Subscribe
About
  • Home
  • /
  • TechForum
  • /
  • Worried POPI and EU-GDPR are making cloud less viable? Think again

Worried POPI and EU-GDPR are making cloud less viable? Think again

Chris Hathaway, Founder and Director of Soarsoft International, explains why cloud migrations and data protection go hand-in-hand.

Chris Hathaway, Founder and Director of Soarsoft International.
Chris Hathaway, Founder and Director of Soarsoft International.

With the 2018 conclusion of the EU-GDPR grace period looming and the POPI compliance deadline creeping nearer and nearer, a lot of enterprises are in the process of reassessing their data protection strategies.

The prospect of possible imprisonment and millions of rand in penalties for non-compliance has made CTOs understandably risk-averse, and many are questioning the viability of extending their deployments into the cloud under the circumstances, says Chris Hathaway, Founder and Director of Soarsoft International.

Admittedly, this is scarcely an unexpected result. Typically unfounded fears around cloud security have abounded since its inception, and upping the ante with serious consequences for breaches isn't setting anyone's mind at ease. What most people don't realise, however, is that a well-planned and implemented cloud migration is actually one of the best ways to streamline - and often enhance - enterprise data security both onsite and in the cloud.

Now, I'm not talking about Microsoft Office 365's native security features here (although they are top notch), nor am I trying to point out the strengths of the many excellent solutions adding additional control and visibility to the cloud. The real key for enterprises migrating to the cloud with POPI and EU-GDPR requirements in mind lies not in the final destination, but in the journey itself.

Do the prep

If "preparation, preparation, preparation" isn't your migration partner's motto, you should seriously reconsider letting the company anywhere near your deployment, because a proper roadmap to the cloud is essential for a smooth, controlled and compliant transition. Any partner worth its salt should insist on a comprehensive planning process prior to a migration, and that process should include a detailed outline of your current and future security and compliance requirements.

Soarsoft International calls this its Security Baseline Workshop. It covers everything from the native security features available to clients based on their Office 365 and Azure licensing, to how these tie into their existing corporate data governance policies, and the configuration necessary to achieve the desired levels of compliance. Soarsoft International explores and defines data sovereignty requirements, permissions, and administrative controls, as well as identity and access management protocols, data loss protection, mobile device management and more.

The result is essentially a fully defined and up-to-date data governance policy and implementation plan. And since onsite and cloud data governance policies need to mirror one another for a good user experience, it often improves your overall security posture both in the cloud and onsite at the same time.

But wait, there's more!

Classify your data

As part of a responsible migration, a client's existing user content will generally be assessed to classify unstructured data that needs to be migrated, separate it from rot that can be defensibly deleted, and identify sensitive information hidden among the general clutter. By doing this, Soarsoft International not only ensures compliance is maintained throughout the migration process (and afterwards), but also highlights potential security issues in any remaining onsite architecture as well - a double win.

Be responsible by choice, not just necessity

POPI and EU-GDPR may be the driving force behind most South African and European enterprises' renewed interest in data protection, but when it comes to cloud migrations, they're really only reinforcing best practices that are already in place. A trusted and experienced migration partner should leverage the powerful native security features already available to you within your cloud licensing to protect your sensitive information and improve your return on investment, regardless of legal requirements. Your data is a valuable asset, and should be treated that way.

Share

Soarsoft International

Soarsoft International provides migration and information management solutions to large and medium enterprises, enabling efficient capture, storage, search, sharing and analysis of unstructured data.

Its suite of specialist solutions includes:

* Migration and Microsoft cloud services;

* Architectural services for Active Directory, Exchange and SharePoint;

* Messaging, archive and content migration;

* Microsoft cloud deployment and migration;

* Information management;

* File analysis and governance;

* Archiving and e-discovery;

* Document and records management; and

* Enterprise and cognitive search.

Soarsoft International is a global enterprise solutions provider focusing on EMEA, and has deployed solutions to large organisations and sites in excess of 45 000 users.

Soarsoft International has worked with numerous well-known global brands, as well as a number of internationally based utilities and financial institutions. In southern Africa, Soarsoft International has implemented solutions for several of the largest and most prestigious mobile telcos, retailers, legal firms, and financial and medical institutions, including the largest listed financial services group in southern Africa.

If you need assistance in managing or transforming your unstructured data, including information in e-mail and file repositories, contact Soarsoft International to find out more about its trusted, proven technologies and let the company tailor-make a solution for your business needs.

www.soarsoftinternational.com

Editorial contacts

Tracey Hadfield
Soarsoft International
Tracey@soarsoftint.com