Agenda Details

D1 Cloud and Big Data Compliance
Tim J. Sandage, CRISC, CCSK, Compliance Manager, Amazon Web Services
Date: Monday, 15 April 2013
Time: 10:30am - 12pm
• Compliance baselines for SaaS, PaaS and IaaS
• Different compliance concerns for different service models (public, private, community and hybrid)
• Conducting data classification, single sources of truth and privacy governance
• The value of compliance certifications
• Reporting on controls at a service organization, third party reviews and Right to Audit
• What to look for in Service Level Agreements (SLAs) and Interconnected Security Agreements (ISAs)
• Conducting real-time risk management with continuous monitoring