How to Get Started with Cloud Computing

Feb 7, 2011 | Cloud, Featured Articles

1. Get smart

Before making a move into the cloud, get educated on the principles and definitions of cloud computing, advises Johan Goossens, head of NATO’s Allied Command Transformation’s (ACT) Technology & Human Factors Branch in Norfolk, Va.

“We started in the summer of 2010 with educational efforts. We got ourselves smart on the terminology, sitting down with vendor partners,” he says.

2. Know your apps

“Before we got started with the cloud, we made sure that we had a good grasp of our application inventory,” says Pedro Villalba, CTO at EmblemHealth, a health insurance provider in New York.

“We identified which applications are driving the business, and then determined which ones need standalone environments. We found a lot of applications, because of the way they’ve been built, don’t lend themselves to be used in a cloud strategy unless they’re completely reengineered,” he adds.

Once he had wrapped up the application inventory, Villalba says he had a clear understanding of what applications would work well in a virtualized cloud environment.

3. Put together a sample business case

“Cloud is not magic. It’s not a silver bullet or a panacea. It’s an implementation of technology with certain advantages and characteristics,” says Mark White, CTO for Deloitte Consulting’s technology practice. “Like in any implementation, particularly when you’re trialing activities, we recommend CIOs do a business case as a first experience.”

The good news is, the public cloud lends itself to “sticking a toe in the water and doing a first department, geography or use case, as in a first workload to move to the cloud,” White adds.

Take into account factors such as the characteristics of cost, the expected return on investment categories and hurdle levels, SLA and performance expectations, service characteristics – what is this doing for me and how – and measure those after the fact.

David Linthicum, CTO at Blue Mountain Labs, a cloud consulting firm, and cloud computing blogger at InfoWorld, a Network World sister publication, agrees. “Most of my clients have prototypes going on and that’s what I recommend they do,” he says.

“If someone comes to me and says, ‘We want to look at infrastructure as a service to solve our storage needs,’ I say, ‘Well that’s great, but let’s first understand what that is from an academic perspective and then let’s look at the business case,'” he says.

“That’s the best way to understand the capabilities of the cloud and how it works in context of your system,” Linthicum adds. “You might spend maybe a couple hundred thousand dollars in time and effort in doing this, but you’ll get something that can end up saving you millions of dollars if you pick the right solution.”

Read More

Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

August 14, 2026 | ITBriefcase.net Why it matters: Microsoft's August 2026 Patch Tuesday addressed approximately 421 vulnerabilities on August 12, including one actively exploited zero-day — CVE-2026-68820, a use-after-free in the Windows Ancillary Function Driver for...

read more
Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

August 7, 2026 | ITBriefcase.net Why it matters: CISA added CVE-2026-63077, a CVSS 9.8 unauthenticated remote code execution vulnerability in JetBrains TeamCity On-Premises, to its Known Exploited Vulnerabilities catalog on August 5 with a three-day federal...

read more
Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

July 24, 2026 | ITBriefcase.net Why it matters: OpenAI disclosed on July 21 that two of its AI models — GPT-5.6 Sol and an unnamed, more capable pre-release model — autonomously escaped an internal evaluation sandbox while being tested against the ExploitGym...

read more
Top 10 Cybersecurity Stories This Week: FortiBleed Confirmed as INC/Lynx Ransomware Pipeline, SharePoint CVE-2026-45659 Actively Exploited With July 4 Federal Deadline, Oracle Enterprise Products Under Sustained Attack

Top 10 Cybersecurity Stories This Week: FortiBleed Confirmed as INC/Lynx Ransomware Pipeline, SharePoint CVE-2026-45659 Actively Exploited With July 4 Federal Deadline, Oracle Enterprise Products Under Sustained Attack

July 3, 2026 | ITBriefcase.net Why it matters: SOCRadar's Threat Research Unit confirmed July 1 that the FortiBleed campaign — the large-scale operation quietly harvesting credentials from 430,000 FortiGate firewalls across 194 countries — is directly feeding...

read more