i was 5 what does a childhood fear in 1983 have to do
play

I was 5. What does a childhood fear in 1983 have to do with - PowerPoint PPT Presentation

I was 5. What does a childhood fear in 1983 have to do with serverless security in 2019? McNuggets are introduced Mario Bros was released in the arcade ARPANET switches to IP creating the internet Challenger flew STS-7 deploying


  1. I was 5.

  2. What does a childhood fear in 1983 have to do with serverless security in 2019?

  3. McNuggets are introduced

  4. Mario Bros was released …in the arcade

  5. ARPANET switches to IP 
 …creating the internet

  6. Challenger flew STS-7 deploying two satellites and conducting a number of experiments

  7. Cold war tensions are high

  8. The Baseline

  9. by Invest Comox Valley

  10. by Harold A. Skaarup

  11. THE BASELINE Enemies are working against us We are under constant threat Everyone you trust is worried

  12. The Environment

  13. THE ENVIRONMENT Cold war doesn’t feel cold ICBMs could launch at any time Darth Vader is coming

  14. The Threat

  15. *Not actually 3200 Phaethon

  16. *Still not 3200 Phaethon

  17. THE THREAT PHA is a “hairs breadth” from earth Impact would be devastating Aftermath is a slow, lingering death

  18. Baseline + Environment + Threat

  19. Baseline Traditional security + Environment + Threat

  20. TRADITIONAL SECURITY Assets are long lived Deep access is required & expected Perimeter is king

  21. Baseline Traditional security + Environment Losing ground + Threat

  22. LOSING GROUND New malware every 0.3 seconds New vulnerability every 3 days Constant threat of the unknown

  23. Baseline Traditional security + Environment Losing ground + Threat Cybercriminals

  24. CYBERCRIMINALS 1.5T in profit in 2018 4.5T in damage in 2018 Few to no convictions

  25. THE REACTION OWASP Top 10 for Serverless CSA 12 Most Critical Risks… Exclusive focus on functions

  26. *Not me, not taken in the 1980s

  27. #1 THREAT Misconfigurations

  28. #1 THREAT 100’s of millions records breached from Amazon S3

  29. SHARED RESPONSIBILITY MODEL Data Application 
 Operating System + Service Configuration Virtualization Infrastructure Physical SaaS 
 (Abstract)

  30. THE FOUR PILLARS OF SERVERLESS SECURITY Service selection Do these services meet the business needs? Functions Is the code high quality? Data flow Is the data intact? Is access controlled? Configuration validation Are the service features setup?

  31. THE GOAL OF BUILDING (AND SECURITY) Make sure that what you build works as intended …and only as intended

Download Presentation
Download Policy: The content available on the website is offered to you 'AS IS' for your personal information and use only. It cannot be commercialized, licensed, or distributed on other websites without prior consent from the author. To download a presentation, simply click this link. If you encounter any difficulties during the download process, it's possible that the publisher has removed the file from their server.

Recommend


More recommend