SlideShare a Scribd company logo
Cloud & InfoSec’s
Collaborative Role
CISO Collaborative – Mountain View, CA
May 25, 2010
Tim M. Crawford

S
Tim Crawford

S 20 Years in Information Technology
S Global 1000 & Fortune 500

S Board Member & IAB Chair: Data Center Pulse
S Co-Chair: SVLG Data Center Efficiency Summit
S Core Member: Data Center Efficiency Consortium
S Global Speaker: Cloud Computing, IT Strategy, Data Center

Efficiency
S International Strategic Advisor
May 25, 2010

2

©2010 Tim M. Crawford
Cloud Metrics

S

60% Using Cloud in Next 3 Years

S

57% Driven by IT, 39% Driven by Business Units/ Executive Team

S

Market Share
S
S
S

S

Cloud as a Country
S

S

IDC: $44.2 billion by 2013
Gartner: $150 billion by 2013
GIA: $222.5 billion by 2015

Telecom & Data Center energy, 5th in world

Impact from CSR Programs

May 25, 2010

3

©2010 Tim M. Crawford
Cloud Governance

S Impact on Culture and

S Legal, Financial,

Organization

Reputational Risk

S Process Changes

S Compliance, Regulatory

S Technological Shift

S Compartmentalize

S Vendor Management

S Business-centric (Business

Value)

May 25, 2010

4

©2010 Tim M. Crawford
Opportunities

S Cost
S Movement from CapEx to OpEx

S Flexibility
S Scalability – Up…and Down
S Responsive
S Business Driven

S IT Focus
S Technology-Centric  Business-Centric

May 25, 2010

5

©2010 Tim M. Crawford
Risks

S Industry Maturity

S Audit

S Cloud Providers

S Flexibility

S Internal IT Organizations

S Paradigm Shifts

S Control

S Compliance/ Regulatory

S Compartmentalize

S Legal System Changes

S International Implications

May 25, 2010

6

©2010 Tim M. Crawford
Evolution of Data

May 25, 2010

7

©2010 Tim M. Crawford
Evolution of Data

May 25, 2010

8

©2010 Tim M. Crawford
Evolution of Data

May 25, 2010

9

©2010 Tim M. Crawford
Data Impact

Clients

Data

Risk

Past

Centralized

Centralized

L

Recently

Distributed

Centralized

M

Now

Distributed

Distributed

H

Future

Distributed

Distributed

?

S End of Data Warehouse?
S Compliance/ Regulatory Effect…changes?
May 25, 2010

10

©2010 Tim M. Crawford
Myth vs. Reality

S Is the Cloud Secure?

S Are SLA’s Relevant?

S Is All Data Treated Alike?

S Are Significant Paradigm

S What about Vendor Lock-In?
S Are There Contractual

Shifts Really Necessary?
S Are There Organizational

Implications?

Limitations?

May 25, 2010

S Culture Changes

11

©2010 Tim M. Crawford
Significant Decision Matrix

S Public vs. Private Clouds

S Contract vs. No-Contract

S Freemium vs. Pay

S SLA vs. No-SLA

Versions
S CapEx vs. OpEx

S Buy vs. Build
S Risk vs. Opportunity

S Variable vs. Fixed Costs

May 25, 2010

12

©2010 Tim M. Crawford
Approaches

S Block All – Drive Fear
S Go For It! – Ignore Risk
S Collaborative Approach
S Compartmentalize
S Balance Opportunity/ Risk
S Provide Objective Guidance

May 25, 2010

13

©2010 Tim M. Crawford
Bottom Line

S Significant Opportunities… when applied correctly!
S Cultural Changes
S Consider Organization, Process and Technology Impact
S Use Holistic Approach

S Don’t Fear Risk – Be Objective and Transparent!

May 25, 2010

14

©2010 Tim M. Crawford
Contact Information

S Tim M. Crawford
S Twitter: @tcrawford
S http://timcrawford.org/

May 25, 2010

15

©2010 Tim M. Crawford

More Related Content

Similar to Cloud & InfoSec's Collaborative Role

Gillette Stadium Cloud Event
Gillette Stadium Cloud EventGillette Stadium Cloud Event
Gillette Stadium Cloud EventMatt Axtell
 
Future Commerce: Reinventing Markets with Blockchain, by David Shrier
Future Commerce: Reinventing Markets with Blockchain, by David ShrierFuture Commerce: Reinventing Markets with Blockchain, by David Shrier
Future Commerce: Reinventing Markets with Blockchain, by David Shrier
FutureEnterprise
 
DX – Outshining in the New Digital Era
DX – Outshining in the New Digital EraDX – Outshining in the New Digital Era
DX – Outshining in the New Digital Era
HCL Infosystems
 
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...
Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...sucesu68
 
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...
Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...sucesu68
 
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, TaiwanGSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
John Ciacchella
 
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, TaiwanGSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
John Ciacchella
 
Presentation to World Futures Studies Federation June2013
Presentation to World Futures Studies Federation June2013Presentation to World Futures Studies Federation June2013
Presentation to World Futures Studies Federation June2013
Huw Williams
 
Nabe real estate round table sep 8, 2013 markstein
Nabe real estate round table sep 8, 2013 marksteinNabe real estate round table sep 8, 2013 markstein
Nabe real estate round table sep 8, 2013 markstein
Bernard (Bernie) Markstein, Ph.D.
 
Scot-Cloud 2015
Scot-Cloud 2015Scot-Cloud 2015
Scot-Cloud 2015
Ray Bugg
 
Business Value of Agile Methods: Its Leadership Considerations
Business Value of Agile Methods: Its Leadership ConsiderationsBusiness Value of Agile Methods: Its Leadership Considerations
Business Value of Agile Methods: Its Leadership ConsiderationsDavid Rico
 
Digital Transformation by the Internet of Everything
Digital Transformation by the Internet of Everything Digital Transformation by the Internet of Everything
Digital Transformation by the Internet of Everything
MobileMonday Norway
 
2014 Tech M&A Monthly - Mid-Year Report
2014 Tech M&A Monthly - Mid-Year Report2014 Tech M&A Monthly - Mid-Year Report
2014 Tech M&A Monthly - Mid-Year Report
Corum Group
 
Fam1 Big Data + Visualization
Fam1 Big Data + VisualizationFam1 Big Data + Visualization
Fam1 Big Data + Visualization
Seth Familian
 
Managing People Change in Digital Era
Managing People Change in Digital EraManaging People Change in Digital Era
Progam slides | December 17, 2013 | Federal Cloud Computing Summit
Progam slides | December 17, 2013 | Federal Cloud Computing SummitProgam slides | December 17, 2013 | Federal Cloud Computing Summit
Progam slides | December 17, 2013 | Federal Cloud Computing Summit
Tim Harvey
 
How to increase business productivity
How to increase business productivityHow to increase business productivity
How to increase business productivity
Microsoft Schweiz
 
Cloud Computing - from myth to reality
Cloud Computing - from myth to realityCloud Computing - from myth to reality
Cloud Computing - from myth to reality
Jon Collins
 
Leveraging the Cloud: Why it Matters to Large & SMB Retailers
Leveraging the Cloud: Why it Matters to Large & SMB RetailersLeveraging the Cloud: Why it Matters to Large & SMB Retailers
Leveraging the Cloud: Why it Matters to Large & SMB Retailers
EarthLink Business
 
Ltb2014 digital deployment as a competitive advantage-shaun collins
Ltb2014   digital deployment as a competitive advantage-shaun collinsLtb2014   digital deployment as a competitive advantage-shaun collins
Ltb2014 digital deployment as a competitive advantage-shaun collins
KPN Zakelijke Markt
 

Similar to Cloud & InfoSec's Collaborative Role (20)

Gillette Stadium Cloud Event
Gillette Stadium Cloud EventGillette Stadium Cloud Event
Gillette Stadium Cloud Event
 
Future Commerce: Reinventing Markets with Blockchain, by David Shrier
Future Commerce: Reinventing Markets with Blockchain, by David ShrierFuture Commerce: Reinventing Markets with Blockchain, by David Shrier
Future Commerce: Reinventing Markets with Blockchain, by David Shrier
 
DX – Outshining in the New Digital Era
DX – Outshining in the New Digital EraDX – Outshining in the New Digital Era
DX – Outshining in the New Digital Era
 
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...
Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...
 
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...
Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...Sucesu mg  encontro de ci os  (nexus das forças) em 18 jun 2013 -  v6 sent to...
Sucesu mg encontro de ci os (nexus das forças) em 18 jun 2013 - v6 sent to...
 
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, TaiwanGSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
 
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, TaiwanGSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
GSA Asia Pacific Executive Summit 2019, Taipei, Taiwan
 
Presentation to World Futures Studies Federation June2013
Presentation to World Futures Studies Federation June2013Presentation to World Futures Studies Federation June2013
Presentation to World Futures Studies Federation June2013
 
Nabe real estate round table sep 8, 2013 markstein
Nabe real estate round table sep 8, 2013 marksteinNabe real estate round table sep 8, 2013 markstein
Nabe real estate round table sep 8, 2013 markstein
 
Scot-Cloud 2015
Scot-Cloud 2015Scot-Cloud 2015
Scot-Cloud 2015
 
Business Value of Agile Methods: Its Leadership Considerations
Business Value of Agile Methods: Its Leadership ConsiderationsBusiness Value of Agile Methods: Its Leadership Considerations
Business Value of Agile Methods: Its Leadership Considerations
 
Digital Transformation by the Internet of Everything
Digital Transformation by the Internet of Everything Digital Transformation by the Internet of Everything
Digital Transformation by the Internet of Everything
 
2014 Tech M&A Monthly - Mid-Year Report
2014 Tech M&A Monthly - Mid-Year Report2014 Tech M&A Monthly - Mid-Year Report
2014 Tech M&A Monthly - Mid-Year Report
 
Fam1 Big Data + Visualization
Fam1 Big Data + VisualizationFam1 Big Data + Visualization
Fam1 Big Data + Visualization
 
Managing People Change in Digital Era
Managing People Change in Digital EraManaging People Change in Digital Era
Managing People Change in Digital Era
 
Progam slides | December 17, 2013 | Federal Cloud Computing Summit
Progam slides | December 17, 2013 | Federal Cloud Computing SummitProgam slides | December 17, 2013 | Federal Cloud Computing Summit
Progam slides | December 17, 2013 | Federal Cloud Computing Summit
 
How to increase business productivity
How to increase business productivityHow to increase business productivity
How to increase business productivity
 
Cloud Computing - from myth to reality
Cloud Computing - from myth to realityCloud Computing - from myth to reality
Cloud Computing - from myth to reality
 
Leveraging the Cloud: Why it Matters to Large & SMB Retailers
Leveraging the Cloud: Why it Matters to Large & SMB RetailersLeveraging the Cloud: Why it Matters to Large & SMB Retailers
Leveraging the Cloud: Why it Matters to Large & SMB Retailers
 
Ltb2014 digital deployment as a competitive advantage-shaun collins
Ltb2014   digital deployment as a competitive advantage-shaun collinsLtb2014   digital deployment as a competitive advantage-shaun collins
Ltb2014 digital deployment as a competitive advantage-shaun collins
 

More from Tim Crawford

Moving IT to a Zero Infrastructure Footprint
Moving IT to a Zero Infrastructure FootprintMoving IT to a Zero Infrastructure Footprint
Moving IT to a Zero Infrastructure Footprint
Tim Crawford
 
IT and Cloud Trends
IT and Cloud TrendsIT and Cloud Trends
IT and Cloud Trends
Tim Crawford
 
Moving to a Zero IT Footprint
Moving to a Zero IT FootprintMoving to a Zero IT Footprint
Moving to a Zero IT Footprint
Tim Crawford
 
Cloud Computing as a Strategy
Cloud Computing as a StrategyCloud Computing as a Strategy
Cloud Computing as a Strategy
Tim Crawford
 
Cloud Computing: What is it? How will it help me?
Cloud Computing: What is it? How will it help me?Cloud Computing: What is it? How will it help me?
Cloud Computing: What is it? How will it help me?
Tim Crawford
 
DCP: Data Center Futures 2010 Japan/ Korea
DCP: Data Center Futures 2010 Japan/ KoreaDCP: Data Center Futures 2010 Japan/ Korea
DCP: Data Center Futures 2010 Japan/ Korea
Tim Crawford
 
CIO Forum: CoIT + Self Service
CIO Forum: CoIT + Self ServiceCIO Forum: CoIT + Self Service
CIO Forum: CoIT + Self Service
Tim Crawford
 
Cloud The Great IT Transformation Lever
Cloud The Great IT Transformation LeverCloud The Great IT Transformation Lever
Cloud The Great IT Transformation Lever
Tim Crawford
 
Svlg dces crawford 2011
Svlg dces crawford 2011Svlg dces crawford 2011
Svlg dces crawford 2011Tim Crawford
 

More from Tim Crawford (9)

Moving IT to a Zero Infrastructure Footprint
Moving IT to a Zero Infrastructure FootprintMoving IT to a Zero Infrastructure Footprint
Moving IT to a Zero Infrastructure Footprint
 
IT and Cloud Trends
IT and Cloud TrendsIT and Cloud Trends
IT and Cloud Trends
 
Moving to a Zero IT Footprint
Moving to a Zero IT FootprintMoving to a Zero IT Footprint
Moving to a Zero IT Footprint
 
Cloud Computing as a Strategy
Cloud Computing as a StrategyCloud Computing as a Strategy
Cloud Computing as a Strategy
 
Cloud Computing: What is it? How will it help me?
Cloud Computing: What is it? How will it help me?Cloud Computing: What is it? How will it help me?
Cloud Computing: What is it? How will it help me?
 
DCP: Data Center Futures 2010 Japan/ Korea
DCP: Data Center Futures 2010 Japan/ KoreaDCP: Data Center Futures 2010 Japan/ Korea
DCP: Data Center Futures 2010 Japan/ Korea
 
CIO Forum: CoIT + Self Service
CIO Forum: CoIT + Self ServiceCIO Forum: CoIT + Self Service
CIO Forum: CoIT + Self Service
 
Cloud The Great IT Transformation Lever
Cloud The Great IT Transformation LeverCloud The Great IT Transformation Lever
Cloud The Great IT Transformation Lever
 
Svlg dces crawford 2011
Svlg dces crawford 2011Svlg dces crawford 2011
Svlg dces crawford 2011
 

Recently uploaded

PCI PIN Basics Webinar from the Controlcase Team
PCI PIN Basics Webinar from the Controlcase TeamPCI PIN Basics Webinar from the Controlcase Team
PCI PIN Basics Webinar from the Controlcase Team
ControlCase
 
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
SOFTTECHHUB
 
Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?
Nexer Digital
 
20240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 202420240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 2024
Matthew Sinclair
 
GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...
ThomasParaiso2
 
Microsoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdfMicrosoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdf
Uni Systems S.M.S.A.
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024
Pierluigi Pugliese
 
RESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for studentsRESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for students
KAMESHS29
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
Alan Dix
 
Free Complete Python - A step towards Data Science
Free Complete Python - A step towards Data ScienceFree Complete Python - A step towards Data Science
Free Complete Python - A step towards Data Science
RinaMondal9
 
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
James Anderson
 
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
Neo4j
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
danishmna97
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
Neo4j
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance
 
UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5
DianaGray10
 
Climate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing DaysClimate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing Days
Kari Kakkonen
 
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
Neo4j
 

Recently uploaded (20)

PCI PIN Basics Webinar from the Controlcase Team
PCI PIN Basics Webinar from the Controlcase TeamPCI PIN Basics Webinar from the Controlcase Team
PCI PIN Basics Webinar from the Controlcase Team
 
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
Why You Should Replace Windows 11 with Nitrux Linux 3.5.0 for enhanced perfor...
 
Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?Elizabeth Buie - Older adults: Are we really designing for our future selves?
Elizabeth Buie - Older adults: Are we really designing for our future selves?
 
20240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 202420240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 2024
 
GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...
 
Microsoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdfMicrosoft - Power Platform_G.Aspiotis.pdf
Microsoft - Power Platform_G.Aspiotis.pdf
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024
 
RESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for studentsRESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for students
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
 
Free Complete Python - A step towards Data Science
Free Complete Python - A step towards Data ScienceFree Complete Python - A step towards Data Science
Free Complete Python - A step towards Data Science
 
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
 
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
GraphSummit Singapore | Neo4j Product Vision & Roadmap - Q2 2024
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
 
UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5UiPath Test Automation using UiPath Test Suite series, part 5
UiPath Test Automation using UiPath Test Suite series, part 5
 
Climate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing DaysClimate Impact of Software Testing at Nordic Testing Days
Climate Impact of Software Testing at Nordic Testing Days
 
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
 

Cloud & InfoSec's Collaborative Role

  • 1. Cloud & InfoSec’s Collaborative Role CISO Collaborative – Mountain View, CA May 25, 2010 Tim M. Crawford S
  • 2. Tim Crawford S 20 Years in Information Technology S Global 1000 & Fortune 500 S Board Member & IAB Chair: Data Center Pulse S Co-Chair: SVLG Data Center Efficiency Summit S Core Member: Data Center Efficiency Consortium S Global Speaker: Cloud Computing, IT Strategy, Data Center Efficiency S International Strategic Advisor May 25, 2010 2 ©2010 Tim M. Crawford
  • 3. Cloud Metrics S 60% Using Cloud in Next 3 Years S 57% Driven by IT, 39% Driven by Business Units/ Executive Team S Market Share S S S S Cloud as a Country S S IDC: $44.2 billion by 2013 Gartner: $150 billion by 2013 GIA: $222.5 billion by 2015 Telecom & Data Center energy, 5th in world Impact from CSR Programs May 25, 2010 3 ©2010 Tim M. Crawford
  • 4. Cloud Governance S Impact on Culture and S Legal, Financial, Organization Reputational Risk S Process Changes S Compliance, Regulatory S Technological Shift S Compartmentalize S Vendor Management S Business-centric (Business Value) May 25, 2010 4 ©2010 Tim M. Crawford
  • 5. Opportunities S Cost S Movement from CapEx to OpEx S Flexibility S Scalability – Up…and Down S Responsive S Business Driven S IT Focus S Technology-Centric  Business-Centric May 25, 2010 5 ©2010 Tim M. Crawford
  • 6. Risks S Industry Maturity S Audit S Cloud Providers S Flexibility S Internal IT Organizations S Paradigm Shifts S Control S Compliance/ Regulatory S Compartmentalize S Legal System Changes S International Implications May 25, 2010 6 ©2010 Tim M. Crawford
  • 7. Evolution of Data May 25, 2010 7 ©2010 Tim M. Crawford
  • 8. Evolution of Data May 25, 2010 8 ©2010 Tim M. Crawford
  • 9. Evolution of Data May 25, 2010 9 ©2010 Tim M. Crawford
  • 11. Myth vs. Reality S Is the Cloud Secure? S Are SLA’s Relevant? S Is All Data Treated Alike? S Are Significant Paradigm S What about Vendor Lock-In? S Are There Contractual Shifts Really Necessary? S Are There Organizational Implications? Limitations? May 25, 2010 S Culture Changes 11 ©2010 Tim M. Crawford
  • 12. Significant Decision Matrix S Public vs. Private Clouds S Contract vs. No-Contract S Freemium vs. Pay S SLA vs. No-SLA Versions S CapEx vs. OpEx S Buy vs. Build S Risk vs. Opportunity S Variable vs. Fixed Costs May 25, 2010 12 ©2010 Tim M. Crawford
  • 13. Approaches S Block All – Drive Fear S Go For It! – Ignore Risk S Collaborative Approach S Compartmentalize S Balance Opportunity/ Risk S Provide Objective Guidance May 25, 2010 13 ©2010 Tim M. Crawford
  • 14. Bottom Line S Significant Opportunities… when applied correctly! S Cultural Changes S Consider Organization, Process and Technology Impact S Use Holistic Approach S Don’t Fear Risk – Be Objective and Transparent! May 25, 2010 14 ©2010 Tim M. Crawford
  • 15. Contact Information S Tim M. Crawford S Twitter: @tcrawford S http://timcrawford.org/ May 25, 2010 15 ©2010 Tim M. Crawford

Editor's Notes

  1. 60% Stat: Sand Hill Group 201057% Stat: Sand Hill Group 2010By 2010, 20% of business will own no IT assets (Gartner 2010)Cloud/ Country Stat: Greenpeace 2010