Transformation Innovation

Cloud Computing as a Strategic Asset

By G C Network | April 30, 2009

For some reason, this week seems to have more in it than most. While the steady stream of briefing request seem to be increasing, the post briefing discussions also seem…

Vivek Kundra: “Engage the American People in their Daily Digital Lives”

By G C Network | April 25, 2009

Today I attended a very impressive talk by the Federal CIO, Mr. Vivek Kundra at a Northern Virginia Technology Council Public Policy event. His open and “matter of fact” approach…

McKinsey vs. Booz Allen Hamilton !

By G C Network | April 21, 2009

A community skirmish reminiscent of the recent “manifestogate” has apparently erupted around the McKinsey & Co. report “Clearing the air on cloud computing“. Booz Allen Hamilton Principals Mike Cameron and…

Oracle Buys Sun!!

By G C Network | April 20, 2009

Swooping in from nowhere, Oracle buys Sun for $7.4B!! “This morning, the companies announced that they’d struck a deal worth $7.4 billion or $5.6 billion net of Sun’s cash and…

Aneesh Chopra Nominated For Federal CTO

By G C Network | April 20, 2009

Although Aneesh Chopra is a new name for most, he is well know in Virginia as Governor Tim Kaine’s Secretary of Technology. For the Commonwealth, he was charged with leading…

Could Cloud Computing Cost More?

By G C Network | April 16, 2009

In a recent conference, analyst William Forrest says that large companies could end up paying more than twice as much by using cloud based services. According to a Forbes.com report,…

Cisco’s Cloud Computing Strategy

By G C Network | April 10, 2009

A couple of weeks ago, Krishna Sankar provided a glimpse into Cisco’s cloud computing strategy in a presentation titled “A Hitchhiker’s Guide to the Inter-Cloud” . The presentation outlined the…

NCOIC and Cloud Computing: An Update

By G C Network | April 8, 2009

As the NCOIC gets it’s arms around this new paradigm, the Cloud Computing Working Group has focused on establishing a roadmap for providing value to the industry. Using the established…

SUN-IBM Talks Breakdown

By G C Network | April 6, 2009

As reported in multiple sources today, including Reuters, Sun has apparently rejected a purchase offer by IBM. “Shares of Sun Microsystems Inc tumbled 22.5 percent after it rejected a $7…

Former DoT CIO on Cloud Computing

By G C Network | April 3, 2009

Last month, former Transportation Department CIO Dan Mintz offered his views on cloud computing to Eric Chabrow, Managing Editor of Government Information Security. According to Mr. Mintz, there is currently…

4 Factors Driving Digital Transformation ROI

The critical assessment factors for cloud ROI risk probability are the following:     

  • Infrastructure utilization
  • Speed of migration to cloud
  • Ability to scale business/mission processes
  • Quality delivered by the new cloud-based process 

These four factors directly drive digital transformation ROI because they affect revenue, cost, and the time required to realize any investment return. Differences between actual and projected values in these metrics indicate a likely failure to achieve the desired goals.

Although business alignment is always a primary digital transformation drive, ROI remains a key decision component. This metric should, however, be addressed from multiple vantage points to include cloud workload utilization, workload size versus memory/processor distribution and the virtual hardware instance to physical asset ratio. 

Value delivered through innovation should also be part of the business value calculation. Value can be delivered through operational cost reductions, optimization of resource capacity, and a reduced total cost of ownership. Business process time reductions, product quality improvements and customer experience enhancements are also useful outcomes.

Security Controls

Business/mission model changes can also introduce operational risk. Acceptance of these risk are based on executive risk tolerance. Their risk mitigation decisions result in the implementation of security controls. A control will restrict a list of possible actions down to what is allowed or permitted by the organization. Encryption, for example, can be used to restrict the unauthorized use of data.

The security control continuum extends over three categories:         

  • Management (administrative) controls: policies, standards, processes, procedures, and guidelines set by corporate administrative entities (i.e., executive to mid-level management)         
  • Operational (and physical) controls: operational security (execution of policies, standards and process, education, and awareness) and physical security (facility or infrastructure protection)
  • Technical (logical) controls: Access controls, identification and authentication, authorization, confidentiality, integrity, availability, and non-repudiation 

They also encompass the following types:

  • Directive controls: often referred to as administrative controls, advise employees of the behavior expected of them during their interfaces with or use of information systems
  • Preventive controls: include physical, administrative, and technical measures that preclude actions that violate policy or increase the risk to system resources
  • Deterrent controls: use warnings and a description of related consequences to prevent security violations
  • Compensating controls: Also called an alternative control, a mechanism that is put in place to address security requirements deemed impractical to implement
  • Detective controls: Refer to the use of practices, processes, and tools that identify and possibly react to security violations
  • Corrective controls: involves physical, administrative, and technical measures designed to react to a security-related incident in order to minimize the opportunity for an unwanted event to reoccur
  • Recovery controls: restore the system or operation to a normal operating state once integrity or availability is compromised 

The costs associated with the implementation of any security control should be weighed against the value gained from digital transformation business/mission process improvements.

Would you like to learn more about digital transformation innovation? Pick up a copy of my new book, Click to Transform! 

A book about business and technology
Posted in

pwsadmin