Securing Cloud Deployments S.S.Mulay Sr. V.P. Engineering April 6, - - PowerPoint PPT Presentation

securing cloud deployments
SMART_READER_LITE
LIVE PREVIEW

Securing Cloud Deployments S.S.Mulay Sr. V.P. Engineering April 6, - - PowerPoint PPT Presentation

Securing Cloud Deployments S.S.Mulay Sr. V.P. Engineering April 6, 2013 Cloud at a Glance Resource Pooling Essential Features Network On Self Elasticity Metering Access Demand Service IAAS IAAS Service Models PAAS PAAS SAAS SAAS


slide-1
SLIDE 1

Securing Cloud Deployments

S.S.Mulay

  • Sr. V.P. Engineering

April 6, 2013

slide-2
SLIDE 2

Cloud at a Glance Resource Pooling

Network Access Elasticity Metering On Demand Self Service

IAAS PAAS SAAS

Essential Features

Confidential Netmagic Internal Use Only

2

IAAS PAAS SAAS

Private Public Hybrid

Service Models Deployment Models

slide-3
SLIDE 3

Cloud Offerings Pyramid

Confidential Netmagic Internal Use Only

3

slide-4
SLIDE 4

Cloud and Multitenancy

Confidential Netmagic Internal Use Only

slide-5
SLIDE 5

Framework – Cloud Risk – Asset Identification

Identify the Asset Data

Confidential Netmagic Internal Use Only

Data Applications / Processes / Functions

slide-6
SLIDE 6

Framework – Cloud Risk – Asset Evaluation

What Harm if the Asset becomes widely Public / Distributed What harm if the Employee of the Cloud Provider accessed the Asset What harm if the Process / Function was manipulated by an

Confidential Netmagic Internal Use Only

What harm if the Process / Function was manipulated by an

  • utsider

What harm if the information / data were unexpectedly changed What harm if the information / data was unavailable for a period

  • f time
slide-7
SLIDE 7

Multitenancy & Concerns

Multi Tenancy Data Security Logical Security Network Security

Confidential Netmagic Internal Use Only

Network Security Physical Security

slide-8
SLIDE 8

Cloud Security – Internal

Audit Trail

Access layer Security UI / API Access Inter / Intra Customer Setups Isolation

Confidential Netmagic Internal Use Only

Isolation

Hypervisor Level Security Security for the Physical Infra Hosting the Cloud Infra

8

Apache Tomcat

slide-9
SLIDE 9

Cloud Security – Areas of Responsibility

Cloud Provider Integrated Cloud Security Cloud Burst Security Compliance

Confidential Netmagic Internal Use Only

Cloud Security Defense in Depth Logs & Audit Trail Cloud Consumer Virtual Infrastructure Security

slide-10
SLIDE 10

Cloud Provider - Best Practices

Confidential Netmagic Internal Use Only

10

Apache Zookeeper

slide-11
SLIDE 11

Cloud Consumer - Best Practices

Confidential Netmagic Internal Use Only

11

slide-12
SLIDE 12

Cloud Security – Perimeter Security

WAF / Other Protection – Layer 7

Service Provider

DDOS Protection

Service Provider / Upstream

Confidential Netmagic Internal Use Only

12

Apache Zookeeper Apache Tomcat

Zoning / Tiering within Setup IDS / IPS + Firewall – Layer 3

Specific to Customer Setup Service Provider

Specific to Customer Setup

slide-13
SLIDE 13

Cloud Security – Customer Network(s) Isolation

Unique VLAN Per Customer Portgroup / Virtual Switch level Isolation at the Hypervisor Level

Confidential Netmagic Internal Use Only

13

Apache Tomcat

Hypervisor Level Firewall Zoning Hybrid Setups isolated and interconnected via Firewall / L3 switches with an access List / VPN

slide-14
SLIDE 14

Insert your image

Contact Details

For related queries/ feedback, mail to

ssmulay@netmagicsolutions.com

Confidential Netmagic Internal Use Only

Insert your image here

+91-9820453568

slide-15
SLIDE 15

Thank You

Confidential Netmagic Internal Use Only

Thank You

slide-16
SLIDE 16

http://www.linkedin.com/ companies/netmagic http://twitter.com/netmagic http://www.facebook.com/ NetmagicSolutions http://www.youtube.com /user/netmagicsolutions