JOURNAL ARTICLE

Cloud-Trust—a Security Assessment Model for Infrastructure as a Service (IaaS) Clouds

Dan GonzalesJeremy M. KaplanEvan SaltzmanZev WinkelmanDulani Woods

Year: 2015 Journal:   IEEE Transactions on Cloud Computing Vol: 5 (3)Pages: 523-536   Publisher: Institute of Electrical and Electronics Engineers

Abstract

The vulnerability of cloud computing systems (CCSs) to advanced persistent threats (APTs) is a significant concern to government and industry. We present a cloud architecture reference model that incorporates a wide range of security controls and best practices, and a cloud security assessment model-Cloud-Trust-that estimates high level security metrics to quantify the degree of confidentiality and integrity offered by a CCS or cloud service provider (CSP). Cloud-Trust is used to assess the security level of four multi-tenant IaaS cloud architectures equipped with alternative cloud security controls. Results show the probability of CCS penetration (high value data compromise) is high if a minimal set of security controls are implemented. CCS penetration probability drops substantially if a cloud defense in depth security architecture is adopted that protects virtual machine (VM) images at rest, strengthens CSP and cloud tenant system administrator access controls, and which employs other network security controls to minimize cloud network surveillance and discovery of live VMs.

Keywords:
Cloud computing Cloud computing security Computer science Computer security Cloud testing Security controls Computer security model Operating system

Metrics

148
Cited By
35.56
FWCI (Field Weighted Citation Impact)
30
Refs
1.00
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Cloud Data Security Solutions
Physical Sciences →  Computer Science →  Information Systems
Information and Cyber Security
Physical Sciences →  Computer Science →  Information Systems
Security and Verification in Computing
Physical Sciences →  Computer Science →  Artificial Intelligence
© 2026 ScienceGate Book Chapters — All rights reserved.