Journal of Information Security

Volume 11, Issue 4 (October 2020)

ISSN Print: 2153-1234   ISSN Online: 2153-1242

Google-based Impact Factor: 3.79  Citations  

A Cloud Computing Security Assessment Framework for Small and Medium Enterprises

HTML  XML Download Download as PDF (Size: 916KB)  PP. 201-224  
DOI: 10.4236/jis.2020.114014    1,147 Downloads   4,131 Views  Citations

ABSTRACT

Cloud computing plays a very important role in the development of business and competitive edge for many organisations including SMEs (Small and Medium Enterprises). Every cloud user continues to expect maximum service, and a critical aspect to this is cloud security which is one among other specific challenges hindering adoption of the cloud technologies. The absence of appropriate, standardised and self-assessing security frameworks of the cloud world for SMEs becomes an endless problem in developing countries and can expose the cloud computing model to major security risks which threaten its potential success within the country. This research presents a security framework for assessing security in the cloud environment based on the Goal Question Metrics methodology. The developed framework produces a security index that describes the security level accomplished by an evaluated cloud computing environment thereby providing the first line of defence. This research has concluded with an eight-step framework that could be employed by SMEs to assess the information security in the cloud. The most important feature of the developed security framework is to devise a mechanism through which SMEs can have a path of improvement along with understanding of the current security level and defining desired state in terms of security metric value.

Share and Cite:

Rupra, S. and Omamo, A. (2020) A Cloud Computing Security Assessment Framework for Small and Medium Enterprises. Journal of Information Security, 11, 201-224. doi: 10.4236/jis.2020.114014.

Cited by

[1] Industry 5.0 challenges and perspectives for manufacturing Systems in the Society 5.0
Sustainability and Innovation in …, 2022
[2] Hierarchical network security measurement and optimal proactive defense in cloud computing environments
Security and Communication Networks, 2022
[3] A review of fog computing and its simulators
Journal of Discrete Mathematical …, 2022
[4] PROTECTION OF INFORMATION RESOURCES AS AN INTEGRAL PART OF ECONOMIC SECURITY OF THE ENTERPRISE
Natsional'nyi Hirnychyi …, 2022
[5] Design and implementation of a cloud server based on hardware virtualization
ming, YAO Xuan-xia, Z Fang, Z Xue-feng… - 工程科学 …, 2022
[6] Assessing and Ranking Cloud Computing Security Risks Based On a Hybrid Approach Based On Pairwise Comparisons
Iranian Journal of Information …, 2022
[7] 基于硬件虚拟化的云服务器设计与实现
工程科学学报, 2022
[8] ارزیابی و رتبه‌بندی ریسک‌های امنیتی رایانش ابری بر اساس یک رویکرد ترکیبی مبتنی بر مقایسه‌های زوجی‎
پژوهشنامه پردازش و مدیریت اطلاعات, 2022
[9] Mist-edge-cloud (MEC) computing: an integrated computing architecture
2021 Second International …, 2021
[10] Cloud-based business process security risk management: a systematic review, taxonomy, and future directions
Computers, 2021
[11] Strategic Measures in Improving Cybersecurity Management in Micro and Small Enterprises
2020
[12] Науковий вісник НГУ

Copyright © 2024 by authors and Scientific Research Publishing Inc.

Creative Commons License

This work and the related PDF file are licensed under a Creative Commons Attribution 4.0 International License.