Press Release

CloudLock’s Q3 Cybersecurity Report Reveals that 1 Percent of Employees Represent 75 Percent of Security Risk in the Cloud

CloudLock’s CyberLab highlights risk in a small number of users, apps and the cloud value chain

Waltham, Mass. August 26, 2015 – The CloudLock CyberLab, CloudLock’s security intelligence arm, today released its Q3 Cloud Cybersecurity Report: The 1% Who Can Take Down Your Organization. Based on analysis across 10 million users, 1 billion files, and over 91,000 applications, the report focuses on the riskiest element in the cloud: user behavior.

1 Percent of Users Represent 75 Percent of Risk

Cloud cybersecurity risk is highly concentrated, with 1 percent of users responsible for 75 percent of risk. Consider the instance of a user publicly exposing files containing clear text passwords - a phenomena that occurs 4,000 times on average per organization, based on CloudLock research. Understanding the composition of this 1 percent of users is crucial for security teams: often times, this subset of users includes super-privileged users, software architects, as well as machine-based identities (i.e., applications with programmatic access) that grant access privileges and archive data.

70 Percent of File Sharing With Non-Corporate Identities

The disproportionate nature of cybersecurity risk extends to cloud-based collaboration. While organizations on average collaborate with 865 external parties, just 25 of these account for 75 percent of cloud-based sharing per organization. Unexpectedly, 70 percent of external file sharing occurs with non-corporate email addresses security teams have little control over.

52,000 Instances of Risky Cloud App Installs

Many cloud applications support integration with third-party applications, outside the network and undetectable via traditional security tools, such as proxy- or gateway-based solutions. These apps are frequently targeted by cybercriminals as entry points to organizations. CloudLock research reveals that 52,000 instances of applications are installed by highly privileged users - a number that should be zero given privileged accounts are highly coveted by malicious cybercriminals.

Reduce Risk by Involving Active Users

By involving the most active users in the security process, organizations can rapidly mitigate the majority of cybersecurity risk. One CloudLock client decreased public exposures by 62 percent in just one day by doing so.

“Cyber attacks today target your users - not your infrastructure. As technology leaders wake up to this new reality, security programs are being reengineered to focus where true risk lies: with the user,” says CloudLock CEO and co-founder Gil Zimmermann. “The best defense is to know what typical user behavior looks like - and, more importantly, what it doesn’t.”

To download the Cybersecurity Report, please visit: The 1% Who Can Take Down Your Organization.

About Cloudlock’s CyberLab

CloudLock is the only security vendor uniquely combining U.S. and Israeli Military Intelligence with real-time, crowdsourced cloud security insight. CloudLock continuously monitors over one billion files daily across more than 10 million users. Security professionals feed into CloudLock’s unique security insight through peer-driven, crowdsourced Community Trust RatingsTM. This intelligence allows organizations to immediately respond to emerging cloud cyber threats and risky apps.  

About CloudLock

CloudLock is the cloud-native CASB and Cloud Cybersecurity Platform that helps organizations securely leverage cloud apps they buy and build. CloudLock delivers security visibility and control for SaaS, IaaS, PaaS and IDaaS environments across the entire enterprise in seconds. Founded by Israeli Elite Cybersecurity Military Intelligence experts, the company delivers actionable cybersecurity intelligence through its data scientist-led CyberLab and crowdsourced security analytics across billions of data points daily. CloudLock has been recognized by Inc. Magazine as the fastest growing security product company in the U.S. and by Glassdoor as one of the top 3 best places to work in the U.S. Learn more at

Experience a Live Demo

See Cisco Cloudlock in action from one of our cloud security experts

Browser Not Supported

Your browser version is outdated.

We would recommend you upgrade to a recent version to ensure that you have a good experience on the CloudLock site. Outdated browsers also increase your security risk. So please update your browser and come back later!

Click on the icon below to download the latest version of your browser