Cloud Services Directives
Introduction
Cloud computing is the provision of on-demand computing services such as software, operating syst...
Cloud Deployment Model
There are four main cloud deployment models that differ pointedly and for which most of the compa...
Cloud Service Model
There are many different types of cloud services, each involving different types of technology an...
Facilities
Facilities are the basic IT resources which underlies all types of cloud services (IaaS, PaaS, an...
Organization-Human resources
Organization are the human resources, the processes and the policies and procedures that maintain...
Cloud Infrastructure
The Datacenter should be above Tier 3 to implement the cloud infrastructure and it is mandatory t...
Asset management and monitoring
Asset management and monitoring are processes and it needs to be regulated as per ISO 27001 and c...
Cloud Security
Below security measures needs to be considered in the cloud environment. Physical Security Ne...
Physical Security
Cloud service provider must enforce the physical security as per the ISO27001 controls and it mus...
Network and Infrastructure Security
Cloud service provider must enforce the network security as per the ISO27001 controls and it must...
Applications and Database Security
Environments where organizations’ data is stored in the same instance of the database managements...
Security and Compliance
Proactive testing, identification and mitigation of vulnerabilities are an important part of achi...
Information Security
IT governance by the cloud service provider is a significant concern for a cloud service customer...
Security Operations and Management
Incident response Customers need to be notified when an issue, incident, or breach has occurred...
Business continuity and Disaster Recovery
Cloud service provider must develop an organizational requirement for business continuity plans (...
Control Mapping
This below table represents the responsibilities of the Cloud Service Provider (CSP) and End User...