16 March 2010

Secure Cloud 2010

Yesterday I arrived in Barcelona in advance of Secure Cloud 2010 organised jointly by Cloud Security Alliance (CSA), European Network and Information Security Agency (ENISA), ISACA and IEEE.

Partial image of a page from ENISA's Cloud Computing Information Assurance Framework, November 2009.

In advance of the conference I attended the initial meeting of a new ENISA project to develop a security metric tool for cloud and other computing services, based around the information assurance framework outlined in last year's excellent report on cloud computing risks. I am participating on behalf of the Open Web Application Security Project (OWASP) and its Global Industry Committee so we can share our knowledge and experience from application development and operation. The initiative seems to have the support of the major vendors (Microsoft, eBay, Google, Amazon Web Services, etc) and other security groups (CSA, ISACA, ISF, ISSA, Jericho Forum, etc), and plans to build on other existing efforts (e.g. Shared Assessments, CloudAudit, FTC, NIST, etc). There are high expectations that something relevant, open, transparent and practical—for all sizes of organisation—can be delivered in the next year.

Now, off to the conference.

Posted on: 16 March 2010 at 08:05 hrs

Comments Comments (0) | Permalink | Send Send | Post to Twitter

Comments

Comments are filtered automatically and should appear shortly after they been checked.

Post a comment
Confirm acceptance and understanding of the terms of use
New posts to this thread will be sent to your email address
Secure Cloud 2010
http://www.clerkendweller.com/2010/3/16/Secure-Cloud-2010
ISO/IEC 18004:2006 QR code for http://clerkendweller.com

Page http://www.clerkendweller.com/2010/3/16/Secure-Cloud-2010
Requested by 38.107.179.222 on Saturday, 4 February 2012 at 22:57 hrs (London date/time)

Please read our terms of use and obtain professional advice before undertaking any actions based on the opinions, suggestions and generic guidance presented here. Your organisation's situation will be unique and all practices and controls need to be assessed with consideration of your own business context.

Terms of use http://www.clerkendweller.com/page/terms
Privacy statement http://www.clerkendweller.com/page/privacy
© 2010-2012 clerkendweller.com