Getting confused about shared responsibility
Almost all SaaS and PaaS platforms use a security model called shared responsibility – that is to say, the vendor takes responsibility for certain parts of the security architecture and others remain the responsibility of the customer. In this section, we will see how misunderstanding this model can lead to issues in the Salesforce case.
Shared Belongs to Salesforce
Example
SmallCo is a provider of specialty lenses for optical instruments. They sell globally and have recently adopted Salesforce Sales Cloud, order management, and B2B commerce to drive electronic commerce directly to business instead of selling exclusively via distributors.
When they did their implementation, the Salesforce platform went through a security review with James, the dedicated security professional...