+ All Categories
Home > Technology > Security OF The Cloud

Security OF The Cloud

Date post: 16-Jul-2015
Category:
Upload: mark-nunnikhoven
View: 151 times
Download: 0 times
Share this document with a friend
Popular Tags:
29
SECURITY OF THE CLOUD a providers view of security @marknca
Transcript
Page 1: Security OF The Cloud

SECURITY OF THE CLOUDa providers view of security

@marknca

Page 2: Security OF The Cloud

Mark Nunnikhoven Vice President, Cloud & Emerging Technologies Trend Micro @marknca

Page 3: Security OF The Cloud

Modelling security for the cloud

Page 4: Security OF The Cloud

TRADITIONAL ResponsibilitY

Physical Operating SystemInfrastructure ApplicationNetwork DataVirtualization

Page 5: Security OF The Cloud

SHARED ResponsibilitY

Physical Operating SystemInfrastructure ApplicationNetwork DataVirtualization Service Options

Page 6: Security OF The Cloud

SHARED ResponsibilitY

Physical Operating SystemInfrastructure ApplicationNetwork DataVirtualization Service Options

Verify

Page 7: Security OF The Cloud

Physical

Network

Virtualization

Operation System

Application

Data

DIY SaaSIaaS PaaS

*you

Page 8: Security OF The Cloud

Less responsibilities

CONSUMER

Page 9: Security OF The Cloud

More responsibilities

Less responsibilities

CONSUMER

Page 10: Security OF The Cloud

More responsibilities

PROVIDER

Page 11: Security OF The Cloud

Less responsibilities

More responsibilities

PROVIDER

Page 12: Security OF The Cloud

OF the cloud

Page 13: Security OF The Cloud

SHARED ResponsibilitY

PhysicalInfrastructureNetworkVirtualization

Operating SystemApplicationData

Page 14: Security OF The Cloud

SHARED ResponsibilitY

PhysicalInfrastructureNetworkVirtualizationOperating SystemApplicationData

Page 15: Security OF The Cloud

SHARED ResponsibilitY

PhysicalInfrastructureNetworkVirtualizationOperating SystemApplicationData

PhysicalInfrastructureNetworkVirtualization

SaaS

PaaS

IaaS

Page 16: Security OF The Cloud

PHYSICAL

Multiple data centres per region Multiple regions available [ 11 | 17 ] Operation endpoints around the world

AWS: hּמp://aws.amazon.com/about-aws/global-infrastructure/ Azure: hּמp://azure.microsoﬞ.com/en-gb/regions/

Page 17: Security OF The Cloud

INFRASTRUCTURE

Redundant interconnects Hardline connects to customers Redundant power, HVAC

AWS: hּמp://aws.amazon.com/directconnect/ Azure: hּמp://azure.microsoﬞ.com/en-gb/services/expressroute/

Page 18: Security OF The Cloud

NETWORK

Publicly accessible know IPv4 space IPv6 support (*AWS ELB only) Private routing, subnet, ACLs

Page 19: Security OF The Cloud

VIRTUALIZATION

Process isolation [ XEN, HyperV ] Image integrity Resource isolation

Page 20: Security OF The Cloud

Verify

Page 21: Security OF The Cloud

AWS

More details at hּמp://aws.amazon.com/compliance/

PCI DSS Level 1 SOC 1/ISAE 3402 SOC 2 SOC 3 ISO 9001 IRAP (.au) FIPS 140-2

Current certificationsCJIS CSA FERPA HIPAA FedRAMP (SM) DoD CSM 1-2, 3-5 DIACAP

ISO 27001 MTCS 3 ITAR MPAA G-Cloud Section 508/VPAT FISMA

Page 22: Security OF The Cloud

Azure

More details at hּמp://azure.microsoﬞ.com/en-us/support/trust-center/compliance/

PCI DSS Level 1 SOC 1/ISAE 3402 SOC 2 SOC 3 ISO 9001 IRAP (.au) FIPS 140-2 ISO 27002 CCCPPF

Current certificationsCJIS CSA FERPA HIPAA FedRAMP (SM) DoD CSM 1-2, 3-5 DIACAP EU Model Clauses MLPS (.cn)

ISO 27001 MTCS 1 ITAR MPAA G-Cloud Section 508/VPAT FISMA FDA 21 CFR

Page 23: Security OF The Cloud

FOCUS

PCI DSS Level 1 SOC 2/3 SOC 1/ISAE 3402

Certifications

Page 24: Security OF The Cloud

FOCUSCertifications

Security Security Baseline

PCI DSS Level 1 SOC 2SOC 1/

Page 25: Security OF The Cloud

AWS Compliance hּמp://aws.amazon.com/compliance/

Microsoﬞ Azure Trust Center hּמp://azure.microsoﬞ.com/en-us/support/trust-center/

Page 26: Security OF The Cloud

Just because the provider is certified doesn’t mean your deployment will be. You have work to do.

Anonymous AWS employee

Page 27: Security OF The Cloud

Options : Responsibilities

Page 28: Security OF The Cloud

TREND MICRO’s DEEP SECURITYAnti-malware Content filtering Firewall Intrusion Prevention Integrity Monitoring Log Inspection

Learn more at aws.trendmicro.com

Page 29: Security OF The Cloud

@marknca

Thank you.Learn more at aws.trendmicro.com


Recommended