Skip to content
Menu
Cloud Gal 42
  • Home
Cloud Gal 42

ISO/IEC 27017: Information Security Controls for Cloud Computing

May 28, 2021May 25, 2021 by admin

ISO/IEC 27017:2015 gives guidelines for information security controls applicable to the provision and use of cloud services by providing:

  1. Additional implementation guidance for relevant controls specified in ISO/IEC 27002
  2. Additional controls with implementation guidance that specifically relate to cloud services.

This standard provides enhanced controls for cloud service providers and cloud service customers and should be used in conjunction with the ISO/IEC 27001 standards series. By clarifying both party’s roles and responsibilities, it is intended to assist in making the safety and security of cloud services equivalent to other certified information management system.

The standard not only provides guidance on ISO/IEC 27002 security controls, but it also introduces seven new cloud-specific controls. These enhancements address:

  1. Delineation of responsibilities between the cloud service provider and cloud customer
  2. Disposition of assets upon contract termination
  3. Cloud service customer virtual environment protection and isolation
  4. Virtual machine configuration
  5. CSP cloud environment administrative operations and procedures
  6. Cloud customer monitoring of activity within the cloud
  7. Virtual and cloud network environment alignment

Related

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Role of AI/ML in Cybersecurity
  • QuickGuide: Security on OCI
  • The Cloud Management Plane
  • Secure Installation and Configuration of Virtualized Cloud Datacenters
  • Cloud Datacenter: Hardware-specific Security Configuration Requirements

Recent Comments

  • Rafael on Installing Debian on OCI
  • Jorge on Installing Debian on OCI
  • admin on Installing Debian on OCI
  • Andreas on Installing Debian on OCI
  • admin on Installing Debian on OCI

Archives

  • December 2022
  • February 2022
  • September 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • February 2021
  • January 2021
  • November 2020
  • October 2020

Categories

  • aws
  • bcdr
  • cloud
  • cloudsecurity
  • compliance
  • informationsecurity
  • oracle
  • pci
  • QuickGuide
  • security
©2025 Cloud Gal 42 | Powered by WordPress and Superb Themes!