CLOUD SECURITY CHALLENGES

By:- Sagar soni and Naman


Cloud is a weapon for IT industries. By using these cloud services not only it saves investment, cost, time, places, resources, etc. but also, they don’t need to worry about their data and nowadays a very huge part of this world is dependent on cloud services. But also there are various challenges to ensure its proper functioning and one of the challenge is its security measure.
                     And these are discussed below:-




# Data Confidentiality:
If an authenticated user stores data then it is his/her responsibility to provide services confidentially by CSP (cloud security provider). Suppose end-user shares the data from point A to point B via the internet or other sources then it becomes very important to keep away that Data from 3rd parties, they can create noise in our data. So that data confidentially can be maintained this is how the data confidentiality is a major issue in today’s era.
# Denial of service (DoS/DDoS attack):
The main objective of denial of service attack (DoS) or distributed denial of service attack (DDoS) is to crash or attack on the targeted site so that it should not   create problem and to stop them from accessing CSF along with the legal remedies to stop such tasks.
# Advanced persistent threads (APTs):
It is one of the major concerns regarding cloud security issues that are a parasitical form of cyber-attacks which are targeting IT companies to steal information or data. APTs pursue these goals and take security measures to defend against them.
# Integrity:
It is also one of the responsibilities of CSP (cloud security provider) that any of the unauthentic user should not be able to modify the data that is stored in the cloud and also it is to be ensured that while in any case if user needs to shift the data from existing cloud to new cloud then there must be no data loss.
# Authentication:
CSP (cloud security provider) must  ensure  proper Authentication it simply refers that by giving appropriate user id and password  the user can access his application or by means of multi-factor authentication by receiving (OTP). CSP must ensure about reboot check time to time in view to maintain security.
# Authorization:
The duty of CSP (cloud service provider) is also to maintain the systematical authorization the proper limits for the users should be maintained and that must be acknowledged by the authenticated user that how much service access is given to that user. In such a way, the issue for collision between two or more users can be reduced and security services can be improved.
# Data access:
Again CSP (cloud service provider) must ensure proper division of data. In other words let us consider a company which stores a massive amount of data so that it is not possible for any user to access any type of data, any amount of data. All users must be provided with a specific boundary according to their on needs.
# Data segregation:
All over the world there is huge data that can be stored in various cloud service providers. So it is one of the key responsibility of CSP (cloud service provider) to ensure that authenticated user should properly encapsulate the data (different from other which is already existing).
# Privacy:
CSP (cloud service provider) must hide the details of end users such as operating system they use, their I.P address, locations etc. from the outer world in order to maintain a security over data.
# Recovery:
In case there is any type of problem or issues in providing the services to users or the data center is going to crash then there must be a proper plan of data backup so that end user can use their important services without any issue. So CSP must maintain the recovery clouds it is their task how much , number of locations to deploy cloud etc. but end user should not suffer from any type of backup issues.
# Multi tenancy:
When the virtual techniques are implemented on the data centers which are very important to run then it must be ensured that the virtual machines which are created on one physical machine must be properly encapsulated. To avoid crashes between data and also to run smooth parallel computing mechanisms.



Conclusion:
The Cloud is completely immune to the security issues but there are some human errors due to which data breaches, loss of information can take place.
Cloud computing also offers some of the benefits like reduced cost , scalability and flexibility. If there are security threats then by using some methods like antivirus software , firewall protection we can overcome them.


Comments

Post a Comment