SlideShare a Scribd company logo
IaaS Security – Back to the Drawing Board 
UP 2014, DEC 11th 
Amit Cohen 
CEO, FortyCloud
UP 2014, DEC 11th 
5 Facts About FortyCloud
Fact #1 
We provide a comprehensive 
security solution for IaaS 
deployments 
UP 2014, DEC 11th
Fact #2 – Available On 
UP 2014, DEC 11th
Fact #3 – Established in 2012 
UP 2014, DEC 11th
Fact #4 – Deployed in data-centers on all continents 
UP 2014, DEC 11th
Fact #5 – Our offices 
UP 2014, DEC 11th 
San Francisco 
Boston 
Israel 
Opens Q1/15
Infrastructure as a Service (IaaS) 
The service provides access to computing resource in a virtualized environment, “the 
Cloud”, across a public connection, usually the internet. In the case of IaaS the computing resource provided is specifically 
that of virtualized hardware, in other words, computing infrastructure. The definition includes such 
offerings as virtual server space, network connections, bandwidth, IP addresses and load balancers. Physically, the pool of 
hardware resource is pulled from a multitude of servers and networks usually distributed across numerous 
data centers, all of which the cloud provider is responsible for maintaining. The 
client, on the other hand, is given access to the virtualized components in order to build their own IT platforms 
(source: interoute.com) 
UP 2014, DEC 11th
IaaS Market Growth 
IaaS is projected to grow at 29% CAGR through 2018 
and reach approximately $18bn in revenue 
$17.6B 
2013 2014 2015 2016 2017 2018 
Source: 451 Research, 2014 
UP 2014, DEC 11th 
$7.1B
Why is IaaS so Popular 
UP 2014, DEC 11th
IaaS – A Shared Responsibility Model 
UP 2014, DEC 11th
CSPs Security Toolsets 
UP 2014, DEC 11th 
CSP 1 CSP 2 CSP 3 
Virtual Private Cloud Option + + + 
Global Virtual Private Cloud - - + 
IP Based Firewall Rules + - + 
Identity Based Firewall Rules - - - 
IPSec Connectivity 
(to the virtual environment) + - -
Security in IaaS - A Serious Pain Point 
UP 2014, DEC 11th
IaaS Security Challenges 
Security 
best-practices 
in the cloud 
Security 
automation 
Multi-datacenter 
Multi-cloud 
deployments 
Compliance 
(PCI, HIPAA) 
UP 2014, DEC 11th
IaaS Security Challenges 
Security 
best-practices 
in the cloud 
Security 
automation 
Multi-datacenter 
Multi-cloud 
deployments 
Compliance 
(PCI, HIPAA) 
UP 2014, DEC 11th
Security Best Practices in the Cloud 
• Isolation 
• Firewall 
• Identity-based access 
UP 2014, DEC 11th
IaaS Security Challenges 
Security 
best-practices 
in the cloud 
Security 
automation 
Multi-datacenter 
Multi-cloud 
deployments 
Compliance 
(PCI, HIPAA) 
UP 2014, DEC 11th
Security Automation 
• Configuration management 
• Firewall policies 
• Automation tool 
UP 2014, DEC 11th
IaaS Security Challenges 
Security 
best-practices 
in the cloud 
Security 
automation 
Multi-datacenter 
Multi-cloud 
deployments 
Compliance 
(PCI, HIPAA) 
UP 2014, DEC 11th
Multiple Cloud Locations 
• Connectivity 
• Global security policies 
• One policy, different infrastructures 
UP 2014, DEC 11th
IaaS Security Challenges 
Security 
best-practices 
in the cloud 
Security 
automation 
Multi-datacenter 
Multi-cloud 
deployments 
Compliance 
(PCI, HIPAA)
Compliance 
• Encrypt sensitive data 
• Differentiated access rights 
• Log, analyze and alert 
• Vulnerability monitoring 
UP 2014, DEC 11th
Summary 
 Leverage IaaS to increase business agility 
 Security requires some white-board planning 
 Choose the right (cloud, solution) partners for implementation
Questions? 
Contact 
Amit Cohen 
CEO, FortyCloud 
amit@fortycloud.com 
www.fortycloud.com 
UP 2014, DEC 11th

More Related Content

PDF
Cisco at v mworld 2015 intercloud - hybrid cloud solutions for vmware workloa...
PDF
Accelerating Digital Leadership
PPTX
Shawn Harris - CCSP SAH v2
PPTX
Seclore for McAfee MVISION Cloud
PPTX
Webinar: Enable ServiceNow with Data Security, Visibility, and Compliance
PDF
CSA colorado 2016 presentation CloudPassage
PPTX
Adsg presentation en
PDF
Itmgen 4317 security
Cisco at v mworld 2015 intercloud - hybrid cloud solutions for vmware workloa...
Accelerating Digital Leadership
Shawn Harris - CCSP SAH v2
Seclore for McAfee MVISION Cloud
Webinar: Enable ServiceNow with Data Security, Visibility, and Compliance
CSA colorado 2016 presentation CloudPassage
Adsg presentation en
Itmgen 4317 security

What's hot (18)

PPTX
CIO's Guide to Enterprise Cloud Adoption
PPTX
2nd Anniversary Datacomm Cloud Business- Azure Stack
PDF
Cisco Connect 2018 Thailand - Next generation hyperconverged infrastructure-s...
PPTX
Understanding Global Data Protection Laws: Webinar
PPTX
CipherCloud for Salesforce - Solution Overview
PDF
Cisco Connect 2018 Singapore - Changing the Security Equation
PDF
Unlocking the Cloud Operating Model: The Provisioning Strategy
PDF
Cisco Connect 2018 Singapore - Cisco CMX
PPTX
CipherCloud Webinar - Cloud Encryption & Tokenization 101
PDF
What is the Future of SIEM?
PDF
[Cisco Connect 2018 - Vietnam] Anh duc le building a secure data center
PDF
Oracle Sparc Cloud
PPTX
C-Level tools for Cloud security
PDF
Cisco Connect 2018 Singapore - Transforming Enterprises in a Multi-Cloud World
PDF
Cloud Security & Cloud Encryption Explained
PDF
Cybesecurity of the IoT
PDF
Cloud Encryption Gateways (how enterprises can leverage cloud SaaS without co...
CIO's Guide to Enterprise Cloud Adoption
2nd Anniversary Datacomm Cloud Business- Azure Stack
Cisco Connect 2018 Thailand - Next generation hyperconverged infrastructure-s...
Understanding Global Data Protection Laws: Webinar
CipherCloud for Salesforce - Solution Overview
Cisco Connect 2018 Singapore - Changing the Security Equation
Unlocking the Cloud Operating Model: The Provisioning Strategy
Cisco Connect 2018 Singapore - Cisco CMX
CipherCloud Webinar - Cloud Encryption & Tokenization 101
What is the Future of SIEM?
[Cisco Connect 2018 - Vietnam] Anh duc le building a secure data center
Oracle Sparc Cloud
C-Level tools for Cloud security
Cisco Connect 2018 Singapore - Transforming Enterprises in a Multi-Cloud World
Cloud Security & Cloud Encryption Explained
Cybesecurity of the IoT
Cloud Encryption Gateways (how enterprises can leverage cloud SaaS without co...
Ad

Viewers also liked (20)

PPTX
Cloud computing security issues and challenges
PPTX
OWASP Cloud Top 10
PPTX
Security concerns with SaaS layer of cloud computing
PDF
Detection and Prevention of security vulnerabilities associated with mobile b...
PPTX
How to Secure Your IaaS and PaaS Environments
PPTX
Vulnerabilities in SaaS layer of cloud computing
DOCX
Cloud Computing Security Issues in Infrastructure as a Service” report
PPT
Cloud Computing Security Issues in Infrastructure as a Service”
PPTX
PaaS security challenges and solutions (salesforce vision)
PPTX
Providing Proofs of Past Data Possession in Cloud Forensics
PDF
NGN Japan 2012-2017
PPTX
Delivering Secure OpenStack IaaS for SaaS Products
PDF
Security on cloud storage and IaaS (NSC: Taiwan - JST: Japan workshop)
PPTX
Automatski - The Internet of Things - Privacy in IoT
PDF
Big data analysis concepts and references by Cloud Security Alliance
PDF
IoT: Security & Privacy at IGNITE 2015
PDF
(130928) #fitalk cloud storage forensics - dropbox
PPTX
Cloud Computing : Security and Forensics
PDF
Cloud-forensics
PDF
Big data and cyber security legal risks and challenges
Cloud computing security issues and challenges
OWASP Cloud Top 10
Security concerns with SaaS layer of cloud computing
Detection and Prevention of security vulnerabilities associated with mobile b...
How to Secure Your IaaS and PaaS Environments
Vulnerabilities in SaaS layer of cloud computing
Cloud Computing Security Issues in Infrastructure as a Service” report
Cloud Computing Security Issues in Infrastructure as a Service”
PaaS security challenges and solutions (salesforce vision)
Providing Proofs of Past Data Possession in Cloud Forensics
NGN Japan 2012-2017
Delivering Secure OpenStack IaaS for SaaS Products
Security on cloud storage and IaaS (NSC: Taiwan - JST: Japan workshop)
Automatski - The Internet of Things - Privacy in IoT
Big data analysis concepts and references by Cloud Security Alliance
IoT: Security & Privacy at IGNITE 2015
(130928) #fitalk cloud storage forensics - dropbox
Cloud Computing : Security and Forensics
Cloud-forensics
Big data and cyber security legal risks and challenges
Ad

Similar to IaaS Security - Back to the Drawing Board (20)

PPTX
#ALSummit: Accenture - Making the Move: Enabling Security in the Cloud
PPTX
Data center Trends with Oracle
PDF
VMWare and SoftLayer Hybrid IT
PPTX
Cloud Computing Architecture Primer
PDF
Oracle's Cloud Strategy
PPTX
Sap Seminar Leveraging Cloud Infrastructure
PPTX
Shared responsibility - a model for good cloud security
PDF
A5 cloud security_now_a_reason_to_move_to_the_cloud
PDF
Cisco Intercloud Announcement, Cisco Live 2014
PDF
Intellectual Property Strategy: Challenges and Opportunities in the Cloud @ C...
PDF
Thin Air or Solid Ground? Practical Cloud Security
PPTX
The New Economics of Wi-Fi _ Disruptive Forces Driving Innovation for Carrier...
PDF
A Comprehensive Look into the World of Cloud Computing.pdf
PDF
Ciphercloud Solutions Overview hsa oct2011
PPTX
HP Helion OpenStack and Professional Services
PPTX
Accelerated Saa S Exec Briefing V2
PDF
Security Chat 5.0
PPT
Seguridad: sembrando confianza en el cloud
PDF
Public Cloud services delivered to your Datacenter
PPTX
Securing Data in the Cloud - GISEC2017
#ALSummit: Accenture - Making the Move: Enabling Security in the Cloud
Data center Trends with Oracle
VMWare and SoftLayer Hybrid IT
Cloud Computing Architecture Primer
Oracle's Cloud Strategy
Sap Seminar Leveraging Cloud Infrastructure
Shared responsibility - a model for good cloud security
A5 cloud security_now_a_reason_to_move_to_the_cloud
Cisco Intercloud Announcement, Cisco Live 2014
Intellectual Property Strategy: Challenges and Opportunities in the Cloud @ C...
Thin Air or Solid Ground? Practical Cloud Security
The New Economics of Wi-Fi _ Disruptive Forces Driving Innovation for Carrier...
A Comprehensive Look into the World of Cloud Computing.pdf
Ciphercloud Solutions Overview hsa oct2011
HP Helion OpenStack and Professional Services
Accelerated Saa S Exec Briefing V2
Security Chat 5.0
Seguridad: sembrando confianza en el cloud
Public Cloud services delivered to your Datacenter
Securing Data in the Cloud - GISEC2017

Recently uploaded (20)

PPTX
Lecture 3: Operating Systems Introduction to Computer Hardware Systems
PPTX
Odoo POS Development Services by CandidRoot Solutions
PDF
Adobe Illustrator 28.6 Crack My Vision of Vector Design
PDF
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
PPTX
ai tools demonstartion for schools and inter college
PDF
Nekopoi APK 2025 free lastest update
PDF
T3DD25 TYPO3 Content Blocks - Deep Dive by André Kraus
PDF
Digital Strategies for Manufacturing Companies
PDF
Design an Analysis of Algorithms I-SECS-1021-03
PPT
Introduction Database Management System for Course Database
PPTX
Introduction to Artificial Intelligence
PDF
Wondershare Filmora 15 Crack With Activation Key [2025
PDF
System and Network Administraation Chapter 3
PDF
Internet Downloader Manager (IDM) Crack 6.42 Build 41
PDF
2025 Textile ERP Trends: SAP, Odoo & Oracle
PDF
Odoo Companies in India – Driving Business Transformation.pdf
PPTX
Operating system designcfffgfgggggggvggggggggg
PDF
Upgrade and Innovation Strategies for SAP ERP Customers
PPTX
VVF-Customer-Presentation2025-Ver1.9.pptx
PPTX
CHAPTER 2 - PM Management and IT Context
Lecture 3: Operating Systems Introduction to Computer Hardware Systems
Odoo POS Development Services by CandidRoot Solutions
Adobe Illustrator 28.6 Crack My Vision of Vector Design
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
ai tools demonstartion for schools and inter college
Nekopoi APK 2025 free lastest update
T3DD25 TYPO3 Content Blocks - Deep Dive by André Kraus
Digital Strategies for Manufacturing Companies
Design an Analysis of Algorithms I-SECS-1021-03
Introduction Database Management System for Course Database
Introduction to Artificial Intelligence
Wondershare Filmora 15 Crack With Activation Key [2025
System and Network Administraation Chapter 3
Internet Downloader Manager (IDM) Crack 6.42 Build 41
2025 Textile ERP Trends: SAP, Odoo & Oracle
Odoo Companies in India – Driving Business Transformation.pdf
Operating system designcfffgfgggggggvggggggggg
Upgrade and Innovation Strategies for SAP ERP Customers
VVF-Customer-Presentation2025-Ver1.9.pptx
CHAPTER 2 - PM Management and IT Context

IaaS Security - Back to the Drawing Board

  • 1. IaaS Security – Back to the Drawing Board UP 2014, DEC 11th Amit Cohen CEO, FortyCloud
  • 2. UP 2014, DEC 11th 5 Facts About FortyCloud
  • 3. Fact #1 We provide a comprehensive security solution for IaaS deployments UP 2014, DEC 11th
  • 4. Fact #2 – Available On UP 2014, DEC 11th
  • 5. Fact #3 – Established in 2012 UP 2014, DEC 11th
  • 6. Fact #4 – Deployed in data-centers on all continents UP 2014, DEC 11th
  • 7. Fact #5 – Our offices UP 2014, DEC 11th San Francisco Boston Israel Opens Q1/15
  • 8. Infrastructure as a Service (IaaS) The service provides access to computing resource in a virtualized environment, “the Cloud”, across a public connection, usually the internet. In the case of IaaS the computing resource provided is specifically that of virtualized hardware, in other words, computing infrastructure. The definition includes such offerings as virtual server space, network connections, bandwidth, IP addresses and load balancers. Physically, the pool of hardware resource is pulled from a multitude of servers and networks usually distributed across numerous data centers, all of which the cloud provider is responsible for maintaining. The client, on the other hand, is given access to the virtualized components in order to build their own IT platforms (source: interoute.com) UP 2014, DEC 11th
  • 9. IaaS Market Growth IaaS is projected to grow at 29% CAGR through 2018 and reach approximately $18bn in revenue $17.6B 2013 2014 2015 2016 2017 2018 Source: 451 Research, 2014 UP 2014, DEC 11th $7.1B
  • 10. Why is IaaS so Popular UP 2014, DEC 11th
  • 11. IaaS – A Shared Responsibility Model UP 2014, DEC 11th
  • 12. CSPs Security Toolsets UP 2014, DEC 11th CSP 1 CSP 2 CSP 3 Virtual Private Cloud Option + + + Global Virtual Private Cloud - - + IP Based Firewall Rules + - + Identity Based Firewall Rules - - - IPSec Connectivity (to the virtual environment) + - -
  • 13. Security in IaaS - A Serious Pain Point UP 2014, DEC 11th
  • 14. IaaS Security Challenges Security best-practices in the cloud Security automation Multi-datacenter Multi-cloud deployments Compliance (PCI, HIPAA) UP 2014, DEC 11th
  • 15. IaaS Security Challenges Security best-practices in the cloud Security automation Multi-datacenter Multi-cloud deployments Compliance (PCI, HIPAA) UP 2014, DEC 11th
  • 16. Security Best Practices in the Cloud • Isolation • Firewall • Identity-based access UP 2014, DEC 11th
  • 17. IaaS Security Challenges Security best-practices in the cloud Security automation Multi-datacenter Multi-cloud deployments Compliance (PCI, HIPAA) UP 2014, DEC 11th
  • 18. Security Automation • Configuration management • Firewall policies • Automation tool UP 2014, DEC 11th
  • 19. IaaS Security Challenges Security best-practices in the cloud Security automation Multi-datacenter Multi-cloud deployments Compliance (PCI, HIPAA) UP 2014, DEC 11th
  • 20. Multiple Cloud Locations • Connectivity • Global security policies • One policy, different infrastructures UP 2014, DEC 11th
  • 21. IaaS Security Challenges Security best-practices in the cloud Security automation Multi-datacenter Multi-cloud deployments Compliance (PCI, HIPAA)
  • 22. Compliance • Encrypt sensitive data • Differentiated access rights • Log, analyze and alert • Vulnerability monitoring UP 2014, DEC 11th
  • 23. Summary  Leverage IaaS to increase business agility  Security requires some white-board planning  Choose the right (cloud, solution) partners for implementation
  • 24. Questions? Contact Amit Cohen CEO, FortyCloud amit@fortycloud.com www.fortycloud.com UP 2014, DEC 11th