100 likes | 298 Views
About Sally Smoczynski. Background in process improvement Consultant in Information Security, Service Management and Business Continuity Strong experience with implementing ISO standards in above domains (ISO 27001, ISO 20000, PS-Prep) Managing Partner @ Radian Compliance, LLC.
E N D
About Sally Smoczynski • Background in process improvement • Consultant in Information Security, Service Management and Business Continuity • Strong experience with implementing ISO standards in above domains (ISO 27001, ISO 20000, PS-Prep) • Managing Partner @ Radian Compliance, LLC
Identifying a Risk Methodology to support controls in Cloud Computing
Presentation Overview • Define Risk management • Review Cloud computing Risks • Relate back to Risk management process • Closure
Cloud Computing SAAS IAAS PAAS TAAS Software as a Service Platform as a Service Infrastructure as a Service Transparency as a Service
Risks in the cloud • Data integrity • Recovery • Privacy • Legal issues in areas such as e-discovery, regulatory compliance, and auditing • Secure data transfer • Secure software interfaces • Secure stored data • User access control • Data separation
Impact Vulnerability Probability
Sally Smoczynski Managing Partner, Radian Compliance ssmoczynski@radiancompliance.com 630.728.7181