78% of organisations highly concerned about cloud security

August 2024 Information Security, Infrastructure

As organisations develop and deploy more cloud applications, security becomes more complicated. Many organisations are adopting a hybrid or multi-cloud approach, which has expanded the attack surface and increased complexity.

Security teams often struggle to manage and secure their various private and public cloud workloads and environments. Even though multi-cloud adoption has many benefits, dealing with multiple tools adds management complexity, making it difficult or impossible to apply consistent security policies across all cloud environments.

Worse, the level of security complexity often grows over time, as organisations continue to add cloud services, leading to even more management challenges and costs.

The 2024 Cloud Security Report was conducted by Cybersecurity Insiders and sponsored by Fortinet to gain insights into the challenges organisations face in protecting their cloud environments and their prioritisation strategies. The report is based on a comprehensive survey of 927 cybersecurity professionals worldwide, and offers insights into the current trends driving cloud security.

Preference for hybrid and multi-cloud continues

In 2024, most organisations (78%) opt for hybrid and multi-cloud strategies. Of those organisations, 43% use a hybrid cloud and on-premises infrastructure, and 35% have a multi-cloud strategy.

These numbers represent only a slight increase from two years ago when 39% of organisations used hybrid cloud and 33% multi-cloud.

“After years of rapid adoption, cloud growth slowed as the market matured. At this point, the hype appears to have found its equilibrium, and the benefits of cloud computing are well understood,” noted Gary Peel, Cloud BDM for Fortinet in Africa. “Organisations with IT needs that can benefit from cloud flexibility and agility or require services unique to cloud environments can move forward with their projects.

“Most organisations also recognise that security needs to be included in their cloud strategies. The cybersecurity challenges associated with the cloud, and the need for enhanced security measures in cloud environments, have become more critical in the face of new AI-based threats. In fact, 78% of organisations report being very or extremely concerned about cloud security. Security is clearly a priority, with 61% of respondents anticipating that their cloud security budget will increase over the next 12 months.”

Organisations report that they plan to increase their cloud security budget by 37% to safeguard sensitive data and comply with regulatory standards in today’s increasingly cloud-oriented landscape.

Technical and resource challenges continue

Despite continuing cloud adoption, challenges remain in implementing consistent multi-cloud security. Security and compliance issues are the top concern (59%), acting as a roadblock to faster adoption of multi-cloud strategies. Organisations also cite technical challenges (52%) and resource constraints (49%) as barriers to cloud adoption.

Achieving visibility and policy control within complex multi-cloud infrastructures can be difficult, and the cybersecurity skills gap only compounds the issue. The lack of people with cloud security expertise is a serious issue, with 93% of respondents saying they are moderately to extremely concerned about the industry-wide skills shortage.

Simplification and automation using a platform approach

Because hybrid and multi-cloud environments are complex, securing them is difficult. However, most organisations (95%) say that a unified cloud security platform with a single dashboard would help protect data consistently and comprehensively across the entire cloud footprint.

Instead of dealing with the inefficiencies of managing multiple disparate security systems, security teams that take advantage of a single integrated cloud security platform benefit from more straightforward integration, automation, and reduced management overhead, which can help improve visibility, provide consistent policy enforcement, and mitigate the cybersecurity skills gap.

Gain visibility and control

“Organisations should look for a vendor that offers unified cloud security solutions that deliver consistent policies, centralised management, and end-to-end visibility across and between cloud environments,” says Peel. “With security automation enabled across all clouds, you can securely build, deploy, and run applications anywhere with consistent protections in place. The best cloud security solutions provide visibility and control across public and private clouds and data centres, strengthening security and reducing deployment complexity,” he concludes.

To read more insights about the current state of cloud security, you can download the report here.





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

The impact of AI on security
Information Security
Today’s threat actors have moved away from signature-based attacks that legacy antivirus software can detect, to ‘living-off-the-land’ using legitimate system tools to move laterally through networks. This is where AI has a critical role to play.

Read more...
Managed security solutions for organisations of all sizes
Information Security
Cyberattackers have become significantly more sophisticated and determined, targeting businesses of all sizes. PwC’s Global Digital Trust Insights Survey 2025 Africa and South Africa highlights the urgent need for organisations to implement robust cyber risk mitigation strategies.

Read more...
Multiple IoT devices targeted
Information Security Residential Estate (Industry)
Mirai remains one of the top threats to IoT in 2025 due to widespread exploitation of weak login credentials and unpatched vulnerabilities, enabling large-scale botnets for DDoS attacks, data theft and other malicious activities.

Read more...
Local-first data security is South Africa's new digital fortress
Infrastructure Information Security
With many global conversations taking place about data security and privacy, a distinct and powerful message is emerging from South Africa: the critical importance of a 'local first' approach to data security.

Read more...
Sophos launches advisory services to deliver proactive cybersecurity resilience
Information Security News & Events
Sophos has launched a suite of penetration testing and application security services, designed to identify gaps in organisations’ security programs, which is informed by Sophos X-Ops Threat Intelligence and delivered by world-class experts.

Read more...
Kaspersky highlights biometric and signature risks
Information Security News & Events
AI has elevated phishing into a highly personalised threat. Large language models enable attackers to craft convincing emails, messages and websites that mimic legitimate sources, eliminating grammatical errors that once exposed scams.

Read more...
Software security is a team sport
Information Security Infrastructure
Building and maintaining secure software is not a one-team effort; it requires the collective strength and collaboration of security, engineering, and operations teams.

Read more...
Stronger cloud protection
Kaspersky Information Security Products & Solutions
Kaspersky has announced the release of an enhanced version of its Kaspersky Cloud Workload Security, delivering advanced protection for hybrid and multi-cloud environments.

Read more...
AttackIQ enters South Africa with key appointment
Information Security News & Events
AttackIQ, a provider of continuous security validation and exposure management, has announced its entry into the South African market with the appointment of Luke Cifarelli as its country manager.

Read more...
Managed security solutions for organisations of all sizes
Information Security News & Events
Cyber attackers have become significantly more sophisticated and determined, targeting businesses of all sizes. PwC’s Global Digital Trust Insights Survey 2025 Africa and South Africa highlights the urgent need for organisations to implement robust cyber risk mitigation strategies.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.