Publication Cover
EDPACS
The EDP Audit, Control, and Security Newsletter
Volume 66, 2022 - Issue 1
361
Views
1
CrossRef citations to date
0
Altmetric
Research Article

BUILDING A COMPREHENSIVE CLOUD SECURITY AUDIT PROGRAM

Pages 15-18 | Published online: 07 Dec 2021
 

Abstract

Building a security audit program for cloud services could be a complex process; there are various aspects that a security professional must consider when choosing what areas to incorporate in an in-house framework or what industry standard to use to assess particular cloud infrastructures. A cloud provider must take into account various aspects related to the core of the service, such as API security, code reviews, infrastructure, and others; on the other hand. A cloud customer must consider other areas specific to the use of the service, such as vendor lock-in, contractual agreements, and others. This article contemplates a holistic view of the various frameworks and tools available to companies and security professionals building a comprehensive audit program; it covers the cloud provider and the cloud customer perspectives and expands on what tools could be applied depending on the security audit’s angle.

DISCLOSURE STATEMENT

No potential conflict of interest was reported by the author(s).

Additional information

Notes on contributors

Gary Carrera

Gary Carrera is a Privacy Program Manager at Meta (former Facebook). He has 14 years of experience supporting large tech companies in Information Security and Privacy programs, most recently at Facebook and Apple. He holds an MS in Business Administration and Project Management and CDPSE, CISM, CISA, CCSP, HITRUST CCSFP, ISO27001 among other certifications. The postings on this site are the author’s own and don’t necessarily reflect his employer’s positions or opinions on the subject.

Log in via your institution

Log in to Taylor & Francis Online

Issue Purchase

  • 30 days online access to complete issue
  • Article PDFs can be downloaded
  • Article PDFs can be printed
USD 52.00 Add to cart

PDF download + Online access

  • 48 hours access to article PDF & online version
  • Article PDF can be downloaded
  • Article PDF can be printed
USD 61.00 Add to cart

* Local tax will be added as applicable

Related Research

People also read lists articles that other readers of this article have read.

Recommended articles lists articles that we recommend and is powered by our AI driven recommendation engine.

Cited by lists all citing articles based on Crossref citations.
Articles with the Crossref icon will open in a new tab.