cloud security presentation v4

22
CLOUD AND SECURITY Jasmeet Chhabra

Upload: jasmeet-chhabra

Post on 26-Jan-2015

131 views

Category:

Technology


2 download

DESCRIPTION

What is cloud computing? Cloud Service delivery models Cloud deployment models Security concerns on the cloud How to help your customers

TRANSCRIPT

Page 1: Cloud security presentation v4

CLOUD AND SECURITYJasmeet Chhabra

Page 2: Cloud security presentation v4

Agenda• What is cloud computing?• Cloud Service delivery models• Cloud deployment models• Security concerns on the cloud• How to help your customers

Page 3: Cloud security presentation v4
Page 4: Cloud security presentation v4
Page 5: Cloud security presentation v4

Essential characteristics of cloud computing

On demand Self Services

Broad network access

Resource pooling

Rapid Elasticity

Measured Service

Source: ISACA : http://snipurl.com/25nliur

Page 6: Cloud security presentation v4

Cloud Service delivery model

IaaS

PaaS

SaaS

Page 7: Cloud security presentation v4

Cloud Deployment models

Public Cloud

Enterprise

Private Cloud

Hybrid Cloud

Page 8: Cloud security presentation v4

How big is the market?

IDC Forecasts Public IT Cloud Services Spending Will Approach $100 Billion in 2016, Generating 41% of Growth

Forrester forecasts that the global market for cloud computing will grow from $40.7 billion in 2011 to more than $241 billion in 2020

Page 9: Cloud security presentation v4

Security concerns on the cloud

Page 10: Cloud security presentation v4

VM

Virtual Machine Separation

VMM

VM

How good is this firewall?

Page 11: Cloud security presentation v4

VM

Interfaces and APIs

VMM

VM

How secure are these APIs ?

Page 12: Cloud security presentation v4

App 2

Separation between apps : Paas

App 1

How good is this firewall?

Page 13: Cloud security presentation v4

Who owns the data ?

Dropbox

All data visible here

Should encryption happen here

Page 14: Cloud security presentation v4

Service hijacking

Page 15: Cloud security presentation v4

How to help your customers ?

Page 16: Cloud security presentation v4

The BasicsSSL

Security Fail

Page 17: Cloud security presentation v4

Post as much security info as possible

What do you do with data?How do you protect it? Can you run in private cloud?

If you want to sell to Enterprise

Page 18: Cloud security presentation v4

Allow Data Export

Page 19: Cloud security presentation v4

Post Regulatory and Compliance info

Page 20: Cloud security presentation v4

Be serious about securityLook at OWSAP Top 10

Test for security

Code for security

Make it part of your development process

Don’t be this

Page 21: Cloud security presentation v4

Enterprise worries

How is my data protected?

Regulatory /compliance info

Can I run an appliance in my own cloud?

Page 22: Cloud security presentation v4

Questions?