Achieving Assurance and Compliance in the Cloud Digital Government Cyber Security Conference Cheryl Wilner, CEO Bethesda Advanced Solutions Ronald Regan.

Slides:



Advertisements
Similar presentations
3SKey 3SKey.
Advertisements

Copyright © 2011 Cloud Security Alliance Achieving Security Assurance and Compliance in the Cloud Jim Reavis, Executive Director.
Cloud Security Alliance Research & Roadmap June 2012
Enabling traceability and transparency with standards-based regulatory reporting Dr. Said Tabet Senior Technologist and Industry Standards Strategist Office.
Copyright © 2011 Cloud Security Alliance Trusted Cloud Initiative Work Group Session.
BENEFITS OF SUCCESSFUL IT MODERNIZATION
In Harmony, In the Cloud: Harmonizing Data Protection Rules In a Cross-Border World Steve Mutkoski Worldwide Director Policy Microsoft Corporation.
Copyright © 2011 Cloud Security Alliance Cloud Controls Matrix Work Group Session Sean Cordero President of Cloudwatchmen,
Copyright © 2013 Cloud Security Alliance.
Copyright © 2014 Cloud Security Alliance Security Certification for Cloud Services : The CSA STAR Certification Daniele Catteddu,
Copyright © 2013 Cloud Security Alliance CSA Speed Talk: “STAR &CCSK – An Update on Provider and User Certification”
Cloud Security Challenges Today and Tomorrow NameTitle February 2011.
Copyright © 2011 Cloud Security Alliance Keynote.
Copyright © 2012 Cloud Security Alliance Conference Announcements.
Copyright © 2012 Cloud Security Alliance – UK & Ireland Liberty Hall, Dublin March 30th 2012.
Introduction to Financial Management
An introduction to China’s Science & tech. Programs CHENG, Xu May 23,2006 Department of Computer Science and Technology College of EECS, Peking.
ENISA and Cloud Security
Building trust in the Cloud: the CSA perspective Daniele Catteddu, Managing Director EMEA & OCF-STAR Program Director Cloud Security Alliance © Cloud Security.
John Howie Big Data: Answering Questions and Solving Society’s Problems, but at What Cost?
Achieving Security Assurance and Compliance in the Cloud Jim Reavis Executive Director.
Creating a “Work- Ready” Supportive Housing Environment Wendy M. Coco Senior Program Manager Corporation for Supportive Housing June
21st Century Customs Solution
Cloud Security Challenges Today and Tomorrow Aloysius Cheang Asia Pacific Strategy Advisor April 2011.
Jim Reavis, Executive Director Cloud Security Alliance November 22, 2010 Developing a Baseline On Cloud Security.
Security and Privacy Services Cloud computing point of view October 2012.
Federated Identity Management in New Zealand Sat Mandri Service Manager TNC15 REFEDs Meeting, 14 th June 2015.
Cloud Security Alliance Research & Roadmap Jim Reavis Executive Director August 2011.
Cybersecurity nexus (CSX)
© Cloud Security Alliance, 2015 Sean Cordero, Chair CCM Laura Posey, Chair CAIQ.
SECURITY Is cloud computing secure? Are Microsoft Online Services secure? Is cloud computing secure? Are Microsoft Online Services secure? PRIVACY What.
Achieving Security Assurance and Compliance in the Cloud Jim Reavis Executive Director.
Cloud Security Alliance Research & Roadmap
Cloud Security Alliance Overview and Organizational Plans Jim Reavis, Co-founder & Executive Director August 5, 2009.
Reaching the Cloud Era in the European Union EU28 Cloud Security Conference Riga, 16 June 2015 Pearse
·
Australia Cybercrime Capacity Building Conference April 2010 Brunei Darussalam Ms Marcella Hawkes Director, Cyber Security Policy Australian Government.
Copyright © 2011 Cloud Security Alliance Building Trust into the Next Generation of Information Technology.
Copyright © 2015 Centrify Corporation. All Rights Reserved. 1 Secure & Unified Identity for End Users & Privileged Users.
Tom O’Reilly, CTO - TEEAM, VCE DIGITAL BANKING SUCCESS THROUGH THE EMC FEDERATION.
Godfrey Ntoele Managing Executive: Government Business Service Cloud Computing Telco perspective ICT Summit 2012 Gauteng Province.
Copyright © 2011 Cloud Security Alliance Cloud Security Alliance Research & Roadmap Jim Reavis, Executive Director, CSA.
Cloud Security: Critical Threats and Global Initiatives Jim Reavis, Executive Director July, 2010.
Cloud Computing – Mission Critical Ready? William Michael Director of Business Development NEC Corporation of America.
Cloud Computing, Policy Management and Standardization Europe Identity Conference 2011 John Sabo, Director Global Government Relations, CA Technologies.
Cloud Market Readiness Report Finance, Media, and Legal Sectors March 2014 Trend Consulting 2013.
Promoting excellence in social security Concluding remarks Hans-Horst Konkolewsky Secretary General International Social.
CIBC Global Services © 2006, Echoworx Corporation Ubiquity of Security Compliance and Content Management Stephen Dodd Director – Enterprise Accounts.
Theories of Agile, Fails of Security Daniel Liber CyberArk.
Introduction to our reality
IoT Trust Framework leading to self regulation code of conduct and certification models Craig Spiezle Executive Director & President Online.
Cloud security
Security in Cloud Computing Zac douglass Chris kahn.
Certicom Corporation Open House June 3, Certicom Corp. Founded in 1985 by Dr. Scott Vanstone Innovators in security technology –Leading supplier.
Daniel Field, Atos Spain Towards the European Open Science Cloud, Heidelberg, 20/01/2016.
© Cloud Security Alliance, 2015 Sean Cordero, Chair CCM.
Network Centric Operations Industry Consortium The Intersection of Cloud Computing and Cyber Security Melvin Greer, NCOIC Vice Chair, Cloud Computing Working.
European Science Cloud for Research Towards a common vision Per Öster CSC – IT Center for Science Ltd.
2© Copyright 2013 EMC Corporation. All rights reserved. Cyber Intelligence Fighting Cyber Crime Insert Event Date LEADERS EDGE.
© Cloud Security Alliance, 2015 Sean Cordero, Chair CCM.
AIOTI ALLIANCE FOR INTERNET OF THINGS INNOVATION Chair: Kit Lam (Samsung) & Co-Chair: Thomas Kallstenius (iMinds) Brussels, WG7 Wearables.
Copyright © 2011 Cloud Security Alliance UK Chapter Paul Davies.
Cyber Security and Open Source Community Call Seong K. Mun, PhD President and CEO, OSEHRA Arlington, Virginia Webex:
Department of Internal Affairs Disrupting Government Service Models Tim Occleshaw Government Chief Technology Officer Service and System Transformation.
State-of-the-States: CIO Priorities, Trends and Opportunities
Open Platform 3.0™ Overview – 3rd August 2016 Dr Christopher J Harding
Army Geospatial Center
Developing a Baseline On Cloud Security Jim Reavis, Executive Director
Achieving Security Assurance and Compliance in the Cloud
Your weekly Azure news fix.
Presentation transcript:

Achieving Assurance and Compliance in the Cloud Digital Government Cyber Security Conference Cheryl Wilner, CEO Bethesda Advanced Solutions Ronald Regan Building, Washington DC May

Copyright © 2011 Cloud Security Alliance Securing Government Data Government Agencies largest concern with moving to the cloud is Security…....and regardless of any signed contract or SLA, at the end of the day the buck stops with you!

Copyright © 2011 Cloud Security Alliance Cloud Computing Security: Largest Barrier to Adoption

Copyright © 2011 Cloud Security Alliance What is Different about Cloud Security? SERVICE OWNER SaaSPaaSIaaS DataJointTenant ApplicationJoint Tenant ComputeProviderJointTenant StorageProvider Joint NetworkProvider Joint PhysicalProvider

Copyright © 2011 Cloud Security Alliance Hacking is More Efficient in a Cloud

Copyright © 2011 Cloud Security Alliance Government Agencies What are you going to do with 20+ years of “stuff”?

Copyright © 2011 Cloud Security Alliance

Copyright © 2011 Cloud Security Alliance

Copyright © 2011 Cloud Security Alliance

Copyright © 2011 Cloud Security Alliance Thank you to COL Chris Miller, CIO/G-6 ADCCP Army Data Center Consolidation Program for providing his slides.

Copyright © 2011 Cloud Security Alliance

Copyright © 2011 Cloud Security Alliance The Cloud Security Alliance The Cloud Security Alliance CSA is a Global, not-for-profit organization Over 31,000 individual members, 120 corporate members, and 60 chapters Building best practices and a trusted cloud ecosystem Agile philosophy, rapid development of applied research GRC: Balance compliance with risk management Reference models: build using existing standards Identity: a key foundation of a functioning cloud economy Champion interoperability MISSION - “To promote the use of best practices for providing security assurance within Cloud Computing, and provide education on the uses of Cloud Computing to help secure all other forms of computing.”

Copyright © 2011 Cloud Security Alliance CSA Metro DC Chapter

Copyright © 2011 Cloud Security Alliance CSA Guidance Research Popular best practices for securing cloud computing Flagship research project V2.1 released 12/2009 V3 research underway, targeting Q release wiki.cloudsecurityalliance.org /guidance Operating in the Cloud Governing the Cloud Guidance > 100k downloads: Guidance > 100k downloads: cloudsecurityalliance.org/guidanc e cloudsecurityalliance.org/guidanc e

Copyright © 2011 Cloud Security Alliance Summary Create a Plan You will need help as this is not a walk in the park You have more “stuff” than you think Security is the highest priority concern This is not as easy as it looks and it will take longer than you think

Copyright © 2011 Cloud Security Alliance Contact Cheryl Wilner, CEO Bethesda Advanced Solutions (BAS)