Authors:
Yiannis Verginadis
1
;
Antonis Michalas
2
;
Panagiotis Gouvas
3
;
Gunther Schiefer
4
;
Gerald Hübsch
5
and
Iraklis Paraskakis
6
Affiliations:
1
National Technical University of Athens, Greece
;
2
Swedish Institute of Computer Science, Sweden
;
3
Ubitech Ltd., Greece
;
4
Karlsruhe Institute of Technology, Germany
;
5
CAS Software AG, Germany
;
6
South East European Research Centre, Greece
Keyword(s):
Data Privacy, Security by Design, Context-aware Security, Symmetric Searchable Encryption, Cloud Computing.
Abstract:
The valuable transformation of organizations that adopt cloud computing is indisputably accompanied by a
number of security threats that should be considered. In this paper, we outline significant security challenges
presented when migrating to a cloud environment and propose PaaSword – a novel holistic, data privacy and
security by design, framework that aspires to alleviate them. The envisaged framework intends to maximize
and fortify the trust of individual, professional and corporate users to cloud services. Specifically, PaaSword
involves a context-aware security model, the necessary policies enforcement and governance mechanisms
along with a physical distribution, encryption and query middleware, aimed at facilitating the implementation
of secure and transparent cloud-based applications.