2024
Cloud & Programming

Top 20 Javascript Libraries You Should Know in 2024

June 10, 2024
Simplify risk and compliance assessments with the new common control library in AWS Audit Manager
Cloud & Programming

Simplify risk and compliance assessments with the new common control library in AWS Audit Manager

June 6, 2024
Simplify Regular Expressions with RegExpBuilderJS
Cloud & Programming

Simplify Regular Expressions with RegExpBuilderJS

June 6, 2024
How to learn data visualization to accelerate your career
Cloud & Programming

How to learn data visualization to accelerate your career

June 6, 2024
BitTitan Announces Seasoned Tech Leader Aaron Wadsworth as General Manager
Cloud & Programming

BitTitan Announces Seasoned Tech Leader Aaron Wadsworth as General Manager

June 6, 2024
Copilot Studio turns to AI-powered workflows
Cloud & Programming

Copilot Studio turns to AI-powered workflows

June 6, 2024
Next Post
Quick Sort in C Guide [With Code]

Quick Sort in C Guide [With Code]

Do Better AI Prompts Translate to Better Outcomes?

Do Better AI Prompts Translate to Better Outcomes?

Junia AI: Content Creation Tool

Junia AI: Content Creation Tool

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest
Is C.AI Down? Here Is What To Do Now

Is C.AI Down? Here Is What To Do Now

January 10, 2024
Porfo: Revolutionizing the Crypto Wallet Landscape

Porfo: Revolutionizing the Crypto Wallet Landscape

October 9, 2023
A Complete Guide to BERT with Code | by Bradney Smith | May, 2024

A Complete Guide to BERT with Code | by Bradney Smith | May, 2024

May 19, 2024
How To Build A Quiz App With JavaScript for Beginners

How To Build A Quiz App With JavaScript for Beginners

February 22, 2024
Saginaw HMI Enclosures and Suspension Arm Systems from AutomationDirect – Library.Automationdirect.com

Saginaw HMI Enclosures and Suspension Arm Systems from AutomationDirect – Library.Automationdirect.com

December 6, 2023
Part 1: ABAP RESTful Application Programming Model (RAP) – Introduction

Part 1: ABAP RESTful Application Programming Model (RAP) – Introduction

November 20, 2023
Can You Guess What Percentage Of Their Wealth The Rich Keep In Cash?

Can You Guess What Percentage Of Their Wealth The Rich Keep In Cash?

June 10, 2024
AI Compared: Which Assistant Is the Best?

AI Compared: Which Assistant Is the Best?

June 10, 2024
How insurance companies can use synthetic data to fight bias

How insurance companies can use synthetic data to fight bias

June 10, 2024
5 SLA metrics you should be monitoring

5 SLA metrics you should be monitoring

June 10, 2024
From Low-Level to High-Level Tasks: Scaling Fine-Tuning with the ANDROIDCONTROL Dataset

From Low-Level to High-Level Tasks: Scaling Fine-Tuning with the ANDROIDCONTROL Dataset

June 10, 2024
UGRO Capital: Targeting to hit milestone of Rs 20,000 cr loan book in 8-10 quarters: Shachindra Nath

UGRO Capital: Targeting to hit milestone of Rs 20,000 cr loan book in 8-10 quarters: Shachindra Nath

June 10, 2024
Facebook Twitter LinkedIn Pinterest RSS
News PouroverAI

The latest news and updates about the AI Technology and Latest Tech Updates around the world... PouroverAI keeps you in the loop.

CATEGORIES

  • AI Technology
  • Automation
  • Blockchain
  • Business
  • Cloud & Programming
  • Data Science & ML
  • Digital Marketing
  • Front-Tech
  • Uncategorized

SITEMAP

  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2023 PouroverAI News.
PouroverAI News

No Result
View All Result
  • Home
  • AI Tech
  • Business
  • Blockchain
  • Data Science & ML
  • Cloud & Programming
  • Automation
  • Front-Tech
  • Marketing

Copyright © 2023 PouroverAI News.
PouroverAI News

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In