Tracy Bierman August 17, 2011 A Proposal to Archive Shuttle Records in the Cloud.

Slides:



Advertisements
Similar presentations
Creating HIPAA-Compliant Medical Data Applications with Amazon Web Services Presented by, Tulika Srivastava Purdue University.
Advertisements

CHANGING THE WAY IT WORKS Cloud Computing 4/6/2015 Presented by S.Ganesh ( )
The International Security Standard
Security, Privacy and the Cloud Connecticut Community Providers’ Association June 20, 2014 Steven R Bulmer, VP of Professional Services.
Chapter 22: Cloud Computing and Related Security Issues Guide to Computer Network Security.
Data across time and organizations APA Conference 2012 Monica Marinucci Director of Research, Global Education & Research Industry Unit.
INTRODUCTION TO CLOUD COMPUTING CS 595 LECTURE 6 2/13/2015.
SITS:Vision Annual the Hilton Deansgate Hotel, Manchester Gary Williams – Business Development Director Electronic Evidence July 2011.
11© 2011 Hitachi Data Systems. All rights reserved. HITACHI DATA DISCOVERY FOR MICROSOFT® SHAREPOINT ® SOLUTION SCALING YOUR SHAREPOINT ENVIRONMENT PRESENTER.
Summary Slide Allegro Vivace (Fast and Lively) Your Logo Here Automated Financial Reconciliations Website – Automated Financial.
May 17, Capabilities Description of a Rapid Prototyping Capability for Earth-Sun System Sciences RPC Project Team Mississippi State University.
Principles of Information Security, 2nd edition1 Cryptography.
US GPO AIP Independence Test CS 496A – Senior Design Team members: Antonio Castillo, Johnny Ng, Aram Weintraub, Tin-Shuk Wong Faculty advisor: Dr. Russ.
The 4 Steps You Must Know Before Migrating Platforms Presented by: Jeff Tujetsch, VP of IBM Domino Development Denny Russell, Senior Product Specialist,
Cloud Computing Guide & Handbook SAI USA Madhav Panwar.
Pay As You Go – Associating Costs with Jini Leases By: Peer Hasselmeyer and Markus Schumacher Presented By: Nathan Balon.
© 2009 EMC Corporation. All rights reserved. Content Addressed Storage Module 2.5.
Virtual Private Network
Open Cloud Sunil Kumar Balaganchi Thammaiah Internet and Web Systems 2, Spring 2012 Department of Computer Science University of Massachusetts Lowell.
A Robust Health Data Infrastructure P. Jon White, MD Director, Health IT Agency for Healthcare Research and Quality
November 2009 Network Disaster Recovery October 2014.
Abstract Cloud data center management is a key problem due to the numerous and heterogeneous strategies that can be applied, ranging from the VM placement.
Sanbolic Enabling the Always-On Enterprise Company Overview.
Enterprise NASA Will Peters August, 2010.
A Dynamic Solution for Electronic Records: The National Archives & Records Administration’s Electronic Records Archives Kenneth Thibodeau, Director Electronic.
Chapter 14 Encryption: A Matter Of Trust. Awad –Electronic Commerce 2/e © 2004 Pearson Prentice Hall 2 OBJECTIVES What is Encryption? Basic Cryptographic.
Identity Proofing in the Cloud
IT Challenges for Space Medicine Kathy Johnson-Throop NASA Johnson Space Center August 16, 2010.
Information Systems Security Computer System Life Cycle Security.
Cloud Computing Zach Ciccone Claudia Rodriguez Annia Aleman Xiaoying Tu Nov 14, 2013.
Electronic Payment Systems. How do we make an electronic payment? Credit and debit cards Smart cards Electronic cash (digital cash) Electronic wallets.
Mike Ricchio Director Consolidated Technology Services September 28, 2011 Brave New World: The Future of IT in Washington.
HPCC 2015, August , New York, USA Wei Chang c Joint work with Qin Liu a, Guojun Wang b, and Jie Wu c a. Hunan University, P. R. China b. Central.
Chapter 9 Section 2 : Storage Networking Technologies and Virtualization.
Lost in the Fog: Is Cloud Computing The Future for Digital Information?” Adam Stapleton Government Technology Services.
CLOUD COMPUTING FOR GOVERNMENT B. Victor Chakravarty October 6, 2009.
State of Michigan Space Optimization Project Recordkeeping Options and Solutions Records Management Services.
Archiving and Record Retention Service Cammy Webster Assistant Director - CSD DIS Jan 23, 2007.
©2015 EarthLink. All rights reserved. Private Cloud Hosting Create Your Own Private IT Environment.
CLASS Information Management Presented at NOAATECH Conference 2006 Presented by Pat Schafer (CLASS-WV Development Lead)
Content Addressed Storage
GPO’s Federal Digital System December 10, 2009 U.S. Government Printing Office.
OARN Database UPDATE – SEPTEMBER We’re Live – and Testing  The site is up and running in Google’s data centers:  The site has been secured: 
Private Cloud Hosting. IT Business Challenges I need to extend my on-premises virtualized environment to utilize the Cloud and manage the entire environment.
CLOUD COMPUTING cloud computing and its importance to large scale firms such as Apple and Microsoft.
Bay Ridge Security Consulting (BRSC) Cloud Computing.
Cloud Computing. new buzz word driven largely by marketing and service offerings Provided by big corporate players Google IBM Amazon Apple.
Justice Information Network Strategic Plan Development Justice Information Network Board March 18, 2008 Mo West, JIN Program Manager.
Sicherheitsaspekte beim Betrieb von IT-Systemen Christian Leichtfried, BDE Smart Energy IBM Austria December 2011.
8a Certified. About Us  Headquarters in Vienna, VA  Service Disabled Veteran-owned Small Business  SBA 8(a) program participant  Small Disadvantaged.
Building Preservation Environments with Data Grid Technology Reagan W. Moore Presenter: Praveen Namburi.
Chang, Wen-Hsi Division Director National Archives Administration, 2011/3/18/16:15-17: TELDAP International Conference.
Data Management and Digital Preservation Carly Dearborn, MSIS Digital Preservation & Electronic Records Archivist
Disaster Unpreparedness June 3, 2013 Underwritten by:
A Shared Commitment to Digital Preservation and Access.
Transform the datacenter brought to you by [insert partner name] Speaker name 00/00/0000 Insert your Logo here.
8a Certified. About Us  Headquarters in Vienna, VA  Service Disabled Veteran-owned Small Business  SBA 8(a) program participant  Small Disadvantaged.
[FUNCTIONALITY AND SAFETY OF A MODERN TECHNOLOGY] [CLOUD COMPUTING FOR INDIVIDUAL CONSUMERS]
What is Cloud Computing 1. Cloud computing is a service that helps you to perform the tasks over the Internet. The users can access resources as they.
Short Customer Presentation September The Company  Storgrid delivers a secure software platform for creating secure file sync and sharing solutions.
IDC Says, "Don't Move To The Cloud" Richard Whitehead Director, Intelligent Workload Management August, 2010 Ben Goodman Principal.
Chapter 6: Securing the Cloud
Cloud computing-The Future Technologies
Chapter 21: Cloud Computing and Related Security Issues
Chapter 22: Cloud Computing Technology and Security
Team Member: Xiaomin Dong
Cloud Computing: Concepts
Presentation transcript:

Tracy Bierman August 17, 2011 A Proposal to Archive Shuttle Records in the Cloud

Background Situation: The Shuttle Program has an enormous amount of electronic records that need to be archived as a part of the Transition and Retirement effort Problem: On-Center NASA data centers possess little excess storage capacity. Centers would need upfront capital to build the additional capacity needed on site IT Challenge: Provide an extensible near and long term approach for temporary and permanent electronic records storage of NASA records

The Cloud Cloud infrastructure –A data center that is accessed over the internet enabling instant provisioning and elasticity for customers Cloud Security –Cloud providers will need the same IT security accreditation that FISMA places on NASA data centers Integration with Agency Data Center Consolidation –Cloud infrastructure is an element of the NASA data center consolidation strategy

One Proposed Approach The Agency has existing TechDoc* document repository systems that can act as front end interfaces for cloud storage –Data would be encrypted on-Center before being stored in the cloud and returned on-Center before being decrypted –Authorized NASA users would access the records through the TechDoc systems located on-Center Tried and true security “use case” and posture: Extending a data center’s virtual private perimeter using encryption * TechDoc is free to use with source code anywhere in the Federal Government. It is commercially supported GOTS and COTS software.

Benefits of an On-Center Front-end & Cloud Storage Back-end Solution Low impact way to use the NASA Nebula and federal cloud –Allows on-Center tape backup in addition to the cloud’s backup strategies –Gives on-Center data centers the appearance of large amounts of storage capacity when it actually has little or none (NIST def #3), yet paying only for what is used (NIST def # 5) –Very short lead times hrs between identifying the need and meeting the need can be achieved (NIST def #1)

Potential Solution Utilizing Cloud

Information is encrypted in a NASA data center by the repository Then it is placed in cloud storage and cannot be decrypted Information must be returned to the repository in the NASA data center before decryption and served up to authenticated users. The encryption - decryption cycle provides a built-in integrity check Data Integrity Approach

Summary of Approach The records repository application, TechDoc, would reside only on- premises at an Agency data center (e.g. KSC) Federal cloud storage would work like a hard drive volume to TechDoc. Repository owners would determine where to store the encrypted data, either in local storage or federal cloud storage All data would be encrypted on a NASA Center (e.g. KSC) within TechDoc before being stored on-premises or off-premises in the federal cloud Only the TechDoc application account would have access privileges to the data at the federal cloud storage provider TechDoc would manage metadata, verify integrity and manage encryption keys, all on-Center regardless of data storage location. Upon demand TechDoc would move encrypted data from federal cloud storage to an on- Center temporary cache, once on-premises TechDoc would decrypt it to serve it to the authenticated authorized requesting user, all within seconds

Next Steps Meet with Center Records Managers and Institutional IT Organizations to discuss Cloud Archive Services as a potential solution Socialize security strategies envisioned for the cloud. Continue to work on cloud concepts with Agency stakeholders Fulfill all FISMA requirements to ensure we comply with security requirements Investigate costs and what organization pays for long-term storage

Beyond Shuttle Addressing Shuttle digital records management is a stepping stone to an Agency data and records management solution Recommendation –Establish a WG led by OCIO, with OCE, Mission Directorates, Programs and Projects, Centers, and research efforts –Survey current practices, regulations, and software offerings for data and records management –Develop a proposal for Agency program data and electronic records management