Anton Chuvakin shared this post on the need to monitor workloads as they migrate to the Public Cloud: Gartner: Start security monitoring in the public cloud. As stated in this article, it is not common practice for security monitoring of Public Cloud assets because of the shared responsibility model that supports cloud environments.
It makes a lot of sense for organizations to take a different approach with the Public Cloud by increasing instrumentation and visibility of workloads to allow for quicker detection and response times. And this is especially true if workloads contain sensitive data.
What's even more clear to me is the challenge of setting up effective Cloud Security Monitoring and Response capabilities. This is due in part to cloud providers, vendor solutions and managed services that have yet to catch up with the changes in security models that enterprise cloud usage demands.