What is ISO27018 and how to get it’s certification? In the time that cloud computing techniques are spreading and expanding very fast in all companies and institutions around the world because of the multiple features it provides (which, according to a study of PWC, the cloud computing spending rate has been increasing to 37% in 2020) and this raise leads to increase the cyberattacks.
This makes control and transparency issues represent a permeation, and raise the customer’s concerns about protecting their information and privacy before deciding to use cloud computing as a solution, this because many customers don’t know how to develop cloud computing, lack the necessary information on how the service providers process their information within the cloud and what happens in case they want to switch from one service providers to another or the service provider terminate the service or change terms and policies.
So, the International Organization of Standardization (ISO) and International Electronically Commission (IEC) have been developed international standard contribute to protecting the personal information within the cloud. It includes ISO27018, the standard specified of Personally Identifiable Information (PII) in public cloud computing.
- Human resource security.
- Encryption
- Physical and environmental security.
- Operational security.
- Communications security.
- System establishment, development, and maintenance.
- Suppliers’ relation.
- Manage the information security incident.
- Information security aspects of business continuity management.
- Compliance