Proven ways to stay ahead of configuration drift

Cybersecurity professionals’ jobs would be much easier if configurations stayed put once they were aligned to a known and secure baseline state. Unfortunately for them, configurations naturally deviate from their once-secure state over time as system changes take place. This issue—known as configuration drift—means the more time it’s been since your most recent scan, the less confident you can be about the exposure of your attack surface.

What kinds of changes lead to configuration drift? Product improvement being a never-ending project, application owners are regularly modifying apps and infrastructure to improve end-user experience. Some of these changes are harmless—while others push systems away from their secure baseline to dangerous effect.

2020-09-25
