CloudGate is the innovative SaaS solution for your cloud compliance. Risk assessment and approval of your cloud use cases have never been this fast. With CloudGate, you benefit from a central cloud use case register at the touch of a button, as well as numerous other advantages.
Product type: SaaS
Provider: microfin Unternehmensberatung GmbH
Website: https://www.microfin.de
The CloudGate onboarding process checks aspects of information security, data protection, and compliance for a variety of use cases, be it entire IaaS platforms or individual SaaS solutions. This process facilitates the identification and assessment of cloud risks. CloudGate supports your company in this with automated workflows as well as predefined and easily customizable checklists. Use cases can be managed and kept compliant during onboarding and throughout the entire lifecycle.
Use cases are inspected using predefined checklists. As a customer, you also have the option to store your own checklists. microfin provides entensive check catalogues, e.g. BSI C5:2020, AIC4, TISAX, as well checklists especially relevant for banks and insurance companies, includingDORA, EBA-LL, MaRisk, BAIT bzw. EIOPA-LL, MaGo, VAIT. There are regularly updated by microfin so that you are always up-to-date.
CloudGate also ensures a complete history of use case processing. The individual testing and release activities are continuously logged for each role. All use cases and reports can be exported at any time. Recurring test tasks can be assigned a reminder function and are always available in the cockpit/dashboard. The process is rounded off by approving the use cases with a digital signature.
Risk analyses with predefined checklists allow an easy yet thorough identification of risks. Customers can easily adapt the dimensions and classes of the risk matrix to their own risk management. Identified risks are backed up with mitigation measures, the implementation of which is tracked over time.
The registers (central register, outsourcing register, information register according to DORA, other customer-specific registers), use case related risk reports, as well as status overviews of mitigation measures guarantee an overview in the cloud-, outsourcing und AI-Zoo. Customer-specific applications, e.g. Service Now, Jira, SAP, etc. can easily be docked to CloudGate via a REST API. This avoids redundant data collection in different applications.
User groups and user roles enable the efficient management of access authorizations. Using user roles, such as Product Owner or Cloud Manager, the (testing) tasks of individual divisions can be mapped. Each user decides for themselves whether they want to work in German or English.
The need-to-know principle ensures that the decision as to whether a resource may be accessed is based solely upon the user's identity and organizational affiliation. Use case repositories provide easy access to use cases and their associated scenarios. Implemented tagging can be used to better assign use cases, costs, or any other relationships.