Overly on Security

About this Blog:

The legal side of security.

Michael Overly

Cloud Computing Continues to Put Jobs at Stake

to Security Career/Staffing |

What jobs are we talking about?  Yours.  That is, the trend in cloud computing continues, in general, to be service offerings provided under some of the most minimal service level protections ever seen.  When those meager service levels are further diluted by numerous exceptions to and qualifications on performance and, in many cases, unlimited downtime for “scheduled maintenance” (i.e., as long as the vendor gives you a heads up, it can take the service down for as long as it wants without fear of a service level failure), you have a service that is being provided on more or less an as-is basis.  While this approach may actually be considered in non-critical, low-risk engagements, it can be a “job-coster” for the business person who accepts these risks in the context of critical, high value engagements.

In a recent engagement, a vendor of an expensive, critical solution offered an SLA that provided little in the way of credits for failure to achieve required performance standards.  When pressed on this issue, the vendor offered no movement on the relatively useless credits, but offered to provide the customer with the right to terminate in the event of ongoing poor performance.  How did the vendor define “ongoing poor performance”?  They offered termination if the service was down for four consecutive months or any five months in a seven month period.  This type of offer is the reason for the title to this blog entry:  it affords the business person who accepts this type of useless protection to place their job at risk when the vendor fails to perform.  That is, more and more vendors simply cast their refusal to provide meaningful service levels and remedies as business risks that must be assumed by their customers. 

In the current economic environment approving an agreement that would require the company to pay essentially full price for months and months in which service is not provided or performance is so spotty that it is all but useless, could be a career ending decision.  That is why at least some business people are taking a long, hard second look at these types of arrangements and refusing to sign without appropriate protections.  Those that don’t had better update their resumes.

Print
What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?
WHITE PAPER
Reduce Email Archives up to 60%

Clearwell Are you considering implementing a proactive archiving and eDiscovery solutions? This paper summarizes 15 separate soft cost savings when implementing Symantec Enterprise Vault and the Clearwell eDiscovery Platform.

» Learn More

WHITE PAPER
Aberdeen Report: To Patch, or Not to Patch? (Not If, But How)

Secunia The report explores the correlation between the current use of patch management and the level of endpoint-related risk that companies are effectively accepting.

» Learn More

Browse CSO Blogs

See all CSO Blogs »

Recent Comments

RESOURCE CENTER