COMPLIANCE AND STANDARDS

Maintaining compliance in the cloud can be complex. There are numerous regulations that can apply to corporate data stored in the cloud. From healthcare to retail, many industries require certain compliance regulations be followed. 

These regulations can dictate how you handle personally identifiable information (PII), protected health information (PHI), payment card information and other regulated data. 

Cloud compliance consists of the procedures and practices that ensure that a cloud environment complies with governance rules. In other words, when you build a compliant cloud environment, your environment conforms to one or more specific sets of security and privacy standards.

Those standards could be established by a government agency, as is the case with compliance frameworks like the European Union General Data Protection Regulation (GDPR) or the California Privacy Rights Act (CPRA). They could also be an industry standard, like the Payment Card Industry Data Security Standard (PCI DSS). Or, they could be internal governance policies that a company establishes for itself.

Cloud Governance Model Principles

Compliance with policies and standards

Alignment with business objectives

Collaboration

Change management

Dynamic response