Cloud Incident Management and Response Capability is critical to managing, detecting and responding to security incidents during and after the fact. Instrumentation of cloud services to capture logs and artefacts, along with monitoring and detection of anomalous and suspicious activities, is critical to detecting threats, thwarting incidents and enabling fast, efficient remediation.
Responding to time-sensitive security incidents and conducting forensic analysis, in a restrictive multitenant cloud environment, requires planning and instrumentation of a cloud computing environment for monitoring and detection of anomalies.