Navigating The Complexities Of Data Backups In A Hybrid World

With hybrid IT infrastructures and growing data volumes, data today is scattered across more locations than ever before, often moving between on-premises systems and the cloud. This shift has brought about complex and costly challenges for both the management and protection of an organisation’s data.

Not only is it exposed to growing cyber threats; employees, despite their best intentions, can also accidentally delete or alter it, adding to the risk.

Research from Forrester highlights the magnitude of the issue. Currently, over half of workloads in small and medium-sizes businesses (SMB) run in the public cloud. Despite this reliance on cloud services, nearly three-quarters of these businesses admit they lack the capability or capacity to train their employees on the growing complexities of cloud environments.

This skills gap leaves them vulnerable to a range of security threats. Ransomware is a significant concern: According to Statista, there were over 317 million ransomware attempts globally in 2023 alone. These attempts often target data backups, forcing organisations to pay ransoms or face severe consequences, such as data loss, reputational damage and financial losses.

The Importance Of Reliable Backups

Backups are essential in defending against ransomware and other attacks. Global compliance standards frequently mandate regular backups, and these requirements are becoming increasingly stringent. However, creating and maintaining effective backups is challenging, particularly for businesses relying on hybrid IT systems.

A robust data protection and disaster recovery strategy is crucial but can be difficult to maintain in a complex and fast changing environment. Businesses must safeguard their data wherever it resides, including physical servers, mobile devices, remote users, collaboration tools and the cloud. Backing up this multifaceted landscape often requires tools from numerous vendors, complicating the process and increasing costs.

The rapid implementation of new cloud services can exacerbate these issues. Often, performance is prioritised over security. Additionally, businesses may choose cheaper, less comprehensive backup solutions to cover each data environment. While this approach might seem cost-effective initially, it can lead to higher costs and complexity in the long run.

Many businesses mistakenly believe that cloud providers handle all backup needs, but this is usually not the case.

Cloud providers typically do not offer historical data storage or full data protection and recovery; instead, these responsibilities fall on the customer. Moreover, when cloud data is compromised, backups hosted in the same place as the original data will also be affected. Cloud customers must therefore implement additional data protection measures that meet their requirements in terms of recovery times and recovery points.

Effective Backup Strategies

To streamline backup processes and reduce the administrative burden, organisations should seek a single solution that allows for multiple backups across all data environments. The first step is to conduct a careful audit to understand where data resides and how it is currently backed up. Ideally, a comprehensive, one-stop backup platform should cover on-premises servers, end devices, SaaS solutions and the public cloud. This integrated approach makes backup processes more efficient and manageable, while providing better transparency across the entire organisation.

A solid backup and recovery strategy should address a range of possible scenarios, from file loss to system outages to ransomware attacks. This includes the ability to quickly set up a new production environment in case of a disaster to avoid costly downtime. Backups must be immutable, verified for integrity and tested for usability – and stored in separate locations to prevent infection with malware or ransomware.

Cost considerations are also crucial. Backup solutions which offer data protection no matter where the data lives can be more cost-effective and the spend more predictable. These solutions offer the flexibility to evolve with changing requirements as data moves from on-premises, to the cloud, SaaS and endpoints.

Ultimately, all businesses, regardless of size or industry, are at risk of ransomware and infected backups. Hackers do not discriminate, so organisations must assume they are at risk and prepare accordingly. With the constant threat of cyberattacks looming, a single backup strategy is no longer sufficient.

Only a flexible, multi-backup approach covering the entire IT environment can reliably protect businesses against the myriad risks they face.

Brent Torre is Product Executive, Backup & Disaster Recovery at Kaseya

Image: mesh cube

You Might Also Read:

What Is CloudSecOps?:


If you like this website and use the comprehensive 7,000-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

« Breach Exposes Millions Of Mobile Numbers To Phishing Attacks
Webinar: Generative AI and Security »

ManageEngine
CyberSecurity Jobsite
Check Point

Directory of Suppliers

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Directory of Cyber Security Suppliers

Directory of Cyber Security Suppliers

Our Supplier Directory lists 8,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

Acumin Recruitment

Acumin Recruitment

Acumin is an internationally established Cyber Security recruitment specialist.

Galvanize

Galvanize

Galvanize is a leading provider of award-winning, cloud-based security, risk management, compliance, and audit software for some of the world’s largest organizations.

PECB

PECB

PECB is a certification body for persons, management systems, and products on a wide range of international standards in a range of areas including Information Security and Risk Management.

Solana Networks

Solana Networks

Solana Networks is a specialist in IT networking and security.

InfoGuard

InfoGuard

InfoGuard is a leading Swiss company providing comprehensive cyber security and network solutions.

NGS (UK)

NGS (UK)

NGS (UK) Ltd are independent, vendor agnostic, next generation security trusted advisors, providing all-encompassing solutions from the perimeter to the endpoint.

Monster Jobs

Monster Jobs

Monster is a global leader in connecting people to jobs, wherever they are. Monster covers all job sectors including cybersecurity in locations around the world.

Space ISAC

Space ISAC

Space ISAC is the only all-threats security information source for the public and private space sector.

Switchfast Technologies

Switchfast Technologies

Switchfast Technologies is an IT consulting and managed services provider, offering IT support and consulting to Chicagoland small businesses.

QuantiCor Security

QuantiCor Security

QuantiCor Security is one of the world’s leading developers and manufacturers of quantum computer resistant security solutions for IT infrastructures and the Internet of Things (IoT).

Rimini Street

Rimini Street

Rimini Street is a global provider of enterprise software support products and services, and the leading third-party support provider for Oracle and SAP software products.

Star Lab

Star Lab

Star Lab specializes in the development and productization of embedded security technologies.

Forthright Technology Partners

Forthright Technology Partners

Forthright Technology Partners (Forthright) is a next-generation cloud and managed IT services provider serving a global clientele.

Cloud & More

Cloud & More

Tired of impersonal IT support? Experience the Cloud & More difference. We offer tailored IT services with a personal touch, ensuring your business technology runs smoothly.

Hopper Security

Hopper Security

The Future of Open-Source Risk Management Starts Here. We built Hopper to make sure you can harness the power of Open-Source safely and effectively.

CPX

CPX

At CPX, we go beyond addressing today’s security risks—we anticipate the challenges of tomorrow.