Additionally, rampant misuse of cloud resources occurs due to technological vulnerability which spammers exploit by disclosing sensitive information greatly undermining data integrity. However, it is hypothesized that most users are well-trained on data usage and cannot over-exploit the RFID resources; this makes this threat a medium to low risk level. Despite the possibility of jumbling of information by individuals, the data may be de-encrypted making the stored information accessible thus ensuring data availability as well as accessibility.

Malicious insiders pose high risks to cloud networks since they exploit people and technological vulnerabilities. These group of individuals have unlimited access to stored information and accidental or planned exposure of these data can seriously affect data confidentiality and integrity. Besides, these individuals constantly violate stored data due to insufficient audit controls which may increase this risk.

Data loss and leakages falls under low, medium and high risk levels depending on the nature of lost and leaked data. This emanates from the abuse of system vulnerabilities with the outcome being loss of data confidentiality and integrity. Accidental or intentional loss of documents about the organization's history is considered low risk while leakage of financial records is a high risk level. However, data erasure and alteration makes some data inaccessible thus violating information integrity and availability.

Risk Management

Despite the numerous challenges present in the cloud computing world, these problems are easily solved via implementation of modern security controls tackling al
l security issues arising from the cloud architecture. The security controls initiated to maintain data security are discussed below.

The first security control involves creating user identity management procedures. According to this countermeasure, all authorized cloud resource users are issued with personal identification codes and passwords vital in identifying them whenever they access the platform. To ensure this, the firms will integrate customer identity management system with their own infrastructure, using SSO technology. This measure will help reduce identity theft thus minimizing information violation and potential loss of integrity and availability.

The next security countermeasure is concealing the cloud network resources via the use of strong encryption databases. This involves encryption of stored data and ensuring data handlers have limited access levels. The initiation of this measure will safeguard against imminent information infringement and ultimate shortfalls related to accessibility and confidentiality (Tyler, 2010).

In addition to security and system countermeasures, it recommended the organizations integrating cloud computing in their operations comply with stipulated regulations outlined by authorities managing and storing classified and sensitive data. The authorities whose code of practice should be given great consideration include Payment Card Industry Data Security Standard (PCIDSS), the Health Insurance Portability and Accountability Act (HIPAA), and the Sarbanes-Oxley Act, among others. In addition, the company offering cloud services is obliged to educate customers as well as employees on the cloud's regulations and ensure they oblige to them.


Since its inception, cloud computing has been of great help to several organizations; cloud platforms have reduced operation costs, increased data security and made data accessible to most individuals. However, constant equipment failures and human faults have led to vulnerabilities of cloud networks a factor that has necessitated establishment of adequate information security by these organizations. Despite the numerous challenges, the use of cloud computing is assisting several organizations maintain work efficiency and quality of software development, while keeping information secure (Edwards, 2011). Therefore, cloud technology is reliable and securely transmits data to remote users. In this regard, according to the paper, the challenges faced by the cloud infrastructure is not complex and is easily solved thus, organizations integrating RFID in their businesses are advised to continue using the system while upgrading the security to bring about increased data security. The paper presents a hypothetical situation with real examples but for practical implementation of the model outlined in this paper, further research should be conducted to initiate the best way in handling cloud computing related issues.


