Cloud Security Pundits Pledge

Raise your EC2 key and repeat after me:

I, <insert twitter handle here>, do solemnly affirm that when tweeting, blogging or retweeting about cloud security, I will never:

  • cite twitter-gate as a reason to stay out of the cloud
  • confuse IaaS, PaaS or SaaS and the security responsibilities for each
  • insist on the right to audit
  • blame cloud providers for common software security flaws
  • debate on private versus public clouds

I commit to always:

  • recommend positive approaches to achieve security in the cloud
  • advocate the implementation of A6 and XSRL
  • diffuse twitter-gate debates
  • clarify on the difference between common security flaws and cloud specific issues


