UPDATED 03:45 EST / FEBRUARY 18 2015

Microsoft reaches milestone in cloud privacy with compliance to ISO 27018

privateFeeling unshakably confident about our data stored in the cloud is probably a disposition we’ll never quite reach, but Microsoft just made some headway in instilling us with some faith by making its Azure cloud computing platform, the first cloud platform to be certified as compliant with ISO (International Organization for Standardization) 27018.

Brad Smith, Microsoft’s General Counsel and Executive Vice President, Legal and Corporate Affairs, wrote in a blog post, “The British Standards Institute (BSI) has now independently verified that in addition to Microsoft Azure, both Office 365 and Dynamics CRM Online are aligned with the standard’s code of practice for the protection of Personally Identifiable Information (PII) in the public cloud.”

While Microsoft has in fact been following such standards already, gaining the certification is a benchmark in that we not only know what we can expect from the Redmond company in terms of what happens, or doesn’t happen, to our data, but it will help to create an industry standard that can, and should be followed.

The standard itself relates to transparency in what the government demands concerning stored data, with full disclosure to the customer if access should happen, and also transparency concerning what is happening to data in regards to the return, transfer, and deletion of personal information stored in Microsoft’s data centers. There will be security safeguards implemented as part of the standard relating to public use of data, and also relating to data recovery and restoration. Lastly, by adopting the standard Microsoft maintains that enterprise customer data will not be used for advertising purposes.

Microsoft has said numerous times that customers will only use services that they can trust. This certification, Microsoft hopes, will have scored some points with existing and future customers. Smith writes, “We’re optimistic that ISO 27018 can serve as a template for regulators and customers alike as they seek to ensure strong privacy protection across geographies and vertical industry sectors.”

In relation to what the government demands, Microsoft is still in legal wrangle with the U.S. Department of Justice

over emails stored in a data center located in Dublin, Ireland. Data, Microsoft says, the U.S. government has no right to demand access to. Encouragingly the Redmond company is a backed by some of the world’s leading media organizations and tech companies, as well as the Irish government.

Photo credit: Nathan O’Nions via photopin cc


A message from John Furrier, co-founder of SiliconANGLE:

Your vote of support is important to us and it helps us keep the content FREE.

One click below supports our mission to provide free, deep, and relevant content.  

Join our community on YouTube

Join the community that includes more than 15,000 #CubeAlumni experts, including Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger, and many more luminaries and experts.

“TheCUBE is an important partner to the industry. You guys really are a part of our events and we really appreciate you coming and I know people appreciate the content you create as well” – Andy Jassy

THANK YOU