Risk
7/23/2012
12:49 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Microsoft Dynamics CRM Online Launches Trust Center

Web site provides in-depth information about privacy and security practices for Microsoft Dynamics CRM Online service

REDMOND, Wash., July 23, 2012 /PRNewswire/ -- Microsoft Corp. (Nasdaq "MSFT") today announced the availability of the Microsoft Dynamics CRM Online Trust Center, a website that provides in-depth information about the privacy and security practices for the Microsoft Dynamics CRM Online service. As data security and compliance are critical key considerations for organizations evaluating cloud services, the Microsoft Dynamics CRM Online Trust Center delivers to customers and potential customers high-level information about the privacy, transparency, independent verification and security features of Microsoft Dynamics CRM Online. This follows Microsoft Dynamics CRM Online's registration with the Cloud Security Alliance (CSA) Security, Trust & Assurance Registry (STAR) program, making Microsoft Dynamics CRM Online the first cloud CRM service to provide this level of transparency. Microsoft Dynamics CRM Online joins Microsoft Office 365 and Windows Azure with their Trust Centers and CSA STAR registrations, underscoring Microsoft's commitment to customers' data security and privacy.

"Customers have to be confident that their business solutions are meeting their high-level security features and privacy needs. The Microsoft Dynamics CRM Online Trust Center ensures transparency in how we operate Microsoft Dynamics CRM Online and handle these critical customer needs," said Dennis Michalis, general manager, Microsoft Dynamics CRM, Microsoft Corp. "Our customers need business solutions they can depend on, and the Microsoft Dynamics CRM Online Trust Center helps remove some of the anxiety they may have as they consider going to the cloud."

Gartner Inc. in the research report "Look Before You Leap Into Cloud Computing," published May 25, 2012, predicts that "by year-end 2016, more than 50 percent of Global 1000 companies will have stored customer-sensitive data in the public cloud." And it adds, "many enterprises are reaping great benefits from cloud computing, primarily in added business agility and cost savings.... However, as with any significant new form of technology, many eager new customers rush to take advantage of it before all the risks and risk mitigations have been fully explored."

"Enterprises should ensure that potential cloud service providers are trustworthy in areas of security, privacy and operational characteristics," said Gene Phifer, vice president distinguished analyst, Gartner. "Enterprises should perform due diligence on potential cloud service providers through the use of emerging cloud standards, certifications, cloud services brokers, questionnaires and interviews, and by generally 'doing your homework.' Transparency in a cloud vendor is key and security should be as big of a concern with online deployments as with on-premises deployments."

Designed to offer the performance, scalability, security and service levels organizations expect, Microsoft Dynamics CRM Online has built-in capabilities for compliance with a wide range of regulations and privacy mandates, including EU Safe Harbor, EU Model Clauses, ISO 27001, SSAE 16 SOC 1 Type II, and HIPAA-HITECH.

The Microsoft Dynamics CRM Online Trust Center is available at http://crm.dynamics.com/trust-center. Those who want to follow and engage with the Microsoft Dynamics CRM Twitter community can do so at @MSDynamicsCRM, using #MSDYNCRM and #CRM2011.

About Microsoft Dynamics

Microsoft Dynamics solutions empower your people to be more productive and your systems to last longer and scale as your business grows, while enabling you to derive the insights necessary to respond quickly in an ever-changing world of business.

About Microsoft

Founded in 1975, Microsoft (Nasdaq "MSFT") is the worldwide leader in software, services and solutions that help people and businesses realize their full potential.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-8370
Published: 2015-01-29
VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, VMware Fusion 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allow host OS users to gain host OS privileges or cause a denial of service (arbitrary write to a file) by modifying a configuration file.

CVE-2015-0236
Published: 2015-01-29
libvirt before 1.2.12 allow remote authenticated users to obtain the VNC password by using the VIR_DOMAIN_XML_SECURE flag with a crafted (1) snapshot to the virDomainSnapshotGetXMLDesc interface or (2) image to the virDomainSaveImageGetXMLDesc interface.

CVE-2015-1043
Published: 2015-01-29
The Host Guest File System (HGFS) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware Fusion 6.x before 6.0.5 and 7.x before 7.0.1 allows guest OS users to cause a guest OS denial of service via unspecified vectors.

CVE-2015-1044
Published: 2015-01-29
vmware-authd (aka the Authorization process) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allows attackers to cause a host OS denial of service via unspecified vectors.

CVE-2015-1422
Published: 2015-01-29
Multiple cross-site scripting (XSS) vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) horder[], (2) jak_catid, (3) jak_content, (4) jak_css, (5) jak_delete_log[], (6) jak_email, (7) jak_extfile, (8) jak_file, (9) jak_hookshow[], (10) j...

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
If you’re a security professional, you’ve probably been asked many questions about the December attack on Sony. On Jan. 21 at 1pm eastern, you can join a special, one-hour Dark Reading Radio discussion devoted to the Sony hack and the issues that may arise from it.