This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Industry:ENISA Cloud Computing Common Assurance Metrics"

From OWASP
Jump to: navigation, search
m
(Programme updated / Shankar made secondary / Link to controls summary file added)
Line 16: Line 16:
 
  |-
 
  |-
 
| style="width:25%; background:#7B8ABD" align="center"|'''Email Contacts & Roles'''
 
| style="width:25%; background:#7B8ABD" align="center"|'''Email Contacts & Roles'''
  | style="width:25%; background:#cccccc" align="center"|'''Primary'''<br>Shankar Babu Chebrolu<br>Vinay Bansal<br>Colin Watson
+
  | style="width:25%; background:#cccccc" align="center"|'''Primary'''<br>Vinay Bansal<br>Colin Watson
  | style="width:25%; background:#cccccc" align="center"|'''Secondary'''<br>TBC
+
  | style="width:25%; background:#cccccc" align="center"|'''Secondary'''<br>Shankar Babu Chebrolu
 
  | style="width:25%; background:#cccccc" align="center"|'''Mailing list'''<br>Use [https://lists.owasp.org/mailman/listinfo/owasp-cloud-10 Cloud 10 Project Mailing List]
 
  | style="width:25%; background:#cccccc" align="center"|'''Mailing list'''<br>Use [https://lists.owasp.org/mailman/listinfo/owasp-cloud-10 Cloud 10 Project Mailing List]
 
  |}
 
  |}
Line 26: Line 26:
 
  | style="width:25%; background:#7B8ABD" align="center"|'''Objectives'''
 
  | style="width:25%; background:#7B8ABD" align="center"|'''Objectives'''
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|
* Contribute to ENISA's project as contributors or reviewers
+
Contribute to ENISA's project as contributors or reviewers
 
  |-
 
  |-
 
  | style="width:25%; background:#7B8ABD" align="center"| '''Deadlines'''  
 
  | style="width:25%; background:#7B8ABD" align="center"| '''Deadlines'''  
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|
* Q1 2010 - Agree Scope
+
2010 - see programme below
** 05 Feb 2010 - Receive CAM Briefing Pack
 
** 12 Feb 2010 - Respond to ENISA about participation
 
** 16 Feb 2010 - OWASP Conference call with OWASP participants (CW/SC/VB/DC)
 
** 19 Feb 2010 - ENISA initial project conference call
 
** 15 Mar 2010 - Initial meeting in Barcelona at [http://www.cloudsecurityalliance.org/sc2010.html SecureCloud 2010]
 
* Q2 2010 - Develop Framework
 
** 04 May Sub-domain "development" assigned to OWASP team
 
** 21 May 2010 - Framework meeting in London
 
 
  |-
 
  |-
 
  | style="width:25%; background:#7B8ABD" align="center"| '''Status'''  
 
  | style="width:25%; background:#7B8ABD" align="center"| '''Status'''  
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|
* In Progress
+
In Progress
 
  |-
 
  |-
 
  | style="width:25%; background:#7B8ABD" align="center"| '''Resources'''  
 
  | style="width:25%; background:#7B8ABD" align="center"| '''Resources'''  
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|[http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-risk-assessment ENISA Report on Cloud Computing]
 
  | colspan="3" style="width:75%; background:#cccccc" align="left"|[http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-risk-assessment ENISA Report on Cloud Computing]
 +
 
[http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-information-assurance-framework?searchterm=cloud ENISA Information Assurance Framework]
 
[http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-information-assurance-framework?searchterm=cloud ENISA Information Assurance Framework]
 +
 
[http://www.cloudsecurityalliance.org/cm.html Cloud Security Alliance Cloud Controls Matrix]
 
[http://www.cloudsecurityalliance.org/cm.html Cloud Security Alliance Cloud Controls Matrix]
 +
 
  |-
 
  |-
 
|}
 
|}
  
  
 +
== Programme ==
  
 
+
* Q1 2010 - Agree Scope
 
+
** 05 Feb 2010 - Receive CAM Briefing Pack
 +
** 12 Feb 2010 - Respond to ENISA about participation
 +
** 16 Feb 2010 - OWASP Conference call with OWASP participants (CW/SC/VB/DC)
 +
** 19 Feb 2010 - ENISA initial project conference call
 +
** 15 Mar 2010 - Initial meeting in Barcelona at [http://www.cloudsecurityalliance.org/sc2010.html SecureCloud 2010]
 +
* Q2 2010 - Develop Framework
 +
** 04 May Sub-domain "development" assigned to OWASP team
 +
** 21 May 2010 - Framework meeting in London
 +
** 04 Jun 2010 - Submit list of relevant controls to framework team [[File:Camm-controls-itservices-development-20100604o.xls]]
 +
** 11 Jun 2010 - Framework meeting in London
  
  
 
Return to [[Global Industry Committee]]
 
Return to [[Global Industry Committee]]

Revision as of 16:38, 7 June 2010


Return to Global Industry Committee

ACTIVITY IDENTIFICATION
Activity Name ENISA Common Assurance Maturity Model
Short Description Collaborate with ENISA on their Cloud Computing Common Assurance Metrics project during 2010
Related Projects Category:OWASP Cloud ‐ 10 Project
Email Contacts & Roles Primary
Vinay Bansal
Colin Watson
Secondary
Shankar Babu Chebrolu
Mailing list
Use Cloud 10 Project Mailing List
ACTIVITY SPECIFICS
Objectives

Contribute to ENISA's project as contributors or reviewers

Deadlines

2010 - see programme below

Status

In Progress

Resources ENISA Report on Cloud Computing

ENISA Information Assurance Framework

Cloud Security Alliance Cloud Controls Matrix


Programme

  • Q1 2010 - Agree Scope
    • 05 Feb 2010 - Receive CAM Briefing Pack
    • 12 Feb 2010 - Respond to ENISA about participation
    • 16 Feb 2010 - OWASP Conference call with OWASP participants (CW/SC/VB/DC)
    • 19 Feb 2010 - ENISA initial project conference call
    • 15 Mar 2010 - Initial meeting in Barcelona at SecureCloud 2010
  • Q2 2010 - Develop Framework


Return to Global Industry Committee