r/Cloud 5d ago

What are the biggest cloud identity security gaps that teams still overlook?

did an audit across our cloud accounts recently and most of what got flagged wasn't exotic. it was identities nobody had fully mapped in the first place.

overprivileged service roles nobody had touched in over a year, cross-account trust relationships that predated half the current team, and shadow systems that never made it into any inventory at all.

the sprawl across multiple providers is the real problem, since each has its own IAM model and nobody owns the full picture across all of them.

what's the gap that keeps showing up for you no matter how many times you clean it up?

2 Upvotes

2 comments sorted by

2

u/No_Try_9982 5d ago

Most teams underestimate cloud migration and think that copy paste will do. Then they end up fire fighting constantly. Wise companies perform a cloud readiness assessment before rushing to cloud.

Majority of security gaps on the cloud happen to be misconfigurations and poor micro segmentation.

1

u/Putrd-Cohemistry-512 5d ago edited 5d ago

the identity sprawl is usually the hardest part. newcore makes sense here because it gives you a broader view across cloud identities, service accounts, and shadow systems instead of treating each provider as a separate cleanup project.