Educause Security Discussion mailing list archives

Re: checklist for hosted services or applications


From: Harry Hoffman <hhoffman () IP-SOLUTIONS NET>
Date: Fri, 13 Sep 2013 14:57:43 -0400

Hi Mark,

This might help
www.upenn.edu/computing/security/cloud/spia_for_vendors.pdf‎

Our SPIA for vendors tool is a series of questions that the organization
can use to interact with the vendor on the security posture and
certifications.

Cheers,
Harry

On 09/13/2013 02:48 PM, Mark Reboli wrote:
In this day in age we are doing more-and-more hosted application.  Does anyone have a checklist that they do with 
questions for the hosting company to ensure that the host company (performs security vulnerability studies, encrypts 
data you provide them, is PCI compliant, etc..)?

Thank you
m

[Description: MU Arches]
Mark Reboli
Network/Telcom Manager
Misericordia University
(570) 674-6753




Current thread: