DocumentCode
599935
Title
Secure System Development for Integrated Cloud Applications
Author
Yuyu Chou ; Oetting, J.
Author_Institution
Syst. Anal. & IT, Berlin Inst. of Technol., Berlin, Germany
fYear
2012
fDate
3-4 Dec. 2012
Firstpage
80
Lastpage
87
Abstract
Companies that use a Software-as-a-Service (SaaS) application do so mainly to either replace an existing IT solution or as an extension function to other applications. However, both the data and the system may be exposed to higher threats when a SaaS application is integrated into an existing IT infrastructure. Many firms rate security as a critical issue when moving to the cloud, but only a scant few know how to secure their data. In an attempt to solve this problem, this paper included both the technical view and the management view to help enterprises enhance their security capability when using SaaS. The risks of different SaaS applications and their proposed security enhancement controls are presented from a technical point of view. Based on the management point of view, a model is proposed that will guide a firm in the development of a secure SaaS integrated system as well as fulfill the business requirements. Checklists and reference tools are provided to enable an efficient and effective execution. To prove the utility of the proposed model, we arranged for two firms to apply our model. It was found that when enterprises use the proposed model when adopting a SaaS solution, they can enhance the protection level of their data.
Keywords
cloud computing; security of data; SaaS application; integrated cloud applications; secure system development; security capability; security enhancement controls; software-as-a-service application; Companies; Security; Servers; Software as a service; Standards; Web services; Cloud Computing; SaaS; data protection; security control enhancement; security process;
fLanguage
English
Publisher
ieee
Conference_Titel
Network Cloud Computing and Applications (NCCA), 2012 Second Symposium on
Conference_Location
London
Print_ISBN
978-1-4673-5581-0
Type
conf
DOI
10.1109/NCCA.2012.11
Filename
6472462
Link To Document