SOA raises security worries

By Gemma Simpson, Special to ZDNet Asia
Wednesday, January 10, 2007 10:39 AM

Service-orientated architecture (SOA) technologies could open up a security-based can of worms as they begin to move beyond the walls of individual businesses, according to one analyst house.

Companies are happily trialing the technology internally but problems could crop up as there has been little discussion of the impact the new architecture will have when unleashed on the wider IT environment, according to the analysts.

The analyst house warned there is concern SOA might open up new gaps within IT systems, and that simply restricting access to authorized personnel via standard access-control mechanisms becomes impracticable in a service-oriented environment.

While the analyst house said SOA has "significant potential" to boost the value organizations derive from their IT investments, early adopters have also encountered problems around security, service performance, reliability and data management.

Mike Thompson, Butler Group business process management practice director told silicon.com the "major security concern" for companies implementing SOAs is how to protect their data as it is transmitted over a "completely loosely coupled" system.

Thompson said companies could be put off transferring data to the outside world via SOA in two to three years' time as the architecture would no longer be enclosed within an internal system, making it difficult to implement security measures.

Thompson added: "But any system is inherently insecure the moment you open it up to the outside world."

Despite this, companies are busy trialing SOA with more than one-sixth (17 per cent) of tech chiefs engaged in trials and more than one-third (36 per cent) weighing up whether to move to the new architecture, according to a Butler Group survey.

A lack of in-house expertise on SOAs was also named as one of the major barriers to the adoption of new architecture by the Butler Group.

A recent survey found nine out of 10 city bosses had not heard of the latest industry three-letter acronym.

A separate survey conducted last year by Springboard Research revealed that only 21 percent of CIOs in Australia, China, India and Singapore, were aware of the concept behind SOA.

Gemma Simpson of Silicon.com reported from London.


See also:  Web services
WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Common ways IT wastes money on development

Web Development

Examples include using developers as support staff and failing to calculate a project's ROI before giving it the go-ahead.


Read more »



  • Enterprise 2.0

    Vince Casarez, vice president of product management at Oracle, explains how Web 2.0 technologies, such as tags, wikis, and mash-ups, can be applied within an organization.
    Play video


  • Nehalem Architecture

    What makes next-generation Intel® Microarchitecture (Nehalem) such a superior successor?
    Play video

 
On demand CRM goes strategic
CRM technology has come of age, and is now able to align with your customer strategy and grow in step with your business.

» Learn more about Oracle’s CRM Solutions



Free the untapped potential of your IT infrastructure
Reduce bottlenecks to drive the efficiency and productivity of Business IT.
» Ultimate virtualization blade
» Scalable SAN solution
» Accelerate service delivery

Could this be the most critical budget for India?

Blog thumbnail

For business journalists in India, budget time is excitement time. It's like sports journos covering the Olympics. As a newspaper correspondent, I too had my fill of budget-time excitement. But..... by Swati Prasad

Read more »

Tags

  1. attack
  2. bank
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. u.s.
  19. viruses and worms
  20. web