api security and management best practices
TRANSCRIPT
2007: 3.6 divorces per 1000 people
2008: 3.5 divorces per 1000 people
2009: 3.4 divorces per 1000 people
Source: Slate http://slate.me/wGf9et
So, does this mean people are getting better at relationships?
APIs change composition of internal teams
CFOAPI
Developer
Security Officer
Business Manager
Product Manager
API Server
API Proxy
Security Expert
API Expert
Shift securit
y
responsibilit
y
Separation of Concerns
The New Governance
DocumentationDiscoveryApprovalEnforcementUser ProvisioningCommunity
WSDLReg/RepG10 PlatformGatewayIAMWhat’s that?
Wiki/BlogSearchEmailGatewayPortalForum
Old New
What’s that?
The Layer 7 API Developer Portal
Firewall
Enterprise Network
API Server
API Client
iPhone Developer
API Portal
API Proxy
To Summarize:
The game has changed Clients need attention
The security problems are the same But the names have changed
Don’t just build APIs Build secure and managed APIs
Don’t Miss @RSA Conference 2012
ASEC-402: Hacking’s Gilded Age: How APIs Will Increase IT Risk
K. Scott Morrison Friday, March 02 10:10 a.m. Room 302
STAR-402: Enterprise Access Control Patterns for REST and Web API
Francois Lascelles Friday, March 02 10:10 a.m. Room 304
Yes, they are at the same time. You must choose…
February 2012
K. Scott MorrisonChief Technology Officer & Chief Architect
Layer 7 Technologies1100 Melville St, Suite 405Vancouver, B.C. V6E 4A6Canada(800) 681-9377
[email protected]://www.layer7tech.com
For further information: