Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. The Lounge
  3. Microsoft and The Cloud

Microsoft and The Cloud

Scheduled Pinned Locked Moved The Lounge
comhostingcloudsecurity
14 Posts 7 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M Mycroft Holmes

    A few years ago I had drinks with an MS Cloud sales person and in his opinion the big end of town was not his market, he was after the SMEs. That was a few years ago so a lot may have changed since then.

    Never underestimate the power of human stupidity RAH

    D Offline
    D Offline
    devvvy
    wrote on last edited by
    #5

    that makes perfect sense!

    dev

    1 Reply Last reply
    0
    • D devvvy

      I can see it's alright (to put your apps, and data) for many small/medium size company where compliance/security/confidentiality isn't a big thing. But I just don't see how The Cloud be compatible with corporate compliance in banking industry, let aside security and government related activities. I wonder, if Microsoft's bet on The Cloud will be a financial success...

      dev

      R Offline
      R Offline
      RCoate
      wrote on last edited by
      #6

      It's a breach of Government regulations to put almost any of our data on the cloud. We have to be able to assert that our data is not stored on any off-shore data services. Which is quite funny as the Australian Government Technology Review magazine is always drinking that cool-aid.

      L 1 Reply Last reply
      0
      • R RCoate

        It's a breach of Government regulations to put almost any of our data on the cloud. We have to be able to assert that our data is not stored on any off-shore data services. Which is quite funny as the Australian Government Technology Review magazine is always drinking that cool-aid.

        L Offline
        L Offline
        Lost User
        wrote on last edited by
        #7

        RCoate wrote:

        It's a breach of Government regulations to put almost any of our data on the cloud.
        We have to be able to assert that our data is not stored on any off-shore data services.
         
        Which is quite funny as the Australian Government Technology Review magazine is always drinking that cool-aid.

        You're not in Canberra by any chance are you?

        Michael Martin Australia "I controlled my laughter and simple said "No,I am very busy,so I can't write any code for you". The moment they heard this all the smiling face turned into a sad looking face and one of them farted. So I had to leave the place as soon as possible." - Mr.Prakash One Fine Saturday. 24/04/2004

        R 1 Reply Last reply
        0
        • D devvvy

          I can see it's alright (to put your apps, and data) for many small/medium size company where compliance/security/confidentiality isn't a big thing. But I just don't see how The Cloud be compatible with corporate compliance in banking industry, let aside security and government related activities. I wonder, if Microsoft's bet on The Cloud will be a financial success...

          dev

          B Offline
          B Offline
          BobJanova
          wrote on last edited by
          #8

          Even those industries have lots of low security normal business data (documents about business processes, training material, administration for building maintenance, utilities etc, even some of their internal systems that don't deal with customers' money) which could be put on the cloud. After all it's not that different from dedicated hosting in a data centre which even banks make a lot of use of already.

          W 1 Reply Last reply
          0
          • D devvvy

            advantage of course and have heard many times but i am talking security/compliance road blocks - for example, "Who has access to trades table" (a security trading firm for example). I'm not going to even contemplate if you work for say FBI you'd get questions such as "Who has access to this physical application server?", "Auditor need to come in every three months to check event logs on each physical/virtual server hosting this application"

            dev

            W Offline
            W Offline
            wizardzz
            wrote on last edited by
            #9

            devvvy wrote:

            "Who has access to trades table" (a security trading firm for example). I'm not going to even contemplate if you work for say FBI you'd get questions such as "Who has access to this physical application server?", "Auditor need to come in every three months to check event logs on each physical/virtual server hosting this application"

            Having recently worked for a brokerage that failed after operating illegally for 2 decades, I can say that there is much less auditing in real time than you think. It seems all of it happens after the fact, after shit hits the fan. Our tables could have been located anywhere and compliance would have been fine. Now, on the other hand, if I was at a firm that actually gave a shit about their customers, security might have been an issue with the cloud, but who knows.

            D 1 Reply Last reply
            0
            • B BobJanova

              Even those industries have lots of low security normal business data (documents about business processes, training material, administration for building maintenance, utilities etc, even some of their internal systems that don't deal with customers' money) which could be put on the cloud. After all it's not that different from dedicated hosting in a data centre which even banks make a lot of use of already.

              W Offline
              W Offline
              wizardzz
              wrote on last edited by
              #10

              On a somewhat humorous note, one of the data centers here has been subject to repeated physical break ins. Easier to do than hacking: http://www.theregister.co.uk/2007/11/02/chicaco_datacenter_breaches/[^]

              1 Reply Last reply
              0
              • L Lost User

                RCoate wrote:

                It's a breach of Government regulations to put almost any of our data on the cloud.
                We have to be able to assert that our data is not stored on any off-shore data services.
                 
                Which is quite funny as the Australian Government Technology Review magazine is always drinking that cool-aid.

                You're not in Canberra by any chance are you?

                Michael Martin Australia "I controlled my laughter and simple said "No,I am very busy,so I can't write any code for you". The moment they heard this all the smiling face turned into a sad looking face and one of them farted. So I had to leave the place as soon as possible." - Mr.Prakash One Fine Saturday. 24/04/2004

                R Offline
                R Offline
                RCoate
                wrote on last edited by
                #11

                Nope. Sorry Michael. Brisbane. Been to Canbera once. And left (although I am a Raiders supporter).

                1 Reply Last reply
                0
                • W wizardzz

                  devvvy wrote:

                  "Who has access to trades table" (a security trading firm for example). I'm not going to even contemplate if you work for say FBI you'd get questions such as "Who has access to this physical application server?", "Auditor need to come in every three months to check event logs on each physical/virtual server hosting this application"

                  Having recently worked for a brokerage that failed after operating illegally for 2 decades, I can say that there is much less auditing in real time than you think. It seems all of it happens after the fact, after shit hits the fan. Our tables could have been located anywhere and compliance would have been fine. Now, on the other hand, if I was at a firm that actually gave a shit about their customers, security might have been an issue with the cloud, but who knows.

                  D Offline
                  D Offline
                  devvvy
                  wrote on last edited by
                  #12

                  "...I can say that there is much less auditing in real time than you think. It seems all of it happens after the fact, after sh*t hits the fan. Our tables could have been located anywhere and compliance would have been fine...". > not in the firms where I worked prev. nobody checks in "realtime" but for sure you can't put app/data in The Cloud

                  dev

                  W 1 Reply Last reply
                  0
                  • D devvvy

                    "...I can say that there is much less auditing in real time than you think. It seems all of it happens after the fact, after sh*t hits the fan. Our tables could have been located anywhere and compliance would have been fine...". > not in the firms where I worked prev. nobody checks in "realtime" but for sure you can't put app/data in The Cloud

                    dev

                    W Offline
                    W Offline
                    wizardzz
                    wrote on last edited by
                    #13

                    devvvy wrote:

                    not in the firms where I worked prev. nobody checks in "realtime" but for sure you can't put app/data in The Cloud

                    Just out of curiosity, why not? Why is the "Cloud" worse than colocations in their eyes?

                    D 1 Reply Last reply
                    0
                    • W wizardzz

                      devvvy wrote:

                      not in the firms where I worked prev. nobody checks in "realtime" but for sure you can't put app/data in The Cloud

                      Just out of curiosity, why not? Why is the "Cloud" worse than colocations in their eyes?

                      D Offline
                      D Offline
                      devvvy
                      wrote on last edited by
                      #14

                      why not check realtime? For example, sensitive folders if you need scan folder permission/file permission it can take time. Why "Cloud" worse than colocations? --> have you taken questions from auditors from within firms? Consider a scenario, say your data stored in outsourced data center with dedicated server (That's already one step up in comparison to cloud). Lets say room where backup takes are stored cabinets are shared with other clients (or even competiting firm). Even if all backup tapes are encrypted you will get questions from auditors along the line "Who has physical access to these cabinets", "How access permission is granted", "Access history reviewed?", "Data center/vendor submit access log for review how freq and by who"?, "Cabinets and tapes clearly marked?", "What procedure in place to avoid mixing up tapes between us and our competitor/other clients", "Other clients restricted from physical access to cabinets or room where cabinets resides"? -- imagine will you run your apps in cloud what kind of questions you'd get "colocation" is fine - in fact some most sensitive applications in program high freq trading do this to minimize latency. But "colocation" is verrrry diff from "Cloud" where you have no control over security/access/confidentiality your risk/compliance will give you hell

                      dev

                      1 Reply Last reply
                      0
                      Reply
                      • Reply as topic
                      Log in to reply
                      • Oldest to Newest
                      • Newest to Oldest
                      • Most Votes


                      • Login

                      • Don't have an account? Register

                      • Login or register to search.
                      • First post
                        Last post
                      0
                      • Categories
                      • Recent
                      • Tags
                      • Popular
                      • World
                      • Users
                      • Groups