Technology Trends & Management Consulting

Is a Private Cloud Solution to PCI?

Posted in Blogroll, Cloud, Cloud Computing, Data Privacy, Security Management by Daniel Ruggles on October 14, 2010

Enterprises at the early stages of cloud adoption are deploying private clouds and internal cloudlets, which can be thought of as local access points and logical divisions of their own larger infrastructure.  Private clouds are characterized by scalability through virtualization but the actual physical infrastructure is kept local to the Enterprise.  This provides scalability and capital cost reduction but does not incur lack of control normally associated with moving data and processing to the cloud.

In this architecture, a gateway can be used to create an internal virtual application perimeter from the existing Enterprise information systems to the Enterprises’ own internal cloud.  This type of architecture also works as a precursor and testing ground for a hybrid cloud deployment when the actual physical resources live off-site to the Enterprise.  In this environment, the gateway can be used to enforce attribute based access control, authentication and data protection policies required for PCI DSS and other compliance standards.

Gateways could be firewalls, but they lack the sophistication of logging, identity management, accounting and reporting that will be required to meet the demands of PCI DSS and other standards.  This gateway “product” is quickly evolving from several major vendors and may become the stepping stone for large and more pervasive cloud deployments in the future.  As PCI compliance becomes more complex and as those standards evolve, the “gateway” appliance approach seems to have credible merit.

Let Daniel L. Ruggles and the team at PM Kinetics, LLC help you navigate the complexities of IT Governance, Cloud Computing, Sourcing & Capital Planning, Vendor Management, IT Security, and Infrastructure planning & execution.

Advertisement
Tagged with: , ,

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s

Follow

Get every new post delivered to your Inbox.

Join 220 other followers