More Related Content Similar to Effective Security Response in the Cloud - Session Sponsored by Trend Micro (20) More from Amazon Web Services (20) Effective Security Response in the Cloud - Session Sponsored by Trend Micro3. AWS
A
infrastructure
plaKorm
defined
as
Low
cost
Agile
&
ElasPc
Open
&
Flexible
Secure
*
hAp://aws.amazon.com/about-‐aws/
©
2014,
Trend
Micro
Inc.
4. The
movement
DevOps
is
a
technology
movement
for
and
your
company
doesn’t
need
to
worry
about
it
©
2014,
Trend
Micro
Inc.
right?
asked
ironically
by
Peter
Waterhouse,
InformaPon
Week,
31-‐Mar-‐2014
hAp://www.informaPonweek.com/soYware/enterprise-‐applicaPons/busPng-‐5-‐devops-‐myths/d/d-‐id/1141597
6. ©
2014,
Trend
Micro
Inc.
Development
OperaPons
+
Driving
change
7. Driving
change
©
2014,
Trend
Micro
Inc.
New
goals
Breakdown
silos
Directly
align
with
business
Rapidly
deploy
&
iterate
DevOps
8. ©
2014,
Trend
Micro
Inc.
Security
needs
to
keep
pace
Our
Challenge
10. You
FaciliPes
Physical
Security
Physical
Infrastructure
Network
Infrastructure
VirtualisaPon
Infrastructure
©
2014,
Trend
Micro
Inc.
OperaPng
System
ApplicaPon
Account
Management
The
tradiPonal
responsibility
model
11. AWS
FaciliPes
Physical
Security
Physical
Infrastructure
Network
Infrastructure
VirtualisacPon
Infrastructure
©
2014,
Trend
Micro
Inc.
You
OperaPng
System
ApplicaPon
Account
Management
Security
Groups
Network
ConfiguraPon
Shared
Responsibility
model
12. ©
2014,
Trend
Micro
Inc.
Applied
at
the
boundary
Operator
TradiPonal
Security
13. ©
2014,
Trend
Micro
Inc.
Applied
to
each
instance
Cloud
defences
VPC
VPC
VPC
15. ©
2014,
Trend
Micro
Inc.
Leverage
exisPng
distribuPon
channels
Addressing
the
challenges
-‐
deployment
16. ©
2014,
Trend
Micro
Inc.
Recommended
choices
AWS
OpsWorks
Chef
Puppet
Salt
Deployment
channels
17. ©
2014,
Trend
Micro
Inc.
Centralise
control
management
Addressing
the
challenges
-‐
management
22. SANS
incident
response
process
PreparaPon
IdenPficaPon
Containment
EradicaPon
Recovery
Lessons
Learned
©
2014,
Trend
Micro
Inc.
23. ©
2014,
Trend
Micro
Inc.
Server
Analyse
Defend
Verify
Adjust
Replacement
TradiPonal
process
24. ©
2014,
Trend
Micro
Inc.
Instance
Replacement
Defend
Analyse
Verify
Adjust
Cloud
process
25. Cloud
process
–
automaPon
requirements
Need
to
automate
isolaPon
©
2014,
Trend
Micro
Inc.
Instance
Replacement
Defend
Analyse
Verify
Adjust
26. ©
2014,
Trend
Micro
Inc.
Instance
Replacement
1.
Monitor
the
log
stream
API
2.
Call
the
AWS
API
to
isolate
the
instance
Cloud
process
-‐
soluPon
29. Cloud
process
©
2014,
Trend
Micro
Inc.
Instance
Replacement
Defend
Analyse
Verify
Adjust
31. ©
2014,
Trend
Micro
Inc.
Piggyback
on
provisioning
Central
management
AutomaPon
Keys
to
success