Cloud Compliance Flashcards
Tort Law
This is a body of rights, obligations, and remedies that sets out reliefs for persons suffering harm as a result of the wrongful acts of others
TheInternational Organization for Standardization
is aninternational standard-setting body composed of representatives from various nationalstandards organizations.
Founded on 23 February 1947, the organization promotes worldwide proprietary, industrial, and commercialstandards
General Data Protection Regulation
is a regulation in EU law (Supersedes the Data Protection Directive) on data protection and privacy for all individual citizens of the European Union (EU) and the European Economic Area (EEA).
Gramm-Leach-Bliley Act
requires financial institutions – companies that offer consumers financial products or services like loans, financial or investment advice, or insurance – to explain their information-sharing practices to their customers and to safeguard sensitive data.
The doctrine of the proper law
determines in which jurisdiction the dispute will be heard, based on contractual language professing an express selection or a clear intention through a choice-of-law clause.
e-discovery
refers to any process in which electronic data is sought, located, secured, and searched with the intent of using it as evidence in a civil or criminal legal case. e-discovery can be carried out online and offline (for static systems or within network segments)
Cloud computing forensic science
is the application of scientific principles, technological practices, and derived and proven methods to reconstruct past cloud computing events through identification, collection, preservation, examination, interpretation, and reporting of digital evidence.
Standard Privacy Requirements
Consent, Control, Transparency, Communication, Independent and Yearly Audit
Cloud Computing Policies
Password policies, remote access, encryption, third-party access, segregation of duties, incident management, and data backups.
SLA
SLA forms the most crucial and fundamental component of how security and operations will be undertaken
(MTBF)
Mean time between failures(MTBF) is the predicted elapsed time between inherentfailuresof a mechanical or electronic system, during normal system operation.
MTTF
mean time to failure(MTTF) denotes the expected time to failure for a non-repairable system.
Ensuring Quality of Service
Availibility