Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Finding the right Provider: Don't let the Cloud disrupt your Business

by The Gurus
October 22, 2015
in This Week's Gurus
Share on FacebookShare on Twitter

Cloud Computing can help organizations to bring innovations quickly and with relatively low costs to the market. It can also enable new and agile business models. However, if not properly provided it might as well disrupt your business to a severe extent. This latter case can be avoided by carefully reading the contract with the provider.
Cloud Computing has undoubtedly a lot of advantages, especially for small and medium enterprises. First of all, it makes IT services affordable that otherwise only large corporates are able to use. Thus they can enter into direct competition where because of their often larger flexibility the smaller businesses stand a good chance to win. By using the cloud they can even stronger focus on their core business. They don’t need to struggle with different IT vendors and platforms. Furthermore, the cloud allows rapid adoption of new services without which innovation would not be possible.
However, where there are benefits there are in most cases also risks involved. Cloud Computing for instance can easily become a disruptive factor to the business itself. If you don’t believe this just read carefully the standard contract your chosen provider handed over to you before signing it. You will often find some points that might become a threat to your business, especially the parts that cover service availability, end-of-service and the possibility of changes. Did you know that some Cloud Service Providers (CSPs) are able to go out-of-business at any time? They can also change their services with short prior notice, sometimes they don’t notify at all. Last but not least you will hardly find any clauses that guarantee upwards compatibility of APIs (Application Programming Interfaces) provided by the cloud service.
The relationship between CSP and tenant is usually “uneven”. The latter has to pay for all extras, frequently called Managed Services – even for those that should be unquestionably included in any cloud contract. This way the customer has to pay more for letting the provider take over more of his normal responsibility. Some CSPs like to call that “value-added service”. I would like to hear the opinion of their legal department to these kinds of offers. CSPs should be liable for service breakdowns as well as data breach or loss. Usually they deny that responsibility.
CSPs regularly also disinclude liability in their contracts for damages on the tenant’s side as a consequence of a longer outage. Surely it is not always the CSP’s fault if a service is not accessible. But where it is, availability guarantees are worthless if not connected to penalties.
Well, certainly not every CSP is a bad guy you can’t trust. There are also some reasons that explain the way the contracts are designed the way they usually are. And these are not only goodies for the provider like avoiding liability issues. One good reason is the flexibility of changing services for quickly improved capabilities and security. Quarterly patch windows are e. g. not safe enough in our times of zero-days attacks.
However, feature and API changes might become extremely disruptive. When users are confronted with a new user interface or features have been replaced, this might lead to enormous irritations, not only for employees but also for customers. Just because the CSP thinks a feature is useless and deletes it you don’t have to think so too. Feature changes might even hinder some applications from working at all. API changes can negatively influence the integration between cloud services or between an on-premise application and the cloud. They might also have a bad affect on customizations. Even if you use mostly standard services you need to do at least a little bit of customization. Moreover, business applications in the cloud like CRM or ERP need to be integrated to function optimally. That’s why APIs must become upwards compatible in cloud contracts. For this better software design is necessary, which is feasible in connection with a major upgrade. When features are discontinued customers have to be informed way ahead to be able to prepare for the event.
Companies must be aware that relying on a cloud service, especially SaaS (Software as a Service), might lead to severe disruptions of their business. They have also to be prepared for availability issues. Customizations and integration work need to be done with the knowledge that changes can happen any time. There must be an exit strategy if a service is ended or the CSP goes out of business. This also avoids a vendor lock-in which sometimes is the result of long-term initial contracts. If a contract ends, the user should get his full data back immediately without any further costs.
The cloud is not bad in itself. The right CSP for your business sees the cloud benefits from your perspective, not only from his. For this he has to understand your main issues and challenges. Compared with on-premise service, cloud services score better in many areas, for instance high availabity is a lot cheaper in the cloud. If users see the pitfalls in time, they’ll benefit from the cloud without suffering from severe disruptions to their business.
 
 
Martin Kuppinger is Founder of the independent Analyst Company KuppingerCole and as Principal Analyst responsible for the KuppingerCole research. In his 25 years of IT experience he has already written more than 50 IT-related books and is known as a widely-read columnist and author of technical articles as well as reviews and is also a well-established speaker and moderator at seminars and congresses. His interest in Identity Management dates back to the 80s, when he also gained considerable experience in software architecture development. Over the years, he added several other fields of research, including virtualization, cloud computing, overall IT security, and others. Having studied economies, he combines in-depth IT knowledge with a strong business perspective.

ShareTweet
Previous Post

UK and China sign cybersecurity pact

Next Post

Reclassification of ‘cyber crime’ critical step towards improving cyber defences, says APMG

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol