siliconindia logo
CIO City >>  Expert  >>  

Sunder Krishnan

"For the organizations who like to keep most critical servers near and less critical in cloud can choose hybrid option"

Use and implementation of Cloud in business

Cloud helps enterprise IT by giving an operational speed and the ability to cut capital expenditure. Cloud is a concept which delivers remote computing services to users via internet or a Virtual Private Network (online).

The need to purchase expensive computing hardware and software is obviated. Operational costs that were used to power and maintain this equipment are also reduced or eliminated.

For the organizations who like to keep most critical servers near and less critical in cloud can choose Hybrid option.

Building an effective DLP program
Data Leakage Prevention is not a control by itself. In an organization where data is most critical asset, it requires pre and post activities before choosing any DLP Control.
1. Organization need to have complete inventory of information assets in their system. It has to cover at a granular level of information, like tables and fields of the database, business application, roles defined for the business users with access control, network topology used for accessing the application.
2. A detailed risk assessment (RA) and data flow analysis (DFA) to be performed to understand the criticality of the asset.
3. Data leakage possibilities have to be identified based on the risk assessment as only technology control won’t be adequate.

Ensuring social media as an asset for business
Social media has become the most important factor for driving the business. It becomes the business responsibility to ensure right social media been chosen. Taking cautious steps and regular review of engagement process will help to ensure social media is asset for the business.

Therefore, social media, while being very useful, needs to be carefully evaluated and used. The potential of a “linked in” has been very widely published and results are amazing.

Maximizing the cost efficiency for information security
Analyzing and defining security controls at every level also consumes more time and effort. By choosing some wise solutions and ensuring that people, process and technologies are well aligned to address business requirements. Alignment and collaborative efforts will also help bring down costs.

Rather than having physical data centers with many servers Cloud will reduce the cost of operation, hardware and license procurement and local IT support expense.

Mobile devices to minimize threat, loss and risk
Many organizations have initiated controls over “Bring Your Own Device” through MDM – Mobile Device Management. BYOD enables their employees to use the corporate business applications. More the facility more the threat and risks associated with it.

By ensuring regular Information Security Awareness and strong security controls on mobile device only can help safe access