首页> 外文期刊>Computers & Security >Selecting a trusted cloud service provider for your SaaS program
【24h】

Selecting a trusted cloud service provider for your SaaS program

机译:为您的SaaS程序选择可信的云服务提供商

获取原文
获取原文并翻译 | 示例

摘要

Software as a Service (SaaS) offers major business and IT benefits that organizations are looking to take advantage of. SaaS adoption presents serious and unique security risks. Moving a company's sensitive data into the hands of cloud providers expands and complicates the risk landscape in which the organization operates. This paper highlights the significance and ramifications of a structured selection of a Cloud Service Provider (CSP) in achieving the required assurance level based on an organization's specific security posture. This paper proposes a holistic model, known as the Function, Auditability, Governability and Interoperability or FAGI, as an approach to help a Cloud Service Consumer (CSC) to engage and select a trusted CSP through four major decisions: Selecting a safe cloud that has adequate security functions; Choosing an auditable cloud via third-party certifications/assessments or self tests; Picking out a governable cloud that provides the required transparency; Opting for a portable cloud that ensures the desired portability. A case study reveals the FAGI approach offers an objective and efficient way to choose a qualified and trusted cloud service and in turn saves CSCs' time, effort, and grief.
机译:软件即服务(SaaS)提供了组织希望利用的主要业务和IT优势。采用SaaS会带来严重而独特的安全风险。将公司的敏感数据移交给云提供商的手中,将扩大组织的运营风险格局并使之复杂化。本文重点介绍了根据组织的特定安全状况,结构化选择云服务提供商(CSP)在实现所需保证级别方面的重要性和影响。本文提出了一种称为功能,可审计性,可管理性和互操作性或FAGI的整体模型,以帮助云服务消费者(CSC)通过以下四个主要决策来参与和选择受信任的CSP:选择具有以下特征的安全云:足够的安全功能;通过第三方认证/评估或自我测试选择可审计的云;选择可提供所需透明度的可管理云;选择可移植的云,以确保所需的可移植性。案例研究表明,FAGI方法提供了一种客观有效的方法来选择合格且受信任的云服务,从而节省了CSC的时间,精力和痛苦。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号