Monday, January 3, 2011

Top 8 Reasons why Identity and Access Management is essential for Cloud Environment?

For Cloud Provider, the following is the top 8 reasons why you will need an IAM solution for the Cloud:

1) To make sure who is using your service.
2) To be compliant with government regulations.
3) To provide Separation of Duty  and Least Privileged access to the data hosted on behalf of cloud consumer.
4) To build a trust relationship with cloud consumer. If you don't care about IAM, you will certainly lose the trust of the customers.
5) For user based subscription model (such as salesforce.com), cloud provider need to have IAM to provision, audit, de-provision users and to provider correct billing statement according to usage.
6) To support potential e-Discovery as required by law enforcement agency.
7) To be able to support wide range of users, such as partners, internal cloud administrators, help desk users, end users, and delegated admin users.
8) To support other functions within Cloud Provider such as BI, Sales, and Executive decisions.

For Cloud Consumers, the following are the top 8 reasons you need to seek IAM solution from Cloud Provider:

1) Cloud services are pushing enterprises to emphasize identity based security rather than network security. Network security services like SSL connections,firewalls, edge security devices are insufficient when accessing Cloud services since most Cloud service are outside of your organization's firewall.  Thus, the Identity based security plays a central role in Cloud Environment regardless of IAAS, PAAS, or SAAS and regardless of private cloud or public cloud.

2) Audit tracking and compliance is still Cloud Consumer's responsibility since Cloud Consumer is the owner of the data in the cloud. If there is no IAM solution integrated within the Cloud Provider, it will be impossible to produce necessary audit tracking and compliance reports for the cloud application used in your business processes.

3) The requirement of  Single sign-on for the applications hosted in the cloud will push the needs to IAM in the Cloud.

4) The Identity Federation will be in strong need to extend the Identity solution within the organization firewall to the cloud

5:  For small and middle size companies or government agencies, a complex IAM solution has been not possible due to the cost, with the IAM in the cloud, the small and middel size companies can leverage the IAM solution in the cloud with relatively less cost.

6: The Cloud Consumer will need to measure how cost effective the cloud service has been to the core business and IAM provides a foundational building block to enable the Cloud Consumer to get the correct measurement.

7: Cloud Consumer will need to verify the billing provided by Cloud Provider and need IAM to track the usage of each user.

8: Cloud Consumer will need to evaluate how  User Provisioning Process used in the past and how this process impact its cloud strategy.

No comments:

Post a Comment