Demo Request
Take a personalized product tour with a member of our team to see how we can help make your existing security teams and tools more effective within minutes.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Home
Blog

Zero Trust in the Cloud: Why Total Context Matters

Dr. Chase Cunningham
Updated
January 4, 2024
November 29, 2024
5 min read
Ready to Close the SaaS Security Gap?
Chat with us

In recent years, the cloud has become the go-to platform for businesses of all sizes. The agility, scalability, and cost-effectiveness it offers are undeniable advantages. However, this rapid shift to the cloud has also exposed organizations to a host of new SaaS security challenges. As more data and applications migrate to cloud environments, traditional security models are no longer sufficient. In the future, security will need Zero Trust.

‍

Zero Trust is a security framework that assumes that no one, whether inside or outside the organization, should be trusted by default. Instead, it requires continuous verification of identities and strict access control. In the cloud, this approach is essential, but to make it truly effective, it demands a comprehensive understanding of the connections and access points in your environment – in other words  – total context across all infrastructure.

‍

The Move to Cloud Resources

According to Statista, in 2020, 88% of organizations worldwide used public cloud services. This number is expected to grow, as cloud computing provides the flexibility needed in today's fast-paced business landscape.

‍

With the rapid adoption of cloud resources, the attack surface has expanded significantly. Each cloud instance, service, or application represents a potential entry point for attackers. In this environment, unmanaged applications and cloud misconfigurations have become common vulnerabilities, exposing sensitive data to breaches.

‍

Unmanaged Applications and Cloud Misconfigurations

Recent data from cybersecurity firms paints a concerning picture. Research by McAfee found that the average enterprise uses over 2,200 cloud applications, but IT departments are aware of only 10% of them. The remaining 90% are unmanaged, often unvetted, and pose significant security risks.

‍

Cloud misconfigurations, on the other hand, are more common than you might think. A report by Palo Alto Networks revealed that misconfigured cloud storage is a primary source of data breaches. In 2019, misconfigurations were responsible for 73% of incidents in the cloud.

‍

Recent Breaches Due to Misconfiguration and Unmanaged Access

  1. Capital One (2019): In one of the most high-profile breaches, a misconfigured web application firewall allowed a hacker to gain access to Capital One's AWS-hosted databases. This breach exposed the personal information of over 100 million customers.
  2. Marriott International (2020): Misconfigured security settings in a SaaS application led to unauthorized access to Marriott's guest reservation system. This breach affected the personal data of 5.2 million guests.
  3. Facebook (2019): In this case, unmanaged access to third-party data by app developers resulted in a breach of user data. Millions of Facebook users' data were exposed through improperly managed APIs.

Why Total Context Matters

In the future, breaches such as the ones above can be mitigated by adopting Zero Trust Security and understanding how to create a total context for your infrastructure. Zero Trust in the cloud cannot be effective without a deep understanding of the connections and access within your environment, which means you need to understand the cloud’s total context. Total context means having real-time visibility into who is accessing what, from where, and why.

  1. User and Device Behavior: It's not enough to know who has access; you need to understand how users and devices behave. Behavioral analytics can identify anomalies, such as unusual access patterns or unexpected data transfers, which may indicate a security threat.
  2. Application Usage: Tracking application usage helps identify unmanaged or potentially risky applications. This insight is crucial for enforcing policies and ensuring that only authorized apps are used within your cloud environment.
  3. Configuration Management: Misconfigurations can be mitigated through continuous monitoring of cloud configurations. This includes ensuring that storage buckets, databases, and other resources are properly configured to prevent unauthorized access.
  4. Access Control: With total context, access control becomes dynamic and adaptive. You can apply policies that grant or deny access based on real-time data, reducing the risk of unauthorized access.

Conclusion

In an era where cloud adoption continues to surge, security cannot be an afterthought. The statistics and data on unmanaged applications and cloud misconfigurations, coupled with recent high-profile breaches, are alarming, highlighting the urgency of adopting a more robust SaaS security approach. In the cloud, the key to protecting your data and resources is simple: trust no one until you have total context.

‍

No items found.

Dr. Chase Cunningham

ABOUT THE AUTHOR

Dr. Chase Cunningham is VP of Security Market Research at G2. With over two decades of experience in Cyber Forensic and Analytic Operations, he has held senior security and analyst roles at NSA, CIA, FBI, and other government agencies, as well as with industry leaders Accenture and Forrester.

Technical Review by:
Gal Nakash
Technical Review by:
Dr. Chase Cunningham

Dr. Chase Cunningham is VP of Security Market Research at G2. With over two decades of experience in Cyber Forensic and Analytic Operations, he has held senior security and analyst roles at NSA, CIA, FBI, and other government agencies, as well as with industry leaders Accenture and Forrester.

Table of Contents
Let’s Talk About Your Non-Human Users
Chat with us
Get the Latest SaaS Security Insights
Subscribe to receive updates on the latest cyber security attacks and trends in SaaS Security.

Explore Related Posts

OWASP Top 10 for LLM Applications: What Every Security Team Needs to Know
Tal Shapira
Learn how the OWASP Top 10 for LLM Applications helps security teams identify risks like prompt injection, excessive agency, and data poisoning across every LLM and agent deployment. Discover how the 2026 framework connects to the Agentic AI Top 10 and how to operationalize both across your organization.
EchoLeak Vulnerability: What Microsoft's CVE-2025-32711 Revealed About AI Agent Security Gaps
Gal Nakash
Learn how EchoLeak (CVE-2025-32711) lets attackers exfiltrate Microsoft 365 Copilot data with zero clicks, and what it reveals about AI agent security most enterprises haven't addressed. This article breaks down the attack chain, the broader prompt injection risk, and how Reco maps Copilot access to shut exposure down before it's exploited.
Claudeforce Makes One Thing Clear: Apps Aren't Dying. They're the Agent's Runtime.
Tal Shapira
Salesforce and Anthropic announced Claudeforce, an expanded partnership that plugs Claude directly into the data, workflows, and governance of the Salesforce platform. The headline product is Salesforce in Claude — a plugin with 37 prebuilt sales skills (e.g., meeting prep, deal health, pipeline review) that lets a seller reason over live revenue data and take governed action without leaving Claude.
See more featured resources

Your agents are already running. Do you know what they're doing?

Request a demo