Welcome!

API Journal Authors: Elizabeth White, Liz McMillan, Pat Romanski, Carmen Gonzalez, Jonathan Fries

Related Topics: Ruby-On-Rails, API Journal, Release Management , @CloudExpo

Ruby-On-Rails: Blog Feed Post

Do You Trust Google More Than You Trust Your Wife?

The latest Twitter controversy surrounding the blog, the hacker and the cloud vendor isn’t disturbing – just inevitable

The latest Twitter controversy surrounding the blog, the hacker and the cloud vendor isn’t disturbing – just inevitable. By now anybody with an iota of interest in cloud computing will know what this story is about. Many people are probably damning Google for their ” lack of security.” But hang on here. Aren’t people being quite cavalier with their data? The other day I refused to give my own partner my PIN… but as I write, it’s happily stored somewhere as a draft on GMail. That really doesn’t make sense.

Hell, I trust the cloud more than I trust myself
Who’s really to blame? I don’t think it’s black-and-white. Frankly, as a rule I trust some company I know nothing about  a  lot more than I trust myself. I leave my passwords lying around on the desktop. I write my PIN on a scrap of paper and keep it in my wallet next to my debit card (nobody’s fooled by the fact I’ve made it look like a phone number). I’m lazy and useless – and I suspect most people out there are too. However, I think cloud vendors have a responsibility to make sure they compensate for users’ inadequacies.

Keeping sensitive data in the cloud isn’t “probably going to happen” – for consumers, it’s been happening for years – the big vendors just need to pull their finger out. At the moment, if you get stung by a lack of cloud security you’ll just be told:

“Only a dribbling buffoon leaves all their valuable data in the cloud.”
While it’s true that simple passwords were used – and in this respect Google is relatively blameless – there really ought to be more safeguards in place so people are forced to at least set more secure passwords. This is a must if the  business cloud is going to expand from web services and utilities into other areas such as secure data hosting.

Jamie Turner, UK cloud computing evangalist and IT Director of TheWebService, has this to say:

Cloud storage, just like Esperanto and the Sinclair C5, is a concept that makes sense… almost.

Having access to your data anywhere in the world from any device is an incredibly powerful thing. The scope is huge, enabling much wider usage and new possibilities, most of which haven’t even been thought of yet.

The problem is, making your calendar universally available in the cloud is a very different thing to placing business-critical company and customer information out there – especially financial information. Despite the significant business drivers that may promote this approach – scalability, agility and all the things that basically remove the inertia that blights most IT departments – security’s still the show-stopping concern.

There are too many questions, and too few answers. What control do we really have over data once it’s up there? What’s the physical security of the data centre? Where is the data centre? Are there cross-border legal issues with hosting the data overseas or in territories with ‘incompatible’ legislative environments? What if you need to destroy data – is that even possible? Then we need to consider the availability of the data: what if the cloud provider folds or they’re taken over by an overseas organisation? If there’s a catastrophic data centre failure, what’s the recovery time? Do they even back things up or just hope that a single data centre will always be safe? It’s a glib but important question – you can have as much redundancy as you like at any given site but if it disappears into the San Andreas Fault you’ll be wishing you still had that magic DAT tape. Are we blindly throwing data into the sky in the hope it will stay safe? Ultimately, this is the big problem with storing sensitive data in the cloud – at least for now: there are just no convincing answers to any of these questions.

So let’s not throw the baby out with the bathwater – this problem just needs to be addressed, fast.

Read the original blog entry...

More Stories By Jim Williams

Jim Williams is an ex-journalist and professional PR. He is interested in Web 2.0, the latest marketing trends, web services, SaaS and SOA.

@ThingsExpo Stories
"We build IoT infrastructure products - when you have to integrate different devices, different systems and cloud you have to build an application to do that but we eliminate the need to build an application. Our products can integrate any device, any system, any cloud regardless of protocol," explained Peter Jung, Chief Product Officer at Pulzze Systems, in this SYS-CON.tv interview at @ThingsExpo, held November 1-3, 2016, at the Santa Clara Convention Center in Santa Clara, CA.
Internet of @ThingsExpo has announced today that Chris Matthieu has been named tech chair of Internet of @ThingsExpo 2017 New York The 7th Internet of @ThingsExpo will take place on June 6-8, 2017, at the Javits Center in New York City, New York. Chris Matthieu is the co-founder and CTO of Octoblu, a revolutionary real-time IoT platform recently acquired by Citrix. Octoblu connects things, systems, people and clouds to a global mesh network allowing users to automate and control design flo...
With 15% of enterprises adopting a hybrid IT strategy, you need to set a plan to integrate hybrid cloud throughout your infrastructure. In his session at 18th Cloud Expo, Steven Dreher, Director of Solutions Architecture at Green House Data, discussed how to plan for shifting resource requirements, overcome challenges, and implement hybrid IT alongside your existing data center assets. Highlights included anticipating workload, cost and resource calculations, integrating services on both sides...
"We're a cybersecurity firm that specializes in engineering security solutions both at the software and hardware level. Security cannot be an after-the-fact afterthought, which is what it's become," stated Richard Blech, Chief Executive Officer at Secure Channels, in this SYS-CON.tv interview at @ThingsExpo, held November 1-3, 2016, at the Santa Clara Convention Center in Santa Clara, CA.
Unless your company can spend a lot of money on new technology, re-engineering your environment and hiring a comprehensive cybersecurity team, you will most likely move to the cloud or seek external service partnerships. In his session at 18th Cloud Expo, Darren Guccione, CEO of Keeper Security, revealed what you need to know when it comes to encryption in the cloud.
According to Forrester Research, every business will become either a digital predator or digital prey by 2020. To avoid demise, organizations must rapidly create new sources of value in their end-to-end customer experiences. True digital predators also must break down information and process silos and extend digital transformation initiatives to empower employees with the digital resources needed to win, serve, and retain customers.
The WebRTC Summit New York, to be held June 6-8, 2017, at the Javits Center in New York City, NY, announces that its Call for Papers is now open. Topics include all aspects of improving IT delivery by eliminating waste through automated business models leveraging cloud technologies. WebRTC Summit is co-located with 20th International Cloud Expo and @ThingsExpo. WebRTC is the future of browser-to-browser communications, and continues to make inroads into the traditional, difficult, plug-in web co...
In his general session at 19th Cloud Expo, Manish Dixit, VP of Product and Engineering at Dice, discussed how Dice leverages data insights and tools to help both tech professionals and recruiters better understand how skills relate to each other and which skills are in high demand using interactive visualizations and salary indicator tools to maximize earning potential. Manish Dixit is VP of Product and Engineering at Dice. As the leader of the Product, Engineering and Data Sciences team at D...
The Internet of Things (IoT) promises to simplify and streamline our lives by automating routine tasks that distract us from our goals. This promise is based on the ubiquitous deployment of smart, connected devices that link everything from industrial control systems to automobiles to refrigerators. Unfortunately, comparatively few of the devices currently deployed have been developed with an eye toward security, and as the DDoS attacks of late October 2016 have demonstrated, this oversight can ...
What happens when the different parts of a vehicle become smarter than the vehicle itself? As we move toward the era of smart everything, hundreds of entities in a vehicle that communicate with each other, the vehicle and external systems create a need for identity orchestration so that all entities work as a conglomerate. Much like an orchestra without a conductor, without the ability to secure, control, and connect the link between a vehicle’s head unit, devices, and systems and to manage the ...
"Once customers get a year into their IoT deployments, they start to realize that they may have been shortsighted in the ways they built out their deployment and the key thing I see a lot of people looking at is - how can I take equipment data, pull it back in an IoT solution and show it in a dashboard," stated Dave McCarthy, Director of Products at Bsquare Corporation, in this SYS-CON.tv interview at @ThingsExpo, held November 1-3, 2016, at the Santa Clara Convention Center in Santa Clara, CA.
Data is the fuel that drives the machine learning algorithmic engines and ultimately provides the business value. In his session at Cloud Expo, Ed Featherston, a director and senior enterprise architect at Collaborative Consulting, discussed the key considerations around quality, volume, timeliness, and pedigree that must be dealt with in order to properly fuel that engine.
Businesses and business units of all sizes can benefit from cloud computing, but many don't want the cost, performance and security concerns of public cloud nor the complexity of building their own private clouds. Today, some cloud vendors are using artificial intelligence (AI) to simplify cloud deployment and management. In his session at 20th Cloud Expo, Ajay Gulati, Co-founder and CEO of ZeroStack, will discuss how AI can simplify cloud operations. He will cover the following topics: why clou...
As data explodes in quantity, importance and from new sources, the need for managing and protecting data residing across physical, virtual, and cloud environments grow with it. Managing data includes protecting it, indexing and classifying it for true, long-term management, compliance and E-Discovery. Commvault can ensure this with a single pane of glass solution – whether in a private cloud, a Service Provider delivered public cloud or a hybrid cloud environment – across the heterogeneous enter...
Everyone knows that truly innovative companies learn as they go along, pushing boundaries in response to market changes and demands. What's more of a mystery is how to balance innovation on a fresh platform built from scratch with the legacy tech stack, product suite and customers that continue to serve as the business' foundation. In his General Session at 19th Cloud Expo, Michael Chambliss, Head of Engineering at ReadyTalk, discussed why and how ReadyTalk diverted from healthy revenue and mor...
The many IoT deployments around the world are busy integrating smart devices and sensors into their enterprise IT infrastructures. Yet all of this technology – and there are an amazing number of choices – is of no use without the software to gather, communicate, and analyze the new data flows. Without software, there is no IT. In this power panel at @ThingsExpo, moderated by Conference Chair Roger Strukhoff, Dave McCarthy, Director of Products at Bsquare Corporation; Alan Williamson, Principal...
The 20th International Cloud Expo has announced that its Call for Papers is open. Cloud Expo, to be held June 6-8, 2017, at the Javits Center in New York City, brings together Cloud Computing, Big Data, Internet of Things, DevOps, Containers, Microservices and WebRTC to one location. With cloud computing driving a higher percentage of enterprise IT budgets every year, it becomes increasingly important to plant your flag in this fast-expanding business opportunity. Submit your speaking proposal ...
You have great SaaS business app ideas. You want to turn your idea quickly into a functional and engaging proof of concept. You need to be able to modify it to meet customers' needs, and you need to deliver a complete and secure SaaS application. How could you achieve all the above and yet avoid unforeseen IT requirements that add unnecessary cost and complexity? You also want your app to be responsive in any device at any time. In his session at 19th Cloud Expo, Mark Allen, General Manager of...
"IoT is going to be a huge industry with a lot of value for end users, for industries, for consumers, for manufacturers. How can we use cloud to effectively manage IoT applications," stated Ian Khan, Innovation & Marketing Manager at Solgeniakhela, in this SYS-CON.tv interview at @ThingsExpo, held November 3-5, 2015, at the Santa Clara Convention Center in Santa Clara, CA.
Successful digital transformation requires new organizational competencies and capabilities. Research tells us that the biggest impediment to successful transformation is human; consequently, the biggest enabler is a properly skilled and empowered workforce. In the digital age, new individual and collective competencies are required. In his session at 19th Cloud Expo, Bob Newhouse, CEO and founder of Agilitiv, drew together recent research and lessons learned from emerging and established compa...