OSG Security Review Mine Altunay March 12, 2008. 31 Jan 2008 2 Security Overview Current Initiatives  OSG Security roadmap  Technical and operational.

Slides:



Advertisements
Similar presentations
OSG Area Coordinators Meeting Security Team Report Mine Altunay 05/15/2013.
Advertisements

0-1 Team # Status Report (1 of 4) Client Contact –Point 1 –Point 2 Team Meetings –Point 1 –Point 2 Team Organization –Point 1 –Point 2 Team #: Team Name.
EGI-InSPIRE RI EGI-InSPIRE EGI-InSPIRE RI EGI Security Policy Group Summary EGI TF David Kelsey 6/28/
SCC EHR Workshop for Contractors: Implementation Considerations May 25, 2011.
WLCG Security TEG, risks and Identity Management David Kelsey GridPP28, Manchester 18 Apr 2012.
NVLAP Overview and Accreditation Process March 2006.
Implementing a Calibration Management System Cory Otto Principal Metrology Engineer, Boston Scientific 10 October 2012.
EGI-Engage Recent Experiences in Operational Security: Incident prevention and incident handling in the EGI and WLCG infrastructure.
OSG Area Coordinators Meeting Security Team Report Kevin Hill 08/14/2013.
OSG Security Review Mine Altunay June 19, June 19, Security Overview Current Initiatives  Incident response procedure – top priority (WBS.
OSG Area Coordinators Meeting Security Team Report Mine Altunay 12/21/2011.
MyFloridaMarketPlace Roundtable January 21, :00 a.m. – 12:00 p.m. MyFloridaMarketPlace.
May 8, 20071/15 VO Services Project – Status Report Gabriele Garzoglio VO Services Project – Status Report Overview and Plans May 8, 2007 Computing Division,
OSG Security Kevin Hill. Goals Operational Security – Identify software vulnerabilities – observing the practices of our VOs and sites, and sending alerts.
Mine Altunay OSG Security Officer Open Science Grid: Security Gateway Security Summit January 28-30, 2008 San Diego Supercomputer Center.
Executive Session Director’s CD-3b Review of the MicroBooNE Project January 18, 2012 Dean Hoffer.
National Institute of Standards and Technology Information Technology Laboratory 1 USG Cloud Computing Technology Roadmap Next Steps NIST Mission: To promote.
OSG Area Coordinators Meeting Security Team Report Mine Altunay 04/3/2013.
OSG Area Coordinators Meeting Proposal Chander Sehgal Fermilab
OSG Security Review Mine Altunay December 4, 2008.
HIPAA PRACTICAL APPLICATION WORKSHOP Orientation Module 1B Anderson Health Information Systems, Inc.
Security Policy Update LCG GDB Prague, 4 Apr 2007 David Kelsey CCLRC/RAL
OSG Area Coordinators Meeting Security Team Report Mine Altunay 8/15/2012.
EGEE-III INFSO-RI Enabling Grids for E-sciencE EGEE and gLite are registered trademarks David Kelsey RAL/STFC,
Mine Altunay July 30, 2007 Security and Privacy in OSG.
OSG Area Coordinators Meeting Security Team Report Mine Altunay 6/6/2012.
15-Dec-04D.P.Kelsey, LCG-GDB-Security1 LCG/GDB Security Update (Report from the Joint Security Policy Group) CERN 15 December 2004 David Kelsey CCLRC/RAL,
Meeting Minutes and TODOs TG has no distributed monitoring. During incident response, use a manual twiki page to distribute information TG monitors the.
Summary of AAAA Information David Kelsey Infrastructure Policy Group, Singapore, 15 Sep 2008.
Security Policy Update David Kelsey UK HEP Sysman, RAL 1 Jul 2011.
9 Oct Overview Resource & Project Management Current Initiatives  Generate SOWs  8 written and 6 remain;  drafts will be complete next week 
Open Science Grid Security Activities Mine Altunay, FNAL OSG Security Officer For the OSG Security Team: Doug Olson, Deputy Security Officer, LBNL, Jim.
A Trust Framework for Security Collaboration among Infrastructures David Kelsey (STFC-RAL, UK) WLCG GDB, CERN 10 Jul 2013.
Security Policy Update WLCG GDB CERN, 14 May 2008 David Kelsey STFC/RAL
Grid Security and Identity Management Mine Altunay Security Officer, Open Science Grid, Fermilab.
Sep 25, 20071/5 Grid Services Activities on Security Gabriele Garzoglio Grid Services Activities on Security Gabriele Garzoglio Computing Division, Fermilab.
OSG Area Coordinator’s Report: Workload Management Maxim Potekhin BNL May 8 th, 2008.
WLCG Authentication & Authorisation LHCOPN/LHCONE Rome, 29 April 2014 David Kelsey STFC/RAL.
OSG Area Coordinators Meeting Security Team Report Mine Altunay 02/13/2012.
JSPG Update David Kelsey MWSG, Zurich 31 Mar 2009.
External Communication & Coordination Ruth Pordes
Area Coordinator Report for Operations Rob Quick 4/10/2008.
Operations Area Coordinator Report. 31 Jan Overview Operations Current Initiatives  RSV Version 2  New Probes, Easier Configuration, Improved.
INFSO-RI Enabling Grids for E-sciencE Joint Security Policy Group David Kelsey, CCLRC/RAL, UK 3 rd EGEE Project.
LCG User, Site & VO Registration in EGEE/LCG Bob Cowles OSG Technical Meeting Dec 15-17, 2004 UCSD.
Open Science Grid Security Activities D. Olson, LBNL OSG Deputy Security Officer For the OSG Security Team: M. Altunay, FNAL, OSG Security Officer, D.O.,
Cyber Security Issues in HEP and NP Grids Bob Cowles — SLAC NC August 2004.
OSG Area Coordinators Meeting Security Team Report Mine Altunay 8/15/2012.
 Welcome/Introductions  Overview of the Plan  Updates on Information Requests  Plan Discussion  Hazards/Gaps/Actions/Priorities  Next Steps.
Running User Jobs In the Grid without End User Certificates - Assessing Traceability Anand Padmanabhan CyberGIS Center for Advanced Digital and Spatial.
OSG VO Security Policies and Requirements Mine Altunay OSG Security Team July 2007.
New OSG Virtual Organization Security Training OSG Security Team.
15-Jun-04D.P.Kelsey, LCG-GDB-Security1 LCG/GDB Security Update (Report from the LCG Security Group) CERN 15 June 2004 David Kelsey CCLRC/RAL, UK
OSG User Group August 14, Progress since last meeting OSG Users meeting at BNL (Jun 16-17) –Core Discussions on: Workload Management; Security.
Office 365 Security Assessment Workshop
Presentation to the COIT Architecture Sub-Committee
OSG Security Kevin Hill.
David Kelsey CCLRC/RAL, UK
Open Science Grid Progress and Status
Open Science Grid Consortium Meeting
JRA3 Introduction Åke Edlund EGEE Security Head
Launch a Records Mgt Program
Future State Business Process Discovery & Design Recap
NYHQ DSRIP Cultural Competency & Health Literacy Committee Kick-Off Meeting March 2015.
<<Project Name>> – Engagement Status
Fiscal Year Budget Plan
Continuity of Operations Planning
Managing Project Work, Scope, Schedules, and Cost
Executive Project Kickoff
Management of Change GROUP HSE RULE (CR-GR-HSE-302)
Presentation transcript:

OSG Security Review Mine Altunay March 12, 2008

31 Jan Security Overview Current Initiatives  OSG Security roadmap  Technical and operational needs for long and short term (WBS 2.1.4)  Incident Mitigation Plans (WBS 2.3)  AuthN needs: GSI auth problems, CRLs, proxy clean up and VOMS-GUMS authN (WBS and and )  AuthZ needs: Banning tool, Uniform FQAN, MyProxy, AC validation (a request doc is written with Privilege project) (WBS and and )  More fire drills and site education (WBS 2.1)  Policy work  JSPG and OSG policies – incident response policy has priority (WBS and 2.3.)  Revising old security plan against NIST guidelines (WBS 2.1.4)  Risk assessment (WBS 2.1.4, 2.3) Accomplishments Since Last Report (some in progress)  Web documentation completed (WBS 2.1, – partial)  Security plan revision started – in early phase (in progress) (WBS 2.1.4)  made an outline, Doug is in charge  Privacy Policy completed, sent for reviews (WBS 2.3)  Met Kelsey at all hands and sent OSG comments on (WBS 2.3, 2.3.2, 2.3.1)  Traceability and Pilot policies

31 Jan 2008 Security Overview  Met or contacted all VO and site contacts (WBS 2.3.1)  Asked them to identify personnel for roles  updated roles and contact info  OSG VO AUPs and registration workflows (WBS 2.3.1)  contacting and sending templates to other VOs (in progress)  OSG EDU, Engage, CMS and ATLAS  They send their AUP and Registration Policy (Ron C in charge)  By April 16 th – already met and started with CMS and EDU  Technical work  Official request for Banning Tool (WBS 2.1, 2.1.2, )  Met with SAZ team and preparing an official requirements document (WBS )  Talking with GT on their roadmap (WBS )  Wrote security requirements for Gratia (WBS 2.1 and )  Examining splunk tool with CST, will test this week for our needs (WBS ) Issues / Concerns  Effort– Jim Basney starting at April. Ron already started – very helpful  Incident sharing and privacy concerns  Lack of security education, and incidents  We need more fire drills and discuss OSG responsibilities  Lack of attendance at security meetings – our facility team 3

31 Jan WBS Security WBS Milestone TaskStartFinishComplete 2.1.1NoMaintain/monitor operational securityPetravick10/1/079/30/08 0%  50% 2.1.2NoExecute incident response process (as needed) Altunay10/1/079/30/0870% 2.1.4YesV2 of Security Management PlanAltunay10/1/0712/3/0750% 2.1.5NoDevelop and Execute Security Training for all key OSG stakeholders Altunay2/18/083/7/0850% 2.1.7NoFirst security audit of OSG Assets - January 2008 Altunay1/2/081/31/080% 2.1.8NoSecond security audit of OSG assets – July 2008 Altunay7/1/087/31/080% 2.1.9NoPlan review of contributions from external projects (Auditing, VO Services, CEDPS, etc.) Petravick10/1/079/30/080%  75% NoIdentify and drive operational and functional requirements to external projects Petravick10/1/079/30/080%  50% NoReview contributions from external projects Altunay10/1/079/30/080%  25%

31 Jan 2008 WBS Security 2.2NoManage and maintain OSG Registration Authority Olson10/1/079/30/08100% 2.3NoReview and Implement Policy needs of OSG Altunay10/1/079/30/0810%  25% 2.3.1NoDefine common local policies for VOsAltunay10/1/079/30/0815 %  30% 2.3.2NoInteraction with other Grid ProjectsCowles, Altunay 10/1/079/30/085%  75% 2.4 No Quarterly area status, progress, issues into twiki Altunay10/1/079/30/0825%  100% 5