Which Is Better: Private Or Public Cloud?

Mar 14, 2017 | Cloud, Data

Featured article by Jeremy Sutter, Independent Technology Author

J_Cloud

When companies look at putting up a cloud infrastructure, one of the first questions that comes up is whether they should use a private or a public cloud. 10 years ago, the answer was more often a yes for private clouds than it is today. Somewhere along the technology growth path, publicly traded computing facilities like Amazon got so good at security that it made sense for most companies in most situations to go out and implement a public cloud.

Here are some current considerations for companies that are comparing the two options in the here and now:

Is your forte computing infrastructure?

People that say planning and implementing local network infrastructure to support a cloud isn’t as much of a risk as using a commercial cloud service are no longer very commonly found running IT departments. Part of the reason that public cloud advocates rule is that even at companies like Hewlett-Packard, where they make servers and PCs, business divisions sometimes use public cloud providers because it is more convenient for them to do than create their own infrastructure as a prelude to using a set of web services online.

Although it often is not always underlined when companies make the decision to use public infrastructure, security concerns can play a big role in helping management decide how they will implement their requirements. In a world where the CIA is hacked and much of their cyber capability is stolen and distributed to private parties, security of your individual company network is certainly something that IT managers fret about.

Cost

Cost is a very important component of IT expansion in most companies. Cost also favors public cloud networks in most cases because they have economies of scale at work that allow them to offer features that would cost a lot to license if they were implemented privately. On the other hand, if your company has requirements that are not addressed by a public cloud, making a case for private network services is worthwhile.

One way that you can justify the cost of private cloud creation is to use ROI as a measuring stick. ROI stands for return on investment. It is a formula that essentially takes into account everything that you were doing before and how much it cost, and compares it to everything you plan to do and how much that will cost. Your return on investment will be the net difference. In many cases, technology innovation will allow you to actually run your department at a lower cost- even with a private cloud project.

Privacy

Building a private cloud infrastructure inside your own firm or at a third-party provider can make your company better equipped to avoid some of the privacy pitfalls that can affect you when you keep your presence on a public server.

One company devised a secure phone solution for their high security clients. They used a Skype server hosted on a secure public cloud platform. As Skype is encrypted, they were able to advertise end-to-end security on their phone conversations with clients. Unfortunately, it was soon discovered that a limitation in the public network created a situation where it was possible for hackers or local IT people to reset the server so that it could be listened to locally. Had they built out their own infrastructure in-house, the snafu would not have occurred.

The decision to choose a public or private cloud as part of your IT infrastructure can be complex and require a lot of analysis. Fortunately, tools like ROI can help tell you how strong the financial decision that you are making is.

Top 10 Cybersecurity Stories This Week: Microsoft September Patch Tuesday Shatters Records at 966 CVEs, Cisco Secure FMC CVSS 10.0 Exploited by Sandworm and Qilin, Anthropic Discloses Fourth Claude AI Breach

Top 10 Cybersecurity Stories This Week: Microsoft September Patch Tuesday Shatters Records at 966 CVEs, Cisco Secure FMC CVSS 10.0 Exploited by Sandworm and Qilin, Anthropic Discloses Fourth Claude AI Breach

September 11, 2026 | ITBriefcase.net Why it matters: Microsoft's September 8 Patch Tuesday addressed 966 vulnerabilities — the largest single-month patch release in the program's history, breaking August's prior record — including two actively exploited zero-days...

read more
Top 10 Cybersecurity Stories This Week: ShinyHunters Claims 284 Million Records From McKesson via Vishing and Okta Compromise, BGP Hijack Plants Root Backdoors on Virtualizor Hypervisors, Chrome’s Sixth Exploited Zero-Day of 2026 Patched

Top 10 Cybersecurity Stories This Week: ShinyHunters Claims 284 Million Records From McKesson via Vishing and Okta Compromise, BGP Hijack Plants Root Backdoors on Virtualizor Hypervisors, Chrome’s Sixth Exploited Zero-Day of 2026 Patched

September 4, 2026 | ITBriefcase.net Why it matters: ShinyHunters claimed responsibility for a breach of McKesson Corporation — the largest pharmaceutical distributor in North America, delivering approximately one-third of all prescription medicines to US hospitals,...

read more
Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

August 28, 2026 | ITBriefcase.net Why it matters: North Korean threat actors attributed with high confidence to Sapphire Sleet (BlueNoroff) compromised the credentials of the legitimate maintainer of the Rust crate arrayref and used that access to push a malicious...

read more
Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

August 21, 2026 | ITBriefcase.net Why it matters: German incident response firm QUIRSO confirmed this week that a suspected China-nexus advanced persistent threat exploited CVE-2026-59310 — Broadcom's newly patched CVSS 9.8 VMware vCenter directory traversal — just...

read more
Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

August 14, 2026 | ITBriefcase.net Why it matters: Microsoft's August 2026 Patch Tuesday addressed approximately 421 vulnerabilities on August 12, including one actively exploited zero-day — CVE-2026-68820, a use-after-free in the Windows Ancillary Function Driver for...

read more
Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

August 7, 2026 | ITBriefcase.net Why it matters: CISA added CVE-2026-63077, a CVSS 9.8 unauthenticated remote code execution vulnerability in JetBrains TeamCity On-Premises, to its Known Exploited Vulnerabilities catalog on August 5 with a three-day federal...

read more