The Register® — Biting the hand that feeds IT

Feeds

Google Apps win ISO 27001 certification

FISMA fisticuffs forgotten?

  • print
  • alert

Regcast training : Hyper-V 3.0, VM high availability and disaster recovery

Google has proudly told the world its online productivity suite, Google Apps, has gained the ISO's good cloudkeeping seal of security approval, in the form of the ISO 27001 security certification.

Eran Feigenbaum, Google Enterprise's Director of Security let us all know the good news on Monday, US time, and named Ernst & Young CertifyPoint as Google's auditor.

The announcement was made without any of the recent unpleasantness over security for cloud apps which, as we reported earlier this month, saw Google and Microsoft swap accusations about just who's cloud suites have achieved the FISMA certification required to win business from the US government.

Google has had that accreditation sewn up for a while now. With ISO 27001 also on its trophy shelf alongside SSAE 16 / ISAE 3402 certificates, the company now feels its security credentials are second-to-none and that “businesses are beginning to realize that companies like Google can invest in security at a scale that's difficult for many businesses to achieve on their own.” ®

Agentless Backup is Not a Myth

Anonymous Coward

ISO is a scam

As an internal auditor for years, I can tell you with certainty that ISO certifications are a smoke & mirrors game that does nothing to prove or drive actual quality. What little advantage ISO compliant companies gain is immediately trumped by the bureaucratic leach that is attached to said company. READ: it is a PR ploy and a resource drain. And anybody that knows anything about security aught not be fooled by some ISO goof balls that can't possibly understand real security in the first place.

3
0
Anonymous Coward

What about ISO 27002?

It's all good and well to have a management system in place, but the processes underneath require ISO 27002 certification before the 27001 has any meaning whatsoever.

Besides, that a company is "safe" doesn't mean it respects privacy. It's still a company subject to the US Patriot Act, which suggests it may be of use to a US resident and/or company, but flagged as "avoid like the plague" for aliens (to use that lovely, rather indicative term).

1
0

Re: ISO is a scam

Heh, I've not had any faith in anything ISO since MS were able to push their poorly defined and proprietary OOXML format through the system in an attempt to derail ODF. Reading about that whole process was an eye-opener.

1
0

More from The Register

 breaking news
Number of cops abusing Police National Computer access on the rise
Only a telegram from the Queen can get you off it
 breaking news
Julian Assange: Google's just an arm of US government
Pale, embassy-dwelling blond claims conspiracy betweeen ad giant, politicians
 breaking news
NSA PRISM snoop-gate: Won't someone think of the children, wails Apple
10,000 things probed, mostly about missing kids, Alzheimer patients, we're told
Google flings another £1m at online child sex abuse vid CRACKDOWN
See, see, we're trying, ad giant tells Daily Mail UK.gov
Report: Cloud could slash biz software energy use by 87%
Study sees millions of redundant servers slurping power
 breaking news
CIA spooks picked Amazon's 'superior' cloud over IBM
Procurement report reveals tech gap in cloud cold war
Bone up on fresh EU privacy law - or end up in the clink, IT biz warned
Resellers no longer just flogging boxes - now they must offer legal advice
 breaking news
MPs demand UK rates revamp after Google's 'extraordinary tax mismatch'
Report: 'Highly contrived' structure has damaged HMRC's reputation
Amazon SLASHES hosted database prices
Microsoft, Google, stare meekly at own margins