+ All Categories
Home > Documents > 2012 10 cloud security architecture

2012 10 cloud security architecture

Date post: 31-Jan-2015
Category:
Upload: vladimir-jirasek
View: 1,123 times
Download: 1 times
Share this document with a friend
Description:
 
7
Security architecture and Cloud computing, are these mutually exclusive? Vladimir Jirasek Director of Research, CSA UK 25 October 2012
Transcript
Page 1: 2012 10 cloud security architecture

Security architecture and Cloud computing, are these

mutually exclusive?

Vladimir JirasekDirector of Research, CSA UK

25 October 2012

Page 2: 2012 10 cloud security architecture

https://cloudsecurityalliance.org.ukCopyright © 2012 Cloud Security Alliance

Cloud model maps to Security model

Cloud model

Physical security

Network security

Host security

Application sec.

Data security

SIEM

Iden

tity

, A

ccess

Cry

pto

gra

phy

Business continuity

GRC

Direct map

Page 3: 2012 10 cloud security architecture

https://cloudsecurityalliance.org.ukCopyright © 2012 Cloud Security Alliance

Responsibilities for areas in security model compared to delivery models

Physical security

Network security

Host security

Application sec.

Data security

SIEM

Identity, Access

Cryptography

Business continuity

GRC

Provider responsible Customer responsible

IaaS PaaS SaaS IaaS PaaS SaaS

Page 4: 2012 10 cloud security architecture

https://cloudsecurityalliance.org.ukCopyright © 2012 Cloud Security Alliance

How to manage cloud security• Have a cloud security standard

• What to do on an Enterprise level

• Before your Cloud project

• During your Cloud project

• BAU

• Exit from the Cloud provider

• Risks cannot be outsourced

• Manage lock-in and exit up-front – especially in SaaS

How to drive out the 'seven deadly sins' of cloud computing - new Information Security Forum report

Page 5: 2012 10 cloud security architecture

https://cloudsecurityalliance.org.ukCopyright © 2012 Cloud Security Alliance

Cloud Security Alliance supports number of projects related to cloud

Get involved at https://cloudsecurityalliance.org/

research/

Page 6: 2012 10 cloud security architecture

https://cloudsecurityalliance.org.ukCopyright © 2012 Cloud Security Alliance

Contact

• Help us secure cloud computing

• http://cloudsecurityalliance.org.uk

[email protected]

• LinkedIn: http://www.linkedin.com/groups/Cloud-Security-Alliance-UK-Chapter-3745837

• Twitter: @CSAUKResearch

Page 7: 2012 10 cloud security architecture

www.cloudsecurityalliance.org

Thank you!


Recommended