Authors:
Karin Bernsmed
1
;
Martin Gilje Jaatun
1
and
Astrid Undheim
2
Affiliations:
1
SINTEF Information and Communication Technology, Norway
;
2
Telenor Corporate Development, Norway
Keyword(s):
Cloud computing, Security, Service level agreements, SLA, Quality of service, QoS.
Related
Ontology
Subjects/Areas/Topics:
Cloud Computing
;
Cloud Computing Enabling Technology
;
Cloud Risk, Challenges, and Governance
;
Fundamentals
;
Monitoring of Services, Quality of Service, Service Level Agreements
Abstract:
The Cloud computing paradigm promises reliable services, accessible from anywhere in the world, in an on-demand manner. Insufficient security has been identified as a major obstacle to adopting Cloud services. To deal with the risks associated with outsourcing data and applications to the Cloud, new methods for security assurance are urgently needed. This paper presents a framework for security in Service Level Agreements for Cloud computing. The purpose is twofold; to help potential Cloud customers to identify necessary protection mechanisms and, in the next step, to facilitate automatic service composition based on a set of predefined security requirements. We demonstrate the practical applicability of the first objective with a small case study.