N. I. Ahmad, I. Mohamed, Maslina Daud, Ahmad Dahari Jarno, Norlaili binti Abdul Hamid
{"title":"Cloud Service Provider Security Readiness Model: The Malaysian Perspective","authors":"N. I. Ahmad, I. Mohamed, Maslina Daud, Ahmad Dahari Jarno, Norlaili binti Abdul Hamid","doi":"10.1109/ICEEI47359.2019.8988851","DOIUrl":null,"url":null,"abstract":"The growing trend of cloud computing has attracted many organizations on the technology because of the ability to provide scalable and flexible services, cost efficiency and data availability. However, security concerns remain the major barrier to the adoption of cloud services. Particular concerns about loss of control and governance are caused by unreliable and non-transparent cloud service providers. Therefore, compliance with cloud-specific standards is highly recommended to cloud service providers (CSPs) to ensure the security of customer's data and all resources are well-protected. The aim of this study is to develop a conceptual model that is able to assess the level of readiness of CSP to comply with cloud-specific standards ISO/IEC 27017. The CSR model consists of control mapping methods according to 7 domain categories. To prove the efficiency of the model, the assessment to indicate the level of the CSP readiness will be discussed in this paper.","PeriodicalId":236517,"journal":{"name":"2019 International Conference on Electrical Engineering and Informatics (ICEEI)","volume":"258 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 International Conference on Electrical Engineering and Informatics (ICEEI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICEEI47359.2019.8988851","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
The growing trend of cloud computing has attracted many organizations on the technology because of the ability to provide scalable and flexible services, cost efficiency and data availability. However, security concerns remain the major barrier to the adoption of cloud services. Particular concerns about loss of control and governance are caused by unreliable and non-transparent cloud service providers. Therefore, compliance with cloud-specific standards is highly recommended to cloud service providers (CSPs) to ensure the security of customer's data and all resources are well-protected. The aim of this study is to develop a conceptual model that is able to assess the level of readiness of CSP to comply with cloud-specific standards ISO/IEC 27017. The CSR model consists of control mapping methods according to 7 domain categories. To prove the efficiency of the model, the assessment to indicate the level of the CSP readiness will be discussed in this paper.