CyberzSOC

Publication detail
← Back to advisories & guidance

CSI: Implement Network Segmentation and Encryption in Cloud Environments ↗ source

March 7, 2024 NSA Guidance

Summary

Security | Cybersecurity Information Network security is a crucial component for cloud users to configure properly. Historically, network security practices have focused on perimeter security, with few additional restrictions once authenticated to an organization’s internal network and the acceptance of unauthenticated and vulnerable “internal” protocols. Over the years, this has changed with the push to adopt Zero Trust (ZT) security principles such as: This cybersecurity information sheet (CSI) makes recommendations for implementing these principles in a cloud environment, which can differ from on-premises (on-prem) networks. While on-prem networks require specialized appliances to enable ZT, cloud technologies natively provide the necessary infrastructure and services for implementing these recommendations to varying degrees. This CSI focuses on best practices using features commonly available in cloud environments. Encrypting data in transit is an integral part of cybersecurity.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

No CVEs are referenced in this publication.

Vendors Named in This Publication

No KEV-catalogued vendors are named in this publication.