|
Well, cloud computing and bullet proof secure are seldom mentioned in the same breath.
You don't own/control ANY of the routers, firewalls, vLAN switches, Servers, Virtual Machine OS, nor do you have ANY control over the Host OS or the Guest OS's or how they're setup or maintained, nor do you have ANY control over the virtual neighbors, what they're doing, how they're isolated from you, what their traffic will be, etc etc etc.
Also since you don't own the boxes, you have NO control over legal side of things. Can ANY so called law enforcement person walk in with a note scribbled on a post-it note get access or even take the boxes - or will the data center actually protect your rights and demand a full blown warrant and or subpoena?
So all though VM's might be the latest and greatest TECHNOLOGY since 3.5" floppies - it's certainly not a tried and true solution that has all the security issues hammered out AND tested/proven in the real world.
Best bet for REAL security. Rent secure cages in a data center. Install your own firewall, your own router, your own vLAN/layer 3 switches, and your servers. Then control who can touch them, and how they're configured. Setup your own boxes, and if you (and your lawyers) are happy with current VM isolation, then run your own VM servers - if not keep them dedicated. Lock your cage, and sleep with one eye open watching the key.
It's not cheap, but it is secure.
|