The Inner Circle

 View Only
  • 1.  Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 22 days ago

    Many organizations are eager to adopt cloud services, but want to consider how to manage risks in making that transition. This discussion lays out strategies for success in leveraging cloud platforms and how the risks and security may impact customers and third parties.

    Watch Jim Reavis, CEO of CSA, Collin Schwartz, General Counsel & Chief Regulatory Officer of TruSight, and Rani Urbas, Global Head of Enterprise Trust of Google Cloud, in their conversation about the future of cloud risk and security here → https://csaurl.org/7szupj

    #cloudsecurity #TruSight



    ------------------------------
    Orbert Reavis
    Circle Guide
    CSA
    ------------------------------


  • 2.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 19 days ago
    The link is not working, can you please fix it

    ------------------------------
    Srinivas Kasula
    Engineering Manager
    Wells Fargo
    ------------------------------



  • 3.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 19 days ago
    link is not working

    ------------------------------
    Srinivas Kasula
    Engineering Manager
    Wells Fargo
    ------------------------------



  • 4.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 19 days ago
    This topic (cloud security for financial institutions) is the subject of a standard, X9.125, being developed by the X9F4 accredited subcommittee of ANSI. I am part of the drafting team. The document is close to completion (then it needs to go through all the reviews and balloting processes before adoption, and I have little idea how long this takes). There is quite a section on how to manage cryptographic keys, given the need to encrypt financial information.

    If anyone needs more information, I can refer you to the co-chairs of the group, but I am probably not supposed to send you the current draft without asking them first. Our next meeting is this Wednesday afternoon (we meet the 2nd and 4th Wednesday of each month, and draft text offline in between), so shout now if you need me to carry a message or request to the group.

    ------------------------------
    Claude Baudoin
    cébé IT Knowledge Management
    Co-Chair, OMG Cloud Working Group
    https://www.omg.org/cloud
    ------------------------------



  • 5.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 15 days ago
    I would like to read the draft and contribute if I can. We have developed a new file encryption scheme without the complicated key management. Well, different complexity I should say, and would like to share.




    ------------------------------
    Jun Yu
    CEO
    APF Technologies LLC
    ------------------------------



  • 6.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 12 days ago

    Jun, I am happy to send you the latest draft, but please note that as I wrote, the document is close to completion. I am not sure there is window of opportunity to contribute feedback, but if you have some I will do my best to recommend any appropriate changes.

    Please contact me directly at cbaudoin[at]gmail[dot]com to give me your e-mail address. Anyone else who is interested in this document (draft of X9.125 standard on cloud management and security at financial institutions) is welcome to do the same. I'm not authorized to post the document here for everyone to see, as it might then be distributed too widely and it is not final.



    ------------------------------
    Claude Baudoin
    cébé IT Knowledge Management
    Co-Chair, OMG Cloud Working Group
    https://www.omg.org/cloud
    ------------------------------



  • 7.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 12 days ago
    Hi Claude,
    You're welcome to loop me in.
    Cheers / Niels
    President CSA Denmark

    ------------------------------
    Niels E. Anqvist
    CEO/President
    ZAFEHOUZE USA / ZAFEHOUZE EMEA
    ------------------------------



  • 8.  RE: Strategies for Financial Services organizations to manage risk in the Cloud

    Posted 12 days ago
    Claude, hello
    Can you loop me and @Troy Leach into this and supply the contact information?​

    ------------------------------
    JOHN DIMARIA
    ME
    CSA
    JOHNDIMARIACSAMEjdimaria@cloudsecurityalliance.org
    ------------------------------