78% of organisations highly concerned about cloud security

August 2024 Information Security, Infrastructure

As organisations develop and deploy more cloud applications, security becomes more complicated. Many organisations are adopting a hybrid or multi-cloud approach, which has expanded the attack surface and increased complexity.

Security teams often struggle to manage and secure their various private and public cloud workloads and environments. Even though multi-cloud adoption has many benefits, dealing with multiple tools adds management complexity, making it difficult or impossible to apply consistent security policies across all cloud environments.

Worse, the level of security complexity often grows over time, as organisations continue to add cloud services, leading to even more management challenges and costs.

The 2024 Cloud Security Report was conducted by Cybersecurity Insiders and sponsored by Fortinet to gain insights into the challenges organisations face in protecting their cloud environments and their prioritisation strategies. The report is based on a comprehensive survey of 927 cybersecurity professionals worldwide, and offers insights into the current trends driving cloud security.

Preference for hybrid and multi-cloud continues

In 2024, most organisations (78%) opt for hybrid and multi-cloud strategies. Of those organisations, 43% use a hybrid cloud and on-premises infrastructure, and 35% have a multi-cloud strategy.

These numbers represent only a slight increase from two years ago when 39% of organisations used hybrid cloud and 33% multi-cloud.

“After years of rapid adoption, cloud growth slowed as the market matured. At this point, the hype appears to have found its equilibrium, and the benefits of cloud computing are well understood,” noted Gary Peel, Cloud BDM for Fortinet in Africa. “Organisations with IT needs that can benefit from cloud flexibility and agility or require services unique to cloud environments can move forward with their projects.

“Most organisations also recognise that security needs to be included in their cloud strategies. The cybersecurity challenges associated with the cloud, and the need for enhanced security measures in cloud environments, have become more critical in the face of new AI-based threats. In fact, 78% of organisations report being very or extremely concerned about cloud security. Security is clearly a priority, with 61% of respondents anticipating that their cloud security budget will increase over the next 12 months.”

Organisations report that they plan to increase their cloud security budget by 37% to safeguard sensitive data and comply with regulatory standards in today’s increasingly cloud-oriented landscape.

Technical and resource challenges continue

Despite continuing cloud adoption, challenges remain in implementing consistent multi-cloud security. Security and compliance issues are the top concern (59%), acting as a roadblock to faster adoption of multi-cloud strategies. Organisations also cite technical challenges (52%) and resource constraints (49%) as barriers to cloud adoption.

Achieving visibility and policy control within complex multi-cloud infrastructures can be difficult, and the cybersecurity skills gap only compounds the issue. The lack of people with cloud security expertise is a serious issue, with 93% of respondents saying they are moderately to extremely concerned about the industry-wide skills shortage.

Simplification and automation using a platform approach

Because hybrid and multi-cloud environments are complex, securing them is difficult. However, most organisations (95%) say that a unified cloud security platform with a single dashboard would help protect data consistently and comprehensively across the entire cloud footprint.

Instead of dealing with the inefficiencies of managing multiple disparate security systems, security teams that take advantage of a single integrated cloud security platform benefit from more straightforward integration, automation, and reduced management overhead, which can help improve visibility, provide consistent policy enforcement, and mitigate the cybersecurity skills gap.

Gain visibility and control

“Organisations should look for a vendor that offers unified cloud security solutions that deliver consistent policies, centralised management, and end-to-end visibility across and between cloud environments,” says Peel. “With security automation enabled across all clouds, you can securely build, deploy, and run applications anywhere with consistent protections in place. The best cloud security solutions provide visibility and control across public and private clouds and data centres, strengthening security and reducing deployment complexity,” he concludes.

To read more insights about the current state of cloud security, you can download the report here.





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Compressing cyberattack timelines and targeting ungoverned AI identities
Information Security News & Events
Sophos AI Security 2026 report finds attackers are moving beyond experimentation and operationalising AI for attacks using identity as the primary initial access vector, rather than inventing new attack types.

Read more...
Zero-touch automation certificate life cycle management loop
Products & Solutions Information Security Security Services & Risk Management
ManageEngine completes the certificate life cycle management loop with CA-agnostic, zero-touch automation. New post-deployment automation in Key Manager Plus removes the last manual step in certificate renewal as lifespans gradually shrink to 47 days

Read more...
Sophos launches AI-native cybersecurity defence system
News & Events Information Security Security Services & Risk Management
Built for a threat landscape reshaped by AI, Sophos Fusion unites security operations, endpoint, network security, identity, email, and cloud into one defence system that prevents, detects, investigates, and responds at AI speed.

Read more...
Ungoverned AI agents and deepfakes pose critical threats
Information Security Security Services & Risk Management
Global study reveals 64% of South African organisations already deploy autonomous AI agents with little to no governance, while 63% of employees admit they are unlikely to be able to spot attacks such as deepfakes

Read more...
How ‘TikTok Brain’ is breaking legacy security training
Training & Education Information Security
Between doomscrolling, rapid-fire Slack notifications, and algorithmic video feeds, the average employee is trapped in an aggressive, highly engineered dopamine loop that automatically shuts down in traditional training situations.

Read more...
Quantum is coming
Infrastructure Information Security
The global cybersecurity landscape is approaching a turning point as quantum computing accelerates faster than most organisations realise; the shift is not a distant, theoretical concern, but a present-day business risk that demands immediate action.

Read more...
Outpacing cyberthreats in the age of AI
SMART Security Solutions Technews Publishing News & Events Information Security
SMARTpod talks to Fred Streefland, Global Field CISO for EMEA at Check Point Software Technologies, about framing modern cyber defence around adaptability, rapid decision-making, and the OODA loop adapted for cybersecurity.

Read more...
Prompt injection is the new phishing
Information Security Security Services & Risk Management
AI security is heading in an uncomfortable direction following Microsoft’s research showing how prompt injection can be chained to remote code execution vulnerabilities in AI agent frameworks, including work involving Semantic Kernel

Read more...
Cloud-ready BMS is reshaping building operations
Facilities & Building Management Infrastructure
Buildings may be getting smarter, but too many control rooms are still anchored to yesterday’s technology, such as on-site servers, rigid architectures and a patchwork of interfaces that are expensive to run and slow to evolve.

Read more...
Cybersecurity needs actual intelligence before artificial intelligence
Information Security AI & Data Analytics
Cybersecurity depends on interpretation. A tool can tell you that something unusual has happened, but people need to determine whether it is a genuine risk, the business impact, and how to respond without causing unnecessary disruption.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.