This article is part of our Opinions section, where we invite industry professionals to share their views on the most pressing technology questions of our time.
Multi-cloud isnโt the future; itโs already here. Organisations are increasingly distributing workloads across AWS, Azure and GCP, among others, in pursuit of cost optimisation, resilience and flexibility. But with that flexibility comes significant trade-offs, particularly for security teams. Recent research shows that 55% of organisations are now using multiple cloud providers and 64% operate in hybrid environments. While these configurations offer many business benefits, they also introduce a level of complexity that traditional security models and mindsets simply canโt keep up with.
The knee-jerk response has been to stack tools on top of tools, hoping that coverage gaps will close. However, piling on vendor-specific dashboards and siloed alerts is only creating more noise. Whatโs needed is a fundamental mindset shift – one that moves beyond reactive tooling toward open, integrated and scalable cloud security strategies built for the reality of todayโs fragmented environments.
The complexity crisis
Every cloud provider brings its own set of controls, interfaces and assumptions. Security teams are expected to know and master all of them and keep up as they rapidly evolve. This complexity has become a liability.
This isn’t about bad tech, it’s about disconnected tech. When teams are thinking in silos and relying on tools that donโt talk to each other, blind spots emerge, and attackers will ultimately take advantage. The rising volume of multi-cloud breaches reflects a structural problem: security teams are managing complexity, but they are not reducing it.
The promise and limits of automation and AI
Thereโs growing momentum toward automation and AI to cope with the scale of the security problem. While these are promising shifts, even with automation, many organisations still fall short of comprehensive security. Why? Because the tools in use are often closed and narrowly scoped. They automate within one cloud or for one task, but donโt provide the full picture across multiple cloud providers.
Thatโs why tooling alone isn’t the solution. Whatโs needed is a system-wide, open approach that brings all clouds and teams into alignment.
The rise of open cloud security
The good news is that organisations are waking up to this need for openness. They are now using open cloud security tools, and the benefits are clear, including better threat detection, experiencing fewer breaches and helping to reduce operating costs.
These tools are succeeding where proprietary platforms fall short by enabling cross-cloud integration without vendor lock-in. They allow teams to inspect the logic behind checks, customise policies to fit their infrastructure, and extend visibility across the full stack.
This is especially critical as more organisations face increasing compliance demands across multiple jurisdictions and open tools offer a cost-effective, flexible foundation to meet those obligations.
Open tools are powerful – but theyโre just the beginning. To truly secure modern cloud environments, organisations need to adopt a new mindset: stop waiting for alerts and start designing for resilience.
This shift in thinking will determine which organisations stay ahead and which fall behind. Security can no longer be viewed as a series of isolated tasks handled by a single team. It must become a collaborative, continuous function embedded in every stage of the cloud lifecycle.
The path forward is open
Cloud adoption is accelerating. The number of services, providers, and endpoints continues to multiply, and in this environment, the only viable security strategy is one thatโs as scalable and integrated as the infrastructure it protects and one which also brings adaptability.
This means breaking away from a tools-first mentality and embracing a mindset of openness – open collaboration, open standards, and open tooling. Itโs not just a philosophical stance; itโs a necessity.
You might also be interested in