Balancing IT Risk and Opportunity
Blog Article Published: 05/13/2015
By David Williamson, CISSP, CGEIT, CRISC, Vice President - Professional Services, MetricStream For business managers, moving portions of our company’s most valued information assets into the public cloud, while compelling economically, raises a thicket of difficult risk and compliance questions.
- From a business perspective, considering reputational and other risks, do the economic advantages outweigh the risks?
- Can anybody in my company really answer: if we move these processes and data into the cloud, will we still be fully compliant with all of the necessary “legs and regs” we must comply with? How do we really prove that?
- Frankly, our IT partners are hardly impartial in the decision; we’re allocating our IT shop’s funds to buy cloud services. Are their security concerns perhaps a little overblown?