<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Security Must Haves in a SaaS Provider</title>
	<atom:link href="http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/feed/" rel="self" type="application/rss+xml" />
	<link>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/</link>
	<description>Software Engineer &#62; Security Officer &#62; Security Architect</description>
	<lastBuildDate>Mon, 31 Oct 2011 09:00:30 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Shaheen Abdul Jabbar</title>
		<link>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/comment-page-1/#comment-31</link>
		<dc:creator>Shaheen Abdul Jabbar</dc:creator>
		<pubDate>Fri, 22 Jan 2010 17:46:05 +0000</pubDate>
		<guid isPermaLink="false">http://snajsoft.com/?p=238#comment-31</guid>
		<description>I have tried using this checklist to conduct couple of vendor assessments. As some of you said, this is an exhaustive one and a SaaS vendor may not be able to meet all of them. Some of the requirements are achieved through contracts. Those few items that cannot be complied may need to be accepted as risk.

The vendors I have met so far are willing to meet all of them. They may need some time to achieve the target - they are learning as the industry grows. From the vendor’s point of view, wouldn’t they want to appear as a secure service for their customers?</description>
		<content:encoded><![CDATA[<p>I have tried using this checklist to conduct couple of vendor assessments. As some of you said, this is an exhaustive one and a SaaS vendor may not be able to meet all of them. Some of the requirements are achieved through contracts. Those few items that cannot be complied may need to be accepted as risk.</p>
<p>The vendors I have met so far are willing to meet all of them. They may need some time to achieve the target &#8211; they are learning as the industry grows. From the vendor’s point of view, wouldn’t they want to appear as a secure service for their customers?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Thomas Dager</title>
		<link>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/comment-page-1/#comment-30</link>
		<dc:creator>Thomas Dager</dc:creator>
		<pubDate>Thu, 21 Jan 2010 17:43:21 +0000</pubDate>
		<guid isPermaLink="false">http://snajsoft.com/?p=238#comment-30</guid>
		<description>I agree...the list is interesting, but also very one-sided and not grounded in reality.

There is no way any SaaS is going to agree to all of those points.</description>
		<content:encoded><![CDATA[<p>I agree&#8230;the list is interesting, but also very one-sided and not grounded in reality.</p>
<p>There is no way any SaaS is going to agree to all of those points.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Samir Pawaskar</title>
		<link>http://snajsoft.com/2009/12/29/security-must-haves-in-a-saas-provider/comment-page-1/#comment-29</link>
		<dc:creator>Samir Pawaskar</dc:creator>
		<pubDate>Thu, 21 Jan 2010 17:42:18 +0000</pubDate>
		<guid isPermaLink="false">http://snajsoft.com/?p=238#comment-29</guid>
		<description>The list is interesting. The only problem or lets say concern I have is will any SaaS / cloud computing provider be able to comply with this?

Or in other words have you successfully evaluated any any cloud computing provider against this checklist.

I would be interested to know them...

Thanks and Regards
Samir</description>
		<content:encoded><![CDATA[<p>The list is interesting. The only problem or lets say concern I have is will any SaaS / cloud computing provider be able to comply with this?</p>
<p>Or in other words have you successfully evaluated any any cloud computing provider against this checklist.</p>
<p>I would be interested to know them&#8230;</p>
<p>Thanks and Regards<br />
Samir</p>
]]></content:encoded>
	</item>
</channel>
</rss>

