Expansion of a Risk Management Framework for Software as a Service Provider

Authors

  • Obul Barik Nahem Department of School of Computing, Graduate School of Holy Angel University, Philippines

Keywords:

SaaS, Risk management framework, Security controls

Abstract

The adoption of Software as a Service (SaaS) is becoming prevalent. With its ease of use and cost savings in time and management, many customers are shifting to usage of third- party applications to help them streamline and manage their business processes efficiently and effectively. SaaS providers must ensure that customer data is secure. To effectively manage the risks surrounding SaaS provider’s IT infrastructure, a risk management framework was developed to identify, mitigate and evaluate potential impact of risks. This framework provided visibility into infrastructure security risks. It mapped the infrastructure of SaaS provider in compliance with ISO 31000:2018 and NIST Cyber security Framework. The risk management framework helped the SaaS provider better understand the security risks surrounding its SaaS solution. It also helped in the secure deployment of SaaS projects to drive improved user experience and high customer satisfaction. The gap assessment showed the areas where improvement must be made. Additional scenarios and continuous monitoring are needed to avoid a false sense of security.

Downloads

Download data is not yet available.

Downloads

Published

30-09-2023

Issue

Section

Articles

How to Cite

Nahem, O. B. (2023). Expansion of a Risk Management Framework for Software as a Service Provider. TWIST, 18(3), 1-12. https://twistjournal.net/twist/article/view/34

Share

Most read articles by the same author(s)

1 2 3 4 5 6 7 8 9 10 > >> 

Similar Articles

1-10 of 159

You may also start an advanced similarity search for this article.