Subj : Enterprise SaaS apps are still a major security risk To : All From : TechnologyDaily Date : Wed Aug 28 2024 11:45:05 Enterprise SaaS apps are still a major security risk Date: Wed, 28 Aug 2024 10:02:00 +0000 Description: Despite growing awareness, the risks are still present and could seriously hurt businesses. FULL STORY ====================================================================== Organizations are growing increasingly aware of the dangers of using insecure enterprise Software-as-a-Service (SaaS) apps, however it isnt stopping them from still using them ad-hoc, without a proper cybersecurity and data protection strategy. As a result, these apps still present a major security risk to all users, a new paper published by AppOmni claims. Based on a survey of 644 security decision makers at organizations with 2,500+ employees scattered across six countries, the report argues that only a third (32%) are confident in the security of their companys or customers data stored in SaaS apps, down from 42% in 2023. This decrease highlights the growing awareness of the challenges that enterprise SaaS apps present in terms of data security. Different perspectives Further reinforcing the same point, almost all (90%) said their organizations have policies that allow only the use of sanctioned apps. But here is where it gets troubling - a third (34%) said these policies are not enforced, up 12% compared to last year. Whats more, only 27% are confident about the security levels of their sanctioned apps. To make matters worse, a third (34%) dont know how many SaaS apps are deployed in their organization. Half of those using Microsoft 365 believe they have less than 10 applications connected to the platform, while AppOmnis data shows more than 1,000 connections - more than a hundredfold increase. Finally, there are different views of responsibilities across organizations. Half (50%) of the respondents believe the responsibility for securing SaaS apps lies with the business owner or stakeholder, while just 15% said its the responsibility of the cybersecurity team. Brendan O Connor, Chief Executive Officer of AppOmni, says there is a clear disconnect between security self-assessments and actual SaaS risks. Now, we find that despite greater awareness and effort, things are getting worse. Just as there are constant headlines about breaches, the number of SaaS exploits has reached 31%, up five percentage points from last year. The details behind those statistics are even worsedespite increased budgets and initiatives, organizations need to do a far better job of securing SaaS deployments, he concluded. More from TechRadar Pro SaaS identity security strategies to prevent cyber risk in the workplace Here's a list of the best firewall software around today These are the best endpoint security tools right now ====================================================================== Link to news story: https://www.techradar.com/pro/security/enterprise-saas-apps-are-still-a-major- security-risk --- Mystic BBS v1.12 A47 (Linux/64) * Origin: tqwNet Technology News (1337:1/100) .