Data protection as a service in the multi-cloud environment

Maurizio Colombo, Rasool Asal, Quang Hieu Hieu, Fadi Ali El-Moussa, Ali Sajjad, Theo Dimitrakos

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

15 Scopus citations

Abstract

This paper introduces a framework for Data Protection as a Service (DPaaS) to cloud computing users. Compared to the existing Data Encryption as a Service (DEaaS) such as those provided by Amazon and Google, our DPaaS framework provides more flexibility, control and visibility for protecting data in the cloud. In addition to supporting the basic data encryption capability as DEaaS does, this DPaaS framework allows data owners to define fine-grained access control policies to protect their data. Data protected by an access control policy are automatically encrypted and access is granted to user/applications according with the policy. In general, the DPaaS enables the separation of concerns between security and data management, in addition to defining a full cycle of data security automation from encryption to decryption. Our proof-of-concept prototype of the DPaaS works with hybrid multi-cloud environments including private clouds and virtual data-centers using OpenStack, CloudStack and VMWare as well as public clouds being the BT Cloud Compute platform and Amazon (AWS). Experiments on the prototype have proved the efficiency of the framework.

Original languageBritish English
Title of host publicationProceedings - 2019 IEEE International Conference on Cloud Computing, CLOUD 2019 - Part of the 2019 IEEE World Congress on Services
EditorsElisa Bertino, Carl K. Chang, Peter Chen, Ernesto Damiani, Michael Goul, Katsunori Oyama
PublisherIEEE Computer Society
Pages81-85
Number of pages5
ISBN (Electronic)9781728127057
DOIs
StatePublished - Jul 2019
Event12th IEEE International Conference on Cloud Computing, CLOUD 2019 - Milan, Italy
Duration: 8 Jul 201913 Jul 2019

Publication series

NameIEEE International Conference on Cloud Computing, CLOUD
Volume2019-July
ISSN (Print)2159-6182
ISSN (Electronic)2159-6190

Conference

Conference12th IEEE International Conference on Cloud Computing, CLOUD 2019
Country/TerritoryItaly
CityMilan
Period8/07/1913/07/19

Keywords

  • Access Control
  • Big Data
  • Cloud Computing
  • Data Encryption
  • Data Protection
  • Multi Cloud

Fingerprint

Dive into the research topics of 'Data protection as a service in the multi-cloud environment'. Together they form a unique fingerprint.

Cite this