{"id":134,"date":"2015-05-26T07:53:58","date_gmt":"2015-05-26T07:53:58","guid":{"rendered":"https:\/\/www.microsoft.com\/en-gb\/industry\/blog\/industry\/2015\/05\/26\/debunking-cloud-service-rumours\/"},"modified":"2015-05-26T07:53:58","modified_gmt":"2015-05-26T07:53:58","slug":"debunking-cloud-service-rumours","status":"publish","type":"post","link":"https:\/\/www.microsoft.com\/en-gb\/industry\/blog\/manufacturing\/2015\/05\/26\/debunking-cloud-service-rumours\/","title":{"rendered":"Debunking cloud service rumours"},"content":{"rendered":"
We all love a good tech rumour, don\u2019t we? It\u2019s fun to speculate about new innovations and updates to our favourite products. But sometimes tech rumours have an ugly side, creating confusion or mistrust out of thin air. Rumours about cloud tools can be especially hard to debunk. You can\u2019t just look at a cloud service and know if a rumour is true. You have to do a little bit of digging to get at the truth.<\/p>\n
Still, it\u2019s important to set the record straight when it comes to the cloud. Organisations see the most benefit from cloud services when they have confidence in their choices. That\u2019s why we\u2019ve assembled some resources to help your sort the good from the bad when it comes to cloud services rumours.<\/p>\n
Rumour #1:<\/b> \u201cI heard that [a cloud service] isn\u2019t really compliant with the Data Protection Act.<\/i>\u201d Rumour #2:<\/b> \u201cI heard these cloud companies can say anything they like on security. There\u2019s no proof.<\/i>\u201d Rumour #3: <\/b>\u201cI heard that a former Microsoft employee doesn\u2019t believe that EU-Safe Harbor Framework is secure.<\/i>\u201d Rumour #4:<\/b> \u201cI heard that all kinds of government representatives can just ask for your cloud data whenever they want.<\/i>\u201d Between January and June of 2014, we received 34,000 law enforcement request from around the world, the overwhelming majority of which related to our free consumer services such as outlook.com. In about three-quarters of those cases, we\u2019ve responded to official requests for information on who owns a particular set of data, but that isn\u2019t the same as disclosing the content of that data. It\u2019s more like disclosing a house number than it is letting someone read your mail.<\/p>\n Government requests to actually access the content of enterprise customer data are exceptionally rare and when they do occur, they\u2019re handled in an extremely transparent<\/a><\/u> fashion. In the second half of 2014, Microsoft received just 3 requests from law enforcement for access to data stored by users associated with an enterprise customer. In two of those cases, the requests were rejected<\/u> or law enforcement was successfully redirected to the customer. In the third case, the customer was notified of the legal demand and the customer directed Microsoft to provide responsive information to law enforcement.<\/p>\n","protected":false},"excerpt":{"rendered":" We all love a good tech rumour, don\u2019t we? It\u2019s fun to speculate about new innovations and updates to our favourite products.<\/p>\n","protected":false},"author":223,"featured_media":783,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"ep_exclude_from_search":false,"_classifai_error":"","footnotes":""},"categories":[144],"post_tag":[],"content-type":[],"coauthors":[21],"class_list":["post-134","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-manufacturing"],"yoast_head":"\n
\nIf you\u2019re using a Microsoft cloud service, you can be confident it will help you comply with the requirements set out in the Data Protection Act. We\u2019ve demonstrated that repeatedly through our support of EU Model Clauses and the EU Safe Harbor Framework<\/a><\/u>. We were also the first enterprise cloud service to comply with ISO\/IEC 27018, the first internally recognised standard for<\/a><\/u> the protection of personal information in public cloud services. No cloud service on the market in the UK today is more compliant than Microsoft\u2019s cloud.<\/p>\n
\nIt\u2019s natural and prudent to be cautious of cloud security claims. It is essential suppliers are transparent on how their service operates, which is why Microsoft offers a wealth of information<\/a><\/u> on its services. Even more importantly, it is why Microsoft submits its cloud services to an array of third-party authorities<\/a><\/u> for independent verification of our security standards. Our cloud services are vetted against the ISO-27001<\/a><\/u> and SASE-16<\/a><\/u> standards and subject to rigorous, independent penetration tests<\/a><\/u>. Our cloud services were submitted to the G-cloud framework<\/a><\/u> and were accredited to OFFICIAL<\/a><\/u> under previous versions of the framework. This level of verification shouldn\u2019t just be our standard. Anyone claiming to offer a secure cloud service should be able to able to back up their claims with the same battery of independent tests.<\/p>\n
\nFormer employees are entitled to their opinions and we understand that some commentators have questioned the strength of the EU-Safe Harbor framework. We believe it remains a legitimate method for transferring data out of the EU, but we recognise customers are looking for the strongest protection available, which is why we comply with EU Model clauses<\/a><\/u> ratified by the EU Data Commissioner and we\u2019re constantly improving our systems to meet new and higher benchmarks. What\u2019s more, our new Customer Lockbox<\/a><\/u> feature gives organisations an unprecedented amount of control over how their data is handled, even during customer service resolutions.<\/p>\n
\nMicrosoft is proud to lead the industry on transparency when it comes to lawful government data requests. We even fight for the tech industry\u2019s privacy rights in key court cases. No company does more to ensure that no person or organisation ever has a secret back door to your data.<\/p>\n