Contenu connexe Similaire à Cloud security management by newvem (20) Cloud security management by newvem1. © 2012 Newvem All rights reserved
Cloud Security Management
Overview and Challenges
IGT Cloud Management Forum
2. Who Am I ?
Ofir Nachmani, Cloud Computing Evangelist
Chief Community at Newvem.com
Blogger at IAmOnDemand.com
My Experience
Cloud Adoption
SaaS Deployment
Cloud Management
© 2012 Newvem All rights reserved
4. What is the first priority cloud security concern?
… manage is ensuring there is a consistent, time-
boxed, and reliable, set of access control
policies and systems implemented so that as
users move around various levels of privileges
http://www.quora.com/KnowYourCloud
© 2012 Newvem All rights reserved
5. What is the first priority cloud security concern?
First priority is to figure out what data you have there
and how important it is to you (Data Classification).
Then look at the risks to that data
http://www.quora.com/KnowYourCloud
© 2012 Newvem All rights reserved
6. What is the first priority cloud security concern?
I can readily think of these risk buckets
1. Security Risks ….
2. Privacy Risks ..
3. Control Risks ..
http://www.quora.com/KnowYourCloud
© 2012 Newvem All rights reserved
7. What is the first priority cloud security concern?
When on the cloud, it is very important to know what
laws would be applicable. For example, many of our
not want to host in the US
clients do
due to PATRIOT Act (and in the inevitable
Protect IP Act). .. What laws would be applicable on
the data and what privacy laws will protect
my data on the cloud
http://www.quora.com/KnowYourCloud
© 2012 Newvem All rights reserved
8. What is the first priority cloud security concern?
Cloud computing is seen as being
more
vulnerable to online attacks than
having the data stored on private servers ..
Additionally, there are considerations concerning data
security, including confidentiality and
availability
http://www.quora.com/KnowYourCloud
© 2012 Newvem All rights reserved
10. Cloud Security Aspects
April 2011 – 103 US cloud service providers 24 in six European
countries for a total of 127 separate providers
© 2012 Newvem All rights reserved
12. Less security in the cloud ?
Focus on cost and speed and not on security or data protection
creates a security hole.
© 2012 Newvem All rights reserved
13. Who is most responsible ?
Cloud providers see the cloud user as most responsible for security
Organizations may be over relying on their cloud vendor
© 2012 Newvem All rights reserved
14. More than 300% growth !
Analyze Your AWS Cloud usage
© 2012 Newvem.Com All rights reserved
15. 5 biggest security AWS users’ mistakes
Leaving database server IP ports open
Opening access to IP ports from all internal AWS
servers
Leaving IP ports open to all IP addresses
Allowing access to critical IP ports from public
Internet IP addresses
Making Amazon Machine Images publicly
accessible
© 2012 Newvem All rights reserved
16. 5 biggest security AWS users’ mistakes
CloudRadar
http://www.newvem.com/topic/cloud-radar
© 2012 Newvem All rights reserved
18. AWS Security Experts
More than 300% growth !
http://www.newvem.com/experts-directory
© 2012 Newvem.Com All rights reserved
20. THANKS !
Chief Community at Newvem.com
Blogger at IAmOnDemand.com
ofir@newvem.com
Mobile: 0549961555
Skype: ofirn76
@IAmOnDemand
@KnowYourCloud
@Newvem
© 2012 Newvem All rights reserved