SlideShare uma empresa Scribd logo
1 de 19
Compliance in the Cloud 
Meet the Next Generation Computer 
#CloudConversation Compliance in the Cloud 1
Join the #CloudConversation 
We will be live tweeting during today’s webinar, feel free 
to ask questions or let us know what you think! 
@rapid_scale 
#CloudConversation Compliance in the Cloud 2
Compliance 
RapidScale recognizes the need for 
compliance with various laws and 
regulations across different industries. 
We have established our data 
encryption, protocols, and procedures 
to follow the top compliances and 
ensure that our customer’s data is 
secure and confidential. 
#CloudConversation Compliance in the Cloud 3
Compliance 
HIPAA 
What it covers: Enacted in 1996, HIPAA is intended to improve the efficiency and 
effectiveness of the health care system. As such, it requires the adoption of national 
standards for electronic health care transactions and code sets, as well as unique 
health identifiers for providers, health insurance plans and employers. 
Recognizing that electronic technology could erode the privacy of health information, 
the law also incorporates provisions for guarding the security and privacy of personal 
health information. It does this by enforcing national standards to protect: 
- Individually identifiable health information, known as the Privacy Rule. 
- The confidentiality, integrity and availability of electronic protected health information, known as 
the Security Rule. 
Who is affected: Health care providers, health plans, health clearinghouses and "business associates," 
including people and organizations that perform claims processing, data analysis, quality assurance, billing, 
benefits management, etc. 
#CloudConversation Compliance in the Cloud 4
Compliance 
HIPAA 
HIPAA Technical policies that RapidScale uses? 
1. Unique User Identification 
2. Emergency Access Procedure 
3. Automatic Logoff 
4. Encryption and Decryption 
RapidScale also uses top of the line SSL encryption at 2048-bit and our software applications are hosted 
through Citrix XenApp using 256-bit AES encryption. This ensures that your secure data is never 
compromised. 
#CloudConversation Compliance in the Cloud 5
Compliance 
HIPAA Security Risks 
RapidScale gives admin access to remotely wipe any device that is lost or stolen to 
eliminate the risk of data breech. 
RapidScale implemented full credential-limited access to all data in the cloud. Plus, the 
virtual environment will log off within a set amount of time of inactivity. 
In the event of a device loss, a user doesn’t loose that critical data, it’s stored in the cloud 
and is then accessible from their replacement device. As if nothing happened. 
RapidScale has the best-of-breed infrastructure, 
security, firewalls, and more to eliminate the risk of 
information hacking. 
#CloudConversation Compliance in the Cloud 6
Compliance 
PCI 
What it covers: The PCI DSS is a set of requirements for enhancing security of 
payment customer account data. It was developed by the founders of the PCI 
Security Standards Council, including American Express, Discover Financial 
Services, JCB International, MasterCard Worldwide and Visa to help facilitate 
global adoption of consistent data security measures. PCI DSS includes 
requirements for security management, policies, procedures, network 
architecture, software design and other critical protective measures. 
Who is affected: Retailers, credit card companies, anyone handling credit card 
data. 
#CloudConversation Compliance in the Cloud 7
Compliance 
SOX 
What Sarbanes-Oxley covers: Enacted in 2002, the Sarbanes-Oxley Act is 
designed to protect investors and the public by increasing the accuracy and 
reliability of corporate disclosures. It was enacted after the high-profile Enron 
and WorldCom financial scandals of the early 2000s. It is administered by the 
Securities and Exchange Commission, which publishes SOX rules and 
requirements defining audit requirements and the records businesses should 
store and for how long. 
Who is affected: U.S. public company boards, management and public 
accounting firms. 
#CloudConversation Compliance in the Cloud 8
Compliance 
91% 
said that their cloud 
providers were making it 
easier for them to meet 
government compliance 
requirements such as 
PCI, HIPAA, and FISMA 
75% 
Said that network 
availability had 
improved 
In a recent Microsoft survey: 
94% 
Of businesses reported 
that they saw an 
improvement in security 
after switching to the 
cloud 
#CloudConversation Compliance in the Cloud 9
Compliance 
RapidScale & SSAE 
We have 3 data centers across the 
United States 
- Irvine, CA 
- Sterling, VA 
- Dallas, TX 
All 3 are SSAE 16 compliant and are 
certified annually 
#CloudConversation Compliance in the Cloud 10
Compliance 
SSAE 
What it covers: Statement on Standards for Attestation Engagements (SSAE) 
No. 16, Reporting on Controls at a Service Organization, was finalized by the 
Auditing Standards Board of the American Institute of Certified Public 
Accountants (AICPA) in January 2010. SSAE 16 effectively replaces SAS 70 as 
the authoritative guidance for reporting on service organizations. SSAE 16 was 
formally issued in April 2010 and became effective on June 15, 2011. 
Who is affected: Payroll Processing, Loan Servicing, Data Center/Co- 
Location/Network Monitoring Services, Software as a Service (SaaS), Medical 
Claims Processors 
#CloudConversation Compliance in the Cloud 11
Compliance 
Data Center Security 
Keycard protocols, biometric scanning protocols and round-the-clock interior and exterior surveillance 
monitor access to every one of our data centers. 
Only authorized data center personnel are granted access credentials to our data centers. No one else 
can enter the production area of the data center without prior clearance and an appropriate escort. 
On-premises security guards, exterior security system, biometric system, including palm scanners and 
numerous security scanners with digital recorders. All cages secured and locked. 
Colo hybrid customer only allowed with RapidScale employee. 
Every data center employee undergoes multiple and thorough background security checks before they're 
hired. 
Our network leverages Savvis now CenturyLink's global network IT 
infrastructure, which is one of the nation's largest carrier service 
infrastructures. Our data centers feature full redundancy and best-of-breed 
solutions from leading enterprise technology companies, including Cisco, 
Citrix, HP, Microsoft, NetApp, and VMware. 
#CloudConversation Compliance in the Cloud 12
Compliance 
Data Center Security 
Power Distribution 
Should a total utility power outage ever occur, all of our data centers' power systems are designed to run 
uninterrupted, with every server receiving conditioned UPS (Uninterruptible Power Supply) power. 
Our UPS power subsystem is N+1 redundant, with instantaneous failover if the primary UPS fails. 
If an extended utility power outage occurs, our routinely tested, on-site diesel generators can run 
indefinitely. 
Only fully redundant, enterprise-class routing equipment is used in RapidScale data centers. 
Fiber carriers enter our data centers at disparate points to guard against service failure. 
We require that the networking and security teams working in our data centers be certified. We also 
require that they be thoroughly experienced in managing and monitoring enterprise-level networks. 
Our Certified Network Experts are trained to the highest industry standards. 
#CloudConversation Compliance in the Cloud 13
Compliance 
Infrastructure Security 
Transport/Access: Cisco Routers & Firewalls with encryption- 256k 
Infrastructure: IaaS Enterprise Virtual Firewall or customer-owned device 
Storage: NetApp Encryption- all data encrypted in flight and at rest. All SANS have SED's (Self Encrypting 
Drives) 
CloudOffice: End-user password strength/resets 
#CloudConversation Compliance in the Cloud 14
CloudCompliance 
A Full-Scale Auditable System for the Compliance Dependent Industries 
RapidScale’s innovative Cloud Compliance tool is a user-friendly web based portal software solution 
which offers its clients an easy, affordable way to prove they are in compliance with the standards 
and regulations of the industry they service. 
#CloudConversation Compliance in the Cloud 15
CloudCompliance 
#CloudConversation Compliance in the Cloud 16
CloudCompliance 
Fully Customizable 
• Instead of being forced into our definition of what your business activities should be, we 
give you the power to customize your processes in a manner that are appropriate for your 
enterprise. You can start your activities on-demand, by a set schedule, or initiate them by 
using an online survey form. 
Enterprise Collaboration 
• Everyone in your organization will be able to leverage the task management capabilities in 
Boost – and therefore will be able to collaborate in real time on the activities you perform 
on a daily basis. 
Comprehensive Audit Trail 
• Each component of a completed task will be logged and accounted for. These logs can be 
provided in a report for your review. By setting up activities consisting of work flow-enabled 
tasks to track completion and pass/fail with audit trails, RapidScale’s clients can provide 
auditors with timely reports generated from within the tool which will eliminate numerous 
man hours typically required for audit preparation. 
#CloudConversation Compliance in the Cloud 17
CloudCompliance – The Audit Trail 
#CloudConversation Compliance in the Cloud 18
Contact Information 
RapidScale 
100 Pacifica Suite 100 
Irvine, CA 92618 
(949) 236-7007 
rapidscale.net 
#CloudConversation Compliance in the Cloud 19

Mais conteúdo relacionado

Mais procurados

CloudDiscovery - Machine Analytics
CloudDiscovery - Machine AnalyticsCloudDiscovery - Machine Analytics
CloudDiscovery - Machine AnalyticsRapidScale
 
RapidScale Product Training
RapidScale Product TrainingRapidScale Product Training
RapidScale Product TrainingRapidScale
 
Benefits of Transforming to a Hybrid Infrastructure - HPE
Benefits of Transforming to a Hybrid Infrastructure - HPEBenefits of Transforming to a Hybrid Infrastructure - HPE
Benefits of Transforming to a Hybrid Infrastructure - HPEMarcoTechnologies
 
Make from your it department a competitive differentiator for your business
Make from your it department a competitive differentiator for your businessMake from your it department a competitive differentiator for your business
Make from your it department a competitive differentiator for your businessMarcos Quezada
 
IT Department - Re-Organizing Plan II
IT Department - Re-Organizing Plan IIIT Department - Re-Organizing Plan II
IT Department - Re-Organizing Plan IIdabai
 
Logicalis Backup as a Service: Re-defining Data Protection
Logicalis Backup as a Service: Re-defining Data ProtectionLogicalis Backup as a Service: Re-defining Data Protection
Logicalis Backup as a Service: Re-defining Data ProtectionLogicalis Australia
 
RapidScale Company Presentation
RapidScale Company PresentationRapidScale Company Presentation
RapidScale Company PresentationRapidScale
 
365 Data Centers Presentation for Businesses
365 Data Centers Presentation for Businesses365 Data Centers Presentation for Businesses
365 Data Centers Presentation for Businesses365 Data Centers
 
Why cloud?
Why cloud?Why cloud?
Why cloud?Lilly V.
 
Leveraging The Power Of The Cloud For Your Business
Leveraging The Power Of The Cloud For Your BusinessLeveraging The Power Of The Cloud For Your Business
Leveraging The Power Of The Cloud For Your BusinessJoel Katz
 
Data Movement, Management and Governance In The Cloud: DocuSign Case Study
Data Movement, Management and Governance In The Cloud: DocuSign Case StudyData Movement, Management and Governance In The Cloud: DocuSign Case Study
Data Movement, Management and Governance In The Cloud: DocuSign Case StudyDell World
 
Focus on business, not backups
Focus on business, not backupsFocus on business, not backups
Focus on business, not backupsDell World
 
Extensibility: The Key To Managing Your Entire Cloud Portfolio
Extensibility: The Key To Managing Your Entire Cloud PortfolioExtensibility: The Key To Managing Your Entire Cloud Portfolio
Extensibility: The Key To Managing Your Entire Cloud PortfolioDell World
 
AWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaS
AWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaSAWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaS
AWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaSAmazon Web Services
 
Using Big Data to Transform Your Customer’s Experience - Part 1

Using Big Data to Transform Your Customer’s Experience - Part 1
Using Big Data to Transform Your Customer’s Experience - Part 1

Using Big Data to Transform Your Customer’s Experience - Part 1
Cloudera, Inc.
 
Executing on the promise of the Internet of Things (IoT)
Executing on the promise of the Internet of Things (IoT)Executing on the promise of the Internet of Things (IoT)
Executing on the promise of the Internet of Things (IoT)Dell World
 
Cloud: To Build or Buy - Can You Justify On-Premises IT?
Cloud: To Build or Buy - Can You Justify On-Premises IT?Cloud: To Build or Buy - Can You Justify On-Premises IT?
Cloud: To Build or Buy - Can You Justify On-Premises IT?Dell World
 
Prescriptive Cloud Services for the Future Ready Enterprise
Prescriptive Cloud Services for the Future Ready EnterprisePrescriptive Cloud Services for the Future Ready Enterprise
Prescriptive Cloud Services for the Future Ready EnterpriseDell World
 

Mais procurados (20)

CloudDiscovery - Machine Analytics
CloudDiscovery - Machine AnalyticsCloudDiscovery - Machine Analytics
CloudDiscovery - Machine Analytics
 
RapidScale Product Training
RapidScale Product TrainingRapidScale Product Training
RapidScale Product Training
 
Benefits of Transforming to a Hybrid Infrastructure - HPE
Benefits of Transforming to a Hybrid Infrastructure - HPEBenefits of Transforming to a Hybrid Infrastructure - HPE
Benefits of Transforming to a Hybrid Infrastructure - HPE
 
Make from your it department a competitive differentiator for your business
Make from your it department a competitive differentiator for your businessMake from your it department a competitive differentiator for your business
Make from your it department a competitive differentiator for your business
 
IT Department - Re-Organizing Plan II
IT Department - Re-Organizing Plan IIIT Department - Re-Organizing Plan II
IT Department - Re-Organizing Plan II
 
Logicalis Backup as a Service: Re-defining Data Protection
Logicalis Backup as a Service: Re-defining Data ProtectionLogicalis Backup as a Service: Re-defining Data Protection
Logicalis Backup as a Service: Re-defining Data Protection
 
RapidScale Company Presentation
RapidScale Company PresentationRapidScale Company Presentation
RapidScale Company Presentation
 
Backup Solution
Backup SolutionBackup Solution
Backup Solution
 
365 Data Centers Presentation for Businesses
365 Data Centers Presentation for Businesses365 Data Centers Presentation for Businesses
365 Data Centers Presentation for Businesses
 
Why cloud?
Why cloud?Why cloud?
Why cloud?
 
Leveraging The Power Of The Cloud For Your Business
Leveraging The Power Of The Cloud For Your BusinessLeveraging The Power Of The Cloud For Your Business
Leveraging The Power Of The Cloud For Your Business
 
Data Movement, Management and Governance In The Cloud: DocuSign Case Study
Data Movement, Management and Governance In The Cloud: DocuSign Case StudyData Movement, Management and Governance In The Cloud: DocuSign Case Study
Data Movement, Management and Governance In The Cloud: DocuSign Case Study
 
8.cloud migration
8.cloud migration8.cloud migration
8.cloud migration
 
Focus on business, not backups
Focus on business, not backupsFocus on business, not backups
Focus on business, not backups
 
Extensibility: The Key To Managing Your Entire Cloud Portfolio
Extensibility: The Key To Managing Your Entire Cloud PortfolioExtensibility: The Key To Managing Your Entire Cloud Portfolio
Extensibility: The Key To Managing Your Entire Cloud Portfolio
 
AWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaS
AWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaSAWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaS
AWS Enterprise Summit London 2015 | Gartner Keynote - The Future of Cloud IaaS
 
Using Big Data to Transform Your Customer’s Experience - Part 1

Using Big Data to Transform Your Customer’s Experience - Part 1
Using Big Data to Transform Your Customer’s Experience - Part 1

Using Big Data to Transform Your Customer’s Experience - Part 1

 
Executing on the promise of the Internet of Things (IoT)
Executing on the promise of the Internet of Things (IoT)Executing on the promise of the Internet of Things (IoT)
Executing on the promise of the Internet of Things (IoT)
 
Cloud: To Build or Buy - Can You Justify On-Premises IT?
Cloud: To Build or Buy - Can You Justify On-Premises IT?Cloud: To Build or Buy - Can You Justify On-Premises IT?
Cloud: To Build or Buy - Can You Justify On-Premises IT?
 
Prescriptive Cloud Services for the Future Ready Enterprise
Prescriptive Cloud Services for the Future Ready EnterprisePrescriptive Cloud Services for the Future Ready Enterprise
Prescriptive Cloud Services for the Future Ready Enterprise
 

Semelhante a Compliance in the Cloud

Facility Environmental Audit Guidelines
Facility Environmental Audit GuidelinesFacility Environmental Audit Guidelines
Facility Environmental Audit Guidelinesamburyj3c9
 
PTC Cloud Services Datasheet: Security Primer
PTC Cloud Services Datasheet: Security PrimerPTC Cloud Services Datasheet: Security Primer
PTC Cloud Services Datasheet: Security PrimerPTC
 
IT Security at the Speed of Business: Security Provisioning with Symantec Dat...
IT Security at the Speed of Business: Security Provisioning with Symantec Dat...IT Security at the Speed of Business: Security Provisioning with Symantec Dat...
IT Security at the Speed of Business: Security Provisioning with Symantec Dat...Symantec
 
Cloud Security, Standards and Applications
Cloud Security, Standards and ApplicationsCloud Security, Standards and Applications
Cloud Security, Standards and ApplicationsDr. Sunil Kr. Pandey
 
Data Works Berlin 2018 - Worldpay - PCI Compliance
Data Works Berlin 2018 - Worldpay - PCI ComplianceData Works Berlin 2018 - Worldpay - PCI Compliance
Data Works Berlin 2018 - Worldpay - PCI ComplianceDavid Walker
 
Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...
Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...
Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...DataWorks Summit
 
Legal And Regulatory Issues Cloud Computing...V2.0
Legal And Regulatory Issues Cloud Computing...V2.0Legal And Regulatory Issues Cloud Computing...V2.0
Legal And Regulatory Issues Cloud Computing...V2.0David Spinks
 
#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS
#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS
#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWSAlert Logic
 
Risk management for cloud computing hb final
Risk management for cloud computing hb finalRisk management for cloud computing hb final
Risk management for cloud computing hb finalChristophe Monnier
 
SailPoint VS CyberArk.pdf
SailPoint VS CyberArk.pdfSailPoint VS CyberArk.pdf
SailPoint VS CyberArk.pdfVishnuGone
 
2016 01-05 csr css non-confidential slide deck
2016 01-05 csr  css non-confidential slide deck2016 01-05 csr  css non-confidential slide deck
2016 01-05 csr css non-confidential slide deckRichard (Dick) Kaufman
 
Hdcs Overview Final
Hdcs Overview FinalHdcs Overview Final
Hdcs Overview Finalrjt01
 
Implementing an improved security for collin’s database and telecommuters
Implementing an improved security for collin’s database and telecommutersImplementing an improved security for collin’s database and telecommuters
Implementing an improved security for collin’s database and telecommutersRishabh Gupta
 
Cloud Computing - Emerging Opportunities in the CA Profession
Cloud Computing - Emerging Opportunities in the CA ProfessionCloud Computing - Emerging Opportunities in the CA Profession
Cloud Computing - Emerging Opportunities in the CA ProfessionBharath Rao
 
GDPR Compliance Countdown - Is your Application environment ready?
GDPR Compliance Countdown - Is your Application environment ready?GDPR Compliance Countdown - Is your Application environment ready?
GDPR Compliance Countdown - Is your Application environment ready?QualiQuali
 

Semelhante a Compliance in the Cloud (20)

Facility Environmental Audit Guidelines
Facility Environmental Audit GuidelinesFacility Environmental Audit Guidelines
Facility Environmental Audit Guidelines
 
Key Capibilities.pptx
Key Capibilities.pptxKey Capibilities.pptx
Key Capibilities.pptx
 
PTC Cloud Services Datasheet: Security Primer
PTC Cloud Services Datasheet: Security PrimerPTC Cloud Services Datasheet: Security Primer
PTC Cloud Services Datasheet: Security Primer
 
Cyberlink Deck
Cyberlink DeckCyberlink Deck
Cyberlink Deck
 
IT Security at the Speed of Business: Security Provisioning with Symantec Dat...
IT Security at the Speed of Business: Security Provisioning with Symantec Dat...IT Security at the Speed of Business: Security Provisioning with Symantec Dat...
IT Security at the Speed of Business: Security Provisioning with Symantec Dat...
 
Cloud services and it security
Cloud services and it securityCloud services and it security
Cloud services and it security
 
Cloud Security, Standards and Applications
Cloud Security, Standards and ApplicationsCloud Security, Standards and Applications
Cloud Security, Standards and Applications
 
Data Works Berlin 2018 - Worldpay - PCI Compliance
Data Works Berlin 2018 - Worldpay - PCI ComplianceData Works Berlin 2018 - Worldpay - PCI Compliance
Data Works Berlin 2018 - Worldpay - PCI Compliance
 
Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...
Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...
Not Just a necessary evil, it’s good for business: implementing PCI DSS contr...
 
AL_PCI-Cheatsheet_web
AL_PCI-Cheatsheet_webAL_PCI-Cheatsheet_web
AL_PCI-Cheatsheet_web
 
Legal And Regulatory Issues Cloud Computing...V2.0
Legal And Regulatory Issues Cloud Computing...V2.0Legal And Regulatory Issues Cloud Computing...V2.0
Legal And Regulatory Issues Cloud Computing...V2.0
 
#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS
#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS
#ALSummit: SCOR Velogica's Journey to SOC2/TYPE2 Via AWS
 
Can You Trust Cloud Security In Public Cloud?
Can You Trust Cloud Security In Public Cloud?Can You Trust Cloud Security In Public Cloud?
Can You Trust Cloud Security In Public Cloud?
 
Risk management for cloud computing hb final
Risk management for cloud computing hb finalRisk management for cloud computing hb final
Risk management for cloud computing hb final
 
SailPoint VS CyberArk.pdf
SailPoint VS CyberArk.pdfSailPoint VS CyberArk.pdf
SailPoint VS CyberArk.pdf
 
2016 01-05 csr css non-confidential slide deck
2016 01-05 csr  css non-confidential slide deck2016 01-05 csr  css non-confidential slide deck
2016 01-05 csr css non-confidential slide deck
 
Hdcs Overview Final
Hdcs Overview FinalHdcs Overview Final
Hdcs Overview Final
 
Implementing an improved security for collin’s database and telecommuters
Implementing an improved security for collin’s database and telecommutersImplementing an improved security for collin’s database and telecommuters
Implementing an improved security for collin’s database and telecommuters
 
Cloud Computing - Emerging Opportunities in the CA Profession
Cloud Computing - Emerging Opportunities in the CA ProfessionCloud Computing - Emerging Opportunities in the CA Profession
Cloud Computing - Emerging Opportunities in the CA Profession
 
GDPR Compliance Countdown - Is your Application environment ready?
GDPR Compliance Countdown - Is your Application environment ready?GDPR Compliance Countdown - Is your Application environment ready?
GDPR Compliance Countdown - Is your Application environment ready?
 

Mais de RapidScale

Partner Experience Overview- East Region
Partner Experience Overview- East RegionPartner Experience Overview- East Region
Partner Experience Overview- East RegionRapidScale
 
Partner Experience -Western Region
Partner Experience -Western Region Partner Experience -Western Region
Partner Experience -Western Region RapidScale
 
Partner Experience Overview- Central Region
Partner Experience Overview- Central RegionPartner Experience Overview- Central Region
Partner Experience Overview- Central RegionRapidScale
 
Partner Experience Overview - Northeast
Partner Experience Overview - NortheastPartner Experience Overview - Northeast
Partner Experience Overview - NortheastRapidScale
 
CloudBackup Slick
CloudBackup SlickCloudBackup Slick
CloudBackup SlickRapidScale
 
Benefits of Cloud Software
Benefits of Cloud SoftwareBenefits of Cloud Software
Benefits of Cloud SoftwareRapidScale
 
Cloud Computing Stats - The Internet of Things
Cloud Computing Stats - The Internet of ThingsCloud Computing Stats - The Internet of Things
Cloud Computing Stats - The Internet of ThingsRapidScale
 
[Infographic] 2015 Cloud Comparison
[Infographic] 2015 Cloud Comparison[Infographic] 2015 Cloud Comparison
[Infographic] 2015 Cloud ComparisonRapidScale
 
Understanding the Cloud Stack
Understanding the Cloud StackUnderstanding the Cloud Stack
Understanding the Cloud StackRapidScale
 
Disaster Recovery vs. Business Continuity
Disaster Recovery vs. Business ContinuityDisaster Recovery vs. Business Continuity
Disaster Recovery vs. Business ContinuityRapidScale
 
Cloud for Hospitality
Cloud for HospitalityCloud for Hospitality
Cloud for HospitalityRapidScale
 
Cloud Computing Stats - Cloud for Retail
Cloud Computing Stats - Cloud for RetailCloud Computing Stats - Cloud for Retail
Cloud Computing Stats - Cloud for RetailRapidScale
 
The Growth of Mobile Technology
The Growth of Mobile TechnologyThe Growth of Mobile Technology
The Growth of Mobile TechnologyRapidScale
 
[Infographic] Questions for a Weatherman and a Geek
[Infographic] Questions for a Weatherman and a Geek[Infographic] Questions for a Weatherman and a Geek
[Infographic] Questions for a Weatherman and a GeekRapidScale
 
In Cloud We Trust
In Cloud We TrustIn Cloud We Trust
In Cloud We TrustRapidScale
 
Cloud Computing Stats - Cloud for Healthcare
Cloud Computing Stats - Cloud for HealthcareCloud Computing Stats - Cloud for Healthcare
Cloud Computing Stats - Cloud for HealthcareRapidScale
 
A Cloud Glossary
A Cloud GlossaryA Cloud Glossary
A Cloud GlossaryRapidScale
 
[Infographic] Productivity in the Cloud
[Infographic] Productivity in the Cloud[Infographic] Productivity in the Cloud
[Infographic] Productivity in the CloudRapidScale
 
Cloud Computing Stats - Cloud for Education
Cloud Computing Stats - Cloud for EducationCloud Computing Stats - Cloud for Education
Cloud Computing Stats - Cloud for EducationRapidScale
 
Meet Secure Messaging
Meet Secure MessagingMeet Secure Messaging
Meet Secure MessagingRapidScale
 

Mais de RapidScale (20)

Partner Experience Overview- East Region
Partner Experience Overview- East RegionPartner Experience Overview- East Region
Partner Experience Overview- East Region
 
Partner Experience -Western Region
Partner Experience -Western Region Partner Experience -Western Region
Partner Experience -Western Region
 
Partner Experience Overview- Central Region
Partner Experience Overview- Central RegionPartner Experience Overview- Central Region
Partner Experience Overview- Central Region
 
Partner Experience Overview - Northeast
Partner Experience Overview - NortheastPartner Experience Overview - Northeast
Partner Experience Overview - Northeast
 
CloudBackup Slick
CloudBackup SlickCloudBackup Slick
CloudBackup Slick
 
Benefits of Cloud Software
Benefits of Cloud SoftwareBenefits of Cloud Software
Benefits of Cloud Software
 
Cloud Computing Stats - The Internet of Things
Cloud Computing Stats - The Internet of ThingsCloud Computing Stats - The Internet of Things
Cloud Computing Stats - The Internet of Things
 
[Infographic] 2015 Cloud Comparison
[Infographic] 2015 Cloud Comparison[Infographic] 2015 Cloud Comparison
[Infographic] 2015 Cloud Comparison
 
Understanding the Cloud Stack
Understanding the Cloud StackUnderstanding the Cloud Stack
Understanding the Cloud Stack
 
Disaster Recovery vs. Business Continuity
Disaster Recovery vs. Business ContinuityDisaster Recovery vs. Business Continuity
Disaster Recovery vs. Business Continuity
 
Cloud for Hospitality
Cloud for HospitalityCloud for Hospitality
Cloud for Hospitality
 
Cloud Computing Stats - Cloud for Retail
Cloud Computing Stats - Cloud for RetailCloud Computing Stats - Cloud for Retail
Cloud Computing Stats - Cloud for Retail
 
The Growth of Mobile Technology
The Growth of Mobile TechnologyThe Growth of Mobile Technology
The Growth of Mobile Technology
 
[Infographic] Questions for a Weatherman and a Geek
[Infographic] Questions for a Weatherman and a Geek[Infographic] Questions for a Weatherman and a Geek
[Infographic] Questions for a Weatherman and a Geek
 
In Cloud We Trust
In Cloud We TrustIn Cloud We Trust
In Cloud We Trust
 
Cloud Computing Stats - Cloud for Healthcare
Cloud Computing Stats - Cloud for HealthcareCloud Computing Stats - Cloud for Healthcare
Cloud Computing Stats - Cloud for Healthcare
 
A Cloud Glossary
A Cloud GlossaryA Cloud Glossary
A Cloud Glossary
 
[Infographic] Productivity in the Cloud
[Infographic] Productivity in the Cloud[Infographic] Productivity in the Cloud
[Infographic] Productivity in the Cloud
 
Cloud Computing Stats - Cloud for Education
Cloud Computing Stats - Cloud for EducationCloud Computing Stats - Cloud for Education
Cloud Computing Stats - Cloud for Education
 
Meet Secure Messaging
Meet Secure MessagingMeet Secure Messaging
Meet Secure Messaging
 

Último

A Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusA Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusZilliz
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu SubbuApidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbuapidays
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfOverkill Security
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...Zilliz
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesrafiqahmad00786416
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxRustici Software
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 

Último (20)

A Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusA Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source Milvus
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu SubbuApidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdf
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 

Compliance in the Cloud

  • 1. Compliance in the Cloud Meet the Next Generation Computer #CloudConversation Compliance in the Cloud 1
  • 2. Join the #CloudConversation We will be live tweeting during today’s webinar, feel free to ask questions or let us know what you think! @rapid_scale #CloudConversation Compliance in the Cloud 2
  • 3. Compliance RapidScale recognizes the need for compliance with various laws and regulations across different industries. We have established our data encryption, protocols, and procedures to follow the top compliances and ensure that our customer’s data is secure and confidential. #CloudConversation Compliance in the Cloud 3
  • 4. Compliance HIPAA What it covers: Enacted in 1996, HIPAA is intended to improve the efficiency and effectiveness of the health care system. As such, it requires the adoption of national standards for electronic health care transactions and code sets, as well as unique health identifiers for providers, health insurance plans and employers. Recognizing that electronic technology could erode the privacy of health information, the law also incorporates provisions for guarding the security and privacy of personal health information. It does this by enforcing national standards to protect: - Individually identifiable health information, known as the Privacy Rule. - The confidentiality, integrity and availability of electronic protected health information, known as the Security Rule. Who is affected: Health care providers, health plans, health clearinghouses and "business associates," including people and organizations that perform claims processing, data analysis, quality assurance, billing, benefits management, etc. #CloudConversation Compliance in the Cloud 4
  • 5. Compliance HIPAA HIPAA Technical policies that RapidScale uses? 1. Unique User Identification 2. Emergency Access Procedure 3. Automatic Logoff 4. Encryption and Decryption RapidScale also uses top of the line SSL encryption at 2048-bit and our software applications are hosted through Citrix XenApp using 256-bit AES encryption. This ensures that your secure data is never compromised. #CloudConversation Compliance in the Cloud 5
  • 6. Compliance HIPAA Security Risks RapidScale gives admin access to remotely wipe any device that is lost or stolen to eliminate the risk of data breech. RapidScale implemented full credential-limited access to all data in the cloud. Plus, the virtual environment will log off within a set amount of time of inactivity. In the event of a device loss, a user doesn’t loose that critical data, it’s stored in the cloud and is then accessible from their replacement device. As if nothing happened. RapidScale has the best-of-breed infrastructure, security, firewalls, and more to eliminate the risk of information hacking. #CloudConversation Compliance in the Cloud 6
  • 7. Compliance PCI What it covers: The PCI DSS is a set of requirements for enhancing security of payment customer account data. It was developed by the founders of the PCI Security Standards Council, including American Express, Discover Financial Services, JCB International, MasterCard Worldwide and Visa to help facilitate global adoption of consistent data security measures. PCI DSS includes requirements for security management, policies, procedures, network architecture, software design and other critical protective measures. Who is affected: Retailers, credit card companies, anyone handling credit card data. #CloudConversation Compliance in the Cloud 7
  • 8. Compliance SOX What Sarbanes-Oxley covers: Enacted in 2002, the Sarbanes-Oxley Act is designed to protect investors and the public by increasing the accuracy and reliability of corporate disclosures. It was enacted after the high-profile Enron and WorldCom financial scandals of the early 2000s. It is administered by the Securities and Exchange Commission, which publishes SOX rules and requirements defining audit requirements and the records businesses should store and for how long. Who is affected: U.S. public company boards, management and public accounting firms. #CloudConversation Compliance in the Cloud 8
  • 9. Compliance 91% said that their cloud providers were making it easier for them to meet government compliance requirements such as PCI, HIPAA, and FISMA 75% Said that network availability had improved In a recent Microsoft survey: 94% Of businesses reported that they saw an improvement in security after switching to the cloud #CloudConversation Compliance in the Cloud 9
  • 10. Compliance RapidScale & SSAE We have 3 data centers across the United States - Irvine, CA - Sterling, VA - Dallas, TX All 3 are SSAE 16 compliant and are certified annually #CloudConversation Compliance in the Cloud 10
  • 11. Compliance SSAE What it covers: Statement on Standards for Attestation Engagements (SSAE) No. 16, Reporting on Controls at a Service Organization, was finalized by the Auditing Standards Board of the American Institute of Certified Public Accountants (AICPA) in January 2010. SSAE 16 effectively replaces SAS 70 as the authoritative guidance for reporting on service organizations. SSAE 16 was formally issued in April 2010 and became effective on June 15, 2011. Who is affected: Payroll Processing, Loan Servicing, Data Center/Co- Location/Network Monitoring Services, Software as a Service (SaaS), Medical Claims Processors #CloudConversation Compliance in the Cloud 11
  • 12. Compliance Data Center Security Keycard protocols, biometric scanning protocols and round-the-clock interior and exterior surveillance monitor access to every one of our data centers. Only authorized data center personnel are granted access credentials to our data centers. No one else can enter the production area of the data center without prior clearance and an appropriate escort. On-premises security guards, exterior security system, biometric system, including palm scanners and numerous security scanners with digital recorders. All cages secured and locked. Colo hybrid customer only allowed with RapidScale employee. Every data center employee undergoes multiple and thorough background security checks before they're hired. Our network leverages Savvis now CenturyLink's global network IT infrastructure, which is one of the nation's largest carrier service infrastructures. Our data centers feature full redundancy and best-of-breed solutions from leading enterprise technology companies, including Cisco, Citrix, HP, Microsoft, NetApp, and VMware. #CloudConversation Compliance in the Cloud 12
  • 13. Compliance Data Center Security Power Distribution Should a total utility power outage ever occur, all of our data centers' power systems are designed to run uninterrupted, with every server receiving conditioned UPS (Uninterruptible Power Supply) power. Our UPS power subsystem is N+1 redundant, with instantaneous failover if the primary UPS fails. If an extended utility power outage occurs, our routinely tested, on-site diesel generators can run indefinitely. Only fully redundant, enterprise-class routing equipment is used in RapidScale data centers. Fiber carriers enter our data centers at disparate points to guard against service failure. We require that the networking and security teams working in our data centers be certified. We also require that they be thoroughly experienced in managing and monitoring enterprise-level networks. Our Certified Network Experts are trained to the highest industry standards. #CloudConversation Compliance in the Cloud 13
  • 14. Compliance Infrastructure Security Transport/Access: Cisco Routers & Firewalls with encryption- 256k Infrastructure: IaaS Enterprise Virtual Firewall or customer-owned device Storage: NetApp Encryption- all data encrypted in flight and at rest. All SANS have SED's (Self Encrypting Drives) CloudOffice: End-user password strength/resets #CloudConversation Compliance in the Cloud 14
  • 15. CloudCompliance A Full-Scale Auditable System for the Compliance Dependent Industries RapidScale’s innovative Cloud Compliance tool is a user-friendly web based portal software solution which offers its clients an easy, affordable way to prove they are in compliance with the standards and regulations of the industry they service. #CloudConversation Compliance in the Cloud 15
  • 17. CloudCompliance Fully Customizable • Instead of being forced into our definition of what your business activities should be, we give you the power to customize your processes in a manner that are appropriate for your enterprise. You can start your activities on-demand, by a set schedule, or initiate them by using an online survey form. Enterprise Collaboration • Everyone in your organization will be able to leverage the task management capabilities in Boost – and therefore will be able to collaborate in real time on the activities you perform on a daily basis. Comprehensive Audit Trail • Each component of a completed task will be logged and accounted for. These logs can be provided in a report for your review. By setting up activities consisting of work flow-enabled tasks to track completion and pass/fail with audit trails, RapidScale’s clients can provide auditors with timely reports generated from within the tool which will eliminate numerous man hours typically required for audit preparation. #CloudConversation Compliance in the Cloud 17
  • 18. CloudCompliance – The Audit Trail #CloudConversation Compliance in the Cloud 18
  • 19. Contact Information RapidScale 100 Pacifica Suite 100 Irvine, CA 92618 (949) 236-7007 rapidscale.net #CloudConversation Compliance in the Cloud 19

Notas do Editor

  1. Are your customer’s emails HIPAA compliant?