David Kelsey (STFC-RAL) EGI Security David Kelsey (STFC-RAL) Chair EGI Security Policy Group
European Grid Infrastructure EGI Security
Organisation of EGI Security Security Coordination Group (SCG) Security Policy Group (SPG) Software Vulnerability Group (SVG) EGI CSIRT (TI certified) Incident response, monitoring, security challenges, training IGTF/EUGridPMA Funded by NGIs, EGI.eu, EU H2020 (EGI-Engage) A lot of cross-membership Core team of ~ 8-12 people (not all full-time) Part of more general EGI Operations EGI Security
Classic Grid Technical Security Authentication IGTF X.509 PKI certificates User registers with Virtual Organisation (VO) Authorisation (on multiple infrastructures) VOMS issues X.509 attribute certificates VO membership, Groups, Roles Local authorisation LCAS, LCMAPS, ARGUS, … EGI CSIRT can suspend compromised credentials Global ARGUS policy EGI Security
Developments Funded by EGI-Engage EGI Federated Clouds service New trust model, policies and procedures EGI Long Tail of Science service Hide certificates from users Federated login, credential translation, etc Addressing different Levels of Assurance In collaboration with EU H2020 AARC project EGI Security
Future We already have collaborated well with others Joint training events with EUDAT and PRACE Aim for stronger collaboration on incident handling And sharing intelligence Organise more joint training events More on risk assessment, standards, best practices Joint bids for future funding opportunities The agenda of this WISE meeting is all VERY relevant! EGI Security