We have developed an application that can be used by cloud
consumers to determine the cloud security and compliance
policies that they want to enforce within their organization. This
system helps users identify the cloud threats and the security
and compliance models that protect against these threats. The
application also lists the existing cloud providers who have
implemented the standards in their services.
For this application, we analyzed various security
compliances, security policies/standards, and threats affecting
cloud security. We next related these controls, standards and
threats based on parameters like description of the security
standards, the requirements of standard fulfillment, compliance
description and also analysis of threats that affects the cloud
security. This web-based application has been created by using
PHP, HTML and AJAX web technology and MySQL database.
Figure 2 shows the database architecture of the application.