What are the security implications of moving to a cloud-first IT strategy? Does it mean leaving behind traditional on-premises security controls, such as at the network and for the web? Does moving security to the cloud mean lifting-and-shifting security controls one-for-one to the cloud or can a different architecture win out? And what about the massive growth of Office 365? Does the size and homogeneity of this platform increase risk or reduce it? The focus of this session is on the 3 “Es” of the cloud imperative: Experience, Economics, & Efficacy, and how moving security to the cloud can improve all three.