+ All Categories
Home > Documents > Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network...

Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network...

Date post: 22-Aug-2020
Category:
Upload: others
View: 9 times
Download: 0 times
Share this document with a friend
16
Securing the Cloud Joshua McCloud
Transcript
Page 1: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Securing the Cloud Joshua McCloud

Page 2: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Defense

Risk

Threat

Anti-virus

PC & Server

2000

WORMS

Hackers

Firewall & IDS/IPS

ICT Services

2005

SPYWARE / ROOTKITS

Criminals

Reputation & Sandboxing

Critical Infrastructure

2010

APTs CYBERWARE

Governments

Intelligence & Analytics

Society

Tomorrow

INCREASED ATTACK SURFACE

Collaborators

Page 3: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

services reside in many clouds

endpoint proliferation

blending of business and personal use access through

any medium

Page 4: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Acce

ss S

ecur

ity

Clou

d Se

curit

y

Network Platform

Network Visibility

Context Aware Control

Context Aware Policy Tr

ustS

ec

Trus

tSec

Cisco SIO Threat Intelligence

Page 5: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Clou

d Se

curit

y

Page 6: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Secure Segmentation

Resilience Threat

Defense

Cloud Security

Page 7: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Nexus 7000 Nexus 6004 Nexus 6001 Nexus 1000v

UCS

Page 8: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Fabric Path

Page 9: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Virtual Device Context VLAN VRF

Page 10: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

SGT

SGT

TrustSec

Identity

drop

Page 11: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

ASA 5585X Virtual Security Gateway

VSG

VSG

ASA

ASA

ASA 1000v Cloud Service Router

CSR

CSR

Page 12: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO
Page 13: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Identity Services Engine

Stealth Watch

Threat Profile

Page 14: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Threat

Context

Context

User: Jane Smith Access Group: Guest Device: Laptop Location: Campus HQ Access Method: Wireless

ALERT User: John Doe Access Group: Finance Device: Android Phone Location: Remote Access Method: VPN

Traffic: P2P Destination: External Behavior: File Sharing Threshold: +167%

Page 15: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

Cloud Security

Secure Segmentation

Resilience Threat

Defense

Page 16: Securing the Cloud - Cisco · Access Security. Cloud Security . Network Platform . Network Visibility . Context Aware Control . Context Aware Policy . TrustSec. TrustSec. Cisco SIO

TOMORROW starts here.


Recommended