Cloud security issues & challenges – public cloud

Slides:



Advertisements
Similar presentations
Pros and Cons of Cloud Computing Professor Kam-Fai Wong Faculty of Engineering The Chinese University of Hong Kong.
Advertisements

Prepared for [xxxx] – Commercial in Confidence connect transform protect A Cloudy Cyberspace? Tony Roadknight – Technical Architect.
TechFire Conference Cloud Made Simple - Dispelling the Hype. Brian Larkin Operations Director Digital Planet Brian Larkin Operations Director Digital Planet.
CLOUD COMPUTING AN OVERVIEW & QUALITY OF SERVICE Hamzeh Khazaei University of Manitoba Department of Computer Science Jan 28, 2010.
Supervisor : Mr. Hadi Salimi Advanced Topics in Information Systems Mazandaran University of Science and Technology February 4, 2011 Survey on Cloud Computing.
What is Cloud Computing? o Cloud computing:- is a style of computing in which dynamically scalable and often virtualized resources are provided as a service.
Presented by Sujit Tilak. Evolution of Client/Server Architecture Clients & Server on different computer systems Local Area Network for Server and Client.
1. 2 New Computing Models, and What They Mean to the Small and Mid Sized Business Consumer How your business can make practical decisions between “The.
Plan Introduction What is Cloud Computing?
NIST Information Technology Laboratory Cloud Computing Program NIST Cloud Computing Program Current Activities Robert Bohn OASIS – International Cloud.
PLUG IT IN 4 Cloud Computing. 1.Introduction 2.What Is Cloud Computing? 3.Different Types of Clouds 4.Cloud Computing Services 5.The Benefits of Cloud.
Clouds on IT horizon Faculty of Maritime Studies University of Rijeka Sanja Mohorovičić INFuture 2009, Zagreb, 5 November 2009.
Introduction to Cloud Computing
MIGRATING INTO A CLOUD P. Sai Kiran. 2 Cloud Computing Definition “It is a techno-business disruptive model of using distributed large-scale data centers.
3 Cloud Computing.
Security and Privacy Services Cloud computing point of view October 2012.
CLOUD COMPUTING  IT is a service provider which provides information.  IT allows the employees to work remotely  IT is a on demand network access.
Lecture 6: Cloud Computing By D. Najla Al-Nabhan 1.
Computer Science and Engineering 1 Cloud ComputingSecurity.
TECHNOLOGY GUIDE THREE
SUNY FARMINGDALE Computer Programming & Information Systems BCS451 – Cloud Computing Prof. Tolga Tohumcu.
Plan  Introduction  What is Cloud Computing?  Why is it called ‘’Cloud Computing’’?  Characteristics of Cloud Computing  Advantages of Cloud Computing.
1 NETE4631 Course Wrap-up and Benefits, Challenges, Risks Lecture Notes #15.
Speaker: Meng-Ting Tsai Date:2011/04/26 Establishing Trust in Cloud Computing IEEE Computer Society.
Speaker: Meng-Ting Tsai Date:2010/11/25 The Information Assurance Practices of Cloud Computing Vendors IEEE Communications Society.
Cloud computing Cloud Computing1. NIST: Five essential characteristics On-demand self-service Computing capabilities, disks are demanded over the network.
3/12/2013Computer Engg, IIT(BHU)1 CLOUD COMPUTING-1.
1 TCS Confidential. 2 Objective : In this session we will be able to learn:  What is Cloud Computing?  Characteristics  Cloud Flavors  Cloud Deployment.
Software as a Service (SaaS) Fredrick Dande, MBA, PMP.
Big Data analytics in the Cloud Ahmed Alhanaei. What is Cloud computing?  Cloud computing is Internet-based computing, whereby shared resources, software.
© 2012 Eucalyptus Systems, Inc. Cloud Computing Introduction Eucalyptus Education Services 2.
Cloud Computing 3. TECHNOLOGY GUIDE 3: Cloud Computing 2 Copyright John Wiley & Sons Canada.
1 Views of Cloud Computing Prof. Ravi Sandhu Executive Director and Endowed Chair March 25, © Ravi Sandhu.
CS 6027 Advanced Networking FINAL PROJECT ​. Cloud Computing KRANTHI ​ CHENNUPATI PRANEETHA VARIGONDA ​ SANGEETHA LAXMAN ​ VARUN ​ DENDUKURI.
Agenda  What is Cloud Computing?  Milestone of Cloud Computing  Common Attributes of Cloud Computing  Cloud Service Layers  Cloud Implementation.
Public Cloud Market to Global Analysis and Forecasts by Services, Applications No of Pages: 150 Publishing Date: Jan 2017 Single User PDF: US$ 3900.
© 2016 Global Market Insights, Inc. USA. All Rights Reserved Fuel Cell Market size worth $25.5bn by 2024 Infrastructure as a Service.
Computers Are Your Future Twelfth Edition
University of Colorado at Colorado Springs
Lecture 6: Cloud Computing
Introduction to Cloud Technology
Chapter 6: Securing the Cloud
Understanding The Cloud
By: Raza Usmani SaaS, PaaS & TaaS By: Raza Usmani
Cloud adoption NECOOST Advisory | June 2017.
VIRTUALIZATION & CLOUD COMPUTING
Cloud Computing Kelley Raines.
Computers Are Your Future Twelfth Edition
LEGAL & ETHICAL ISSUES InsurTech & Health Insurance Providers
AWS. Introduction AWS launched in 2006 from the internal infrastructure that Amazon.com built to handle its online retail operations. AWS was one of the.
Cloud Computing Team Members: Aleksandra Knezevic Willie Robbins
Cloud Testing Shilpi Chugh.
UTSA's New Center Center for Security and Privacy Enhanced Cloud Computing (C-SPECC) Ravi Sandhu Executive Director of ICS and C-SPECC Professor.
Cloud Computing Dr. Sharad Saxena.
EIS Fast-track Revision Om Trivedi Enterprise Information Systems
Developing a Baseline On Cloud Security Jim Reavis, Executive Director
Cloud Computing Cloud computing refers to “a model of computing that provides access to a shared pool of computing resources (computers, storage, applications,
3 Cloud Computing.
Cloud Computing Buil Schouten.
Smart Learning concepts to enhance SMART Universities in Africa
Cloud computing Technology: innovation. Points  Cloud Computing and Social Network Sites have become major trends not only in business but also in various.
Cloud computing Technology: innovation. Points  Cloud Computing and Social Network Sites have become major trends not only in business but also in various.
Emerging technologies-
Computers Are Your Future Twelfth Edition
Introduction to Cloud Computing
Cloud Computing: Concepts
Computer Science and Engineering
Views of Cloud Computing
Distributed and Cloud-based Network Defense System for NRENs (DCNDS)
Cloud Computing for Wireless Networks
Presentation transcript:

Cloud security issues & challenges – public cloud Literature Review By: Kunal & Joe

What is public cloud?

Cloud architecture

Who offers cloud services?

hypothesis public cloud could pose a huge potential security risk for the general public.

Importance – public cloud Provides huge benefit for the general public. Reduced excessive high cost of running, purchasing and maintenance by companies. Pay-per-use model at a very low cost. IaaS, PaaS and SaaS are provisioned from a pooled of shared resources that are accessible over the internet.

Potential review of security threats & challenges A thematic review on the security issues and privacy in the public cloud.

Issues highlighted Security & Privacy Infrastructure & Data Management Interoperability across different service providers. Ghanam, Y., Ferreira, J., & Maurer, F. (2012)

Privacy concerns Security standards in SLA Access controls – accounts/services in cloud Extensive use of virtualization – brings security concerns to tenants Ouahman, A. A. (2014)

challenges Outsourcing – tenants no longer retain physical control on hardware, software and data. Multi-tenancy – A shared physical machine that holds different tenants data. Therefore exploitation can occur. Massive data & intensive computation – traditional security mechanism may not suffice the new security requirements. That is due unbearable computation/communications overhead. Mosca, P., Zhang, Y., Xiao, Z., & Wang, Y. (2014)

Security concerns Cloud availability – under investigated CIA (Confidentiality, Integrity & Confidentiality) – the CIA triad has not yet been formally adapted to the cloud Khansa, L., & Zobel, C. W. (2014)

Legal issues Lack of uniformity – in the terms and the provider contracts and SLA (Service level Agreement) Information Policies (Private Industries) – governments have not provided a uniform & homogenous information policy regime where private industries are given clear guidance as to multi-jurisdictional risk, cyber terrorism risk, outage risk. Teng, K. (2012)

Security measures Malware detection & prevention Secure virtual machine managers Cloud resilience – the ability for the system to recover & continue to provide services after a loss of software and hardware occurs. Denz and Taylor. (2013)

Take - away As presented by the different reviews, there exist multiple challenges and issues regarding cloud. However, it is up to the cloud service provider to pick from a grab back of techniques to secure their infrastructure. It can also be deduced that some issues and challenges that practitioners consider important need further studies and research. In future, as a cloud service consumer it is advisable to conduct a thorough & diligent risk assessment of the potential threats of low to high risk inherent in the cloud.

references Alam, B., Doja, M. N., Alam, M., & Malhotra, S. (2013). Security issues analysis for cloud computing. International Journal of Computer Science and Information Security, 11(9), 117-125. Retrieved from http://search.proquest.com/docview/1468454405?accountid=28103 Data security; global public cloud market 2011-2014 report discusses the various challenges faced by this market including the growing concern for data security. (2012). Computers, Networks & Communications, 339. Retrieved from http://search.proquest.com/docview/929252047?accountid=28103 Denz and Taylor. (2013). A survey on securing the virtual cloud, Journal of Cloud Computing: Advances, Systems and Applications, 2:17 Retrieved from http://www.journalofcloudcomputing.com/content/2/1/17 Ghanam, Y., Ferreira, J., & Maurer, F. (2012). Emerging issues & challenges in cloud computing- A hybrid approach. Journal of Software Engineering and Applications, 5, 923-937. Retrieved from http://search.proquest.com/docview/1282113531?accountid=28103 Gonzalez et al. (2012). A quantitative analysis of current security concerns and solutions for cloud computing, Journal of Cloud Computing: Advances, Systems and Applications, 1:11 Retrieved from http://www.journalofcloudcomputing.com/content/1/1/11 Khansa, L., & Zobel, C. W. (2014). ASSESSING INNOVATIONS IN CLOUD SECURITY. The Journal of Computer Information Systems, 54(3), 45-56. Retrieved from http://search.proquest.com/docview/1526662556?accountid=28103 Mosca, P., Zhang, Y., Xiao, Z., & Wang, Y. (2014). Cloud security: Services, risks, and a case study on amazon cloud services. International Journal of Communications, Network and System Sciences, 7(12), 529-535. Retrieved from http://search.proquest.com/docview/1645562992?accountid=28103 National Institute of Standard and US Department of Commerce Technology, "The NIST Definition of Cloud Computing," 12 October 2012. http://csrc.nist.gov/publications/nistpubs/800-145/SP800-145.pdf Popovic, K., & Hocenski, Z. (2010, May). Cloud computing security issues and challenges. In MIPRO, 2010 proceedings of the 33rd international convention (pp. 344-349). IEEE. Teng, K. (2012). CLOUD COMPUTING: LEGAL AND PRIVACY ISSUES. Journal of Legal Issues and Cases in Business, 1, Retrieved from http://www.aabri.com/jlicb.html