SlideShare a Scribd company logo
SharePoint Governance: Impacts of Moving to the Cloud
SharePoint Governance:
Impacts of Moving to the Cloud


What we’ll cover today:

• Cloud Strategy: Office 365 & SharePoint Online

• Important Considerations for Moving to the Cloud

• Investments already made in SharePoint

• Impacts to Data Sovereignty and Regulatory
  Compliance
About   Christian Buckley,
        Director of Product Evangelism at Axceler

        • Microsoft MVP for SharePoint Server

        • Prior to Axceler, worked for Microsoft, part of the Microsoft Managed
          Services team (now Office365-Dedicated) and worked as a consultant
          in the areas of software, supply chain, grid technology, and
          collaboration

        • Co-founded and sold a software company to Rational Software.
          At E2open, helped design, build, and deploy a SharePoint-like
          collaboration platform (Collaboration Manager), onboarding
          numerous high-tech manufacturing companies, including
          Hitachi, Matsushita, Cisco, and Seagate

        • Co-authored ‘Microsoft SharePoint 2010: Creating and Implementing
          Real-World Projects’ link (MS Press) and 3 books on software
          configuration management.


            Twitter: @buckleyplanet   Blog: buckleyplanet.com   Email: cbuck@axceler.com
Axceler Overview
• Improving Collaboration since 2007
•   Mission: To enable enterprises to simplify, optimize, and
    secure their collaborative platforms
•   Delivered award-winning administration and migration
    software since 1994, for SharePoint since 2007
•   Over 3,000 global customers

• Dramatically improve the management
  of SharePoint
•   Innovative products that improve security, scalability,
    reliability, “deployability”
•   Making IT more effective and efficient and lower the total
    cost of ownership

• Focus on solving specific SharePoint
  problems (Administration & Migration)
•   Coach enterprises on SharePoint best practices
•   Give administrators the most innovative tools available
•   Anticipate customers’ needs
•   Deliver best of breed offerings
•   Stay in lock step with SharePoint development and market trends
About   Antonio Maio,
        Senior Product Manager at TITUS

        • Microsoft MVP for SharePoint Server

        • Senior Product Manager bringing over 20 years of experience in both
          software development and product management to TITUS.

        • Antonio's background includes formal education and experience in
          cryptography, public key infrastructure and information security, and
          he previously held positions at Corel, Entrust, and several Microsoft
          partner organizations. His broad knowledge and experience with
          Microsoft SharePoint extends over the last 8 years and centers
          particularly around solving security challenges while at the same time
          helping customers share the right information with the right people.


           Twitter: @antoniomaio2   Blog: trustsharepoint.com   Email: antonio.maio@titus.com
TITUS Overview
• Data Security & Classification Market Leader
 • Over 500 Enterprise Customers
 • Over 2 Million Users Deployed
 • Customers across Government, Military and Commercial Sectors

• Enhance SharePoint Security
 • Ensure the right people access the right information in SharePoint

• Email and Document Marking
 • Ensure every email is classified and protectively marked before it is sent
 • Ensure every document is classified and protectively marked

• Data Loss Prevention
 • Prevent inadvertent disclosure of sensitive information
 • User-driven DLP strategy that starts with the user
Our goal today:

To help you fill in
some of the pieces of
your planning strategy
for the cloud
According to



43%  Growth of enterprise spending
     on cloud in 2012


$6.1 billion           Total spend last year


48%  Expected growth of enterprise
     spending on cloud in 2013


$9 billion         Spend expected this year
What is driving cloud
adoption?


Data anytime, anywhere.

It’s all about self-service.

Bring your own device.

Everything is social.

Built for the business user, not IT.
Why the cloud is becoming
important to SharePoint
customers
As SharePoint continues to expand its
footprint, companies are demanding flexible
architectures to help them better meet internal and
external collaboration needs
 • Reducing costs
 • Reducing headcount
 • Doing more with less
 • Focusing less on traditional IT activities and more on
   activities that will help drive the business forward
Microsoft in the Cloud

• Office 365 and SharePoint Online

• Microsoft’s solution for Cloud based collaboration
   • Includes SharePoint, Yammer, Exchange, Lync, Office Suite, etc.

• Businesses collaborate from virtually anywhere

• World-class hosting and reliability
   • Avoid overhead in managing your own infrastructure
Benefits
Office 365 & SharePoint
Online
• Low barrier & cost to entry

• Pay per use service plans

• Costs shift from CAPEX to OPEX

• Assurance on scale and high availability

• Professionally managed data center, 24x7 support

• Latest and Greatest - software is always up to date
Contrast
Traditional SharePoint On-
Premise
• Manage own infrastructure/servers

• Some part of the business owns or focusses on IT

• Upgrades can be time consuming and costly

• Clear delineation between data ownership &
  management

• Clear control over business information
Considerations for
SharePoint Online
Customizations
• Microsoft has introduced the “App Model”
   • New to Microsoft Office 2013 and SharePoint 2013
   • Works On-Premise and in Office 365 SharePoint Online
Considerations for
SharePoint Online
Customizations
• Benefits
   • Enhance SharePoint & Office to solve specific
     business problems

   • Flexible deployment models
      • Restrict access to server resources
        to ensure high-availability
      • Replaces sandbox solutions

   • Microsoft App Marketplace
Risks with the
 cloud model
Hang On!
Let’s talk about some real world scenarios
What about my existing
investment in SharePoint?
• Most SharePoint deployments have included
  customizations to meet critical business needs
   •   User Management & Administration
   •   Security and Compliance
   •   Auditing, Reporting, Alerting
   •   User Adoption, Records
   •   Branding, etc…


• Consider the business
  problems you’ve already
  invested in solving
Maturity of the Office365
platform
Managing on prem, the cloud, and hybrid:
Permissions Management

 •   Perform regular security checks across your
     farm, down to the document level
 •   Proactively review, delete, and reassign user
     permissions as needed
 •   Clean up users who are no longer in
     Active Directory but are in SharePoint
 •   Review SharePoint groups
 •   Have a process to backup and restore
     permissions
 •   Document site permissions (roles) so that its
     easier to duplicate them for new employees
 •   Monitor SharePoint licensing
Managing on prem, the cloud, and hybrid:
Content & Storage

 •   Monitor and track the growth of sites
     for better planning, especially with
     migrations
 •   Analyze web part usage to determine
     which sites are using which web parts
 •   Understand and manage SharePoint
     features
 •   Ensure consistent branding and behavior:
     site themes, quotas, regional settings, etc.
Managing on prem, the cloud, and hybrid:
Usage and Activity trends

 •   Analyze activity down to the site, page, and
     document level
 •   Identify who is accessing which documents, including
     details on that activity (i.e. checking in a
     document, editing a document, or just viewing a
     document’s properties)
 •   Isolate sites that are no longer needed and
     delete them
 •   Compare activity from the past to help
     anticipate the future
 •   Find sites with the most or least activity
Managing on prem, the cloud, and hybrid:
Reorganizing your farm

•   Proactively manage architecture of your site
    collections, sites, lists, libraries, folders and items
    within your farm or across farms
•   Have a plan for moving content and
    structure from test environment to
    production environment
•   Understand impacts due to
    architectural changes or
    business changes
Consider the Business Problem:
Security and Compliance
• Impacts to Governments, Intelligence
  Community, Regulated industries
• SharePoint has great built in security and
  compliance capabilities
   • At scale, management of security
     can be challenging
   • Specific industries have strict
     regulations on users accessing
     certain types of information
Consider the Business Problem:
Security and Compliance
• 3rd SharePoint applications to
  automate & enhance security




                            * AIIM report: Extending SharePoint Enterprise Security
Data Sovereignty


• Where data lives matters!
   • Once information is sent across borders, it’s difficult,
     if not impossible, to control
• Impacts to government and regulated industries
   • Governments need to ask “Where is my citizens’ data?”
   • What are the impacts on citizen data (PII, PHI)?
   • Do I have complete control over my data?
• How do we solve this issue?
Regulatory Compliance



• Industries need to comply with regulations –
   ITAR, HIPAA, ISO 27001, PCI DSS, PII, etc…
    •   ITAR regulations - restricted access control on controlled
        information based on user attributes
    •   HIPAA regulations address security and privacy of health data
    •   ISO27001 regulations are formal ISO specification to bring
        information security under explicit management control
Regulatory Compliance:
Consider ITAR
• ITAR – International Trade in Arms Regulations
    • Strict obligations dealing with international trade in weaponry
    • Which users can access specific controlled data, the citizenship of
      those users, the physical location of those users, etc.

• Office 365 is making good progress
    •   FISMA awarded, Certified under EU Safe Harbor, EU Model Clauses
    •   Data Processing Agreement (DPA) for customer data privacy
    •   FERPA, HIPAA BAA, HITEC requirements supported
    •   ITAR service plan available (variation of O365 Dedicated Plans)

Devil is in the details…
Do the certifications go far enough to meet your business needs?
Will the way they’re enforced fit with your organization?
Understand the risks




                       and develop a
                       plan
Self Quiz
As you prepare to move key
workloads to the cloud, here
are some governance
questions to ask yourself:
• What happens to your existing
  reporting and metrics? Do the
  same KPIs apply to your new
  cloud components, or do they
  need to be reevaluated?
• Are there any changes to your
  ability to manage permissions
  across your on-premises and
  cloud components? Are the
  methods different?
Self Quiz
• Do your existing policies remain
  in effect, or do you need to adjust
  for two models?
• Can you maintain visibility into
  your information architecture
  and the Managed Metadata in
  SharePoint across all farms, or
  granularly within individual sites?
• Are you able to track storage
  usage across all sites and
  site collections?
Self Quiz
• What happens to your auditing
  and compliance monitoring
  capability? Can you still see what
  is being accessed, and by whom?
• With your new social
  capabilities, how much visibility
  do you have into how users are
  interacting, where content is
  being shared, and how well
  collaboration is being achieved?
Self Quiz
• If moving content, sites and users
  between platforms, how much
  visibility will you have around
  storage, content database
  reports, inactive
  users, administrative cleanup of
  orphaned users?
• Are you able to setup
  management policies and
  procedures that span the
  various systems? Are you able
  to organize and automate
  complex preventive and
  responsive actions?
http://tinyurl.com/SPgmb




                                         http://tinyurl.com/d62j3nl
http://tinyurl.com/SPga4hd
Thank you!
  cbuck@axceler.com                  antonio.maio@titus.com
  @buckleyplanet                     @antoniomaio2
  www.Axceler.com                    www.TITUS.com
                 presentations       http://www.slideshare.net/AntonioMaio2/
                 blog                http://www.trustsharepoint.com
                 book                http://www.titus.com/blog
                 governance4hybrid

More Related Content

PPTX
Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
PPTX
Beyond the hype: Management and Governance for Office 365
PPTX
Office 365: Is Governance Affected and Where Do We Start?
PPTX
Office365 Governance Is Changing!!
PPTX
SharePoint Governance: Impacts of Moving to the Cloud
PPTX
Governance - O365 How It's Affected & Where Do I Start
PPTX
M365 edrm information management strategy
PPTX
Unleashing the Power of Office 365
Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
Beyond the hype: Management and Governance for Office 365
Office 365: Is Governance Affected and Where Do We Start?
Office365 Governance Is Changing!!
SharePoint Governance: Impacts of Moving to the Cloud
Governance - O365 How It's Affected & Where Do I Start
M365 edrm information management strategy
Unleashing the Power of Office 365

What's hot (20)

PPTX
Office 365: Is Governance Affected and Where Do We Start? (SPS Charlotte)
PPTX
Windows Azure for IT Pros
PPTX
Governance in o365 share point online. yes, you can and yes, you should
PPTX
Softchoice & Microsoft: Public Cloud Security Webinar
PPTX
Process-Centric Governance and Information Architecture
PDF
Andy Malone - Microsoft office 365 security deep dive
PPTX
Why Use Add ins with SharePoint and SharePoint Online? Webinar
PPTX
Understanding Identity Management with Office 365
PPTX
Addvantum Oracle Profile OFMW
PPTX
The art of information architecture in Office 365
PDF
5 steps to get started with effective content governance strategy and how Off...
PDF
Managing Innovation Using Content Management and Workflow
PDF
Best Practices for a Successful SharePoint Migration or Upgrade to the Cloud
PPTX
Office 365 and using SharePoint Online
PDF
What You Need to Know Before Upgrading to SharePoint 2013
PPTX
Cross Process Governance: How to Balance Agility & Compliance
PDF
Nuts and Bolts of Building Compliance Process with Nintex and SharePoint 2013
PPTX
Office 365 Migration Planning
PPTX
Office 365 Integration Options - SharePoint Fest 2012
PDF
The future of managed meta data
Office 365: Is Governance Affected and Where Do We Start? (SPS Charlotte)
Windows Azure for IT Pros
Governance in o365 share point online. yes, you can and yes, you should
Softchoice & Microsoft: Public Cloud Security Webinar
Process-Centric Governance and Information Architecture
Andy Malone - Microsoft office 365 security deep dive
Why Use Add ins with SharePoint and SharePoint Online? Webinar
Understanding Identity Management with Office 365
Addvantum Oracle Profile OFMW
The art of information architecture in Office 365
5 steps to get started with effective content governance strategy and how Off...
Managing Innovation Using Content Management and Workflow
Best Practices for a Successful SharePoint Migration or Upgrade to the Cloud
Office 365 and using SharePoint Online
What You Need to Know Before Upgrading to SharePoint 2013
Cross Process Governance: How to Balance Agility & Compliance
Nuts and Bolts of Building Compliance Process with Nintex and SharePoint 2013
Office 365 Migration Planning
Office 365 Integration Options - SharePoint Fest 2012
The future of managed meta data
Ad

Viewers also liked (20)

PPSX
The Steps to Effective SharePoint Governance
PDF
Cloud Computing e Modelli di Business
PDF
Marlabs Capabilities Overview: Microsoft SharePoint Services
PDF
Cloud Computing - La nuova era dell\’ICT
PPTX
Infrastructure Best Practices for SharePoint On-Premises presented by Michael...
PPT
Cloud Computing Economia Numeri Mercato
PPTX
SharePoint Best Practice and the Cloud
PPT
SharePoint Governance: From Chaos to Success in 10 Steps
PPT
Cloud computing (Andrea Cavicchini)
PPTX
Ultimate SharePoint 2013 Infrastructure Best Practices Session - SPKSLO 2012
PPTX
Adopting SharePoint online or on premise - sps toronto
PPTX
Basic concept of pki
PPTX
Cloud computing and impact on the business
PPT
PKI and Applications
PPTX
SharePoint 2016 IT Preview
PPTX
Pki for dummies
PPTX
Kerberos : An Authentication Application
PPTX
Kerberos Authentication Protocol
PDF
Business Case for SharePoint and Office 365
PPTX
SharePoint Overview
The Steps to Effective SharePoint Governance
Cloud Computing e Modelli di Business
Marlabs Capabilities Overview: Microsoft SharePoint Services
Cloud Computing - La nuova era dell\’ICT
Infrastructure Best Practices for SharePoint On-Premises presented by Michael...
Cloud Computing Economia Numeri Mercato
SharePoint Best Practice and the Cloud
SharePoint Governance: From Chaos to Success in 10 Steps
Cloud computing (Andrea Cavicchini)
Ultimate SharePoint 2013 Infrastructure Best Practices Session - SPKSLO 2012
Adopting SharePoint online or on premise - sps toronto
Basic concept of pki
Cloud computing and impact on the business
PKI and Applications
SharePoint 2016 IT Preview
Pki for dummies
Kerberos : An Authentication Application
Kerberos Authentication Protocol
Business Case for SharePoint and Office 365
SharePoint Overview
Ad

Similar to SharePoint Governance: Impacts of Moving to the Cloud (20)

PPTX
SharePoint 2013 Migration - Your 5 Rules for Success
PPTX
Risk Management in SharePoint Governance
PPTX
The Role of Reporting in Governance
PDF
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
PDF
Dell share point biwug
PPTX
Law & Order: Content Governance Strategies by Chrisitan Buckley - SPTechCon
PDF
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
PDF
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
PPTX
SharePoint Online vs. On-Premise
PDF
Share Upgrading and Migrating to SharePoint 2016 Like a Pro
PPTX
Don't Just Migrate: Transform Your SharePoint Environment - DevConnections Or...
PPTX
Tactical Governance Planning for a Hybrid Environment
PDF
SharePoint 2013 planning consideration
PDF
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
PPTX
SharePoint 2063: The Future of SharePoint Governance
PPT
D Cornell Securing Share Point
PPTX
10 Best SharePoint Features You’ve Never Used #SPC_ORG
PPTX
Best practices for security and governance in share point 2013 published
PPTX
Case study - Migration to office 365 from SharePoint 2010 spsclt17
PPTX
Share Point Sat Share Point 2010 And Content Migration
SharePoint 2013 Migration - Your 5 Rules for Success
Risk Management in SharePoint Governance
The Role of Reporting in Governance
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
Dell share point biwug
Law & Order: Content Governance Strategies by Chrisitan Buckley - SPTechCon
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
SharePoint Online vs. On-Premise
Share Upgrading and Migrating to SharePoint 2016 Like a Pro
Don't Just Migrate: Transform Your SharePoint Environment - DevConnections Or...
Tactical Governance Planning for a Hybrid Environment
SharePoint 2013 planning consideration
Microsoft 365 Office A Comprehensive SharePoint 2024 Guide for Beginners and ...
SharePoint 2063: The Future of SharePoint Governance
D Cornell Securing Share Point
10 Best SharePoint Features You’ve Never Used #SPC_ORG
Best practices for security and governance in share point 2013 published
Case study - Migration to office 365 from SharePoint 2010 spsclt17
Share Point Sat Share Point 2010 And Content Migration

More from Christian Buckley (20)

PPTX
M365 Productivity Tips "Melee in Minneapolis"
PDF
10 Essentials for Effective Teams Governance
PPTX
Understanding the Culture of Collaboration in your Organization
PPTX
20 Microsoft Teams Productivity Tips that You've Probably Never Used (But Sho...
PDF
20 Microsoft 365 Productivity Tips
PDF
How to Leverage the Channel to Build Your Business
PDF
How Organizations Can Prepare for Microsoft Viva
PDF
20 Need-to-Know Microsoft Teams Productivity Tips
PDF
Do I Use Planner, Project Online, or Azure DevOps?
PDF
20 Microsoft 365 Productivity Tips
PPTX
20 M365 Productivity Tips That You've Probably Never Used (But Should)
PPTX
Microsoft 365 Productivity Tips "December Dust-Up"
PPTX
Microsoft 365 Productivity Tips "November Nexus"
PPTX
Microsoft 365 Productivity Tips "October Ousting"
PPTX
20 Microsoft 365 Productivity Tips That You've Probably Never Used (But Should)
PPTX
Ordering the Chaos: Combatting Teams and SharePoint Content Sprawl
PDF
Building a More Diverse Workforce in the Partner Channel
PPTX
Microsoft 365 Productivity Tips "June Jam"
PPTX
20 More Tips to Improve Productivity with Microsoft Teams
PPTX
20 Microsoft 365 Tips You've Probably Never Used (But Should)
M365 Productivity Tips "Melee in Minneapolis"
10 Essentials for Effective Teams Governance
Understanding the Culture of Collaboration in your Organization
20 Microsoft Teams Productivity Tips that You've Probably Never Used (But Sho...
20 Microsoft 365 Productivity Tips
How to Leverage the Channel to Build Your Business
How Organizations Can Prepare for Microsoft Viva
20 Need-to-Know Microsoft Teams Productivity Tips
Do I Use Planner, Project Online, or Azure DevOps?
20 Microsoft 365 Productivity Tips
20 M365 Productivity Tips That You've Probably Never Used (But Should)
Microsoft 365 Productivity Tips "December Dust-Up"
Microsoft 365 Productivity Tips "November Nexus"
Microsoft 365 Productivity Tips "October Ousting"
20 Microsoft 365 Productivity Tips That You've Probably Never Used (But Should)
Ordering the Chaos: Combatting Teams and SharePoint Content Sprawl
Building a More Diverse Workforce in the Partner Channel
Microsoft 365 Productivity Tips "June Jam"
20 More Tips to Improve Productivity with Microsoft Teams
20 Microsoft 365 Tips You've Probably Never Used (But Should)

Recently uploaded (20)

PDF
Approach and Philosophy of On baking technology
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
Empathic Computing: Creating Shared Understanding
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
cuic standard and advanced reporting.pdf
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Electronic commerce courselecture one. Pdf
PPTX
Cloud computing and distributed systems.
PDF
Network Security Unit 5.pdf for BCA BBA.
Approach and Philosophy of On baking technology
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Diabetes mellitus diagnosis method based random forest with bat algorithm
NewMind AI Monthly Chronicles - July 2025
Empathic Computing: Creating Shared Understanding
Advanced methodologies resolving dimensionality complications for autism neur...
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Mobile App Security Testing_ A Comprehensive Guide.pdf
cuic standard and advanced reporting.pdf
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Per capita expenditure prediction using model stacking based on satellite ima...
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Unlocking AI with Model Context Protocol (MCP)
Digital-Transformation-Roadmap-for-Companies.pptx
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Electronic commerce courselecture one. Pdf
Cloud computing and distributed systems.
Network Security Unit 5.pdf for BCA BBA.

SharePoint Governance: Impacts of Moving to the Cloud

  • 2. SharePoint Governance: Impacts of Moving to the Cloud What we’ll cover today: • Cloud Strategy: Office 365 & SharePoint Online • Important Considerations for Moving to the Cloud • Investments already made in SharePoint • Impacts to Data Sovereignty and Regulatory Compliance
  • 3. About Christian Buckley, Director of Product Evangelism at Axceler • Microsoft MVP for SharePoint Server • Prior to Axceler, worked for Microsoft, part of the Microsoft Managed Services team (now Office365-Dedicated) and worked as a consultant in the areas of software, supply chain, grid technology, and collaboration • Co-founded and sold a software company to Rational Software. At E2open, helped design, build, and deploy a SharePoint-like collaboration platform (Collaboration Manager), onboarding numerous high-tech manufacturing companies, including Hitachi, Matsushita, Cisco, and Seagate • Co-authored ‘Microsoft SharePoint 2010: Creating and Implementing Real-World Projects’ link (MS Press) and 3 books on software configuration management. Twitter: @buckleyplanet Blog: buckleyplanet.com Email: cbuck@axceler.com
  • 4. Axceler Overview • Improving Collaboration since 2007 • Mission: To enable enterprises to simplify, optimize, and secure their collaborative platforms • Delivered award-winning administration and migration software since 1994, for SharePoint since 2007 • Over 3,000 global customers • Dramatically improve the management of SharePoint • Innovative products that improve security, scalability, reliability, “deployability” • Making IT more effective and efficient and lower the total cost of ownership • Focus on solving specific SharePoint problems (Administration & Migration) • Coach enterprises on SharePoint best practices • Give administrators the most innovative tools available • Anticipate customers’ needs • Deliver best of breed offerings • Stay in lock step with SharePoint development and market trends
  • 5. About Antonio Maio, Senior Product Manager at TITUS • Microsoft MVP for SharePoint Server • Senior Product Manager bringing over 20 years of experience in both software development and product management to TITUS. • Antonio's background includes formal education and experience in cryptography, public key infrastructure and information security, and he previously held positions at Corel, Entrust, and several Microsoft partner organizations. His broad knowledge and experience with Microsoft SharePoint extends over the last 8 years and centers particularly around solving security challenges while at the same time helping customers share the right information with the right people. Twitter: @antoniomaio2 Blog: trustsharepoint.com Email: antonio.maio@titus.com
  • 6. TITUS Overview • Data Security & Classification Market Leader • Over 500 Enterprise Customers • Over 2 Million Users Deployed • Customers across Government, Military and Commercial Sectors • Enhance SharePoint Security • Ensure the right people access the right information in SharePoint • Email and Document Marking • Ensure every email is classified and protectively marked before it is sent • Ensure every document is classified and protectively marked • Data Loss Prevention • Prevent inadvertent disclosure of sensitive information • User-driven DLP strategy that starts with the user
  • 7. Our goal today: To help you fill in some of the pieces of your planning strategy for the cloud
  • 8. According to 43% Growth of enterprise spending on cloud in 2012 $6.1 billion Total spend last year 48% Expected growth of enterprise spending on cloud in 2013 $9 billion Spend expected this year
  • 9. What is driving cloud adoption? Data anytime, anywhere. It’s all about self-service. Bring your own device. Everything is social. Built for the business user, not IT.
  • 10. Why the cloud is becoming important to SharePoint customers As SharePoint continues to expand its footprint, companies are demanding flexible architectures to help them better meet internal and external collaboration needs • Reducing costs • Reducing headcount • Doing more with less • Focusing less on traditional IT activities and more on activities that will help drive the business forward
  • 11. Microsoft in the Cloud • Office 365 and SharePoint Online • Microsoft’s solution for Cloud based collaboration • Includes SharePoint, Yammer, Exchange, Lync, Office Suite, etc. • Businesses collaborate from virtually anywhere • World-class hosting and reliability • Avoid overhead in managing your own infrastructure
  • 12. Benefits Office 365 & SharePoint Online • Low barrier & cost to entry • Pay per use service plans • Costs shift from CAPEX to OPEX • Assurance on scale and high availability • Professionally managed data center, 24x7 support • Latest and Greatest - software is always up to date
  • 13. Contrast Traditional SharePoint On- Premise • Manage own infrastructure/servers • Some part of the business owns or focusses on IT • Upgrades can be time consuming and costly • Clear delineation between data ownership & management • Clear control over business information
  • 14. Considerations for SharePoint Online Customizations • Microsoft has introduced the “App Model” • New to Microsoft Office 2013 and SharePoint 2013 • Works On-Premise and in Office 365 SharePoint Online
  • 15. Considerations for SharePoint Online Customizations • Benefits • Enhance SharePoint & Office to solve specific business problems • Flexible deployment models • Restrict access to server resources to ensure high-availability • Replaces sandbox solutions • Microsoft App Marketplace
  • 16. Risks with the cloud model
  • 17. Hang On! Let’s talk about some real world scenarios
  • 18. What about my existing investment in SharePoint? • Most SharePoint deployments have included customizations to meet critical business needs • User Management & Administration • Security and Compliance • Auditing, Reporting, Alerting • User Adoption, Records • Branding, etc… • Consider the business problems you’ve already invested in solving
  • 19. Maturity of the Office365 platform
  • 20. Managing on prem, the cloud, and hybrid: Permissions Management • Perform regular security checks across your farm, down to the document level • Proactively review, delete, and reassign user permissions as needed • Clean up users who are no longer in Active Directory but are in SharePoint • Review SharePoint groups • Have a process to backup and restore permissions • Document site permissions (roles) so that its easier to duplicate them for new employees • Monitor SharePoint licensing
  • 21. Managing on prem, the cloud, and hybrid: Content & Storage • Monitor and track the growth of sites for better planning, especially with migrations • Analyze web part usage to determine which sites are using which web parts • Understand and manage SharePoint features • Ensure consistent branding and behavior: site themes, quotas, regional settings, etc.
  • 22. Managing on prem, the cloud, and hybrid: Usage and Activity trends • Analyze activity down to the site, page, and document level • Identify who is accessing which documents, including details on that activity (i.e. checking in a document, editing a document, or just viewing a document’s properties) • Isolate sites that are no longer needed and delete them • Compare activity from the past to help anticipate the future • Find sites with the most or least activity
  • 23. Managing on prem, the cloud, and hybrid: Reorganizing your farm • Proactively manage architecture of your site collections, sites, lists, libraries, folders and items within your farm or across farms • Have a plan for moving content and structure from test environment to production environment • Understand impacts due to architectural changes or business changes
  • 24. Consider the Business Problem: Security and Compliance • Impacts to Governments, Intelligence Community, Regulated industries • SharePoint has great built in security and compliance capabilities • At scale, management of security can be challenging • Specific industries have strict regulations on users accessing certain types of information
  • 25. Consider the Business Problem: Security and Compliance • 3rd SharePoint applications to automate & enhance security * AIIM report: Extending SharePoint Enterprise Security
  • 26. Data Sovereignty • Where data lives matters! • Once information is sent across borders, it’s difficult, if not impossible, to control • Impacts to government and regulated industries • Governments need to ask “Where is my citizens’ data?” • What are the impacts on citizen data (PII, PHI)? • Do I have complete control over my data? • How do we solve this issue?
  • 27. Regulatory Compliance • Industries need to comply with regulations – ITAR, HIPAA, ISO 27001, PCI DSS, PII, etc… • ITAR regulations - restricted access control on controlled information based on user attributes • HIPAA regulations address security and privacy of health data • ISO27001 regulations are formal ISO specification to bring information security under explicit management control
  • 28. Regulatory Compliance: Consider ITAR • ITAR – International Trade in Arms Regulations • Strict obligations dealing with international trade in weaponry • Which users can access specific controlled data, the citizenship of those users, the physical location of those users, etc. • Office 365 is making good progress • FISMA awarded, Certified under EU Safe Harbor, EU Model Clauses • Data Processing Agreement (DPA) for customer data privacy • FERPA, HIPAA BAA, HITEC requirements supported • ITAR service plan available (variation of O365 Dedicated Plans) Devil is in the details… Do the certifications go far enough to meet your business needs? Will the way they’re enforced fit with your organization?
  • 29. Understand the risks and develop a plan
  • 30. Self Quiz As you prepare to move key workloads to the cloud, here are some governance questions to ask yourself: • What happens to your existing reporting and metrics? Do the same KPIs apply to your new cloud components, or do they need to be reevaluated? • Are there any changes to your ability to manage permissions across your on-premises and cloud components? Are the methods different?
  • 31. Self Quiz • Do your existing policies remain in effect, or do you need to adjust for two models? • Can you maintain visibility into your information architecture and the Managed Metadata in SharePoint across all farms, or granularly within individual sites? • Are you able to track storage usage across all sites and site collections?
  • 32. Self Quiz • What happens to your auditing and compliance monitoring capability? Can you still see what is being accessed, and by whom? • With your new social capabilities, how much visibility do you have into how users are interacting, where content is being shared, and how well collaboration is being achieved?
  • 33. Self Quiz • If moving content, sites and users between platforms, how much visibility will you have around storage, content database reports, inactive users, administrative cleanup of orphaned users? • Are you able to setup management policies and procedures that span the various systems? Are you able to organize and automate complex preventive and responsive actions?
  • 34. http://tinyurl.com/SPgmb http://tinyurl.com/d62j3nl http://tinyurl.com/SPga4hd
  • 35. Thank you! cbuck@axceler.com antonio.maio@titus.com @buckleyplanet @antoniomaio2 www.Axceler.com www.TITUS.com presentations http://www.slideshare.net/AntonioMaio2/ blog http://www.trustsharepoint.com book http://www.titus.com/blog governance4hybrid

Editor's Notes

  • #2: [Christian]
  • #3: [Antonio]
  • #5: [Christian]
  • #7: [Antonio]
  • #8: [Christian intro]- Lead into discussion – ask Antonio question about what seeing with customers
  • #9: [Christian]
  • #10: [Christian][Antonio jump in if have comments on the bullets]
  • #11: [Christian][Antonio jump in if have comments on the bullets]
  • #12: [Antonio][Christian jump in with some reinforcing comments]Businesses can collaborate from virtually anywhereAccess across multiple devicesEasy user provisioningFlexibility for hybrid environmentsMicrosoft provides world class hosting and reliability…Which allows organizations to avoid overhead of managing your own infrastructureEasy to manage and control your environmentEnterprise grade reliabilityPlan flexibility - One low monthly price for each user
  • #13: [Antonio]
  • #14: [Antonio][some discussion possibly – understand what you’re business really needs]- Its not about adopting the latest and greatest technology – its about doing what you’re business really needs
  • #15: [Christian starts off]Talk about what has changed between 2010 and 2013Moving from sandbox solution to app model
  • #16: [Antonio to start off][Christian to jump in with points…]Need to be realistic – the app model still needs some maturingWe do not have parity between the capabilities of on-premise solutions and the App modelYou need to understand what’s possible in detail so you can figure out which workloads you can really move to the app model and SharePoint Online
  • #17: [Christian]
  • #18: [Antonio]
  • #19: [Antonio to kick off…]
  • #20: [Christian to kick off]– can start with some of the limitations we’re seeing related to bringing our current customizations into the cloudPlatform is relatively newTalk about “online first” model – how does that impact the cadence in which releases will come to O365 in the futureCould talk about Yammer integration and what’s happening thereParity in the next 12 to 18 months
  • #21: [Christian]
  • #22: [Christian]
  • #23: [Christian]
  • #24: [Christian]
  • #25: [Antonio]- TITUS strengths- Impacts to Governments, Intelligence Community, Regulated industriesSharePoint has great built in security and compliance capabilitiesAt scale, management of security can be challengingSpecific industries have strict regulations on users accessing certain types of informationEnforcing restrictions are a requirement to regulatory compliance3rd SharePoint applications to automate securityAcross large amounts of contentAcross large user bases with diverse identities and clearances
  • #26: [Antonio]Impacts to Governments, Intelligence Community, Regulated industriesSharePoint has great built in security and compliance capabilitiesAt scale, management of security can be challengingSpecific industries have strict regulations on users accessing certain types of informationEnforcing restrictions are a requirement to regulatory compliance3rd SharePoint applications to automate securityAcross large amounts of contentAcross large user bases with diverse identities and clearances
  • #27: [Antonio]Where data actually lives matters!“Once information is sent across borders, it’s difficult, if not impossible, to control”Data is crossing borders and legislation of one country can affect who can access that dataSharePoint is heavily used in Government OrganizationsWhat are the impacts on citizen data (PII, PHI)?What if your data is being stored in China?Australian Government has big challenges with this because of where Office365 data centers are located in the region, which happens to be Singapore and Hong KongMost counties have rules and legislationabout where citizens data can be stored; and using cloud computing where your data can effectively be anywhere is going to be an issue for most governments. There are debates that need to happen around this - and its not only a question that’s technical in nature. Its an issue that needs to be driven from a legal and policy perspective as well. Regulated industries such as the banking industry (who also deal with privacy and security issues) resolved this years ago in relation to how credit card transactions and transfers can be done by consumers anywhere in the world.  As well, some progress is being made in this area with a recent announcement by the Windows Azure team at Microsoft with some new Geo-Location Related features. Developers building solutions on Windows Azure will now be able to choose which data centers their data and/or services are hosted in. This is great progress, and we hope to see similar capabilities making their way to other cloud based solutions in the future.
  • #28: [Antonio]Consider regulatory compliance. Enterprises are feeling greater and greater pressure to comply with the standards that are relevant to their business. There are many standards available to different industries, and the policies can be complex for end users to understand. Often our end users are not required to understand the intricacies of regulatory policies. However, even knowing which information may need to be controlled for compliance reasons can be a real challenge.
  • #29: [Antonio]Office 365 has made good progress in providing features to comply with such regulationsMicrosoft has gone to some serious lengths related to acquiring certifications for various regulatory compliance standards, including FISMA (moderate) level, CUI, ITARA specific service plan is available to commercial customers that have ITAR obligations, which includes the following security features:All ITAR-support plan customers receive their own dedicated service hardware, which is managed to the same FISMA-compliant standards as federal agency customers.All ITAR-support plan customer have their Office 365 service infrastructure hosted in U.S. data centers.Physical, logical, and network access controls ensure that only properly screened Microsoft support and operational personnel have access to Office 365 production systems for ITAR-support plans.Screening standards include validation of U.S. citizenship of all Microsoft support and operational staff before access is granted to Office 365 production systems for ITAR-support plans.Applies to: Exchange Online,SharePoint Online,Lync OnlineThe ITAR Support plan is a variation of the Office 365 dedicated plan for SharePoint Online & Exchange Online, and those dedicated plans typically are very expensive and require a minimum of 5000 users to qualify for a dedicated planMany agencies that are required to comply with ITAR are small engineering and defence contractorsSo for such organizations that may have a few hundred to a thousand employees the dedicated plans are not an option that’s available to them, but they still have the need to comply with such stringent regulations as ITAR
  • #30: [Christian]People attending a webinar on governance usually care a little more about what’s going on in the systemMajority of people that have governance on the mind, there are risks and concerns, there needs to be plans in place
  • #31: [Christian to start, and Antonio to do next one… go back and forth]
  • #35: [Christian]
  • #36: [Antonio to start; Christian to jump in]