Register for CSA’s SECtember conference and trainings today




Circle
Events
Blog

Download Publication

Secure Connection Requirements of Hybrid Cloud
Secure Connection Requirements of Hybrid Cloud
Who it's for:
  • cloud customers
  • cloud security practitioners
  • security architects
  • security engineers

Secure Connection Requirements of Hybrid Cloud

Release Date: 11/05/2021

Working Group: Hybrid Cloud Security

The National Institute of Standards and Technology (NIST) defines hybrid cloud infrastructure as 
a composition of distinct cloud infrastructures (private, community, and/or public) that remain unique entities. These infrastructures are bound together by standardized or proprietary technology that enables data and application portability.

Hybrid cloud is becoming an essential enterprise cloud model that allows the best of both worlds, providing customers with diverse resources to run different workloads depending on their needs. To successfully secure this complex landscape, enterprises should develop and employ perimeter, transmission, storage, and management cross-cloud security capabilities. This document from the Hybrid Cloud Security Working Group lists best practices for these four areas of security, along with their applicability to the Cloud Controls Matrix (CCM).

Key Takeaways:
  • What private, public, community, and hybrid cloud are
  • Cross-cloud security best practices
  • The ideal architecture for hybrid cloud connectivity
  • The CCM v4 control domains referenced in these cross-cloud security capabilities

Download this Resource

LoginCreate Account

Prefer to access this resource without an account? Download it now.

Acknowledgements

Michael Roza Headshot
Michael Roza
Risk, Audit, Control and Compliance Professional

Michael Roza

Risk, Audit, Control and Compliance Professional

Since 2012 Michael has contributed to over 75 CSA projects completed by CSA's Internet of Things, Blockchain/Distributed Ledger, Top Threats, Cloud Control Matrix, Software-Defined Perimeter, Applications, Containers, and Microservices, and other working groups. In, 2020 he also served as co-chair to CSA's Enterprise Architecture and Security-as-a-Service working groups while also serving as the Standards Liaison Officer for IoT, ICS, EA, S...

Read more

Rajiv Mishra Headshot Missing
Rajiv Mishra

Rajiv Mishra

This person does not have a biography listed with CSA.

Dr. Hing-Yan Lee Headshot
Dr. Hing-Yan Lee
Executive Vice President of Government Affairs, CSA

Dr. Hing-Yan Lee

Executive Vice President of Government Affairs, CSA

Dr. Hing Yan Lee serves as the Executive Vice President of Asia Pacific (APAC) for Cloud Security Alliance. Dr. Lee has over 30 years of ICT working experience in both the public and private sectors. In the recent 9+ years, he was Director of National Cloud Computing Office at Infocomm Development Authority, where he was responsible for, inter alia, developing the cloud ecosystem, promoting cloud adoption by government agencies and private...

Read more

Rolando Marcelo Vallejos Headshot Missing
Rolando Marcelo Vallejos

Rolando Marcelo Vallejos

This person does not have a biography listed with CSA.

David Chong Headshot Missing
David Chong

David Chong

This person does not have a biography listed with CSA.

Zou Feng Headshot
Zou Feng

Zou Feng

Zou Feng (CISSP-ISSAP, CISA) has been working in IT for 20+ years with strong technical background and broad experience in heterogeneous system and multi-culture environment. Starting as Communication Engineer in ICBC, Feng had taken different roles including Support Supervisor, Regional Network Manager, Senior Security Manager in different industry. His main responsibilities are including designing, engineering, and implementing security t...

Read more

Narudom Roongsiriwong Headshot
Narudom Roongsiriwong
Head of IT Security

Narudom Roongsiriwong

Head of IT Security

Narudom is a certified information security professional with more than 20 years of experience. His primary areas of interest in information security are in solution designing, analytics, and application security.

Narudom is currently working with Kiatnakin Bank as SVP and Head of IT Security. He established the bank's information security in a holistic approach, especially in a security architecture and secure software development li...

Read more

Geng Tao Headshot Missing
Geng Tao

Geng Tao

This person does not have a biography listed with CSA.

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?