+ All Categories
Home > Documents > Control in the cloud with SLAs -...

Control in the cloud with SLAs -...

Date post: 14-Jun-2020
Category:
Upload: others
View: 3 times
Download: 0 times
Share this document with a friend
17
www.enisa.europa.eu Control in the cloud with SLAs at OASIS International Cloud Symposium, London, October 10, 2011 Marnix Dekker, ENISA
Transcript
Page 1: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

Control in the cloud with SLAs at OASIS International Cloud Symposium,

London, October 10, 2011

Marnix Dekker, ENISA

Page 2: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

Trust

Page 3: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

3

Governance and assurance standards

Page 4: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 4

Page 5: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 5

250 M euros of IT services, 15000 users,

1000s of servers and applications

Page 6: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 6

It’s really cloud but… shhh

Page 7: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

Sun at the datacenter… 7

Page 8: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

Natural hazards 8

Page 9: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

The proof is in the eating…

9

Page 10: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 10

Cloud security; if you can’t measure it, you can’t

manage it.

Page 11: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 11

Safety Liveness

Page 12: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 12

Confidentiality, integrity

Availability, continuity

Page 13: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 13

Penetration tests

Page 14: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 14

Backup/failover tests

Page 15: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu 15

Data portability tests

Page 16: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

o Joint ENISA, OASIS, CSA Workshop on security in cloud SLAs

o Hands-on, the result will be a draft of best practices

o October 13th, London, 10:00 to 13:00

o Lunch provided

Workshop on security in cloud SLAs

16

Page 17: Control in the cloud with SLAs - events.oasis-open.orgevents.oasis-open.org/.../enisa_cloud_oasis_london_control_session.… · 10 Cloud security; if you can’t measure it, you can’t

www.enisa.europa.eu

Contact Marnix Dekker ([email protected]) Giles Hogben ([email protected]) About securely moving to smartphones and cloud computing http://www.enisa.europa.eu/act/application-security

17

Upcoming events: • Joint ENISA, OASIS, CSA Workshop on security in cloud

SLAs (October 13th, London) • Virtual ENISA working group: Best practices for Cloud SLAs • SecureCloud 2012 (ENISA, CSA, Fraunhofer)


Recommended