{"id":93594,"date":"2018-10-22T12:00:05","date_gmt":"2018-10-22T19:00:05","guid":{"rendered":"https:\/\/www.paloaltonetworks.com\/blog\/?p=93594"},"modified":"2019-05-06T15:44:22","modified_gmt":"2019-05-06T22:44:22","slug":"cloud-compliance-cheeseburger-principle","status":"publish","type":"post","link":"https:\/\/www2.paloaltonetworks.com\/blog\/2018\/10\/cloud-compliance-cheeseburger-principle\/","title":{"rendered":"Cloud Compliance: The Cheeseburger Principle"},"content":{"rendered":"<p>We spend our days talking with people about the need to apply security and compliance best practices in their cloud environment, and then helping them maintain automated visibility and remediation of vulnerabilities. We try to imprint on them the notion that security never stops; to truly have the best odds of keeping an environment secure, the effort must be continuous. To illustrate this point, our Chief Cloud Officer, Tim Prendergast, channeled his inner cheeseburger. Read on and you\u2019ll see what I mean.<\/p>\n<p><strong><em>A Cheesy, Burger-y Metaphor:<\/em><\/strong><em> If you want a clean bill of health at your yearly medical checkup, you can\u2019t eat cheeseburgers for 364 days out of the year and then the day before the checkup, eat a salad and expect to be told you\u2019re in excellent shape. As much as I wish it did, the world doesn\u2019t work like that, and it\u2019s the same for cloud security and compliance. <\/em><\/p>\n<p>It doesn\u2019t make sense to ignore security controls, configurations, settings, and other critical aspects of your cloud until the day before auditors come in to review. You could certainly do it, but you\u2019d have an environment populated with bad actors and ransacked with holes and ransomware. The truth is anything other than continuous and automated compliance can result in three potential issues.<\/p>\n<ol>\n<li><strong>The cloud (like your body) is a dynamic entity that is constantly changing<\/strong>. A snapshot of what it looked like yesterday isn\u2019t necessarily what it looks like today, and because of that you need a way to monitor its evolution, its changes, and its state - always.<\/li>\n<li><strong>Your compliance issues and responsibilities will continue to pile up as you ignore them<\/strong> \u2013 just as your blood pressure will edge ever upwards if you don\u2019t get off the couch.<\/li>\n<li><strong>You can\u2019t escape what you\u2019re supposed to do.<\/strong> Addressing your cloud (or your health, for that matter) only when it\u2019s convenient presents an advantage to bad actors and bring negative consequences.<\/li>\n<\/ol>\n<p>Look at it this way: without continuous automation, organizations really can\u2019t prove any form of compliance in the cloud because they don\u2019t have timely visibility into infrastructure configuration and workload risk. Timeliness is critical because of the constant change and dynamic nature of your cloud environment.<\/p>\n<p>Not to worry, Tim is still going to have the occasional cheeseburger, and you should too. And even better, we can help you get started on your journey to compliance in the cloud.<\/p>\n<p><a href=\"http:\/\/go.paloaltonetworks.com\/ComplianceTeamSport\">View our webcast \u2013 Cloud Compliance is a Team Sport<\/a> \u2013 here, <strong>\u00a0<\/strong>where cloud security and compliance experts share practical advice to get your cloud compliance program in the best shape possible, including how to automate the time-intensive task to save your teams valuable time and allow them to focus on what matters to the business.<\/p>\n<p>You can also get started measuring your cloud compliance now. Evident offers a simple, one-click compliance report that will show you how your cloud infrastructure measures up. <a href=\"https:\/\/start.paloaltonetworks.com\/evident-multi-cloud-security-trial.html\">Sign up for a trial<\/a> here.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>What do cheeseburgers and cloud compliance have in common? More than you think.<\/p>\n","protected":false},"author":517,"featured_media":93461,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[113,6717,6768],"tags":[6594,1166],"coauthors":[5539],"class_list":["post-93594","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cloud-computing-2","category-products-and-services","category-secure-the-cloud","tag-cloud-compliance","tag-cloud-security"],"jetpack_featured_media_url":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/JH_Picture1.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/93594","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/users\/517"}],"replies":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/comments?post=93594"}],"version-history":[{"count":4,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/93594\/revisions"}],"predecessor-version":[{"id":93665,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/93594\/revisions\/93665"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/media\/93461"}],"wp:attachment":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/media?parent=93594"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/categories?post=93594"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/tags?post=93594"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/coauthors?post=93594"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}