Cloud Security Alliance 2019 EMEA Congress Adds Focus on Risk Governance and European Cloud Certification Enablement
Press Release Published: 10/24/2019
William Ochs, Rolf Becker will share insight from 60 years combined experience in banking and cybersecurity risks Berlin, Germany – Oct. 24, 2019 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications and best practices to help ens...
Cloud Security Alliance Releases Anti-DDoS: Software-Defined Perimeter As a DDoS Prevention Mechanism
Press Release Published: 10/28/2019
Document examines the operationalization of Software-Defined Perimeter as prevention mechanism against three well-known types of Distributed Denial of Service attacksORLANDO – (ISC)2 Security Congress – Oct. 28, 2019 – The Cloud Security Alliance (CSA), the world’s leading organization dedicat...
Welcome to the CSA Blog
Blog Published: 05/17/2010
By Jim Reavis Welcome to the Cloud Security Alliance blog. We have initiated this service to allow for more rapid communications between our expert volunteers and the larger community interested in cloud security. We plan to use this venue to comment on the important issues of the day related ...
Is your Cloud Provider making money?
Blog Published: 05/17/2010
By Jim Reavis At a recent Cloud Security Alliance event, George Reese moderated a panel about Public/Private cloud interoperability and application portability. It was a great discussion, and I hope to be able to publish the proceedings soon.One of the common points that comes up when discussi...
Will Silicon Valley Run Out of Data Center Space?
Blog Published: 05/17/2010
By Wing Ko This slashdot posting caught my eyes last night - http://hardware.slashdot.org/story/09/08/12/2227215/Will-Silicon-Valley-Run-Out-of-Data-Center-Space. Judging from the thread, apparently it caught the eyes of quite a few people too.With all the exciting news and press releases duri...
CSA Federal Cloud Security Symposium Hosted by MITRE (McLean, VA)
Blog Published: 05/17/2010
By Dov Yoran On August 5th, 2009, Cloud Security Alliance Federal Cloud Security Symposium was hosted by MITRE Corporation. This full day venue provided government personnel with access to leading commercial cloud security experts. Throughout the day perspectives on cloud computing, its benefi...
Seemingly basic power problems in state-of-the-art data centers
Blog Published: 05/17/2010
By Wing Ko I came across this "Stress tests rain on Amazon's cloud" article from the itnews for Australian Business about a week ago. A team of researchers in Australia spent 7 months stress tested Amazon's EC2, Google's AppEngine and Microsoft's Azure cloud computing services, and found that ...
Cloud Security and Privacy book by CSA founding members
Blog Published: 05/17/2010
By Jim Reavis I wanted to let everyone know about the new book release, Cloud Security and Privacy: An Enterprise Perspective on Risks and Compliance. This book was written by three experts, two of whom are CSA founding members. I had the opportunity to read the book prior to its publication a...
Your Chance to Influence Cloud Security Research!
Blog Published: 05/17/2010
By Zenobia Godschalk The Cloud Security Alliance needs your help! We are conducting a survey to help us better understand users current cloud deployment plans and biggest areas of security and compliance concern. The feedback generated here will assist the CSA in shaping our educational curric...
Season’s Greetings from the CSA!
Blog Published: 05/17/2010
By Zenobia Godschalk2009 has been a busy year for the CSA, and 2010 promises to be even more fruitful. The alliance is now 23 corporate members strong, and is affiliated with numerous leading industry groups (such as ISACA, OWASP and the Jericho Forum) to help advance the goal of cloud securit...
3 Problems Cloud Security Certification Can Solve
Blog Published: 05/17/2010
By Jim ReavisWhat if there were widely accepted standards for cloud security and, better yet, a universally recognized designation for “trusted” cloud providers?The basic promise of cloud computing is undeniably appealing: Increase efficiency and reduce cost by taking advantage of flexibly poo...
Amazon AWS - 11 9's of reliability?
Blog Published: 05/24/2010
Amazon recently added a new redundancy service to their S3 data storage service. Amazon now claims that data stored in the "durable storage" class is 99.999999999% "durable" (not to be confused with availability - more on this later). "If you store 10,000 objects with us, on average we may los...
Counterfeit gear in the cloud
Blog Published: 05/26/2010
One of the best and worst things about outsourced cloud computing (as opposed to in house efforts) is the ability to spend more time on what is important to you, and leave things like networking infrastructure, hardware support and maintenance and so on to the provider. The thing I remember mo...
Software evaluation 2.0 ?
Blog Published: 05/27/2010
I spend a lot of time evaluating software; for product reviews, to see which versions are vulnerable to various exploits and sometimes just to see if I should be using it. Most often this looks something like: find the software, download it, find the install and configuration documents, walk t...
News roundup for May 28 2010
Blog Published: 05/28/2010
Financial Services Like The Cloud, Provided It's Private - http://www.informationweek.com/cloud-computing/blog/archives/2010/05/financial_servi.htmlNovell Identity Manager extended to cloud - http://www.computerworlduk.com/technology/applications/software-service/news/index.cfm?newsid=20357Ama...
Put your chauffeur on the upgrade treadmill
Blog Published: 06/03/2010
I don't know if anyone here remembers the "Billion Dollar Brain" by Len Deighton. One scene that stuck with me is General Midwinter making his minion (a chauffeur or bodyguard, I can't remember which) do his time on the exercise bike for him and asking "how many miles did we bike today?"Wouldn...
Backups and security for cloud applications
Blog Published: 06/10/2010
Backups, the thing we all love to hate, and hate to love. Recreating data is rarely cheap, especially if it involves detailed analysis and combination. So we back it up.Take for example this blog, it's based on WordPress; which is about as standard and supported as you can get for a blog. Back...
Multi-tenancy and bad landlords
Blog Published: 06/13/2010
So there's been a lot of discussion about multi-tenancy recently and what it means for cloud providers and users. To put it simply: multi-tenancy is highly desirable to providers because they can provide a service or a platform (such as WordPress) and cram a kajillion users into it without hav...
Certifiable in the Cloud
Blog Published: 01/13/2011
Author: Pamela Fusco, VP of Industry Solutions for SolutionaryCloud computing remains as much a mystery to some as it is a part of others’ daily lexicon. I spend a lot of time working with people who have connections to various offices of the U.S. government and I find that regardless of the t...
Will the Cloud Cause the Reemergence of Security Silos?
Blog Published: 01/19/2011
by: Matthew GardinerGenerally in the world silos relate to things that are beneficial, such as silos for grain or corn. However in the world of IT security, silos are very bad. In many forensic investigations application silos turn up as a key culprit that enabled data leakage of one sort or...