130
7.1
IntroductIon
In 2002, Bill Gates, in an email to Microsoft employees, presaged a future
where computing would be “an integral and indispensable part of almost
everything we do” (Gates 2002). Subsequently, Microsoft published a
white paper defining what would ultimately become a seminal white paper
for trustworthy computing. Recognising that trust is a complex concept,
Mundie et  al. (2002) explored trustworthy computing from three perspectives—the user’s perspective (goals), the mechanisms employed by
industry to meet the goals (means), and the way in which an organisation
conducts its operations to deliver the components (execution). The key
definitions of goals, means and execution are summarised in Table  7.1
below. While in 2002, cloud computing was not the dominant computing
paradigm it is today, these perspectives reflect the dominant themes in
computer science research on trust in cloud computing. Indeed they are
reflective of the wider scholarly debate discussed throughout this book.
Improving the confidence and perception of trustworthiness is critical
for the adoption of cloud computing, and has been a central tenet of the
European Union cloud strategy for nearly a decade (European Commission
2020). The remainder of this chapter provides a brief overview of computer science research based on the goals of trustworthy computing identified above, namely security and privacy, reliability, and business integrity.
7.2 SecurIty and PrIvacy
According to the National Information Systems Security Glossary, information security is the protection of information systems against unauthorised access to and modification of information and data in various forms
such as data at rest, and in transit (Hayden 2000). Information security
applies to the safeguarding of data in its various states and storage locations, as well as offering protection against attacks such as denial-of-service
(DoS), which might adversely impact the confidentiality, integrity, and
availability of information to authorised users. As discussed in Chap. 1,
integrity is a key element in trust, and in the context of cloud computing,
the maintenance of confidentiality and continuity of service availability are
key signals of competence. As such, from a computer science perspective,
designing attack-resilient systems is critical to building and maintaining
trust. Different frameworks and models have been proposed and designed
for the establishment of trust within cloud computing that offer system
O. M. ALOFE AND K. FATEMA
Précédent

- 148/166

Suivant