How to Evaluate Cloud Service Provider Security


Published: 29 November 2017 ID: G00340272

Analyst(s):

New to Gartner?

Register with us for FREE access to this research document.

REGISTER NOW

Summary

Security and risk management leaders continue to experience challenges to efficiently and reliably determine whether cloud service providers are secure. Effective cloud security assessment processes require a very pragmatic and risk-oriented approach.

Table of Contents

  • Introduction
  • Analysis
    • Implement a Process to Quickly Determine the Specific Security and Control Objectives for Each Use Case
    • Take Advantage of Formal and De Facto Cloud Security Standards
      • Control Frameworks
      • Third-Party Processes
    • Optimize Your Use of Provider Security Information
      • Formal On-Site Evaluation
      • Security Rating Services
      • Formal Third-Party Security Assessments
      • Questionnaires
    • Base the Rigor of Your CSP Assessment on the Significance of the Anticipated Utilization
    • Tailor Your Assessments to the Size and Sophistication of the Individual CSP
      • Tier 1 CSPs
      • Tier 2 CSPs
      • Tier 3 CSPs
  • Gartner Recommended Reading
© 2017 Gartner, Inc. and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication in any form without prior written permission is forbidden. The information contained herein has been obtained from sources believed to be reliable. Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartners research may discuss legal issues related to the information technology business, Gartner does not provide legal advice or services and its research should not be construed or used as such. Gartner shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The opinions expressed herein are subject to change without notice.

Why Gartner

Gartner delivers the technology-related insight you need to make the right decisions, every day.

Find out more

Call +1 855-515-4486 or contact us

to become a Gartner client.