+ All Categories
Home > Software > Managing Sensitive Information in an API and Microservices World

Managing Sensitive Information in an API and Microservices World

Date post: 08-Jan-2017
Category:
Upload: apigee
View: 167 times
Download: 0 times
Share this document with a friend
18
Presented by Joshua Norrid, Apigee and Peter Miron, Apcera Managing Sensitive Information in an API and Microservices World
Transcript
Page 1: Managing Sensitive Information in an API and Microservices World

Presented by Joshua Norrid, Apigee and Peter Miron, Apcera

Managing Sensitive Information in an API and Microservices World

Page 2: Managing Sensitive Information in an API and Microservices World

Innovation, Meet Trust.+

Page 3: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved.

• Customers/Consumers want CONVENIENCE.• All parties desire CONTROL of sensitive data.• All parties demand CONSISTENCY of experience and process.• Sensitive Data Providers must apply CONSTRAINTS to

CONSUMPTION.• Sensitive Data Providers must achieve and maintain

COMPLIANCE.

3

A “Chain of Custody” is required for managing sensitiveinformation with APIs in the digital world.

Why Are We Talking About This?

Page 4: Managing Sensitive Information in an API and Microservices World

4

Any Application๏ Cloud Native Applications๏ Legacy x86 Applications๏ Containerized Applications and more!

Any Infrastructure

Composition, Orchestration & Deployment

Networking + Nano-Segmentation

Application Service Management

Policy & Enforcement

etc.

Apcera: A Trusted Application Management Platform

Composition, Orchestration & Deployment

Networking + Nano-Segmentation

Application Service Management

WorkloadComposition

WorkloadResource Management

WorkloadScheduling and Placement

WorkloadCommunication and Connectivity

Policy and Automated Enforcement

Page 5: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved. 5

The Digital Value Chain

Page 6: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved. 6

The Extended Digital Value Chain

Page 7: Managing Sensitive Information in an API and Microservices World

Apigee + Apcera: Capabilities Magnified

Page 8: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved.

ReportingService

Report

Request Report

Service ConsumersA. Business PartnersB. Regulatory AgenciesC. ComplianceD. Legal Requests

Report Information ClassificationA. Customer Privacy RelatedB. Business CriticalC. Trade Secret

Trace Data Requests and Fulfillment at Each System / Application Handoff• Who requested what data? When?• Who else has access to that data?• What services participated in the transaction to produce the report?• What policies enabled that participation in the transaction?• Are we certain no one and no other services have access to that data?

General Use Case

Trusted3rd PartyConsumer

Page 9: Managing Sensitive Information in an API and Microservices World

Example

Page 10: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved.

Page 11: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved. 11

Page 12: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved. 12

Page 13: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved. 13

Page 14: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved.

Page 15: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved.

Page 16: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved.

Page 17: Managing Sensitive Information in an API and Microservices World

©2016 Apigee Corp. All Rights Reserved. 17

The Extended Digital Value Chain

Page 18: Managing Sensitive Information in an API and Microservices World

Learn More at

www.apcera.com

Thank You!Joshua Norrid

@[email protected]

Peter Miron@PeterMiron

[email protected]

Rachel Thieman

Recommended