Where is your sensitive (protected/regulated/proprietary) data located? (Select all that apply)
On-prem
IaaS (AWS, Azure, GCP, etc.)
SaaS (Microsoft 365, Salesforce, Workday, etc.)
Corporate-owned devices (mobile, laptops, etc.)
Employee-owned devices (mobile, laptops, etc.)
How often do you scan cloud data repositories for sensitive data (discovery)?
Continuously
Daily
Weekly
Less frequently (monthly/quarterly)
We don’t discover our sensitive data
Do you scan the following data types for sensitive information (select all that apply)?
Structured databases
Files
Images
Collaborative Document services (Microsoft 365, Box.com, Dropbox, etc.)
PaaS data stores (AWS Dynamo, Azure SQL, Snowflake, Databricks, etc.)
How do you restrict access to sensitive data? (Select all that apply)
Network access rules
IAM rules
CIEM tool
DSPM tool
We don't restrict access
What risk to your data is the most concerning?
Shadow data
System vulnerabilities/software supply chain
Excessive permissions
Misconfigurations providing access
Insufficient permissions hygiene
Do you view cloud data security as an integral part of your overall cloud security management, meaning it should be integrated into a central cloud security platform?
Agree
Somewhat agree
Neutral
Somewhat disagree
Disagree

