top of page
  • Facebook
  • Twitter
  • Linkedin
Search

Cloud Security # 4

  • Writer: Steve Murphy
    Steve Murphy
  • Aug 16, 2020
  • 1 min read


Your cloud provider should have a security governance framework which coordinates and directs its management of the service and information within it.


Having an effective governance framework will ensure that procedure, personnel, physical and technical controls continue to work through the lifetime of a service.

It should also respond to changes in the service, technological developments and the appearance of new threats.


You need to know that the following is covered within the cloud providers governance framework;


Clearly identified, and named, board representative or delegate i.e. the CSO or CISO.


Documented framework for security governance, with policies governing key aspects of information security relevant to the service. This would normally be checked a part of your supplier due diligence process.


Security and information security are part of the service provider’s financial and operational risk reporting mechanisms, ensuring that the board would be kept informed of security and information risk.


Procedures and Processes to identify and ensure compliance with applicable legal and regulatory requirements.


Tomorrow - Operational Security

 
 
 

Recent Posts

See All
Do we need Rules?

Information security policies are critical documents that organizations develop to ensure the protection of their sensitive information...

 
 
 
Supply Chain Security

In today's interconnected world, supply chains have become an integral part of businesses across all industries. However, with the...

 
 
 
Privacy Policy

We receive, collect and store any information you enter on our website or provide us in any other way. In addition, we collect the...

 
 
 

Comments


Contact Us

Thanks for submitting!

 Address. 15 Bluebell Close, East Grinstead, RH19 1RS

Tel. 07957 689 093

© 2023 by ITG. Proudly created with Wix.com

bottom of page