Software as a Service: Analyzing Security Issues

作者: Suleiman Y. Yerima , Sakir Sezer , Feng Yao , Pushpinder Kaur Chouhan

DOI:

关键词: Software deploymentSoftware as a serviceService (systems architecture)Mobile cloud computingCloud computingApplication securityData securitySoftware-defined networkingComputer scienceSecurity serviceComputer securityService providerCloud computing securityComputer security modelSoftware security assurance

摘要: Software-as-a-service (SaaS) is a type of software service delivery model which encompasses broad range business opportunities and challenges. Users providers are reluctant to integrate their into SaaS due its security concerns while at the same time they attracted by benefits. This article highlights utility applicability in different environments like cloud computing, mobile defined networking Internet things. It then embarks on analysis challenges spanning across data security, application deployment security. A detailed review existing mainstream solutions tackle respective issues mapping presented. Finally, possible or techniques can be applied tandem presented for secure platform.

参考文章(40)
Diogo A. B. Fernandes, Liliana F. B. Soares, João V. Gomes, Mário M. Freire, Pedro R. M. Inácio, Security issues in cloud environments: a survey International Journal of Information Security. ,vol. 13, pp. 113- 170 ,(2014) , 10.1007/S10207-013-0208-7
Sakir Sezer, Sandra Scott-Hayward, Pushpinder Chouhan, Barbara Fraser, David Lake, Jim Finnegan, Niel Viljoen, Marc Miller, Navneet Rao, Are we ready for SDN? Implementation challenges for software-defined networks IEEE Communications Magazine. ,vol. 51, pp. 36- 43 ,(2013) , 10.1109/MCOM.2013.6553676
Dimitrios Zissis, Dimitrios Lekkas, Addressing cloud computing security issues Future Generation Computer Systems. ,vol. 28, pp. 583- 592 ,(2012) , 10.1016/J.FUTURE.2010.12.006
Sandeep K. Sood, A combined approach to ensure data security in cloud computing Journal of Network and Computer Applications. ,vol. 35, pp. 1831- 1838 ,(2012) , 10.1016/J.JNCA.2012.07.007
Jianxin Li, Bo Li, Tianyu Wo, Chunming Hu, Jinpeng Huai, Lu Liu, K.P. Lam, CyberGuarder: A virtualization security assurance architecture for green cloud computing Future Generation Computer Systems. ,vol. 28, pp. 379- 390 ,(2012) , 10.1016/J.FUTURE.2011.04.012
Roberto Di Pietro, Flavio Lombardi, Matteo Signorini, CloRExPa: Cloud resilience via execution path analysis Future Generation Computer Systems. ,vol. 32, pp. 168- 179 ,(2014) , 10.1016/J.FUTURE.2012.05.010
Georgios Portokalidis, Philip Homburg, Kostas Anagnostakis, Herbert Bos, Paranoid Android: versatile protection for smartphones annual computer security applications conference. pp. 347- 356 ,(2010) , 10.1145/1920261.1920313
Kevin D. Bowers, Ari Juels, Alina Oprea, HAIL: a high-availability and integrity layer for cloud storage computer and communications security. pp. 187- 198 ,(2009) , 10.1145/1653662.1653686
Hanqian Wu, Yi Ding, C Winer, Li Yao, Network security for virtual machine in cloud computing international conference on computer sciences and convergence information technology. pp. 18- 21 ,(2010) , 10.1109/ICCIT.2010.5711022
Justin Sahs, Latifur Khan, A Machine Learning Approach to Android Malware Detection european intelligence and security informatics conference. pp. 141- 147 ,(2012) , 10.1109/EISIC.2012.34