With the accelerated adoption of cloud services, organizations face significant challenges related to security, data integrity, and business continuity when migrating their on-premises infrastructure to the cloud. This review aims to manage risks in the areas of information technology associated with IaaS migration for a company seeking to optimize and transform its technological resources to meet modern challenges and leverage emerging opportunities in the digital realm. In this context, data collection was conducted using the PRISMA methodology, along with the PICOC method to structure the search equation. In addition, a non-experimental, descriptive, and qualitative design corresponding to a systematic review without meta-analysis was used. Based on the inclusion and exclusion criteria defined from 2020 onwards, 250 open-access articles from the Scopus, MDPI, and ScienceDirect databases were selected. The results highlight the need for a strategic and adaptive approach that uses robust methodologies to ensure the security and availability of cloud services against current and future threats. The conclusion drawn is that the application of authentication enforcement (AMF), continuous monitoring, high-level encryption, effective methods such as resource virtualization, and dynamic virtual machine management ensure a secure transition. In addition, the lack of comprehensive research in this area highlights an opportunity for future research and methodological analysis, especially in relation to NIST cybersecurity standards.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Information Technology Risk Management Due to the Migration of Infrastructure to Cloud Services: A Systematic Review

  • Saul Valladares,
  • Wilfredo Ticona

摘要

With the accelerated adoption of cloud services, organizations face significant challenges related to security, data integrity, and business continuity when migrating their on-premises infrastructure to the cloud. This review aims to manage risks in the areas of information technology associated with IaaS migration for a company seeking to optimize and transform its technological resources to meet modern challenges and leverage emerging opportunities in the digital realm. In this context, data collection was conducted using the PRISMA methodology, along with the PICOC method to structure the search equation. In addition, a non-experimental, descriptive, and qualitative design corresponding to a systematic review without meta-analysis was used. Based on the inclusion and exclusion criteria defined from 2020 onwards, 250 open-access articles from the Scopus, MDPI, and ScienceDirect databases were selected. The results highlight the need for a strategic and adaptive approach that uses robust methodologies to ensure the security and availability of cloud services against current and future threats. The conclusion drawn is that the application of authentication enforcement (AMF), continuous monitoring, high-level encryption, effective methods such as resource virtualization, and dynamic virtual machine management ensure a secure transition. In addition, the lack of comprehensive research in this area highlights an opportunity for future research and methodological analysis, especially in relation to NIST cybersecurity standards.