123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Computers >> View Article

Carefully Monitor Cloud Policy Exceptions For Misuse

Profile Picture
By Author: Lauren Ellis
Total Articles: 35
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

You know the old adage – “For every rule there is an exception.” (Please temporarily ignore the paradox this creates). This saying certainly seems to apply to every cloud access policy I have ever seen. Here are some of the most common examples:

A financial services company sees only risk and no value in providing access to social media platforms from desktop workstations, but then the Marketing group needs to promote the brand on Facebook and Twitter so they are given an exception to use social media services.

A tech company’s sales team is not permitted to access their corporate Cloud Security services like Salesforce from personal tablets without having to VPN into the corporate network. However, when the CEO and VP of Sales want to travel with their iPads only, they are granted an exception to directly access the services they use everyday, like Salesforce, Workday, Netsuite, and Box.

These exceptions make sense. IT wants to enable business units to use the services that help them do their jobs, and sometimes those services exist outside of the blanket ...
... cloud access policies governing day-to-day usage.

So guess what happens when a company has to grant access to a service? There is no easy way to grant access just to a service, so the exception is granted for the entire category. The result: employees are granted broad access to all services in the category, effectively allowing an access level beyond the intent of the policy exception.

Here’s an example – a healthcare company had fairly restrictive cloud storage policies due to the HIPAA and HITECH Cloud Compliance requirements. They prohibited all use of personal cloud storage services, but their CIO was asked to make a policy exception for a newly acquired business unit to use Mozy, an online back-up service. When granting access to this service, they allowed the entire cloud storage category for these users. Only later and by accident did they discover that usage had crept beyond Mozy to several high risk file sharing services including Dropbox, Zippyshare, and Carbonite, creating a compliance and security risk that was in violation of their corporate policies.

The lesson here is that when you grant exceptions, you also need visibility to make sure usage hasn’t unintentionally crept beyond the intended exceptions to new, high risk services that lead to greater compliance, security and governance risks.

Author :
Lauren Ellis is a research analyst covering the technology industry’s top trends & topics, focusing on Cloud Security, Cloud Computing, Data Loss Prevention etc.,

Total Views: 590Word Count: 417See All articles From Author

Add Comment

Computers Articles

1. Web Scraping Top Grocery Chains In Michigan
Author: FoodDataScrape

2. How Refurbished Laptops Help Students Save Money And Study Smarter In 2025
Author: usedstore

3. Why The Ls3002 Barcode Scanner Is Perfect For Retail In 2025
Author: prime pos

4. Does Cleaning Temporary Files Really Improve Laptop Speed? (what To Expect)
Author: Neha Jain

5. Extract Supermarket Data From Walmart & Target In Usa
Author: FoodDataScrape

6. How Odoo Partners Drive Growth: From Implementation To Innovation
Author: Alex Forsyth

7. Leverage Web Scraping Cold Drinks Data On Swiggy Instamart
Author: FoodDataScrape

8. Empowering Universities Through Student Engagement Crm Solutions|e2s
Author: Brenda Joyce

9. Odoo Manufacturing And Lean Practices For Small And Medium Enterprises
Author: Alex Forsyth

10. How Posiflex Pos Machines Enhances Customer Service
Author: pbs

11. Scrape Keeta Food Delivery App Data In Saudi Arabia For Insights
Author: FoodDataScrape

12. Microsoft Office Professional Plus 2021 Vs. Microsoft Office Professional Plus 2024: Which One Should You Choose?
Author: davudobuya55

13. Microsoft Office Professional Plus 2019 Vs. Microsoft Office Professional Plus 2019 Dvd: Which Version Should You Choose?
Author: davudobuya55

14. Microsoft Office Professional 2024 Vs. Microsoft Office Professional Plus 2010: Which One Is Right For You?
Author: davudobuya55

15. Microsoft Office Home Business 2021 For Mac Vs Microsoft Office Home Student 2021 For Mac: Which Is Right For You?
Author: davudobuya55

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: