Ask Management Theories Expert

Question: Most cloud users have no visibility into where their data is located and how it is managed. Their data might be managed using tight controls in highly secure facilities; on the other hand, it might be managed by teenagers in a trailer located in a floodzone parking lot in Uzbekistan. Unless you are a very large client with the necessary security clearances, you just don't know. Cloud vendors are understandably reluctant to reveal the locations of data, and they want (and need) the flexibility to move data where they can provide the best performance to their customers. So, what can users do to protect their data? They can contract with responsible, public companies like Amazon.com, Microsoft, IBM, Oracle, or others and hope. Or they can never use the cloud. But is there something else? Working with a team as instructed by your professor, take a position on this issue by answering the following questions:

1. Search the Internet for ISO 27001. Explain the purpose of this standard.

2. Does compliance with ISO 27001 mean that a data center is secure? Does it mean that no security threat against compliant data centers will be successful? What does it mean?

3. Search the Internet for evidence that Microsoft Azure complies with ISO 27001. Summarize your findings.

4. Search the Internet for evidence that Amazon's EC2 complies with ISO 27001. Summarize your findings. SAS 70 is an auditing standard that provides guidance for an auditor issuing a report about internal controls implemented by a cloud services provider. However, to assess the adequacy of data center controls, it is necessary to read and analyze the report that was prepared in accordance with SAS 70.

5. Search the Internet for evidence that Microsoft's auditors have issued a report in accordance with SAS 70. Summarize your findings.

6. Search the Internet for evidence that Amazon's auditors have issued a report in accordance with SAS 70. Summarize your findings.

7. Compare and contrast your answers to questions 3/4 and 5/6. Does your comparison cause you to believe that there are significant differences with regard to security and control between Azure and EC2?

8. Many small businesses operate with local servers running in storerooms, broom closets, and the like. Summarize the major risks of this situation. How can using a cloud vendor that scores well according to the standards discussed help such companies?

9. Suppose a publicly traded large organization operates its own Web farm and has certifications indicating that it has complied with ISO 27001 and has issued a statement of controls in accordance with SAS 70 that indicates controls are at least adequate. Is there any reason to believe that the organization's data assets on that Web farm are more or less secure than they would be if stored in Azure or EC2? Explain your answer.

10. Based on your answers to these questions, create a general statement as to the desirability, considering only data security, of storing data on Azure and EC2 as compared to storing it on servers managed in-house.

Management Theories, Management Studies

  • Category:- Management Theories
  • Reference No.:- M92260840

Have any Question?


Related Questions in Management Theories

Assignment -for this assignment analyze and discuss your

Assignment - For this assignment, analyze and discuss your personal leadership style. Based on your experiences, current readings, work experience, education, and use of self-assessment instruments describe what you thin ...

Assignment -personal reflection 1 -instructions - watch

Assignment - Personal Reflection 1 - Instructions - Watch Milgram's obedience video: Milgram Experiment Proves We Blindly Obey Authority. Consider the following. Christ called his disciples to follow him (Mark 1:17). He ...

Assignment -instructions - please follow instructions for

Assignment - Instructions - Please follow instructions for all for Personal Learning Journal. And each personal learning journal should be of 300words. Each student will keep a personal journal to reflect and record thei ...

Healthcare information technology overview the current

Healthcare Information Technology Overview: The current healthcare industry utilizes a plethora of healthcare information technology (HIT) systems. HIT systems are designed to enhance quality outcomes, prevent adverse ev ...

Archetypes in actionsenge ross smith roberts amp kleiner

Archetypes in Action Senge, Ross, Smith, Roberts, & Kleiner (1994) noted: At its broadest level, systems thinking encompasses a large and fairly amorphous body of methods, tools, and principles, all oriented to looking a ...

Assessment descriptionyou are required to read the

Assessment Description You are required to read the following journal article article: 1. How Risky is Your Company? HBR. May-June 1999 You are also required to read a fictional case study based on a company that will be ...

Discussion - this discussion deals with the important topic

Discussion - This Discussion deals with the important topic of whether money is a motivator for increased job performance and satisfaction. Look at your own history of how you have been compensated, what problems you saw ...

Question - choose a product or technology interview five

Question - Choose a product or technology. Interview five consumers who buy that product and ask them what major problems they have with the product (or what major things they dislike about it). Then ask them to describe ...

Questions -1 choose an industry and then use the library or

Questions - 1. "Choose an industry and then use the library or the Internet to find data from secondary sources that will be highly useful in developing a marketing plan." Start thinking of the industry that relates to t ...

Developing leaders and organisations assessment - report on

Developing, Leaders and Organisations Assessment - Report on Promoting Individual Informal Workplace Learning Brief - You are the newly-appointed Human Resource Advisor in a medium-sized business that employs approximate ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As