application security in cloud

18
http://clean-clouds.com Application Security in Cloud http://clean-clouds.com

Upload: mitesh-soni

Post on 20-Nov-2014

629 views

Category:

Technology


0 download

DESCRIPTION

Application Security in Cloud

TRANSCRIPT

Page 1: Application Security in Cloud

http://clean-clouds.com

Application Security in Cloud

http://clean-clouds.com

Page 2: Application Security in Cloud

http://clean-clouds.com

Application Security in Cloud

Security as a after thought SDLC

Page 3: Application Security in Cloud

http://clean-clouds.com

Reason of Concern:◦ Lack of Control ◦ Cloud related Issues◦ Changes in SDLC ◦ Unknown Risks (Needs to Identify)

Areas to restructure◦ Security◦ Application◦ SDLC

Page 4: Application Security in Cloud

http://clean-clouds.com

Traditional SDLC

Page 5: Application Security in Cloud

http://clean-clouds.com

Cloud Specific SDLC

Page 6: Application Security in Cloud

http://clean-clouds.com

Page 7: Application Security in Cloud

http://clean-clouds.com

SaaS

Concerns Responsibilities Solutions

Page 8: Application Security in Cloud

http://clean-clouds.com

Identity & Access Management

SAML XACML OAuth OpenID OATH OpenAuth

Page 9: Application Security in Cloud

http://clean-clouds.com

PaaS

Concerns Responsibilities Solutions

Page 10: Application Security in Cloud

http://clean-clouds.com

IaaS

Concerns Responsibilities Solutions

Page 11: Application Security in Cloud

http://clean-clouds.com

Different Aspects

Training to DevelopersData ValidationTraditional SecurityApplication Penetration testing Encryption

Page 12: Application Security in Cloud

http://clean-clouds.com

Automation

Application security policy automation Automation of auditing Policy as a Service

◦Benefits ◦Automatic Security Policy Enforcement in the Cloud

◦Automatic Policy Monitoring into the Cloud

◦Automatic Updating

Page 18: Application Security in Cloud

http://clean-clouds.com

Thank You