SHARE
Facebook X Pinterest WhatsApp

Security Considerations for Application Development in the Cloud

Jan 6, 2011

In
their list of predictions for 2011, application security specialists at the
Denim Group predicted software development teams will start to shift their
focus to building extensions to software-as-a-service applications instead
of writing custom software from the ground up.

In the company’s crystal ball, business-to-business providers
will lead the way in this, though extensions to
consumer-oriented applications will increase as well. As could be predicted
however, this kind of shift would bring with it its own set of challenges
for developers looking to integrate their creation securely, experts told
eWEEK.

"The overarching problems with securely integrating with SAAS [software-as-a-service]
applications is that the systems involving these integrations have more
complicated threat models than normal Web applications and the integration
patterns between custom code and SAAS services are not as standardized or well-understood," said Dan Cornell, CTO for the Denim Group. "This
creates a situation where developers do not necessarily understand how to build
these interactions securely,
and it also makes it challenging to provide
standardized guidance to developers because, in the absence of specific
platforms and desired features, this guidance is often ‘it depends’ or ‘it’s
complicated."

The
dependency on SAAS components they don’t control poses a challenge for
enterprises as well, Forrester Research analyst Mike Gualtieri told eWEEK.

For more, read the eWeek article: Application Development Security Considerations for the Cloud.

Recommended for you...

Top Container Software Available in 2022
Don Hall
Aug 25, 2022
Coda vs Notion: Which Is Better For Project Management?
Don Hall
Aug 15, 2022
Wrike vs Asana: 2022 Comparison
Madeline Clarke
Jul 26, 2022
Top Version Control Tools in 2022
Don Hall
Jul 20, 2022
CIO Insight Logo

CIO Insight offers thought leadership and best practices in the IT security and management industry while providing expert recommendations on software solutions for IT leaders. It is the trusted resource for security professionals who need to maintain regulatory compliance for their teams and organizations. CIO Insight is an ideal website for IT decision makers, systems integrators and administrators, and IT managers to stay informed about emerging technologies, software developments and trends in the IT security and management industry.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.