IET Software · 2019 · 43 citations · 5 references
Compliance with the new European General Data Protection Regulation (Regulation (EU) 2016/679, GDPR) and security assurance are currently two major challenges of Cloud‐based systems. GDPR compliance implies both privacy and security mechanisms definition, enforcement and control, including evidence collection. This study presents a novel DevOps framework aimed at supporting Cloud consumers in designing, deploying and operating (multi)Cloud systems that include the necessary privacy and security controls for ensuring transparency to end‐users, third parties in service provision (if any) and law enforcement authorities. The framework relies on the risk‐driven specification at design time of privacy and security level objectives in the system service level agreement and in their continuous monitoring and enforcement at runtime.
5
Agile risk management for multi‐cloud software development
Víctor Muntés-Mulero, Oscar Ripollés, Smrati Gupta et al. · IET Software · 2018 · 24 citations · Full text
Dynamic security assurance in multi-cloud DevOps
Erkuden Rios, Eider Iturbe, Wissam Mallouli et al. · 2017 · 14 citations
Self-healing Multi-Cloud Application Modelling
Erkuden Rios, Eider Iturbe, Maria Carmen Palacios · 2017 · 12 citations · Full text