{"id":5558,"date":"2024-10-01T11:00:00","date_gmt":"2024-10-01T16:00:00","guid":{"rendered":"https:\/\/www.darkreading.com\/vulnerabilities-threats\/infrastructure-vs-runtime-where-are-your-priorities"},"modified":"2024-10-01T11:00:00","modified_gmt":"2024-10-01T16:00:00","slug":"infrastructure-vs-runtime-where-are-your-priorities","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/10\/01\/infrastructure-vs-runtime-where-are-your-priorities\/","title":{"rendered":"Infrastructure vs. Runtime \u2014 Where Are Your Priorities?"},"content":{"rendered":"<div class=\"media_block\"><a href=\"https:\/\/i0.wp.com\/eu-images.contentstack.com\/v3\/assets\/blt6d90778a997de1cd\/blt9a90a074b68ad426\/66fc102d2bdb3e76c400d8cf\/Cloud%281800%29_Bob_Venezia_Alamy.jpg?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?w=640&#038;ssl=1\" class=\"media_thumbnail\"><\/a><\/div>\n<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><span class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_bold\">COMMENTARY<\/span><\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Each year, while attending the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.blackhat.com\/\" rel=\"noopener\">Black Hat<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> conference, I gain fresh insights into the cybersecurity landscape, particularly from my interactions with new companies and passionate startup founders. My role as an executive adviser to various <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/program\/dr-emerging-technology\" rel=\"noopener\">cybersecurity startups<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> provides me with a unique perspective, allowing me to observe companies at different stages \u2014 from stealth startups validating their ideas to later-stage companies striving to secure a Series B round of funding and expand their market presence.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">However, the emergence of new threat vectors and exposures in <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cloud-security\" rel=\"noopener\">cloud security<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> often results in significant overlap in solutions, leading to confusion and making it challenging for practitioners to determine the best investment. This is especially true when evaluating cloud security solutions like CNAPP (cloud-native application protection platform) and CSPM (<\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/www.darkreading.com\/cloud-security\/microsoft-expands-cloud-security-posture-management-to-google-cloud\" rel=\"noopener\">cloud security posture management<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">).<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The cybersecurity industry is constantly evolving, inundated with new acronyms, buzzwords, and purportedly revolutionary solutions, all vying for attention. Yet many of these solutions fail to deliver on their promises, leaving organizations questioning their security priorities. Should the focus be on securing infrastructure, or is runtime security the key to safeguarding operations?<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"The Impact of Cloud Technology on Security Strategies\">The Impact of Cloud Technology on Security Strategies<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">The rapid expansion of cloud technology has fundamentally altered the security landscape. Traditional network engineers are being replaced by cloud-focused engineers, driven by the cloud&#8217;s promise of scalability and flexibility. However, this shift has introduced new security challenges that many businesses are still grappling with.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Drawing from my experiences, I&#8217;ve tried to gain a deeper understanding of the challenges large enterprises face in securing their cloud platforms. While the cloud offers significant advantages, it also necessitates a new approach to security \u2014 one that many organizations find difficult to maintain in the face of a dynamic and ever-evolving threat landscape.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">CSPM solutions are now central to cloud security strategies, ensuring secure configurations and compliance with industry standards. However, as the market has matured, it has become saturated with new acronyms and marketing terms, adding layers of complexity and confusion for customers.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Securing infrastructure is fundamental. It involves ensuring that your cloud environment is securely configured, vulnerabilities are effectively managed, and compliance requirements are consistently met. Without this foundation, other security efforts are compromised. However, as cyber threats become more sophisticated, runtime security \u2014 which addresses threats as applications and services are actively running \u2014 has become equally critical.<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"The Rising Importance of Runtime Security\">The Rising Importance of Runtime Security<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Effective runtime security goes beyond reactive measures. It requires deep integration with the customer&#8217;s business logic to offer informed security recommendations, such as adopting a least-privilege model. This involves comparing the runtime state against the desired state, detecting traffic patterns for managed cloud services like S3 or RDS, and controlling provisions or restrictions for modern agents like eBPF (extended Berkeley Packet Filter). These capabilities are essential for anticipating and mitigating threats before they cause significant harm.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">An effective runtime solution allows two opposing teams to work more effectively to achieve shared goals, which makes me want to understand whether new vendors hyperfocused on solving runtime security have these challenges in their solutions. To succeed in offering runtime security, solution providers must demonstrate, with unquestionable evidence, that their solutions are superior to existing cloud-native offerings like AWS GuardDuty, Azure Sentinel, or GCP Security Command Center. If these leading platforms, backed by top-class engineers, can&#8217;t fully secure the runtime environment, why should customers believe an external solution could do better? This credibility challenge is significant, and solution providers must bring more than promises \u2014 they need proven, demonstrable superiority.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Data normalization also remains a critical obstacle. Effective comparative analysis requires all data to be normalized, yet the industry lacks a public standard for this process \u2014 one that even the <\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"><a class=\"ContentText-BodyTextChunk ContentText-BodyTextChunk_link\" target=\"_blank\" href=\"https:\/\/cloudsecurityalliance.org\/\" rel=\"noopener\">Cloud Security Alliance<\/a><\/span><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\"> (CSA) hasn&#8217;t published. This absence makes it exceedingly difficult to create a reliable comparative model that can be trusted across the industry.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">Enterprises with concentrated engineering resources often develop homegrown strategies, frequently leveraging open source tools like OpenQuery. These custom approaches add another layer of complexity, making it harder for external solutions to prove their worth.<\/span><\/p>\n<h2 class=\"ContentText ContentText_variant_h2 ContentText_align_left\" data-testid=\"content-text\" id=\"Identifying the Right Focus\">Identifying the Right Focus<\/h2>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">So, where should your focus lie? Securing your infrastructure and implementing runtime security are vital components of a comprehensive cloud security strategy. Organizations must invest in building a secure infrastructure while also developing robust runtime security measures that can detect and respond to threats in real-time.<\/span><\/p>\n<p class=\"ContentParagraph ContentParagraph_align_left\" data-testid=\"content-paragraph\"><span class=\"ContentText ContentText_variant_bodyNormal\" data-testid=\"content-text\">To navigate this complex security landscape effectively, it&#8217;s crucial to understand your organization&#8217;s specific needs and craft a security strategy that addresses all aspects of cloud security. Whether transitioning from a legacy system to the cloud or operating within a cloud-native environment, the ultimate goal remains the same: protecting your operations against the myriad threats of today&#8217;s digital world.<\/span><\/p>\n<p><a href=\"https:\/\/www.darkreading.com\/vulnerabilities-threats\/infrastructure-vs-runtime-where-are-your-priorities\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>COMMENTARY Each year, while attending the Black Hat conference, I<\/p>\n","protected":false},"author":12,"featured_media":5559,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-5558","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=1800%2C1013&ssl=1",1800,1013,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=300%2C169&ssl=1",300,169,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=640%2C360&ssl=1",640,360,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=640%2C360&ssl=1",640,360,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=1536%2C864&ssl=1",1536,864,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=1800%2C1013&ssl=1",1800,1013,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=1024%2C576&ssl=1",1024,576,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?resize=825%2C575&ssl=1",825,575,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?resize=590%2C410&ssl=1",590,410,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/10\/infrastructure-vs-runtime-where-are-your-priorities.jpg?fit=1800%2C1013&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/5558","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=5558"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/5558\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/5559"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=5558"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=5558"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=5558"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}