Cloud computing assurance – a review of literature guidance. (13th March 2017)
- Record Type:
- Journal Article
- Title:
- Cloud computing assurance – a review of literature guidance. (13th March 2017)
- Main Title:
- Cloud computing assurance – a review of literature guidance
- Authors:
- von Solms, Rossouw
Willett, Melanie - Abstract:
- Abstract : Purpose: This paper aims to provide guidance on cloud computing assurance from an IT governance point of view. The board and executive management are tasked with ensuring proper governance of organizations, which should in the end contribute to a sense of assurance. Assurance is understood to be a part of corporate governance which provides stakeholders with confidence in a subject matter by evaluating evidence about that subject matter. Evidence will include proof that proper controls and structures are in place, that risks are managed and that compliance with internal and external requirements is demonstrated with regard to the subject matter. Decisions regarding the use of cloud computing in organizations bring these responsibilities to the fore. Design/methodology/approach: The design of this paper is based on an extensive review of literature, predominantly best practices and standards, from the fields covering IT governance, cloud computing and assurance. Findings: The results from this paper can be used to formulate cloud computing assurance evidence statements, as part of IT governance mandates. Originality/value: This paper aims to add value by highlighting the responsibility of managers to ensure assurance when exploiting opportunities presented through IT advances, such as cloud computing; serving to inform management about the advances that have and are being made in the field of cloud computing guidelines; and motivating that these guidelines be usedAbstract : Purpose: This paper aims to provide guidance on cloud computing assurance from an IT governance point of view. The board and executive management are tasked with ensuring proper governance of organizations, which should in the end contribute to a sense of assurance. Assurance is understood to be a part of corporate governance which provides stakeholders with confidence in a subject matter by evaluating evidence about that subject matter. Evidence will include proof that proper controls and structures are in place, that risks are managed and that compliance with internal and external requirements is demonstrated with regard to the subject matter. Decisions regarding the use of cloud computing in organizations bring these responsibilities to the fore. Design/methodology/approach: The design of this paper is based on an extensive review of literature, predominantly best practices and standards, from the fields covering IT governance, cloud computing and assurance. Findings: The results from this paper can be used to formulate cloud computing assurance evidence statements, as part of IT governance mandates. Originality/value: This paper aims to add value by highlighting the responsibility of managers to ensure assurance when exploiting opportunities presented through IT advances, such as cloud computing; serving to inform management about the advances that have and are being made in the field of cloud computing guidelines; and motivating that these guidelines be used for assurance on behalf of organizations adopting and using cloud computing. … (more)
- Is Part Of:
- Information and computer security. Volume 25:Number 1(2017)
- Journal:
- Information and computer security
- Issue:
- Volume 25:Number 1(2017)
- Issue Display:
- Volume 25, Issue 1 (2017)
- Year:
- 2017
- Volume:
- 25
- Issue:
- 1
- Issue Sort Value:
- 2017-0025-0001-0000
- Page Start:
- 26
- Page End:
- 46
- Publication Date:
- 2017-03-13
- Subjects:
- Governance -- Cloud computing assurance -- Cloud computing compliance -- Cloud computing guidelines -- Cloud computing standards
Computer security -- Management -- Periodicals
Computer networks -- Security measures -- Periodicals
Data protection -- Management -- Periodicals
658.47 - Journal URLs:
- http://www.emeraldinsight.com/loi/ics ↗
http://www.emeraldinsight.com/ ↗ - DOI:
- 10.1108/ICS-09-2015-0037 ↗
- Languages:
- English
- ISSNs:
- 2056-4961
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - 4481.796000
British Library DSC - BLDSS-3PM
British Library HMNTS - ELD Digital store - Ingest File:
- 2069.xml