didzis balodis, cissp, head of it security and infrastructure at squalio using the cloud - practical...
TRANSCRIPT
![Page 1: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/1.jpg)
Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO
Using the Cloud - practical security implications
![Page 2: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/2.jpg)
Facts and numbers
Practical Cloud security
Conclusions
![Page 3: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/3.jpg)
Data source: KPMG research- http://www.kpmg-institutes.com/institutes/shared-services-outsourcing-institute/articles/2015/03/spps-it-outsourcing-management-summary-2014-15.html
28%
17%
16%
Data location, security and privacy risks
Integration with existing IT
Regulatory and compliance concerns
TOP 3 barriers to adoption of Cloud Services
![Page 4: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/4.jpg)
Data source: Eurostat - http://ec.europa.eu/eurostat/statistics-explained/mobile/index.php#Page?title=Cloud computing - statistics on the use by enterprises&lg=en
57%
48%17%
Risk of security breach
Location of data, legal jurisdiction
Insufficient knowledge and skills
Factors limiting use of cloud Services
38%
32%32%
Risk of security breach
Insufficient knowledge and skills
High cost of cloud computing
Small and medium enterprises:
Large enterprises:
![Page 5: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/5.jpg)
Microsoft Azure
IT security statistics don’t change
SIMPLE ATTACKS96%
VERY FEW SECURITY
BREACHES IN THE PUBLIC
CLOUD
«TO DATE, THERE HAVE BEEN
Gartner Inc.
- MOST BREACHES CONTINUE TO INVOLVE
ON-PREMISES DATA CENTER
ENVIRONMENTS.»
![Page 6: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/6.jpg)
Customer Cloud provider
On-PremisesInfrastructureas a Service
Platformas a Service
Softwareas a Service
Networking
Hardware
Physical Security
Operating System
Middleware
Virtualization
Data
Applications
Users
Shared responsibilityREDUCES SECURITY COSTS + MAINTAINS FLEXIBILITY, ACCESS, & CONTROL
![Page 7: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/7.jpg)
Is cloud more or less secure than my on-
premises infrastructure?
![Page 8: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/8.jpg)
Cameras
24X7 security staff
Barriers
Fencing
Alarms
Two-factor access control: Biometric readers & card readersSecurity operations center
Days of backup power
Seismic bracing
BuildingPerimeter
Computer room
Physical security
![Page 9: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/9.jpg)
Infrastructure security
9
Systems management & monitoring
Threat defense
Physical & logical security
![Page 10: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/10.jpg)
I have heard that cloud is not secure. Is it?
![Page 11: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/11.jpg)
Cloud service availability
![Page 12: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/12.jpg)
Cloud service security
![Page 13: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/13.jpg)
Additional security layers
VIDEO DEMO Azure 2 factor authenticaiton.
https://www.youtube.com/watch?v=__ytuEiY-Aw
![Page 14: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/14.jpg)
CONCLUSIONCloud security
Evaluate and Monitor
DO Risk Assessment
Choose the RIGHT
solution
![Page 15: Didzis Balodis, CISSP, Head of IT Security and Infrastructure at SQUALIO Using the Cloud - practical security implications](https://reader036.vdocuments.mx/reader036/viewer/2022062314/56649d955503460f94a7d6b4/html5/thumbnails/15.jpg)
Thank you!