Email this article   Print article 


Government Closes In On Cloud Computing Security Regulations

By Andrew R Hickey
November 03, 2010    5:25 PM ET

Page 2 of 2

According to the General Services Administration (GSA), which helped draft the document, FedRAMP was established to provide a standard approach to assessing and authorizing cloud computing services and products and to allow joint authorizations and continuous security monitoring services for government and commercial cloud systems intended for multiagency use. Using joint authorizations will enable a common security risk model that can be leveraged across the federal government to create a consistent baseline for cloud-based technologies, the GSA said.

"Ensuring data and systems security is one of the biggest and most important challenges for federal agencies moving to the cloud," David McClure, GSA's Associate Administrator for Citizen Services and Innovative Technologies, said in a statement. "FedRAMP's uniform set of security authorizations can eliminate the need for each agency to conduct duplicative, time-consuming, costly security reviews."

The GSA and the Chief Information Officers Council are seeking public comment on the guidelines and requirements by December 3.

The drafted security requirements follows a May plea by Kundra for standards around security, interoperability and data portability before the U.S. government can fully embrace cloud computing. At that time, Kundra said that for the cloud to truly take hold in the government the feds must develop standards to avoid inefficiencies and security holes.

"What's important today is the [development of standards] in the area of security, interoperability and data portability" to ensure information is protected; clouds and the computer applications they support can work together; and content can be moved within and among different clouds without jeopardizing access to or integrity of the data, Kundra said during his keynote speech at the Cloud Computing Forum and Workshop hosted by the National Institute of Standards and Technology (NIST).



<< Previous | 1 | 2

To continue reading this article, please download the free CRN Tech News app for your iPad or Windows 8 device.
Related: Videos | Slide Shows | Comments

SHARE THIS ARTICLE

More Cloud

Recent Articles

10 Intriguing Product Updates From Google I/O 2013

CRN takes a look at some of the key ways Google intends to influence the way we do business and enjoy our free time. A number of product rollouts and updates were made at I/O 2013. Here are the most intriguing.

8 Tips For Successful Cloud Migrations

Successful cloud migrations don't merely focus on changes in technology; they are also focused on the comfort levels of both people who are familiar with the new technology as well as those who might be slightly apprehensive about the forthcoming changes.

9 Key Concerns That Block Cloud Sales

The benefits of the cloud are heavily touted by cloud providers and the various types of channel partners with which they work. But a number of stumbling blocks still remain. Channel partners outlined for CRN some of the objectives they hear most often.

  More Slide Shows




Related Videos
Loading...