• News/
  • https://www.bleepingcomputer.com/news/security/how-the-new-nist-20-guidelines-help-detect-saas-threats/

How the New NIST 2.0 Guidelines Help Detect SaaS Threats

BleepingComputer
·
Sponsored by Adaptive Shield
·
Published Mar 18, 2024
·
Updated

Article written by Hananel Livneh, Head of Product Marketing at Adaptive Shield. The SaaS ecosystem has exploded in the six years since the National Institute of Standards and Technology’s (NIST) cybersecurity framework 1.1 was released. Back in 2016-2017, when version 1.1 was initially drafted, SaaS held a small but significant place in the software market. Today, the economic benefits coupled with pandemic-induced work-from-home culture have led to SaaS becoming the primary way businesses purchase and use software. Not surprisingly, NIST’s just-released Cybersecurity Framework (CSF) 2.0 seems to have SaaS security in mind. Throughout CSF 2.0, NIST recommendations dovetail with SaaS security needs. Govern, the new function, addresses issues relating to the democratization of SaaS, misconfiguration management, external users, risk management, and security posture. SaaS security demands the combination of two types of monitoring. The first, which is best covered by a SaaS Security Posture Management (SSPM) platform, handles prevention. The second, which requires log monitoring and anomaly detection, detects threats. The updated version of the framework pushes organizations to ensure that both prevention and detection are adequately covered. Read about how to apply the NIST 2.0 guidelines to your SaaS stack Recently, Proofpoint’s Cloud Security Response Team identified an ongoing cyberattack campaign targeting Microsoft Azure environments. The account takeover attacks have com...

Read full article

Affected Software

1 affected component
Microsoft Azure
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses the new NIST 2.0 guidelines and their role in detecting SaaS threats.

2

What security implications are discussed in the article?

The article highlights how the updated guidelines help organizations better manage and detect risks associated with SaaS applications.

3

What products or software are affected by the new guidelines?

The article specifically mentions Microsoft Azure as a product affected by the NIST 2.0 guidelines.

4

Who authored the article and what is their role?

The article was authored by Hananel Livneh, who is the Head of Product Marketing at Adaptive Shield.

5

Why is there a need for updated guidelines like NIST 2.0?

There is a need for updated guidelines due to the rapid growth and complexity of the SaaS ecosystem since the release of NIST 1.1.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203