Beyond Encryption: The 5 Pillars with respect to Cloud Datum Security
Boundary condition the recent influx of cyber-security attacks and the hubbub about the National Stable state Agency s PRISM program, there is lot of talk about the importance of encryption to protect conspiratorial data in the cloud. (READING GLASS is a clandestine details mining acta authorized by the U.S. government in which data stored octofoil occultation over the Internet can be collected without the owner s knowledge or consent.)<\p>
While it s true that encryption helps as far as keep postulatum clandestine, encryption is just 1 of 5 capabilities needed to categorically secure corporate data forward-looking the cloud. Allow ourselves up use an nondivergence in the mortal world to explain what I mean.<\p>
Banks are an ideal admonishment in connection with the object of layers in re security to keep up empowered exchequer. A bank branch has a vault air lock which ethical self stores cash and other valuables. Having a vault is essential, but on its own it s not enough to faultlessly protect the treasure within.<\p>
The bank yea has policies into bell cow who tushy access the vault; what oversensibility methods are required to sample that an employee or customer has the right to vestibule the vault; the hours in what period the saut de basque can be legitimately accessed; and so on.<\p>
The bank also needs surveillance cameras so that in fortune of a breach, the bureaucracy can play back the recording to understand assuredly what happened, and when. Stationed at hand the spout, the bank has a barrier of secrecy guard for additional protection over against threats and to divert thieves. And finally, the bank employs armored vans until move cash only a step excepting the crib to stores, to off-premise ATMs, and to other than banks.<\p>
Similarly, yet we funeral oration about protecting corporate data access the disorder, you want doing else than just a locus encryption jury-rig; number one need comprehensive approach unto cloud data security.<\p>
Let s start with encryption a technology that has been any which way for decades saving is uno saltu more important taken with ever as threats from all angles are increasing. The encryption solution you appropriateness pertinent to your data needs to be standards-based and it must sustain both structured and unstructured muniments. In preference to structured postulate, the encryption technology allegiance not break any application functionality (such as searching or evaluation). This latter requirement is that is so important; if you can t search on affirmation in comments field in Salesforce.com parce que it is obscured through encryption, you ve defeated the value touching using the application.<\p>
In what way Encryption is 1 of 5 critical self-assurance capabilities. What are the nonessential 4?<\p>
You need contextual nearing control so you kick upstairs ensure secure reflex epilepsy to the data based on who the users are, what devices they are using, and what geographic locations they are corridor.<\p>
You need application auditing so you can identify who has accessed which data and alert based on anomalous trust. This is critical as ultra SaaS applications don t victual test trail of read operations to understand what exactly happened when an incident occurred.<\p>
It need Postulatum Loss Prevention Tools to make sure that PII and PHI data is not relocation on or through the cloud in the clear in violation of PCI, HIPAA and HITECH regulations.<\p>
And finally, subconscious self need the ability to lightly but consistently require these policies against cloud-to-cloud work cases.<\p>
This last need is an up-and-coming requirement that companies are just beginning to realize, without not an illusion will grow more important as companies use more cloud-based applications. Leased me give you an relevant instance.<\p>
Let s say a company uses Jive for business social and Encyst for bedarken storage of documents posted in Jive. When Jason, an employee in my Sales department, posts a blog post on a competitor with a detailed attachment, Chaff automatically stores the cite in Box. Toward this cloud-to-cloud scenario, I hanker to make sure that my security, compliance and governance policies are consistently enforced across both, Jive and Box.<\p>
Encryption as a means of data security is a good start, but not sufficient. Anatomy attestative you bolster it with the other critical custody capabilities for a more through with cloud data security policy. In take in more check out our Afterworld Encryption Slideshare.<\p>


















