Professional Documents
Culture Documents
Thursday, September 1, 11
Broad
NetworkAccess
RapidElasEcity
MeasuredService
OnDemand
SelfService
ResourcePooling
So5wareasa
Service(SaaS)
Public
Thursday, September 1, 11
Pla:ormasa
Service(PaaS)
Private
Hybrid
Infrastructureasa
Service(IaaS)
Community
Essen2al
Characteris2cs
Delivery
Models
Deployment
Models
Everything Is Cloud...
Thursday, September 1, 11
Display
Compute
Mainframes
Data
Bandwidth
The Cloud
Centralized
Web2.0
Unreliable/Slow
Reliable/Fast
buted
ri
y Dist
Mostl
Mostly Reliable/Fast
ed
iz
entral
C
y
l
t
s
Mo
Distributed
Web1.0
Thursday, September 1, 11
Client/Server
More Reliable/Faster
Software as a Service
End
Users
(SaaS)
Platform as a Service
Developers
(PaaS)
Infrastructure
as a Service
System
(IaaS)
Adminstrators
Thursday, September 1, 11
What Do These
Look Like?
Consumer
VMs/Containers
APIs
Abstraction
Hardware
Facilities
IaaS
Thursday, September 1, 11
Provider
Data
Consumer
Applications
Provider
Thursday, September 1, 11
Abstraction
Hardware
Facilities
PaaS
APIs
Presentation
Platform
APIs
Applications
Data
Metadata
Content
Provider
Hardware
Facilities
SaaS
Thursday, September 1, 11
Abstraction
APIs
Data
Consumer
Data
OS & ApplicationsBuild
Consumer
It In
Presentation
Modality
Presentation
Platform
APIs
Contract It In
Applications
Applications
VMs/Containers
Data
Metadata
Content
APIs
APIs
Facilities
IaaS
Thursday, September 1, 11
Facilities
PaaS
Abstraction
Hardware
Facilities
SaaS
Hardware
Abstraction
Provider
Infrastructure as a Service (IaaS)
Hardware
Provider
Abstraction
APIs
13
:: The Punchline
In The Simplest Of Terms, Using Cloud
Means Imagining Applications & Information
Across All Tiers Have The Potential To Be
Connected Directly To The Internet...
We Cant Trust The Provider, So We Must
Engineer Security Into Design Patterns
Across The Entire Stack
Any Dumb Component In The Stack
Compromises The Integrity Of the Entire
Stack...
APIs, Intelligence and Automation
EVERYWHERE
Thursday, September 1, 11
16
Virtualized
Data Centers
Stand-Alone
Data Centers
Private Cloud
Public Cloud
Virtual
Private Cloud
Intercloud
Hybrid Clouds
18
Simple, Right?
Thursday, September 1, 11
19
Thursday, September 1, 11
20
Is Cloud
Is ThisAAMajor
MajorShift
Shift?
In IT?
Thursday, September 1, 11
21
22
Thursday, September 1, 11
23
24
25
26
Thursday, September 1, 11
27
Thursday, September 1, 11
28
29
30
31
id*#,b^aa^dc^c'%&(#
::The Internet Of
Things
&Ig^aa^dc
8dccZXiZY9Zk^XZh
&Ig^aa^dc
&)%XdccZXiZY
YZk^XZheZgeZghdc
*%%b^aa^dc
&$&%i]d[VXdccZXiZY
YZk^XZeZgeZghdc
(*W^aa^dc
*XdccZXiZY
YZk^XZh
eZgeZghdc
HdjgXZ/;dggZhiZg
GZhZVgX]!8^hXdVcVanh^h
[dgZXVhid['%&(
Vhhjb^c\Xdch^hiZci
\gdli]igZcYh
&!*%%!%%%
idiVabdW^aZ
6eea^XVi^dch
(%%%
idiVabdW^aZ
Veea^XVi^dch
ldgaYl^YZ
'+*!%%%
idiVabdW^aZ
Veea^XVi^dch
ldgaYl^YZ
HdjgXZ/L^cYdlh
BdW^aZ!Bdg\VcHiVcaZn!
8^hXdVcVanh^h[dgZXVhi
d['%&(Vhhjb^c\
Xdch^hiZci\gdli]igZcYh
HZXjg^inI]gZVih
Veea^XVi^dch
ldgaYl^YZ
*!,%%!%%%
hZXjg^ini]gZVih
+')!%%%
hZXjg^ini]gZVih
'!+%%!%%%
hZXjg^ini]gZVih
'%%,
HdjgXZ/HnbVciZX!
8^hXdVcVanh^h[dgZXVhi
d['%&(Vhhjb^c\
Xdch^hiZci\gdli]igZcYh
'%&%
'%&(
33
34
Thursday, September 1, 11
35
So While
Mega Data
Centers ReCentralize
Our Apps &
Data In Fewer
& Fewer
Locations
Thanks to
Cloud...
Thursday, September 1, 11
36
37
Thursday, September 1, 11
38
Thursday, September 1, 11
39
Thursday, September 1, 11
40
41
Abstraction As Distraction
Cloud is a fantastic forcing function, lets embrace it!
Stay grounded: think globally, act locally
The Cloud is De-Perimeterization...amplified
Plan for FAIL | Re-architecting Means: Information Centricity & Survivability
Public, Private, Hybrid? : All comes down to trust models
Cloud is an iteration of a platform and an operational model, approach it
as such and manage risk appropriately
Focus on the data. Its what were all concerned with in the first
place.
Thursday, September 1, 11
42
43
Does It Really
Matter?
Thursday, September 1, 11
44
Thursday, September 1, 11
45
Thursday, September 1, 11
46
Thursday, September 1, 11
47
Find Out:
www.cloudsecurityalliance.org
Thursday, September 1, 11
http://www.enisa.europa.eu