Archives

A Systematic Review on Could Security Auditing


Ong Pui Xiang, Maryam Shahpasand and Ahmad Dahari Bin Jarno
Abstract

Cloud computing is a technology that benefits not only organization but the society. The global spending on cloud computing increase tremulously than expected in recent years. Meanwhile, the adoption of cloud computing does have multiple challenges such as: Data loss, privacy issues, legal and regulatory compliance issue, and general security risk. Security of clouds is still one of the major concerns of client or subscriber to adapt and use. This is due to: cloud computing was being used to store sensitive data. The aim of this project is to develop a cloud auditing system that able to fill in the gap for Cyber Security Malaysia (CSM). The contribution of this project is to ensure cloud computing was secured under the 3 IT Principle: Confidentiality, Integrity and Availability. Hence, the writer proposed a cloud auditing system that allows auditor to audit a cloud computing efficiently in a web application platform. The proposed system allows the auditor to modify and insert policy into the checklist. Besides that, client played a role in this system by able to request auditor to audit their cloud security and to view the result of the audited cloud security. The outcome of the proposed system will allow cloud service provider to cover up the gap of data security, data privacy, confidentiality, integrity and availability.

Volume 11 | 01-Special Issue

Pages: 1526-1532