+ All Categories
Home > Technology > AWS Summit Milan - Capire la Sicurezza Keynote

AWS Summit Milan - Capire la Sicurezza Keynote

Date post: 19-Jun-2015
Category:
Upload: amazon-web-services
View: 628 times
Download: 1 times
Share this document with a friend
Popular Tags:
30
Amazon Web Services Security & Compliance Overview Dob Todorov Principal Security & Compliance Architect EMEA
Transcript
Page 1: AWS Summit Milan - Capire la Sicurezza Keynote

Amazon Web Services Security & Compliance Overview

Dob Todorov Principal Security & Compliance Architect EMEA

Page 2: AWS Summit Milan - Capire la Sicurezza Keynote

undifferentiated heavy lifting

Page 3: AWS Summit Milan - Capire la Sicurezza Keynote

utility computing

Page 4: AWS Summit Milan - Capire la Sicurezza Keynote

Hundreds of Thousands of Customers in 190 Countries…

Page 5: AWS Summit Milan - Capire la Sicurezza Keynote

US West (Northern California)

US East (Northern Virginia)

EU (Ireland)

Asia Pacific (Singapore)

Asia Pacific (Tokyo)

AWS Regions

AWS Edge Locations

GovCloud (US ITAR Region)

US West (Oregon)

South America (Sao Paulo)

Asia Pacific (Sydney)

Page 6: AWS Summit Milan - Capire la Sicurezza Keynote

A B

A B

C

A B

C

A B

C A B

A B A B A B

US West (Northern California)

US West (Oregon)

South America (Sao Paolo)

Asia Pacific (Singapore)

EU West (Dublin)

US East (Virginia)

Asia Pacific (Tokyo)

Asia Pacific (Australia)

Page 7: AWS Summit Milan - Capire la Sicurezza Keynote

Personal Data Protection in Europe

• EC Directive 95/46/EC: Personal Data Protection • Use Amazon Web Services Dublin Region

• Safe Harbour EU Compliant

• Safe Harbour Switzerland Compliant

Page 8: AWS Summit Milan - Capire la Sicurezza Keynote

The Shared Responsibility Model in the Cloud

Foundation Services

Compute Storage Database Networking

AWS Global Infrastructure

Regions

Availability Zones Edge Locations

Client-side Data Encryption & Data Integrity Authentication

Server-side Encryption (File System and/or Data)

Network Traffic Protection (Encryption/Integrity/Identity)

Optional -- Opaque Data: 0s and 1s (in flight/at rest)

Platform, Applications, Identity & Access Management

Operating System, Network & Firewall Configuration

Customer Data

Page 9: AWS Summit Milan - Capire la Sicurezza Keynote

The Shared Responsibility Model in the Cloud

Foundation Services

Compute Storage Database Networking

AWS Global Infrastructure

Regions

Availability Zones Edge Locations

Client-side Data Encryption & Data Integrity Authentication

Server-side Encryption (File System and/or Data)

Network Traffic Protection (Encryption/Integrity/Identity)

Optional -- Opaque Data: 0s and 1s (in flight/at rest)

Platform, Applications, Identity & Access Management

Operating System, Network & Firewall Configuration

Customer Data

Security OF the Cloud

Security IN the Cloud

Page 10: AWS Summit Milan - Capire la Sicurezza Keynote

User Identification, Authentication and Authorisation in the Cloud

Amazon Identity &

Access Management

IAM Users

EC2

DynamoDB

S3

Active Directory/

LDAP

AD/LDAP Users

Enterprise

Applications

Corporate

Systems

Page 11: AWS Summit Milan - Capire la Sicurezza Keynote

User Identification, Authentication and Authorisation in the Cloud

Amazon Identity &

Access Management

Access Token

for Federated

Access

EC2

DynamoDB

S3

Active Directory/

LDAP

AD/LDAP Users

Enterprise

Applications

Corporate

Systems

Page 12: AWS Summit Milan - Capire la Sicurezza Keynote

Customer-managed Controls on Amazon EC2

Security OF the Cloud

Security IN the Cloud

Page 13: AWS Summit Milan - Capire la Sicurezza Keynote

Data Protection at Rest and in Flight

Application-level

Encryption

Platform-level

Encryption

Volume-level Encryption

Network Traffic

Encryption

Page 14: AWS Summit Milan - Capire la Sicurezza Keynote

AWS Certifications & Accreditations

Security IN the Cloud

Security OF the Cloud

Page 15: AWS Summit Milan - Capire la Sicurezza Keynote

Online Top Up service

Giuseppe Vironda – Head of Online Sales & Services

Simone Bruschi – Head of Online Technology

Page 16: AWS Summit Milan - Capire la Sicurezza Keynote

Top Up

Italy Top Up total turnover > 9 Billion €*

Vodafone > market leader

Online > channel share increase

* VAT Included – source: internal research

Page 17: AWS Summit Milan - Capire la Sicurezza Keynote

Previous Online Top Up CEX (1/3)

1

2

3

Registration needed

Page 18: AWS Summit Milan - Capire la Sicurezza Keynote

Previous Online Top Up CEX (2/3)

4

5

6

Personal information

required

Page 19: AWS Summit Milan - Capire la Sicurezza Keynote

Previous Online Top Up CEX (3/3)

Turnaround needed!

6 Steps 7 click required 31 fields required

O

K

Page 20: AWS Summit Milan - Capire la Sicurezza Keynote

Pillars of the new Top Up service

• Flexibility

• Multichannel approach

• Scalability

• Business continuity

• Security & PCI/DSS

• Time To Market

20

Page 21: AWS Summit Milan - Capire la Sicurezza Keynote

New Customer Experience

1 2

OK

CONVERSION RATE

X 4

NPS

+10 points • 2 Steps

• 2 Click

• 5 fields required

Page 22: AWS Summit Milan - Capire la Sicurezza Keynote

Some example of flexibility

Top Up Receipt

On/Off 3D Secure

PayPal /Amex

Content Management System ... and many others

coming...

Promotion Tool

Page 23: AWS Summit Milan - Capire la Sicurezza Keynote

Multichannel approach Smartphone and

App

Social Network

Desktop and

Tablet

Easy

to integrate on

new platforms

Page 24: AWS Summit Milan - Capire la Sicurezza Keynote

New Technical Solution

+

Page 25: AWS Summit Milan - Capire la Sicurezza Keynote

Volume Scalability

Large daily

variability

Same

PERFORMANCE

LEVEL

Volume of Top Up

+80%

+90%

Page 26: AWS Summit Milan - Capire la Sicurezza Keynote

Business continuity

Top Up service available

365gg / 24h

0 DOWN of

top up service

Business Continuity

even during

technical release

Page 27: AWS Summit Milan - Capire la Sicurezza Keynote

Security & PCI/DSS

eCommerce service

of virtual goods

without 3D secure and no

personal data required

(mail, C.F., etc.)

+

PCI/DSS compliancy on

Cloud solution

Page 28: AWS Summit Milan - Capire la Sicurezza Keynote

Time To Market

3 months From concept to go live

Go Live without defect and roll back

Page 29: AWS Summit Milan - Capire la Sicurezza Keynote

Thank You

Page 30: AWS Summit Milan - Capire la Sicurezza Keynote

THANK YOU [email protected]


Recommended