Risk
7/23/2012
12:49 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Microsoft Dynamics CRM Online Launches Trust Center

Web site provides in-depth information about privacy and security practices for Microsoft Dynamics CRM Online service

REDMOND, Wash., July 23, 2012 /PRNewswire/ -- Microsoft Corp. (Nasdaq "MSFT") today announced the availability of the Microsoft Dynamics CRM Online Trust Center, a website that provides in-depth information about the privacy and security practices for the Microsoft Dynamics CRM Online service. As data security and compliance are critical key considerations for organizations evaluating cloud services, the Microsoft Dynamics CRM Online Trust Center delivers to customers and potential customers high-level information about the privacy, transparency, independent verification and security features of Microsoft Dynamics CRM Online. This follows Microsoft Dynamics CRM Online's registration with the Cloud Security Alliance (CSA) Security, Trust & Assurance Registry (STAR) program, making Microsoft Dynamics CRM Online the first cloud CRM service to provide this level of transparency. Microsoft Dynamics CRM Online joins Microsoft Office 365 and Windows Azure with their Trust Centers and CSA STAR registrations, underscoring Microsoft's commitment to customers' data security and privacy.

"Customers have to be confident that their business solutions are meeting their high-level security features and privacy needs. The Microsoft Dynamics CRM Online Trust Center ensures transparency in how we operate Microsoft Dynamics CRM Online and handle these critical customer needs," said Dennis Michalis, general manager, Microsoft Dynamics CRM, Microsoft Corp. "Our customers need business solutions they can depend on, and the Microsoft Dynamics CRM Online Trust Center helps remove some of the anxiety they may have as they consider going to the cloud."

Gartner Inc. in the research report "Look Before You Leap Into Cloud Computing," published May 25, 2012, predicts that "by year-end 2016, more than 50 percent of Global 1000 companies will have stored customer-sensitive data in the public cloud." And it adds, "many enterprises are reaping great benefits from cloud computing, primarily in added business agility and cost savings.... However, as with any significant new form of technology, many eager new customers rush to take advantage of it before all the risks and risk mitigations have been fully explored."

"Enterprises should ensure that potential cloud service providers are trustworthy in areas of security, privacy and operational characteristics," said Gene Phifer, vice president distinguished analyst, Gartner. "Enterprises should perform due diligence on potential cloud service providers through the use of emerging cloud standards, certifications, cloud services brokers, questionnaires and interviews, and by generally 'doing your homework.' Transparency in a cloud vendor is key and security should be as big of a concern with online deployments as with on-premises deployments."

Designed to offer the performance, scalability, security and service levels organizations expect, Microsoft Dynamics CRM Online has built-in capabilities for compliance with a wide range of regulations and privacy mandates, including EU Safe Harbor, EU Model Clauses, ISO 27001, SSAE 16 SOC 1 Type II, and HIPAA-HITECH.

The Microsoft Dynamics CRM Online Trust Center is available at http://crm.dynamics.com/trust-center. Those who want to follow and engage with the Microsoft Dynamics CRM Twitter community can do so at @MSDynamicsCRM, using #MSDYNCRM and #CRM2011.

About Microsoft Dynamics

Microsoft Dynamics solutions empower your people to be more productive and your systems to last longer and scale as your business grows, while enabling you to derive the insights necessary to respond quickly in an ever-changing world of business.

About Microsoft

Founded in 1975, Microsoft (Nasdaq "MSFT") is the worldwide leader in software, services and solutions that help people and businesses realize their full potential.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-8142
Published: 2014-12-20
Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.20, and 5.6.x before 5.6.4 allows remote attackers to execute arbitrary code via a crafted unserialize call that leverages improper handling of duplicate keys w...

CVE-2013-4440
Published: 2014-12-19
Password Generator (aka Pwgen) before 2.07 generates weak non-tty passwords, which makes it easier for context-dependent attackers to guess the password via a brute-force attack.

CVE-2013-4442
Published: 2014-12-19
Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.

CVE-2013-7401
Published: 2014-12-19
The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by use of the OPTIONS method.

CVE-2014-2026
Published: 2014-12-19
Cross-site scripting (XSS) vulnerability in the search functionality in United Planet Intrexx Professional before 5.2 Online Update 0905 and 6.x before 6.0 Online Update 10 allows remote attackers to inject arbitrary web script or HTML via the request parameter.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Join us Wednesday, Dec. 17 at 1 p.m. Eastern Time to hear what employers are really looking for in a chief information security officer -- it may not be what you think.