Is my cloud secure? – Certifications Part II
In our last blog post we wrote that the data center you select for your applications and data should be in compliance with best-in-class practices. One way to determine this is by asking for certifications. Today we will discuss two kinds of certifications that you should become familiar with before you make a final decision on a cloud hosting provider.
SOC-1 and SOC-2 (Service Organization Controls) certifications give you a baseline for the physical and logical access, data security and business continuity of your data. SOC-1 reports are audited reports on controls. Type I reports the existence of control policies and procedures and Type II verifies that these procedures are in practice by testing their operation effectiveness for a period of time. SOC-2 reports on various organizational controls related to security, availability, confidentiality or privacy. Make sure you know which type of certification your cloud computing provider has.
HIPAA (Health Insurance Portability and Accountability) refers to a US federal regulation that ensures privacy of healthcare data by providing privacy standards to protect patients’ medical records and other health information. A data center with HIPAA certification is vital if you will have healthcare records in the cloud.
There are multiple other certifications that cover other aspects of cloud security. The important thing to remember is that, if your cloud hosting provider has the certifications you require, your data will be in very good hands.
SEARCH
RECENT POSTS
Why IT Professionals Should Welcome the Cloud with Open Arms
IT Professionals are sometimes caught in a bind when it comes to the cloud. They...
Read MoreWHY HYBRID CLOUD IS GAINING VELOCITY
In the tech world, there is a certain appeal to be able to walk up...
Read MoreWhat Is Microsoft Dynamics?
Microsoft Dynamics is a suite of enterprise resource planning (ERP) and customer relationship management (CRM)...
Read MoreWhat is Microsoft Azure?
Azure is Microsoft’s cloud computing platform, a collection of integrated services that supports a broad...
Read More