<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-6186587811989383003.post5237128064870004025..comments</id><updated>2010-01-28T05:29:29.476-08:00</updated><title type='text'>Comments on Centripetal Software: Article: Why you need a SaaS Strategy</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://blog.centripetalsoftware.com/feeds/5237128064870004025/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6186587811989383003/5237128064870004025/comments/default'/><link rel='alternate' type='text/html' href='http://blog.centripetalsoftware.com/2010/01/article-why-you-need-saas-strategy.html'/><author><name>The Davis Family</name><email>noreply@blogger.com</email></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>1</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-6186587811989383003.post-2824326093289824100</id><published>2010-01-28T05:29:29.476-08:00</published><updated>2010-01-28T05:29:29.476-08:00</updated><title type='text'>Great tips. Another part of a SaaS stratgy can be ...</title><content type='html'>Great tips. Another part of a SaaS stratgy can be 1) Escrow Agreements and 2) Security and Privacy compliance.&lt;br /&gt;&lt;br /&gt;Companies and request 3-way escrow agreements to be in place (for example Iron Mountain IP) where they are listed as the beneficiary to the SaaS provider&amp;#39;s code + application / database in the event the SaaS provider goes belly up. These agreements are relatively cheap to setup and provide &amp;quot;a level of control&amp;quot; that would otherwise not exist.&lt;br /&gt;&lt;br /&gt;Next is to ensure the SaaS Provider maintains a comprehensive ISMS (Information Security Management System) and is compliant in areas important to the business consuming the service. For example, as a eCommerce SaaS Platform, OrderDynamics.com maintains PCI compliance in addition to having a facilities provider that is SAS-70. Other benecial Security and Privacy points are HIPAA, SOX, ISO 27001, and PIPEDA.&lt;br /&gt;&lt;br /&gt;Both of these deliverables should be embedded in the Master Service Agreement with the SaaS provider so they&amp;#39;re accountable for maintaining them.&lt;br /&gt;&lt;br /&gt;Michael Turcsanyi&lt;br /&gt;www.orderdynamics.com</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6186587811989383003/5237128064870004025/comments/default/2824326093289824100'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6186587811989383003/5237128064870004025/comments/default/2824326093289824100'/><link rel='alternate' type='text/html' href='http://blog.centripetalsoftware.com/2010/01/article-why-you-need-saas-strategy.html?showComment=1264685369476#c2824326093289824100' title=''/><author><name>OrderDynamics Team</name><uri>http://www.blogger.com/profile/17566462347435249156</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://blog.centripetalsoftware.com/2010/01/article-why-you-need-saas-strategy.html' ref='tag:blogger.com,1999:blog-6186587811989383003.post-5237128064870004025' source='http://www.blogger.com/feeds/6186587811989383003/posts/default/5237128064870004025' type='text/html'/></entry></feed>