www.cloudsecurityalliance.org copyright © 2011 cloud security alliance keynote

15
www.cloudsecurityalliance.or Copyright © 2011 Cloud Security Alliance Keynote

Upload: josephine-wilcox

Post on 17-Dec-2015

221 views

Category:

Documents


0 download

TRANSCRIPT

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Keynote

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Paul Simmonds

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Global, not-for-profit organizationOver 23,000 individual members, 100 corporate members, 50 chaptersBuilding best practices and a trusted cloud ecosystemAgile philosophy, rapid development of applied research

GRC: Balance compliance with risk managementReference models: build using existing standardsIdentity: a key foundation of a functioning cloud economyChampion interoperabilityEnable innovationAdvocacy of prudent public policy

“To promote the use of best practices for providing security assurance within Cloud Computing, and provide education on the uses of Cloud

Computing to help secure all other forms of computing.”

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Updated content

Technologically comprehensive

Internationally accepted format and structure

Broadest possible contributor base

Peer reviewed domains

Easily translatable

Ready for Standards submissions

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

One comprehensive, C-level, best practice

A stable, secure baseline for cloud operations

A practical, actionable road map for managers

Technologically comprehensive

Incorporating lessons learned from the CSA GRC Stack and Trusted Cloud Initiative and the various other CSA activities

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Domains have been rewritten to emphasize;SecurityStability Privacy

Incorporating lessons learned from;

CSA GRC Stack

Trusted Cloud Initiative

The various other CSA activities

Controls focused data ownership while in a shared physical infrastructure

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

“Cloud” has developed in the two years since the publication of 2.1

2.1 guidance can be inconsistent

Thinking on cloud, the tools, and the techniques have evolved

Standard in use have firmed-up

Some recommendations need to be deprecated

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Three global editors

Editorial Working Group

Archie Reed

Paul Simmonds

Chris Rezek

Endeavouring to present a measured and balanced product meeting the interests of both cloud providers and cloud consumers

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Aiming for publication by the Orlando conference

Lots to do to hit this deadline!

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Review and critique(thank you for all the effort to date)

It does not stop with V3.0 . . . . !

Promote it’s existence

Read it

Use it

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Help Us Secure Cloud Computingwww.cloudsecurityalliance.org

[email protected]

LinkedIn: www.linkedin.com/groups?gid=1864210

Twitter: @cloudsa

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance