- Channel HP
- :
- Enterprise Business Blogs
- :
- Services
- :
- Transforming IT Blog | The HP Blog Hub
- :
- Part 3/Secure VM Lifecycle Management: Enable 5 Ke...
- Subscribe to RSS Feed
- Mark as New
- Mark as Read
- Bookmark
- Subscribe
- Email to a Friend
- Printer Friendly Page
- Report Inappropriate Content
Part 3/Secure VM Lifecycle Management: Enable 5 Key Security Processes to Protect a Conv Cloud
By Jan De Clercq
Secure virtual machine lifecycle management and secure service aggregation and cloud bursting are the first two key security processes for protecting a converged cloud environment. The third is secure data lifecycle management.
A secure data lifecycle in a converged cloud environment includes six phases –from creation to destruction:
- Create: Creation includes generating new data and updating existing data. Security controls on the level of the data creation should include data classification and access control mechanisms.
- Store: Storing refers to the act of committing data to a storage provider. Security on the level of the data storage includes access control, encryption, information rights management, and content discovery security controls.
- Use: Data is in use when it is viewed or processed. Security on the level of the data use phase includes activity monitoring, information rights management, application security, and logical security controls.
- Share: Data is shared when it is made available to other entities that are different from the data owner or creator. Security during this phase should include data loss prevention, encryption, logical controls, and application security controls.
- Archive: Archival occurs when data leaves the active use stage and enters long-term storage. Security during this phase should include asset management and encryption security controls.
- Destroy: Data can be permanently destroyed using physical or digital means. Security during this phase should include crypto-shredding, secure deletion, and content discovery security controls.
Secure Data Lifecycle Management
This is the Fourth article on the series "Enable 5 Key Security Processes to Protect a Converged Cloud". To read the rest of the articles on the "Cloud Protection" series, go to these links:
- NEW Cloud Security Series: Enable 5 Key Security Processes to Protect a Converged Cloud (link)
- Part 1/VM Image Lifecycle: Enable 5 Key Security Processes to Protect a Converged Cloud (link)
- (Previous article)Part 2/Service Aggregation and Cloud Bursting: Enable 5 Key Security Processes to Protect a Converged Cloud (link)
- Part 4/Secure Universal Remote Access: Enable 5 Key Security Processes to Protect a Converged Cloud (link)
- Part 5/Secure Federated Identity Management: Enable 5 Key Security Processes to Protect a Converged Cloud (link)
Additional resources:
- Read this white paper to learn more about handling security risks in the cloud: "5 Cloud Security Concerns You Must Address"
- See what's happening around cloud computing at HP Discover 2012
- Learn more about HP's Cloud Protection Services
- Find out more about other HP Cloud Consulting Services
- Listen to Jan's podcast about cloud security, identity and access management, mobility security, and security for Microsoft platforms and solutions: podcast.
- Read this CSA white paper to learn more about secure data lifecycle management: "CSA Security Guidance for Critical Areas in Cloud Computing"
Jan De Clercq is a solution architect with HP's worldwide HP Technology Consulting IT assurance portfolio team. He focuses on cloud security, identity and access management, mobility security, and security for Microsoft platforms and solutions.
- Mark as Read
- Mark as New
- Bookmark
- Highlight
- Email to a Friend
- Report Inappropriate Content
Jan, Love the simple but powerful approach to Secure Data Lifecycle Management. It is great content to be leveraged and applied by those who are responsible for ensuring that the cloud is secure.





