Towards a Service Lifecycle Based Methodology for Risk Assessment in Cloud Computing

作者: Mariam Kiran , Ming Jiang , Django J. Armstrong , Karim Djemame

DOI: 10.1109/DASC.2011.89

关键词:

摘要: The principles of risk management have been introduced in grid computing to help document and anticipate certain risks manage them ensure job executions are successful. Clouds more complex environments with further concerns like risk, trust, eco-efficiency, green, security or cost. In this paper we present ongoing research work analyze address the factor clouds aim optimizing cloud services. main contribution is presentation a methodology for performing assessment including target use cases, identification, mitigation monitoring. Together corresponding strategies, provides technological assurance that will lead high confidence Cloud service consumers on one side, cost effective reliable productivity Service/Infrastructure Providers other side. design framework its software toolkit implementation part development OPTIMIS (Optimized Infrastructure Services) project whose objective enable an open dependable Service Ecosystem delivers IT services adaptable, reliable, auditable sustainable both ecologically economically. presents some preliminary results Provider at deployment stage.

参考文章(14)
Christer Carlsson, Robert Fullér, Risk Assessment of SLAs in Grid Computing with Predictive Probabilistic and Possibilistic Models Preferences and Decisions. pp. 11- 29 ,(2010) , 10.1007/978-3-642-15976-3_2
Karim Djemame, James Padgett, Iain Gourlay, Kerstin Voss, Odej Kao, Risk Management in Grids John Wiley & Sons, Inc.. pp. 335- 353 ,(2009) , 10.1002/9780470455432.CH15
Xuan Zhang, Nattapong Wuwong, Hao Li, Xuejie Zhang, Information Security Risk Management Framework for the Cloud Computing Environments 2010 10th IEEE International Conference on Computer and Information Technology. pp. 1328- 1334 ,(2010) , 10.1109/CIT.2010.501
A Ali-Eldin, RM Badia, M Corrales, T Dimitrakos, K Djemame, E Elmroth, N Forgó, J Guitart, F Hernández, B Hudzia, A Juan, A Kipp, K Konstanteli, G Kousiouris, S Nair, T Sharif, C Sheridan, R Sirvent, J Tordsson, T Varvarigou, S Wesner, W Ziegler, C Zsigri, OPTIMIS: A holistic approach to cloud service provisioning Future Generation Computer Systems. ,vol. 28, pp. 66- 77 ,(2012) , 10.1016/J.FUTURE.2011.05.022
K. Djemame, J. Padgett, I. Gourlay, D. Armstrong, Brokering of risk-aware service level agreements in grids Concurrency and Computation: Practice and Experience. ,vol. 23, pp. 1558- 1582 ,(2011) , 10.1002/CPE.1721
Min Luo, Liang-Jie Zhang, Fengyun Lei, An Insuanrance Model for Guranteeing Service Assurance, Integrity and QoS in Cloud Computing international conference on web services. pp. 584- 591 ,(2010) , 10.1109/ICWS.2010.113
Chee Shin Yeo, Rajkumar Buyya, Integrated Risk Analysis for a Commercial Computing Service in Utility Computing Journal of Grid Computing. ,vol. 7, pp. 1- 24 ,(2009) , 10.1007/S10723-008-9103-2
Prasad Saripalli, Ben Walters, QUIRC: A Quantitative Impact and Risk Assessment Framework for Cloud Security international conference on cloud computing. pp. 280- 288 ,(2010) , 10.1109/CLOUD.2010.22
Aye Morali, Roel Wieringa, Risk-based Confidentiality Requirements Specification for Outsourced IT Systems requirements engineering. pp. 199- 208 ,(2010) , 10.1109/RE.2010.30
Bernd Grobauer, Tobias Walloschek, Elmar Stocker, Understanding Cloud Computing Vulnerabilities ieee symposium on security and privacy. ,vol. 9, pp. 50- 57 ,(2011) , 10.1109/MSP.2010.115