Chapter 17Data Privacy, Residency, and Protection Obligations
Effective cloud security cannot exist in isolation from robust privacy practices, legal obligations, and data lifecycle governance. As cloud platforms enable unprecedented scale and flexibility in data collection and processing, they also introduce complex jurisdictional, operational, and architectural challenges related to how personal and sensitive information is handled. Understanding how to navigate regulatory expectations, data localization mandates, and evolving user rights is essential to building resilient, compliant, and trustworthy cloud systems. This chapter establishes privacy as a strategic pillar of cloud security, emphasizing proactive design, control alignment, and cross-functional accountability.
Privacy Fundamentals in Cloud Contexts
In the realm of cloud computing, privacy extends beyond mere data security to encompass the proper handling of personal and sensitive information in a highly dynamic and distributed digital environment. While confidentiality, integrity, and availability remain foundational to cybersecurity, privacy obligations introduce distinct requirements rooted in ethical, legal, and procedural domains. The shift from on-premises environments to scalable, geographically diverse cloud platforms amplifies both the exposure and complexity associated with personal data. Consequently, organizations must recognize that even technically secure data can become the subject of a privacy ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access