15 Jan

ERP from the cloud: legal protection for cloud users

Despite all the innovative endeavours and developments in the cloud, the target user group often lacks the necessary information to decide on a solution (e.g. a ERP system) from the cloud. These are often issues that revolve around the extent to which customised configurations of the applications are possible, for example. Mostly, however, it is about the security of company data. The image of data being processed somewhere far out in the cloud makes most people shy away. How can data security be guaranteed for ERP from the cloud?

Versino Financial Suite for SAP Business One Finance

What matters in a legally compliant cloud service

Almost the most important criterion for a cloud solution in terms of the data protection is compliance with EU directives. All data that provides personal or factual information about a person or can be assigned to a person with appropriate effort is protected. Furthermore, the disclosure of such data by a company to third parties is subject to authorisation. As this authorisation is usually not given, the disclosure can be justified, for example, if it concerns Order data processing acts.

Cloud use is also normally considered commissioned data processing. In this case, however, the cloud provider becomes part of the company, which is why no data is transferred from a legal perspective. This means that the cloud user remains responsible for how the data is handled. However, cloud users are often unaware of exactly where their data is stored. However, this ignorance can be remedied by using appropriate monitoring or reporting tools.

However, it is best to contractually regulate the responsibility for the data. In particular, the legal content should be regulated. It is also important that cloud providers only do business in the European Economic Area, i.e. that no data is transferred across borders. There are exceptions for transfers with an appropriate level of data protection. However, a provider must be part of the Safe Harbour Agreement. This makes it possible to transfer data abroad.


The safeguard: Service Level Agreements for ERP from the cloud

Service Level Agreements (SLAs) are another way for Clous users to protect themselves. These can be included in the licence agreement or added as an attachment.
Included in the SLAs is the exact duration of the contract, including the cancellation periods and the type and scope of the services to be provided. The "service levels" are also defined. These are, for example, the response time, adherence to deadlines and availability. The measurement criteria, procedures and intervals for the service levels are also defined.
Last but not least, the consequences of SLA "breach of contract" are also listed.

In addition to security, it is an advantage for small and medium-sized companies in particular to use cloud solutions when it comes to security. While large companies usually have their own data centre to protect them in the event of security threats, smaller companies are not equipped accordingly, if only due to their financial resources. However, the IT infrastructure of a good cloud provider should always be up to date - simply because of the high demand for security.

Contact Versino
ERP_Cloud_Legal_Protection

Is SAP Business One Cloud Software?

Richard Duffy is an SAP Business One veteran and well-known expert for SAP SME software. He had the opportunity to ...
ERP_Cloud_Legal_Protection

The other SAP cloud

Anyone who is interested in the current ERP market knows that there is no way around offers from the data cloud ...
Bydesign S/4Hana

SAP Business ByDesign vs SAP S/4HANA Cloud

After years of development, SAP Business ByDesign has reached a high level of maturity in the SaaS ERP sector for medium-sized companies. SAP Business ByDesign seems to ...
ERP_Cloud_Legal_Protection

SAP Business One Cloud Migration Costs

When considering the cost of a SAP Business One Cloud migration, you have to go into detail to get a realistic view...
ERP_Cloud_Legal_Protection

Data secure in the cloud

In-house means more security. This is the misconception that many companies fall prey to. What is overlooked is that this money-saving mentality for software ...
cloud control center

New: SAP Business One Cloud Control Center video

Cloud computing should make life easier for your users. This also applies to the cloud version of SAP Business ...
Wird geladen …