Advanced Security Automation Made Simple
Mark Nunnikhoven
Vice President, Cloud Research at Trend Micro @marknca
Advanced Security Automation Made Simple Mark Nunnikhoven Vice - - PowerPoint PPT Presentation
Advanced Security Automation Made Simple Mark Nunnikhoven Vice President, Cloud Research at Trend Micro @marknca The goal of cybersecurity Make sure that systems work as intended The goal of cybersecurity Make sure that systems work as
Mark Nunnikhoven
Vice President, Cloud Research at Trend Micro @marknca
The goal of cybersecurity
The goal of cybersecurity
Data Application OS Virtualization Infrastructure Physical
On-premises
(Traditional)
Data Application OS Virtualization Infrastructure Physical
Infrastructure
(IaaS)
Data Application OS Virtualization Infrastructure Physical
Container
(PaaS)
Data Application OS Virtualization Infrastructure Physical
Abstract
(SaaS)
AWS’ responsibility Your responsibility
Service configuration
Security Development Operations
Operational Excellence Reliability Performance Efficiency Security Cost Optimization
The principle of least privilege
User Permission Role Aurora S3 Bucket Notebook MQ
The steps
Many approaches…
CloudTrail Console
Many approaches…
Policy CloudTrail Console Lambda
Many approaches…
Slack GitHub Policy CloudTrail S3 Bucket Athena Console Lambda Lambda CloudWatch Event
The principle of the face palm
S3 Bucket * ACL CloudWatch Event Lambda
The DevOps principle
Instance CloudWatch Logs User Lambda Slack
The steps
The Crichton principle
Instance SNS Topic User Lambda
The steps
compliance log
DDoS attacks
CloudFormation templates
production to full capacity
Sample ideas
Simple steps to automated success
Use two lanes
Trigger Result
Use two lanes
Trigger Result CloudWatch Event Lambda CloudTrail Lambda Slow lane Fast lane
The goal of cybersecurity
Vice President, Cloud Research at Trend Micro
40