• NaibofTabr@infosec.pub
    link
    fedilink
    English
    arrow-up
    46
    ·
    21 hours ago

    Yeah, but proper failover and recovery requires additional infrastructure, and that costs money.

    Hopefully a bunch of risk management people are writing I-told-you-so emails to C-suites right now.

    • Optional@lemmy.world
      link
      fedilink
      English
      arrow-up
      36
      ·
      21 hours ago

      Yeah but not to worry, C-suites have pretty good filtering rules in place to never read them. Saves time, really.

    • Boozilla@lemmy.world
      link
      fedilink
      English
      arrow-up
      13
      arrow-down
      2
      ·
      20 hours ago

      Yup, and some things which can be moved cannot be done automatically, quickly or easily…even if you are prepared. AWS is a huge suite of products and services, and there’s a lot of old legacy shit running on it. I wouldn’t punch down on the ops for this one. Cybersecurity and disaster recovery are not directly profitable, so they are almost always neglected in your average shop.

      • NaibofTabr@infosec.pub
        link
        fedilink
        English
        arrow-up
        5
        ·
        14 hours ago

        AWS is a huge suite of products and services, and there’s a lot of old legacy shit running on it.

        Yup, AWS is legacy cloud. It was only recently that they set encryption by default on S3 buckets, before that they were just in the clear by default.

        Cybersecurity and disaster recovery are not directly profitable, so they are almost always neglected in your average shop.

        It’s never important until suddenly it’s the most important thing in the world.