Risk Management for Outsourcing to the Cloud Security Risks and Safeguards as Selection Criteria for Extern Cloud Services

被引:1
|
作者
Viehmann, Johannes [1 ]
机构
[1] Fraunhofer Inst Open Commun Syst FOKUS, SQC, Berlin, Germany
关键词
Risk Management; Risk Assessment; Outsourcing; Cloud; Security;
D O I
10.1109/ISSREW.2014.80
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
This short paper describes our ongoing research about security risk management for IT projects which might eventually take benefit from outsourcing to external Cloud services. Choosing appropriate, secure enough Cloud services from multiple offers might be difficult. Hence, we develop the Cloud Security Guide CSG to assist. It contains a specialized methodology for Cloud risk assessment supporting particularly the extraction of security relevant information from user contracts or terms and conditions of public Cloud services. Discovering that many providers fail to communicate their safeguards, we also decided to develop a provider's guide for risk management and for the communication of risk treatments.
引用
收藏
页码:293 / 295
页数:3
相关论文
共 50 条
  • [31] A Method of the Cloud Computing Security Management Risk Assessment
    Wang, Hongbing
    Liu, Feng
    Liu, Heng
    [J]. ADVANCES IN COMPUTER SCIENCE AND ENGINEERING, 2012, 141 : 609 - +
  • [32] Cloud Security: Analysis and Risk Management of VM Images
    Bindra, Gundeep Singh
    Singh, Prashant Kumar
    Kandwal, Krishen Kant
    Khanna, Seema
    [J]. PROCEEDING OF THE IEEE INTERNATIONAL CONFERENCE ON INFORMATION AND AUTOMATION, 2012, : 646 - 651
  • [33] Cloud Security and Privacy Model for Providing Secure Cloud Services
    El Makkaoui, Khalid
    Ezzati, Abdellah
    Beni-Hssane, Abderrahim
    Motamed, Cina
    [J]. 2016 2ND INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGIES AND APPLICATIONS (CLOUDTECH), 2016, : 81 - 86
  • [34] MULTI CLOUD MANAGEMENT FOR UNIFIED CLOUD SERVICES ACROSS CLOUD SITES
    Liu, Tiancheng
    Katsuno, Yasuharu
    Sun, Kewei
    Li, Ying
    Kushida, Takayuki
    Chen, Ying
    Itakura, Mayumi
    [J]. 2011 IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND INTELLIGENCE SYSTEMS, 2011, : 164 - 169
  • [35] Efficiency and Security in Similarity Cloud Services
    Kozak, Stepan
    [J]. PROCEEDINGS OF THE VLDB ENDOWMENT, 2013, 6 (12): : 1450 - 1455
  • [36] CSSR: Cloud Services Security Recommender
    Abuhussein, Abdullah
    Shiva, Sajjan
    Sheldon, Frederick T.
    [J]. PROCEEDINGS 2016 IEEE WORLD CONGRESS ON SERVICES - SERVICES 2016, 2016, : 48 - 55
  • [37] Security Framework for IoT Cloud Services
    Pacheco, Jesus
    Tunc, Cihan
    Hariri, Salim
    [J]. 2018 IEEE/ACS 15TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2018,
  • [38] Evaluating Security and Privacy in Cloud Services
    Abuhussein, Abdullah
    Alsubaei, Faisal
    Shiva, Sajjan
    Sheldon, Frederick T.
    [J]. PROCEEDINGS 2016 IEEE 40TH ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE WORKSHOPS, VOL 1, 2016, : 683 - 686
  • [39] Ensuring Security for Virtualization in Cloud Services
    Kumar, Udaya N. L.
    Siddappa, M.
    [J]. 2016 INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2016, : 248 - 251
  • [40] A Framework for Ranking Cloud Security Services
    Taha, Ahmed
    Trapero, Ruben
    Luna, Jesus
    Suri, Neeraj
    [J]. 2017 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING (SCC), 2017, : 322 - 329