Contact
QR code for the current URL

Story Box-ID: 305253

ENISA - European Network and Information Security Agency P.O. Box 1309 71001 Heraklion, Crete, Greece http://www.enisa.europa.eu
Contact Mr Ulf Bergström +30 694 846 0143
Company logo of ENISA - European Network and Information Security Agency
ENISA - European Network and Information Security Agency

ENISA clears the fog on cloud computing security

(PresseBox) (Heraklion, Crete, )
How can businesses and governments get the obvious benefits of cloud computing without putting their organisation at risk? The EU's 'cyber security' agency, ENISA (the European Network and Information Security Agency) answers this question in a comprehensive, new report on "Cloud Computing: Benefits, risks and recommendations for information security". It covers the technical, policy and legal implications and most importantly, makes concrete recommendations for how to address the risks and maximise the benefits for users.

ENISA's new report is the first to take an independent, indepth look at all the security and privacy issues of moving into the cloud, outlining some of the information security benefits of cloud computing, as well as 35 key security risks. ENISA and their expert group started with a survey asking businesses their main concerns in moving into the cloud. "The picture we got back from the survey was clear:" says Giles Hogben, an ENISA expert and editor of the report - "the business case for cloud computing is obvious - it's computing on tap, available instantly, commitmentfree and ondemand. But the number one issue holding many people back is security - how can I know if it's safe to trust the cloud provider with my data and in some cases my entire business infrastructure?"

The report answers this question with a detailed checklist of criteria which anyone can use to identify whether a cloud provider is as securityconscious as they could be. "This is the most important result of our report: our checklist isn't just pulled from thinair," says Daniele Catteddu, the ENISA report coeditor - "we based it on a careful risk analysis of a number of cloud computing scenarios, focussing on the needs of business customers. The most important risks addressed by the checklist include lockin, failures in mechanisms separating customers' data and applications, and legal risks such as the failure to comply with data protection legislation." With the security checklist, customers now know the right questions to ask and providers can answer those questions just once instead of being overloaded with requests for assurance about their security practices.

Cloud computing also entails great economic interests, e.g. the IDC forecasts a growth of European cloud services from €971m in 2008 to €6,005m in 2013.

But as the report points out, cloud computing is also a security enabler. The Executive Director of ENISA, Dr Udo Helmbrecht, underlines: "The scale and flexibility of cloud computing gives the providers a security edge. For example, providers can instantly call on extra defensive resources like filtering and rerouting. They can also roll out new security patches more efficiently and keep more comprehensive evidence for diagnostics."
The publisher indicated in each case (see company info by clicking on image/title or company info in the right-hand column) is solely responsible for the stories above, the event or job offer shown and for the image and audio material displayed. As a rule, the publisher is also the author of the texts and the attached image, audio and information material. The use of information published here is generally free of charge for personal information and editorial processing. Please clarify any copyright issues with the stated publisher before further use. In case of publication, please send a specimen copy to service@pressebox.de.
Important note:

Systematic data storage as well as the use of even parts of this database are only permitted with the written consent of unn | UNITED NEWS NETWORK GmbH.

unn | UNITED NEWS NETWORK GmbH 2002–2024, All rights reserved

The publisher indicated in each case (see company info by clicking on image/title or company info in the right-hand column) is solely responsible for the stories above, the event or job offer shown and for the image and audio material displayed. As a rule, the publisher is also the author of the texts and the attached image, audio and information material. The use of information published here is generally free of charge for personal information and editorial processing. Please clarify any copyright issues with the stated publisher before further use. In case of publication, please send a specimen copy to service@pressebox.de.