29 November 2011

Cloud Computing Security v3

The Cloud Security Alliance (CSA) has restructured and re-written its flagship document Security Guidance for Critical Areas of Focus in Cloud Computing.

The application security domain (one of twelve) focuses on:

  • Secure Software Development Life Cycle (SDLC)
  • Authentication, authorisation, compliance — application security architecture in the cloud
  • Identity and the consumption of identity as it relates to cloud application security
  • Entitlement processes and risk-based access management as it relates to cloud encryption in cloud-based applications
  • Application authorization management (policy authoring/update, enforcement)
  • Application penetration testing for the cloud (general practices and nuances specific to cloud-based applications)
  • Monitoring applications in the cloud
  • Application authentication, compliance, and risk management and the repercussions of multi-tenancy and shared infrastructure
  • The difference between avoiding malicious software and providing application security.

Posted on: 29 November 2011 at 00:47 hrs

Comments Comments (0) | Permalink | Send Send | Post to Twitter

Comments

Comments are filtered automatically and should appear shortly after they been checked.

Post a comment
Confirm acceptance and understanding of the terms of use
New posts to this thread will be sent to your email address
Cloud Computing Security v3
http://www.clerkendweller.com/2011/11/29/Cloud-Computing-Security-v3
ISO/IEC 18004:2006 QR code for http://clerkendweller.com

Page http://www.clerkendweller.com/2011/11/29/Cloud-Computing-Security-v3
Requested by 38.107.179.220 on Thursday, 17 May 2012 at 22:36 hrs (London date/time)

Please read our terms of use and obtain professional advice before undertaking any actions based on the opinions, suggestions and generic guidance presented here. Your organisation's situation will be unique and all practices and controls need to be assessed with consideration of your own business context.

Terms of use http://www.clerkendweller.com/page/terms
Privacy statement http://www.clerkendweller.com/page/privacy
© 2011-2012 clerkendweller.com