Page 85 - Cyber Defense eMagazine Special RSA Conference Annual Edition for 2022
P. 85
Considering all the circumstances, the organizations need a methodology or a criterion to make the right
decision. The following list and criteria may help to your organization. Each question has a score, which
is based on the priority of the question. If you finish providing the answers, you gain an aggregated score
on the advantage side and the disadvantage side. The aggregated scores can help the decision makers.
The scores (values) are only recommendations. These can be changed due to the special needs of the
organization.
No. Question Advantage Disadvantage Score
1 Is management committed to using cloud services? If Yes No 2
not, the whole project can fail.
2 Organizational cloud service usage rules sholud Yes No 1,9
implemented easily? In case of the procedures and/or
the rules of the organization are overly different form
the procedures and rules of the cloud service
(provider) can make the implementation inapplicable.
3 Is the information security policy of the organization Yes No 1,5
allowing the usage of cloud services? This is a
relatively easy decision to change the policy, if the first
questions answer is yes.
4 Does a contract prohibit the use of the cloud service? No Yes 1,9
If yes, do you have a possibility to negotiate with the
partner to change it? If the contract’s content can not
be changed, the value of the disadvantage is as
follows.
5 Is the cloud service appropriate to handle business Yes No 1,8
needs? It is an important question, but the business
has to understand the operation and functionality of
the service provided by the cloud service provider.
6 Is the cloud service suitable for the efficient Yes No 2
implementation of organizational cost allocation?
Many organization have a cost allocation system. If the
cloud can not handle (or not capable to handle) the
needs, the answer is no.
7 Does the IT experts possess specific knowledge to Yes No 1,7
operate cloud services? There are many cloud
trainings available, if the IT staff requires further
85