Comments
yourfanat wrote: I am using another tool for Oracle developers - dbForge Studio for Oracle. This IDE has lots of usefull features, among them: oracle designer, code competion and formatter, query builder, debugger, profiler, erxport/import, reports and many others. The latest version supports Oracle 12C. More information here.
Cloud Expo on Google News
SYS-CON.TV
Cloud Expo & Virtualization 2009 East
PLATINUM SPONSORS:
IBM
Smarter Business Solutions Through Dynamic Infrastructure
IBM
Smarter Insights: How the CIO Becomes a Hero Again
Microsoft
Windows Azure
GOLD SPONSORS:
Appsense
Why VDI?
CA
Maximizing the Business Value of Virtualization in Enterprise and Cloud Computing Environments
ExactTarget
Messaging in the Cloud - Email, SMS and Voice
Freedom OSS
Stairway to the Cloud
Sun
Sun's Incubation Platform: Helping Startups Serve the Enterprise
POWER PANELS:
Cloud Computing & Enterprise IT: Cost & Operational Benefits
How and Why is a Flexible IT Infrastructure the Key To the Future?
Click For 2008 West
Event Webcasts
Three Steps to Enable Rock Solid Cloud Security By @IanKhanLive | @CloudExpo #Cloud
Key aspects for creating a solid organization, keeping cloud security in perspective

Three Steps to Enable Rock Solid Cloud Security

Cloud security is at the top of every CIO's list. It is also the first subject that comes up when you engage in a discussion about the cloud. For those of us who followed the recent Ashley Madison story (from a tech perspective), you would agree that while the breach happened for so many reasons, security is at the heart of it. Here are some key aspects for creating a solid organization, keeping cloud security in perspective.

Don't Blame Vendors
Different industries have different regulations and requirements. For some, such as consumer grade document sharing platforms like Dropbox, Google Drive, Box and so many others, the problem actually is not with them but what people choose to store on these platforms. All of these and other platforms are hosted on the public cloud and while they may promise a certain level of security, they do not offer a private cloud where your data is secure on restricted servers that are meant for your use only. Sharing documents on these platforms becomes a responsibility of the end users and while the fine print covers the vendor, a breach is always possible. You probably do remember the instances where millions of records from an online document storage vendor were leaked. So if your organization wants super-tight security and is using a consumer grade document sharing platform, you are literally shooting yourself in the foot. The same goes for using public cloud applications such as Evernote, Google Docs and others. Sorry! Use solutions or hosting that offers a 100% private cloud.

Clean Your House
If your organization has no way to track and monitor changes in connected devices, you might as well save the money on your firewall. Allowing users to use non-certified or private devices such as USB drives, portable hard drives and other devices that can connect to your network is essentially security suicide. A 30-second connection with an infected device can transfer malicious code to your device and can sit there for months before it slowly starts eating away at your network like a plague. It may not even need to do that in case the malicious code is targeting specific ports to open and let the bad guys in. As I mentioned to a recent client, the inconvenience that users face unfortunately is far less than the risk and consequences that you may face with a hack. This is true for your cloud where you will be able to restrict access and enable multiple levels of user credential verification, SSL connections and so on. Lock down your network, because it's never too late.

Enable Processes
Processes are what makes and lack of them is what breaks. Enabling processes at every level within your organization is a key success driver. Processes define a methodology and a framework under which employees should work and go about their work. When was the last time you heard that discipline hurt someone? At the enterprise level, enabling usage and access policies are a way to get started. Not having processes just invites chaos, risk and injects the vulnerability of someone new coming into the organization and disrupting the way things are done. This does not mean not looking at ways to improved processes. That should be a constant driver anyway. Take inventory of how your organization functions and if it lacks processes, not only at the cloud or IT infrastructure level but everywhere else.

Do you have a take on cloud security? Feel free to share.

This article first appeared on the Solgeniakhela Blog

About Ian Khan
CNN Futurist, Forbes Contributor, Author, 3 Time TEDx Speaker and Technology Futurist, over the last 20 years Ian Khan has had the privilege to serve the needs of over 5000 organizations by fueling their growth through technology solutions. He has helped a diverse set of businesses ranging from Technology Companies, Oil Companies, Power Generation & Renewables Operators, Microsoft Ecosystem Partners, SAP Customers and Partners, Healthcare Providers, Manufacturers, Facility Operators, Startups, Educational Institutions, Nonprofits & associations and more. Ian’s experiences with these organizations led him to a unique position of being able to identify the common challenges of growth for all these organizations. The bottom line as he found out, is that we all are hungry for success and want to grow and make a difference. Where we fall short is by failing to understand our environment and taking the right action within that environment. After 20 years serving the needs of the industry Ian’s natural pivot was to answer his calling and help organizations at a broader level understand what tomorrow brings. His work and study of all these organizations brought forward very unique perspectives that he now share through his work. Today, hands down, we live in the great time for humanity. Technology is a great thing, but it also has its victims. Many organizations of tomorrow will fail under the pressure of a fast changing world, much of which is fueled and driven by technology. Ian’s mission is to help organizations avoid that pitfall, and propel themselves into success in today’s era and go from digital disruption to digital transformation in the fastest and most sustainable way. This is the only way, according to him, we can together create limitless value, create solutions that are faced by us locally as well as by others around the globe, and make the world a happier place. Today Ian’s work spans working with people by delivering keynotes, consulting and by promoting his 7 –Axioms methodology through his book and workshops. He is also working on an ambitious project of releasing a documentary in spring of 2018 called Industry 4.0. Industry 4.0 will capture the thoughts and insights of some of the world’s leading thinkers and help us understand the 4th Industrial Revolution, Its Impact, and how we can all be have an opportunity to be part of the emerging future and make the right choices. For more information please visit www.iankhan.com

In order to post a comment you need to be registered and logged in.

Register | Sign-in

Reader Feedback: Page 1 of 1

Latest Cloud Developer Stories
When building large, cloud-based applications that operate at a high scale, it's important to maintain a high availability and resilience to failures. In order to do that, you must be tolerant of failures, even in light of failures in other areas of your application. "Fly two mis...
Digital transformation has increased the pace of business creating a productivity divide between the technology haves and have nots. Managing financial information on spreadsheets and piecing together insight from numerous disconnected systems is no longer an option. Rapid market...
Machine learning provides predictive models which a business can apply in countless ways to better understand its customers and operations. Since machine learning was first developed with flat, tabular data in mind, it is still not widely understood: when does it make sense to us...
To Really Work for Enterprises, MultiCloud Adoption Requires Far Better and Inclusive Cloud Monitoring and Cost Management … But How? Overwhelmingly, even as enterprises have adopted cloud computing and are expanding to multi-cloud computing, IT leaders remain concerned about how...
When applications are hosted on servers, they produce immense quantities of logging data. Quality engineers should verify that apps are producing log data that is existent, correct, consumable, and complete. Otherwise, apps in production are not easily monitored, have issues that...
Subscribe to the World's Most Powerful Newsletters
Subscribe to Our Rss Feeds & Get Your SYS-CON News Live!
Click to Add our RSS Feeds to the Service of Your Choice:
Google Reader or Homepage Add to My Yahoo! Subscribe with Bloglines Subscribe in NewsGator Online
myFeedster Add to My AOL Subscribe in Rojo Add 'Hugg' to Newsburst from CNET News.com Kinja Digest View Additional SYS-CON Feeds
Publish Your Article! Please send it to editorial(at)sys-con.com!

Advertise on this site! Contact advertising(at)sys-con.com! 201 802-3021



SYS-CON Featured Whitepapers
ADS BY GOOGLE