SlideShare une entreprise Scribd logo
1  sur  11
Télécharger pour lire hors ligne
IS Directors Conference – August 2013
Neuartige Lösung für sicheren Zugriff auf
UBS Unternehmensdaten
Roland Rüegg
Director, Project Manager
UBS AG
Public
August 2013
Roland Rüegg
Neuartige Lösung für sicheren Zugriff auf
UBS Unternehmensdaten
ISDC 2013
IBM Secure Remote Desktop
Gaming
weak security and control
eBanking
application specific security
„Evolution“ of Secure Private Computer usage in the Bank's Environment
one single computer
dynamically adapting
to security demands
Corporate Use
Remote desktop session using RAM disk
1
IBM Secure Enterprise Desktop
Working Principle
Corporate Use
eZTIC is Secure Environment
and maintains all keys to Back-End
(user, hard disk and TLS session keys)
User
PC / Mac (Insecure Environment)
UBS Windows 7 Desktop secured with SED
Interact
with
Approve
operations
Shows
2
Back-End
(VM Image Server)
Running
Virtual Desktop
Baseline Linux
IBM Secure Remote Desktop
• NO Software is installed / modified / used on the PC or X86-based Apple
• NO data (logs, credentials, ...) is written to HDD; its HDD is not used
• For the duration of the session, the Computer is 100% „owned“ by SED
3
• UBS PersAuth (DTP) Authentication
• Convenience through Single Sign On
4
• User credentials handled outside of PC5
• Form Factor = UBS Access Key (**)6
• Do not interfere with existing protection technologies
• VPNs, Firewalls, Virus scanners, etc.
2
Main Characteristics
(*) must be USB-bootable and X86 architecture, such as a PC or X86-based Mac (**) IBM Zone Trusted Information Channel Stick
• Protect against “State of the Art” Attacks (esp. Malware & Man-in-the-Middle)
• Do not rely on PC or smart phone for input or output of critical data
1
Corporate Use
3
UBS use cases
• Loss of workplaces (e.g. through natural disasters) or forced absence (e.g. pandemics) can
be compensated by working from home
Business Continuity
Management
• Give employees the freedom of „Bring Your Own Device“
• Reduce Number of UBS owned equipment
BYOD
• Potential changes in methods of working and opportunities for designBranch Format
• SED enables secure additional "locations"Offshoring/Outsourc
ing
• IT Support has access to all systems and services
• No need to control/manage End User Devices
IT Support
• Replacement for SCGLigt for SmartCard-Users
• Policy-driven access to corporate data, in real-time, securely
Work from Home
Corporate Use
• Two virtual images can be set up and accessed depending on the jurisdiction your logging in
from
Cross Boarder Data
Security
• External Staff (Auditors, Consultants, Developers ...) can easily be provided with a temporary
UBS managed workplaceExternal Staff
• SED can be extended to perform the functionality of the Secure USB StickSecure Memory
Stick Replacement
CurrentCasesFutureCases
• SED enables secure additional "locations"Family Office UHNW
4
Prove of Concept
Phase 1 - Initial, IBM-based usability testing:
• Real eZTICs (full-size smart card reader)
• Fully operational, full-size UBS PersAuth .NET card (or IBM-provided .NET card)
• Server hardware @ IBM
Permited UBS to begin testing of
• eZTIC-as-a-smartcard-reader
• access from different locations (e.g. regarding network connectivity)
• usability aspects with “benevolent” users (IT/support staff, etc.)
Phase 2 – UBS-based usability/POC system
• Hard- and software @ UBS
• Bigger user community ("non-benevolent" as well)
Permited UBS to begin testing of
• Obtain real user feedback (no limitation on user community)
• Continuously correct problems detected
• Define & implementproduction processes and customer support procedures
• Demonstrate use of management interface (e.g., updating eZTICs on the fly and on a per-user/device basis)
SED Project – deployment as a replacement for SCGLigt
• Evaluation on the potential of eZTIC as a BCM solution (e.g. replacement of backup desks in Basel)
• Deployment of eZTIC to a broader user community in WM&SB
PoC
Phase 1
Q4 2012
PoC
Phase 2
Q1 2013
SED Project
Q3 2013
5
Proof of Concept Results
Good news first: It works! Restrictions:
• HW reboot mandatory to fully control HW without the risk of already running malware
• Printing is on purpose disable
• Cable connection or Wireless Password is required
1
Known issues
• A20 Issue 'Failed to enable' -> Driver Issue of SED
• No dual screen support -> might comes later
• Citrix server overloaded -> Limitation of PoC infrastructure
• Performance Issues reported -> in analyses we will follow up
2
Old HW without USB boot option -> new HW required3
One time Bios configuration not always easy -> User guide to be upgraded4
Test results from PoC
6
Timeline SED Project
IBM Secure Enterprise Desktop (SED) introduction timeline as agreed with IBM
3 months3 months3 months
Duration
Phase
Setup
Assisted
Operations
Assisted Operations Regular Operations
Setup
Assisted
Operations
MS1 MS2 MS3 MS4
Milestone
7
8
Q&A
9
Contact Details
UBS AG
Roland Rüegg
Postfach
8098 Zürich
SWITZERLAND
Email: roland.rueegg@ubs.com
External tel.: +41 44-236 73 29
Mobile: +41 79 285 39 62

Contenu connexe

Tendances

The VDI InfoSec Conundrum
The VDI InfoSec ConundrumThe VDI InfoSec Conundrum
The VDI InfoSec ConundrumVirtualTal
 
Barco CineCare Web
Barco CineCare WebBarco CineCare Web
Barco CineCare WebBarco
 
8 Sure-Fire Ways to Manage Your Desktops
8 Sure-Fire Ways to Manage Your Desktops8 Sure-Fire Ways to Manage Your Desktops
8 Sure-Fire Ways to Manage Your DesktopsScriptLogic
 
Keep Calm and Unify Your IT
Keep Calm and Unify Your ITKeep Calm and Unify Your IT
Keep Calm and Unify Your ITInteractiveNEC
 
The Good, the bad, and the ugly of Thin Client/Server Computing
The Good, the bad, and the ugly of Thin Client/Server ComputingThe Good, the bad, and the ugly of Thin Client/Server Computing
The Good, the bad, and the ugly of Thin Client/Server ComputingThe Integral Worm
 
Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?
Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?
Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?Peter Ocasek
 
Rsa introduction
Rsa introductionRsa introduction
Rsa introductionmacroljh
 
Get On The Bus Keynote
Get On The Bus KeynoteGet On The Bus Keynote
Get On The Bus KeynoteStephen Rose
 
Lecture 12 monitoring the network
Lecture 12   monitoring the networkLecture 12   monitoring the network
Lecture 12 monitoring the networkWiliam Ferraciolli
 
Virtual Desktop Computing _White Paper - by David Roth
Virtual Desktop Computing _White Paper - by David RothVirtual Desktop Computing _White Paper - by David Roth
Virtual Desktop Computing _White Paper - by David RothDavid Roth
 
Vmware evaluate-windows-migration-tools-whitepaper
Vmware evaluate-windows-migration-tools-whitepaperVmware evaluate-windows-migration-tools-whitepaper
Vmware evaluate-windows-migration-tools-whitepaperAnimesh Dixit
 
Resiliency in Distributed Systems
Resiliency in Distributed SystemsResiliency in Distributed Systems
Resiliency in Distributed SystemsRajeev Bharshetty
 
SpiceWorld London 2012 Presentation Matthieu Jaeger
SpiceWorld London 2012 Presentation Matthieu JaegerSpiceWorld London 2012 Presentation Matthieu Jaeger
SpiceWorld London 2012 Presentation Matthieu JaegerSpiceworks
 
PITA Technical and Business Session: Cybersecurity outside the office
PITA Technical and Business Session: Cybersecurity outside the officePITA Technical and Business Session: Cybersecurity outside the office
PITA Technical and Business Session: Cybersecurity outside the officeAPNIC
 

Tendances (19)

The VDI InfoSec Conundrum
The VDI InfoSec ConundrumThe VDI InfoSec Conundrum
The VDI InfoSec Conundrum
 
Wizard intro
Wizard introWizard intro
Wizard intro
 
Barco CineCare Web
Barco CineCare WebBarco CineCare Web
Barco CineCare Web
 
8 Sure-Fire Ways to Manage Your Desktops
8 Sure-Fire Ways to Manage Your Desktops8 Sure-Fire Ways to Manage Your Desktops
8 Sure-Fire Ways to Manage Your Desktops
 
Keep Calm and Unify Your IT
Keep Calm and Unify Your ITKeep Calm and Unify Your IT
Keep Calm and Unify Your IT
 
The Good, the bad, and the ugly of Thin Client/Server Computing
The Good, the bad, and the ugly of Thin Client/Server ComputingThe Good, the bad, and the ugly of Thin Client/Server Computing
The Good, the bad, and the ugly of Thin Client/Server Computing
 
Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?
Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?
Model mieszany, kiedy wirtualizować aplikacje a kiedy desktopy?
 
Windows 7 professional at a glance
Windows 7 professional at a glanceWindows 7 professional at a glance
Windows 7 professional at a glance
 
Managed services
Managed servicesManaged services
Managed services
 
Rsa introduction
Rsa introductionRsa introduction
Rsa introduction
 
Get On The Bus Keynote
Get On The Bus KeynoteGet On The Bus Keynote
Get On The Bus Keynote
 
Lecture 12 monitoring the network
Lecture 12   monitoring the networkLecture 12   monitoring the network
Lecture 12 monitoring the network
 
Thin client
Thin clientThin client
Thin client
 
Virtual Desktop Computing _White Paper - by David Roth
Virtual Desktop Computing _White Paper - by David RothVirtual Desktop Computing _White Paper - by David Roth
Virtual Desktop Computing _White Paper - by David Roth
 
Vmware evaluate-windows-migration-tools-whitepaper
Vmware evaluate-windows-migration-tools-whitepaperVmware evaluate-windows-migration-tools-whitepaper
Vmware evaluate-windows-migration-tools-whitepaper
 
Thin Client
Thin ClientThin Client
Thin Client
 
Resiliency in Distributed Systems
Resiliency in Distributed SystemsResiliency in Distributed Systems
Resiliency in Distributed Systems
 
SpiceWorld London 2012 Presentation Matthieu Jaeger
SpiceWorld London 2012 Presentation Matthieu JaegerSpiceWorld London 2012 Presentation Matthieu Jaeger
SpiceWorld London 2012 Presentation Matthieu Jaeger
 
PITA Technical and Business Session: Cybersecurity outside the office
PITA Technical and Business Session: Cybersecurity outside the officePITA Technical and Business Session: Cybersecurity outside the office
PITA Technical and Business Session: Cybersecurity outside the office
 

En vedette

Artikel Tagesanzeiger Schweiz - das Startup Modell der SBB
Artikel Tagesanzeiger Schweiz - das Startup Modell der SBBArtikel Tagesanzeiger Schweiz - das Startup Modell der SBB
Artikel Tagesanzeiger Schweiz - das Startup Modell der SBBManuel Gerres
 
SharePoint Web Content-Archivierung mit Qumram
SharePoint Web Content-Archivierung mit QumramSharePoint Web Content-Archivierung mit Qumram
SharePoint Web Content-Archivierung mit QumramQumram
 
Mein Praktikum
Mein PraktikumMein Praktikum
Mein PraktikumLAP1aW
 
Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...
Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...
Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...Digicomp Academy AG
 
2014 UBS Mitarbeitermagazin startup academy
2014 UBS Mitarbeitermagazin startup academy2014 UBS Mitarbeitermagazin startup academy
2014 UBS Mitarbeitermagazin startup academyFelix Wenger
 
ISDC 2013_Referat_Peter Kummer_SBB
ISDC 2013_Referat_Peter Kummer_SBBISDC 2013_Referat_Peter Kummer_SBB
ISDC 2013_Referat_Peter Kummer_SBBIBM Switzerland
 
SBD 15: Transformation towards digital advisory within Wealth Management, Chr...
SBD 15: Transformation towards digital advisory within Wealth Management, Chr...SBD 15: Transformation towards digital advisory within Wealth Management, Chr...
SBD 15: Transformation towards digital advisory within Wealth Management, Chr...Namics
 
Business Intelligence In Financial Industry
Business Intelligence In Financial IndustryBusiness Intelligence In Financial Industry
Business Intelligence In Financial IndustryKartik Mehta
 
Archivierung von Web Applikationen bei der UBS
Archivierung von Web Applikationen bei der UBSArchivierung von Web Applikationen bei der UBS
Archivierung von Web Applikationen bei der UBSQumram
 
SBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibt
SBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibtSBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibt
SBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibtNamics
 
Enterprise Architecture for Dummies - TOGAF 9 enterprise architecture overview
Enterprise Architecture for Dummies - TOGAF 9 enterprise architecture overviewEnterprise Architecture for Dummies - TOGAF 9 enterprise architecture overview
Enterprise Architecture for Dummies - TOGAF 9 enterprise architecture overviewWinton Winton
 

En vedette (12)

Präsentation Dr. Daniel Kalt
Präsentation Dr. Daniel KaltPräsentation Dr. Daniel Kalt
Präsentation Dr. Daniel Kalt
 
Artikel Tagesanzeiger Schweiz - das Startup Modell der SBB
Artikel Tagesanzeiger Schweiz - das Startup Modell der SBBArtikel Tagesanzeiger Schweiz - das Startup Modell der SBB
Artikel Tagesanzeiger Schweiz - das Startup Modell der SBB
 
SharePoint Web Content-Archivierung mit Qumram
SharePoint Web Content-Archivierung mit QumramSharePoint Web Content-Archivierung mit Qumram
SharePoint Web Content-Archivierung mit Qumram
 
Mein Praktikum
Mein PraktikumMein Praktikum
Mein Praktikum
 
Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...
Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...
Wie sich die SBB-Informatik durch integriertes Service Management im Multipro...
 
2014 UBS Mitarbeitermagazin startup academy
2014 UBS Mitarbeitermagazin startup academy2014 UBS Mitarbeitermagazin startup academy
2014 UBS Mitarbeitermagazin startup academy
 
ISDC 2013_Referat_Peter Kummer_SBB
ISDC 2013_Referat_Peter Kummer_SBBISDC 2013_Referat_Peter Kummer_SBB
ISDC 2013_Referat_Peter Kummer_SBB
 
SBD 15: Transformation towards digital advisory within Wealth Management, Chr...
SBD 15: Transformation towards digital advisory within Wealth Management, Chr...SBD 15: Transformation towards digital advisory within Wealth Management, Chr...
SBD 15: Transformation towards digital advisory within Wealth Management, Chr...
 
Business Intelligence In Financial Industry
Business Intelligence In Financial IndustryBusiness Intelligence In Financial Industry
Business Intelligence In Financial Industry
 
Archivierung von Web Applikationen bei der UBS
Archivierung von Web Applikationen bei der UBSArchivierung von Web Applikationen bei der UBS
Archivierung von Web Applikationen bei der UBS
 
SBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibt
SBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibtSBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibt
SBD16 – Veränderungen wagen: Wie Sunrise die Digitale Transformation vorantreibt
 
Enterprise Architecture for Dummies - TOGAF 9 enterprise architecture overview
Enterprise Architecture for Dummies - TOGAF 9 enterprise architecture overviewEnterprise Architecture for Dummies - TOGAF 9 enterprise architecture overview
Enterprise Architecture for Dummies - TOGAF 9 enterprise architecture overview
 

Similaire à ISDC 2013_Referat_Roland Rueegg_ubs

Hosted Virtual Desktops and Streamed Applications
Hosted Virtual Desktops and Streamed ApplicationsHosted Virtual Desktops and Streamed Applications
Hosted Virtual Desktops and Streamed ApplicationsPete Valentine
 
Securing with Sophos - Sophos Day Belux 2014
Securing with Sophos - Sophos Day Belux 2014Securing with Sophos - Sophos Day Belux 2014
Securing with Sophos - Sophos Day Belux 2014Sophos Benelux
 
Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...
Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...
Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...Teodoro Cipresso
 
The User Revolution - DWCNZ2023
The User Revolution - DWCNZ2023The User Revolution - DWCNZ2023
The User Revolution - DWCNZ2023Ben Mountain
 
Presentation desktops for the cloud the view rollout
Presentation   desktops for the cloud the view rolloutPresentation   desktops for the cloud the view rollout
Presentation desktops for the cloud the view rolloutsolarisyourep
 
Presentation desktops for the cloud the view rollout
Presentation   desktops for the cloud the view rolloutPresentation   desktops for the cloud the view rollout
Presentation desktops for the cloud the view rolloutxKinAnx
 
VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7VMworld
 
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...VMworld
 
Virtual Desktops: How Secure Can They Be?
Virtual Desktops: How Secure Can They Be?Virtual Desktops: How Secure Can They Be?
Virtual Desktops: How Secure Can They Be?Desktone
 
A Time Traveller's Guide to DB2: Technology Themes for 2014 and Beyond
A Time Traveller's Guide to DB2: Technology Themes for 2014 and BeyondA Time Traveller's Guide to DB2: Technology Themes for 2014 and Beyond
A Time Traveller's Guide to DB2: Technology Themes for 2014 and BeyondLaura Hood
 
Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...
Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...
Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...Flexera
 
Key Note Session IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...
Key Note Session  IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...Key Note Session  IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...
Key Note Session IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...Surekha Parekh
 
Virtualization and Cloud Computing
Virtualization and Cloud ComputingVirtualization and Cloud Computing
Virtualization and Cloud ComputingJosh Folgado
 
Why ClouDoc to protect CAD files?
Why ClouDoc to protect CAD files? Why ClouDoc to protect CAD files?
Why ClouDoc to protect CAD files? Sang Yoo
 
IBM Endpoint Manger for Power Management (Overview)
IBM Endpoint Manger for Power Management (Overview)IBM Endpoint Manger for Power Management (Overview)
IBM Endpoint Manger for Power Management (Overview)Kimber Spradlin
 
Why z/OS is a Great Platform for Developing and Hosting APIs
Why z/OS is a Great Platform for Developing and Hosting APIsWhy z/OS is a Great Platform for Developing and Hosting APIs
Why z/OS is a Great Platform for Developing and Hosting APIsTeodoro Cipresso
 
Implementing and Managing Desktop Virtualization in Education
Implementing and Managing Desktop Virtualization in EducationImplementing and Managing Desktop Virtualization in Education
Implementing and Managing Desktop Virtualization in EducationJeremy Anderson
 

Similaire à ISDC 2013_Referat_Roland Rueegg_ubs (20)

Hosted Virtual Desktops and Streamed Applications
Hosted Virtual Desktops and Streamed ApplicationsHosted Virtual Desktops and Streamed Applications
Hosted Virtual Desktops and Streamed Applications
 
Securing with Sophos - Sophos Day Belux 2014
Securing with Sophos - Sophos Day Belux 2014Securing with Sophos - Sophos Day Belux 2014
Securing with Sophos - Sophos Day Belux 2014
 
Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...
Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...
Innovate 2014: Get an A+ on Testing Your Enterprise Applications with Rationa...
 
The User Revolution - DWCNZ2023
The User Revolution - DWCNZ2023The User Revolution - DWCNZ2023
The User Revolution - DWCNZ2023
 
Presentation desktops for the cloud the view rollout
Presentation   desktops for the cloud the view rolloutPresentation   desktops for the cloud the view rollout
Presentation desktops for the cloud the view rollout
 
Presentation desktops for the cloud the view rollout
Presentation   desktops for the cloud the view rolloutPresentation   desktops for the cloud the view rollout
Presentation desktops for the cloud the view rollout
 
VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7
 
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
 
Dhanush_2015
Dhanush_2015Dhanush_2015
Dhanush_2015
 
Virtual Desktops: How Secure Can They Be?
Virtual Desktops: How Secure Can They Be?Virtual Desktops: How Secure Can They Be?
Virtual Desktops: How Secure Can They Be?
 
Bsm mw10
Bsm mw10Bsm mw10
Bsm mw10
 
A Time Traveller's Guide to DB2: Technology Themes for 2014 and Beyond
A Time Traveller's Guide to DB2: Technology Themes for 2014 and BeyondA Time Traveller's Guide to DB2: Technology Themes for 2014 and Beyond
A Time Traveller's Guide to DB2: Technology Themes for 2014 and Beyond
 
Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...
Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...
Meet the BYOD, ‘Computing Anywhere’ Challenge—Planning and License Management...
 
Key Note Session IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...
Key Note Session  IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...Key Note Session  IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...
Key Note Session IDUG DB2 Seminar, 16th April London - Julian Stuhler .Trito...
 
Windows Intune: Simplify Your PC Management
Windows Intune: Simplify Your PC ManagementWindows Intune: Simplify Your PC Management
Windows Intune: Simplify Your PC Management
 
Virtualization and Cloud Computing
Virtualization and Cloud ComputingVirtualization and Cloud Computing
Virtualization and Cloud Computing
 
Why ClouDoc to protect CAD files?
Why ClouDoc to protect CAD files? Why ClouDoc to protect CAD files?
Why ClouDoc to protect CAD files?
 
IBM Endpoint Manger for Power Management (Overview)
IBM Endpoint Manger for Power Management (Overview)IBM Endpoint Manger for Power Management (Overview)
IBM Endpoint Manger for Power Management (Overview)
 
Why z/OS is a Great Platform for Developing and Hosting APIs
Why z/OS is a Great Platform for Developing and Hosting APIsWhy z/OS is a Great Platform for Developing and Hosting APIs
Why z/OS is a Great Platform for Developing and Hosting APIs
 
Implementing and Managing Desktop Virtualization in Education
Implementing and Managing Desktop Virtualization in EducationImplementing and Managing Desktop Virtualization in Education
Implementing and Managing Desktop Virtualization in Education
 

Plus de IBM Switzerland

ISDC_2015_Philippe Aerni_Cyber Versicherung
ISDC_2015_Philippe Aerni_Cyber VersicherungISDC_2015_Philippe Aerni_Cyber Versicherung
ISDC_2015_Philippe Aerni_Cyber VersicherungIBM Switzerland
 
ISDC_2015_Niklaus Santschi_Digitalisierung des Zahlungsverkehrst
ISDC_2015_Niklaus Santschi_Digitalisierung des ZahlungsverkehrstISDC_2015_Niklaus Santschi_Digitalisierung des Zahlungsverkehrst
ISDC_2015_Niklaus Santschi_Digitalisierung des ZahlungsverkehrstIBM Switzerland
 
ISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM Partnerschaft
ISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM PartnerschaftISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM Partnerschaft
ISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM PartnerschaftIBM Switzerland
 
ISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmen
ISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmenISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmen
ISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmenIBM Switzerland
 
ISDC_2015_Behrang Khorsandian_The business value of social data
ISDC_2015_Behrang Khorsandian_The business value of social dataISDC_2015_Behrang Khorsandian_The business value of social data
ISDC_2015_Behrang Khorsandian_The business value of social dataIBM Switzerland
 
ISDC_2015_Glenn Brouwer_Digital Transformation
ISDC_2015_Glenn Brouwer_Digital TransformationISDC_2015_Glenn Brouwer_Digital Transformation
ISDC_2015_Glenn Brouwer_Digital TransformationIBM Switzerland
 
ISDC_2015_Jessica Douglas_Reinventing Customer Experience
ISDC_2015_Jessica Douglas_Reinventing Customer ExperienceISDC_2015_Jessica Douglas_Reinventing Customer Experience
ISDC_2015_Jessica Douglas_Reinventing Customer ExperienceIBM Switzerland
 
ISDC_2015_Samuel Gähwiller_The most innovative Social TV in Europe
ISDC_2015_Samuel Gähwiller_The most innovative Social TV in EuropeISDC_2015_Samuel Gähwiller_The most innovative Social TV in Europe
ISDC_2015_Samuel Gähwiller_The most innovative Social TV in EuropeIBM Switzerland
 
Presentation_ISDC 2014_Arndt Groth_PubliGroupe
Presentation_ISDC 2014_Arndt Groth_PubliGroupePresentation_ISDC 2014_Arndt Groth_PubliGroupe
Presentation_ISDC 2014_Arndt Groth_PubliGroupeIBM Switzerland
 
Presentation_ISDC 2014_Thomas Landolt_IBM
Presentation_ISDC 2014_Thomas Landolt_IBMPresentation_ISDC 2014_Thomas Landolt_IBM
Presentation_ISDC 2014_Thomas Landolt_IBMIBM Switzerland
 
Presentation_ISDC 2014_Peter Kasahara_IBM
Presentation_ISDC 2014_Peter Kasahara_IBMPresentation_ISDC 2014_Peter Kasahara_IBM
Presentation_ISDC 2014_Peter Kasahara_IBMIBM Switzerland
 
Presentation_ISDC 2014_Jonathan Wisler_SoftLayer
Presentation_ISDC 2014_Jonathan Wisler_SoftLayerPresentation_ISDC 2014_Jonathan Wisler_SoftLayer
Presentation_ISDC 2014_Jonathan Wisler_SoftLayerIBM Switzerland
 
Presentation_ISDC 2014_Félix Mauron_Abraxas
Presentation_ISDC 2014_Félix Mauron_AbraxasPresentation_ISDC 2014_Félix Mauron_Abraxas
Presentation_ISDC 2014_Félix Mauron_AbraxasIBM Switzerland
 
Presentation_ISDC 2014_Haig Alexander Peter_IBM
Presentation_ISDC 2014_Haig Alexander Peter_IBMPresentation_ISDC 2014_Haig Alexander Peter_IBM
Presentation_ISDC 2014_Haig Alexander Peter_IBMIBM Switzerland
 
Ibm bis 2014 jm tassetto moo cs momentum
Ibm bis 2014  jm tassetto moo cs momentumIbm bis 2014  jm tassetto moo cs momentum
Ibm bis 2014 jm tassetto moo cs momentumIBM Switzerland
 
Ibm bis 2014 o. goulay engagement des collaborateurs
Ibm bis 2014  o. goulay engagement des collaborateursIbm bis 2014  o. goulay engagement des collaborateurs
Ibm bis 2014 o. goulay engagement des collaborateursIBM Switzerland
 
Ibm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauce
Ibm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauceIbm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauce
Ibm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauceIBM Switzerland
 
Ibm bis 2014 o.bethmann le cloud juste un nuage
Ibm bis 2014 o.bethmann le cloud juste un nuageIbm bis 2014 o.bethmann le cloud juste un nuage
Ibm bis 2014 o.bethmann le cloud juste un nuageIBM Switzerland
 
Ibm bis 2014 m.ben mrad cmo study
Ibm bis 2014 m.ben mrad cmo studyIbm bis 2014 m.ben mrad cmo study
Ibm bis 2014 m.ben mrad cmo studyIBM Switzerland
 
Ibm bis 2014 m. rolfe cfo insights from ibm global c suite study
Ibm bis 2014 m. rolfe cfo insights from ibm global c suite studyIbm bis 2014 m. rolfe cfo insights from ibm global c suite study
Ibm bis 2014 m. rolfe cfo insights from ibm global c suite studyIBM Switzerland
 

Plus de IBM Switzerland (20)

ISDC_2015_Philippe Aerni_Cyber Versicherung
ISDC_2015_Philippe Aerni_Cyber VersicherungISDC_2015_Philippe Aerni_Cyber Versicherung
ISDC_2015_Philippe Aerni_Cyber Versicherung
 
ISDC_2015_Niklaus Santschi_Digitalisierung des Zahlungsverkehrst
ISDC_2015_Niklaus Santschi_Digitalisierung des ZahlungsverkehrstISDC_2015_Niklaus Santschi_Digitalisierung des Zahlungsverkehrst
ISDC_2015_Niklaus Santschi_Digitalisierung des Zahlungsverkehrst
 
ISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM Partnerschaft
ISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM PartnerschaftISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM Partnerschaft
ISDC_2015_Frank Biernat_Joern Skerswetat_Apple&IBM Partnerschaft
 
ISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmen
ISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmenISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmen
ISDC_2015_Monica Glisenti_Kundinnen und Kunden bestimmen
 
ISDC_2015_Behrang Khorsandian_The business value of social data
ISDC_2015_Behrang Khorsandian_The business value of social dataISDC_2015_Behrang Khorsandian_The business value of social data
ISDC_2015_Behrang Khorsandian_The business value of social data
 
ISDC_2015_Glenn Brouwer_Digital Transformation
ISDC_2015_Glenn Brouwer_Digital TransformationISDC_2015_Glenn Brouwer_Digital Transformation
ISDC_2015_Glenn Brouwer_Digital Transformation
 
ISDC_2015_Jessica Douglas_Reinventing Customer Experience
ISDC_2015_Jessica Douglas_Reinventing Customer ExperienceISDC_2015_Jessica Douglas_Reinventing Customer Experience
ISDC_2015_Jessica Douglas_Reinventing Customer Experience
 
ISDC_2015_Samuel Gähwiller_The most innovative Social TV in Europe
ISDC_2015_Samuel Gähwiller_The most innovative Social TV in EuropeISDC_2015_Samuel Gähwiller_The most innovative Social TV in Europe
ISDC_2015_Samuel Gähwiller_The most innovative Social TV in Europe
 
Presentation_ISDC 2014_Arndt Groth_PubliGroupe
Presentation_ISDC 2014_Arndt Groth_PubliGroupePresentation_ISDC 2014_Arndt Groth_PubliGroupe
Presentation_ISDC 2014_Arndt Groth_PubliGroupe
 
Presentation_ISDC 2014_Thomas Landolt_IBM
Presentation_ISDC 2014_Thomas Landolt_IBMPresentation_ISDC 2014_Thomas Landolt_IBM
Presentation_ISDC 2014_Thomas Landolt_IBM
 
Presentation_ISDC 2014_Peter Kasahara_IBM
Presentation_ISDC 2014_Peter Kasahara_IBMPresentation_ISDC 2014_Peter Kasahara_IBM
Presentation_ISDC 2014_Peter Kasahara_IBM
 
Presentation_ISDC 2014_Jonathan Wisler_SoftLayer
Presentation_ISDC 2014_Jonathan Wisler_SoftLayerPresentation_ISDC 2014_Jonathan Wisler_SoftLayer
Presentation_ISDC 2014_Jonathan Wisler_SoftLayer
 
Presentation_ISDC 2014_Félix Mauron_Abraxas
Presentation_ISDC 2014_Félix Mauron_AbraxasPresentation_ISDC 2014_Félix Mauron_Abraxas
Presentation_ISDC 2014_Félix Mauron_Abraxas
 
Presentation_ISDC 2014_Haig Alexander Peter_IBM
Presentation_ISDC 2014_Haig Alexander Peter_IBMPresentation_ISDC 2014_Haig Alexander Peter_IBM
Presentation_ISDC 2014_Haig Alexander Peter_IBM
 
Ibm bis 2014 jm tassetto moo cs momentum
Ibm bis 2014  jm tassetto moo cs momentumIbm bis 2014  jm tassetto moo cs momentum
Ibm bis 2014 jm tassetto moo cs momentum
 
Ibm bis 2014 o. goulay engagement des collaborateurs
Ibm bis 2014  o. goulay engagement des collaborateursIbm bis 2014  o. goulay engagement des collaborateurs
Ibm bis 2014 o. goulay engagement des collaborateurs
 
Ibm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauce
Ibm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauceIbm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauce
Ibm bis 2014_spot_me_p_metrailler_transformativeeventswithacloudsauce
 
Ibm bis 2014 o.bethmann le cloud juste un nuage
Ibm bis 2014 o.bethmann le cloud juste un nuageIbm bis 2014 o.bethmann le cloud juste un nuage
Ibm bis 2014 o.bethmann le cloud juste un nuage
 
Ibm bis 2014 m.ben mrad cmo study
Ibm bis 2014 m.ben mrad cmo studyIbm bis 2014 m.ben mrad cmo study
Ibm bis 2014 m.ben mrad cmo study
 
Ibm bis 2014 m. rolfe cfo insights from ibm global c suite study
Ibm bis 2014 m. rolfe cfo insights from ibm global c suite studyIbm bis 2014 m. rolfe cfo insights from ibm global c suite study
Ibm bis 2014 m. rolfe cfo insights from ibm global c suite study
 

Dernier

#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024BookNet Canada
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?XfilesPro
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024BookNet Canada
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Patryk Bandurski
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Alan Dix
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Allon Mureinik
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksSoftradix Technologies
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxKatpro Technologies
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 

Dernier (20)

#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
#StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other Frameworks
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 

ISDC 2013_Referat_Roland Rueegg_ubs

  • 1. IS Directors Conference – August 2013 Neuartige Lösung für sicheren Zugriff auf UBS Unternehmensdaten Roland Rüegg Director, Project Manager UBS AG
  • 2. Public August 2013 Roland Rüegg Neuartige Lösung für sicheren Zugriff auf UBS Unternehmensdaten ISDC 2013
  • 3. IBM Secure Remote Desktop Gaming weak security and control eBanking application specific security „Evolution“ of Secure Private Computer usage in the Bank's Environment one single computer dynamically adapting to security demands Corporate Use Remote desktop session using RAM disk 1
  • 4. IBM Secure Enterprise Desktop Working Principle Corporate Use eZTIC is Secure Environment and maintains all keys to Back-End (user, hard disk and TLS session keys) User PC / Mac (Insecure Environment) UBS Windows 7 Desktop secured with SED Interact with Approve operations Shows 2 Back-End (VM Image Server) Running Virtual Desktop Baseline Linux
  • 5. IBM Secure Remote Desktop • NO Software is installed / modified / used on the PC or X86-based Apple • NO data (logs, credentials, ...) is written to HDD; its HDD is not used • For the duration of the session, the Computer is 100% „owned“ by SED 3 • UBS PersAuth (DTP) Authentication • Convenience through Single Sign On 4 • User credentials handled outside of PC5 • Form Factor = UBS Access Key (**)6 • Do not interfere with existing protection technologies • VPNs, Firewalls, Virus scanners, etc. 2 Main Characteristics (*) must be USB-bootable and X86 architecture, such as a PC or X86-based Mac (**) IBM Zone Trusted Information Channel Stick • Protect against “State of the Art” Attacks (esp. Malware & Man-in-the-Middle) • Do not rely on PC or smart phone for input or output of critical data 1 Corporate Use 3
  • 6. UBS use cases • Loss of workplaces (e.g. through natural disasters) or forced absence (e.g. pandemics) can be compensated by working from home Business Continuity Management • Give employees the freedom of „Bring Your Own Device“ • Reduce Number of UBS owned equipment BYOD • Potential changes in methods of working and opportunities for designBranch Format • SED enables secure additional "locations"Offshoring/Outsourc ing • IT Support has access to all systems and services • No need to control/manage End User Devices IT Support • Replacement for SCGLigt for SmartCard-Users • Policy-driven access to corporate data, in real-time, securely Work from Home Corporate Use • Two virtual images can be set up and accessed depending on the jurisdiction your logging in from Cross Boarder Data Security • External Staff (Auditors, Consultants, Developers ...) can easily be provided with a temporary UBS managed workplaceExternal Staff • SED can be extended to perform the functionality of the Secure USB StickSecure Memory Stick Replacement CurrentCasesFutureCases • SED enables secure additional "locations"Family Office UHNW 4
  • 7. Prove of Concept Phase 1 - Initial, IBM-based usability testing: • Real eZTICs (full-size smart card reader) • Fully operational, full-size UBS PersAuth .NET card (or IBM-provided .NET card) • Server hardware @ IBM Permited UBS to begin testing of • eZTIC-as-a-smartcard-reader • access from different locations (e.g. regarding network connectivity) • usability aspects with “benevolent” users (IT/support staff, etc.) Phase 2 – UBS-based usability/POC system • Hard- and software @ UBS • Bigger user community ("non-benevolent" as well) Permited UBS to begin testing of • Obtain real user feedback (no limitation on user community) • Continuously correct problems detected • Define & implementproduction processes and customer support procedures • Demonstrate use of management interface (e.g., updating eZTICs on the fly and on a per-user/device basis) SED Project – deployment as a replacement for SCGLigt • Evaluation on the potential of eZTIC as a BCM solution (e.g. replacement of backup desks in Basel) • Deployment of eZTIC to a broader user community in WM&SB PoC Phase 1 Q4 2012 PoC Phase 2 Q1 2013 SED Project Q3 2013 5
  • 8. Proof of Concept Results Good news first: It works! Restrictions: • HW reboot mandatory to fully control HW without the risk of already running malware • Printing is on purpose disable • Cable connection or Wireless Password is required 1 Known issues • A20 Issue 'Failed to enable' -> Driver Issue of SED • No dual screen support -> might comes later • Citrix server overloaded -> Limitation of PoC infrastructure • Performance Issues reported -> in analyses we will follow up 2 Old HW without USB boot option -> new HW required3 One time Bios configuration not always easy -> User guide to be upgraded4 Test results from PoC 6
  • 9. Timeline SED Project IBM Secure Enterprise Desktop (SED) introduction timeline as agreed with IBM 3 months3 months3 months Duration Phase Setup Assisted Operations Assisted Operations Regular Operations Setup Assisted Operations MS1 MS2 MS3 MS4 Milestone 7
  • 10. 8 Q&A
  • 11. 9 Contact Details UBS AG Roland Rüegg Postfach 8098 Zürich SWITZERLAND Email: roland.rueegg@ubs.com External tel.: +41 44-236 73 29 Mobile: +41 79 285 39 62