SlideShare a Scribd company logo
Azure Sphere
A New Solution for Creating Highly-Secured, Connected MCU Device
Mirco Vanini
Naples, December 10th 2018
IoT Day -  Introducing Azure Sphere
Follow the agenda, the speakers & vote the sessions!
Agenda
▪ Digital Trasformation
▪ Opportunity | Risk
▪ The 7 Properties
▪ Azure Sphere
o MCU
o OS
o Cloud
o DevKit
Digital Trasformation
A microcontroller (MCU for microcontroller unit, or UC for μ-controller) is a small computer on a single integrated circuit.
Digital Trasformation
Digital Trasformation
Fewer than 1% of MCU are connected today !
Digital Trasformation
Opportunity
Risk
The Mirai Botnet (aka Dyn Attack), Oct 2016: Largest IoT DDoS attack. Large portions of the internet
going down, including Twitter, the Guardian, Netflix, Reddit and CNN. Affected devices: Webcams and
DVR players.
The Jeep Hack, July 2015: A team of researchers was able to take total control of a Jeep SUV by
exploiting a firmware update vulnerability.
The Hackable Cardiac Device from St.Jude, Jan. 2017: The vulnerability provided access to drain the
battery, change heartbeat pace and to trigger shocks.
The TRENDnet Webcam Hack, Jan. 2012. Access to camera and microphone over TCP/IP.
The Printer Hack to catch fire, Nov. 2011: Made the fuser overheat, causing the paper in the printer to
catch fire.
The internet security battle
Microsoft has been fighting it for decades so they have
some experience to share.

Also on hardware side!
Example X-BOX
• XBOX: Hacked within weeks

Standard Intel x86 system
• XBOX 360:Hacked within 3,5 month

HW hack to compromise the bus
• XBOX One: Not hacked until today

also thanks to in-chip bus firewalls
Beginning
Highly-secured connected devices require 7 properties
Hardware Root of Trust
Is your device’s identity and software integrity secured by hardware?
Small Trusted Computing Base
Is your device’s TCB protected from bugs in other code?
Defense in Depth
Does your device remain protected if a security mechanism is defeated?
Dynamic Compartments
Can your device’s security protections improve after deployment?
Certificate-Based Authentication
Does your device use certificates instead of passwords for authentication?
Failure Reporting
Does your device report back about failures and anomalies?
Renewable Security
Does your device’s software update automatically?
Silicon
OS
Cloud
http://aka.ms/7properties
Azure Sphere
SECURITY
Every device built with Azure
Sphere is secured by
Microsoft.
For its 10 year lifetime.
PRODUCTIVITY
© Microsoft Corporation
The Azure Sphere developer
experience shortens OEM time
to market.
OPPORTUNITY
Azure Sphere empowers
OEMs to create new
customer experiences and
business models.
Azure Sphere empowers manufacturers to create highly-
secured, connected MCU devices
End-to-end solution for securing MCU powered devices
Secured MCUs
A new class of crossover Azure Sphere
MCUs, from our silicon partners, with built-in
Microsoft security technology provide
connectivity, high performance, and a secured
hardware root of trust.
Secured Operating System
The highly-secured Azure Sphere IoT OS
combines the best of Microsoft and OSS
technologies to create a trustworthy
platform for new IoT experiences.
Secured by our Cloud Service
The Azure Sphere Security Service
guards every Azure Sphere device; it
protects your devices and customers,
detects emerging threats, and proactively
responds.
Today, only Azure Sphere provides all 7 Properties for secured IoT
History
Project started in 2014 in Microsoft Research, now part of AI&R division
Started working on prototype chip and OS in 2015
Established “seven properties of highly secured devices”
Ran a “security challenge” based on prototype chip (Sopris) and OS in 2017
Actively working with partners and customers for production in 2018
Azure Sphere MCU
Secured
With built-in Microsoft security technology
i.e. I/O bus firewalls
including the Pluton Security Subsystem
Performance
With built-in Cortex-A processors
Delivers significantly greater performance
vs. similar traditional MCU
Connected
With built-in networking
Azure Sphere Silicon Partners
Microsoft is working with other suppliers to implement the Azure Sphere Pluton Security
Core into their HW
Azure Sphere OS
Secure Application Sandboxes
Compartmentalize code for agility, robustness & secu
On-chip Cloud Services
Provide update, authentication, and connectivity
Custom Linux kernel
Empowers agile silicon evolution and reuse of code
Security Monitor
Guards integrity and access to critical resources
Azure Sphere OS | Basic Architecture
Azure Sphere Cloud Security Service
The Azure Sphere Security Service connects and
protects every Azure Sphere device
Protects your devices and your customers with
certificate-based authentication of all communication
Detects emerging security threats through automated
processing of on-device failures
Responds to threats with fully automated on-device
updates of OS
Allows for easy deployment of software updates to
Azure Sphere powered devices
Azure Sphere and Visual Studio
Modernize MCU development with Azure Sphere and Visual Studio
Simplify development
Focus your device development effort on the value you want
to create
Streamline debugging
Experience interactive, context-aware debugging across
device and cloud
Collaborate across your team
Apply tool-assisted collaboration across your entire
development organization
Simplify Azure connect
Connect your Azure Sphere devices quickly and easily to
Azure IoT
Azure Sphere is open
Open to any MCU manufacturer 

We are licensing our Pluton security subsystem royalty free for use in any chip*
Open to any cloud 

Azure Sphere devices are free to connect to Azure or any other cloud, proprietary or
public for application data
Open to any innovation 

MCU manufacturers are free to innovate with our GPL’d OSS Linux kernel code base
* Azure Sphere branding requires an Azure Sphere chip with Azure Sphere OS and Azure Sphere Security Service
Getting started
An Azure Sphere development kit
A PC running Windows 10 Anniversary Update or later
Visual Studio 2017 Enterprise, Professional, or Community, version 15.7 or later
Download the Azure Sphere SDK for Visual Studio Preview.
> Azure Sphere Developer Command Prompt Preview
> Visual Studio Tools Preview for Azure Sphere

> Open VPN TAP driver

> Azure Sphere Device Communication Service
The current SDK does not support all features of the
MT3620 hardware. The following are not yet supported:
- 2 x ARM Cortex-MA with FPU
- ADC, I2C, I2S, PWM and SPI peripheral interfaces
(GPIO and UART are supported)
- Wi-Fi 802 11a (b/g/n are supported)
Azure Sphere MT3620 Development Kit
MT3620 Grove Shield
Demo
Azure Sphere MT3620 Development kit
Rotary Angle Sensor
Buzzer
Blue LED Button
Temp&Humi Sensor(SHT31)
OLED Display 1.12'' V2
Recap
Azure Sphere is not a single chip but a security solution / technology built with a combination of
a special microcontroller, a special operating system and the corresponding cloud services.
Azure Sphere is a high-
value, cost effective solution,
secured by Microsoft.
The solution today contains:
Azure Sphere Chip MT3620

Azure Sphere Security Services for 10 years
Azure Sphere IoT OS with 10 years of on-device
updates
Thanks !
Questions ?
Contact
Mirco Vanini
Microsoft® MVP Windows Development
AllSeen Alliance - AllJoyn® Ambassador
Open Connectivity Foundation - OCF® Ambassador
www.proxsoft.it
info@proxsoft.it
@MircoVanini

More Related Content

PDF
Azure Sphere - GAB 2019
PDF
Are you ready for Microsoft Azure Sphere?
PPTX
Secure and power the intelligent edge with Azure Sphere
PDF
Azure Sphere
PDF
Introducing Azure Sphere
PPTX
Building Secure IoT Solutions using Azure Sphere
PPTX
Building IoT Solutions using Windows IoT Core
PDF
Azure IoT from groundup
Azure Sphere - GAB 2019
Are you ready for Microsoft Azure Sphere?
Secure and power the intelligent edge with Azure Sphere
Azure Sphere
Introducing Azure Sphere
Building Secure IoT Solutions using Azure Sphere
Building IoT Solutions using Windows IoT Core
Azure IoT from groundup

What's hot (16)

PPTX
Azure IoT Platform services - The modern IoT developer toolbox
PPTX
IoTSummit: Design and architect always disconnected iot system
PPTX
IoT Saturday PN 2019 - Eurotech
PPTX
DIY IoT: Raspberry PI 2 + Windows 10 for IoT devices + Microsoft Azure
PPTX
Creator IoT Framework
PDF
citus™ iot ecosystem
PDF
Introduction to Windows IoT via Raspberry Pi 3
PDF
How PUF Technology is Securing Io
PPTX
Build 2017 - B8101 - Windows 10 identity overview
PPTX
Developing an IoT System FIWARE Based from the Scratch
PPTX
Build 2017 - B8024 - Connected intelligent things with Windows IoT Core and A...
PPTX
IoT on Azure
PDF
Azure IIoT for Manufacturing and Beyond @ IAMCP event June 2019
PDF
Architecting Azure (I)IoT Solutions @ IoT Saturday 2019
PPTX
Demystifying Internet of Things with Azure IoT Suite
PPTX
Azure IoT Platform services - The modern IoT developer toolbox
IoTSummit: Design and architect always disconnected iot system
IoT Saturday PN 2019 - Eurotech
DIY IoT: Raspberry PI 2 + Windows 10 for IoT devices + Microsoft Azure
Creator IoT Framework
citus™ iot ecosystem
Introduction to Windows IoT via Raspberry Pi 3
How PUF Technology is Securing Io
Build 2017 - B8101 - Windows 10 identity overview
Developing an IoT System FIWARE Based from the Scratch
Build 2017 - B8024 - Connected intelligent things with Windows IoT Core and A...
IoT on Azure
Azure IIoT for Manufacturing and Beyond @ IAMCP event June 2019
Architecting Azure (I)IoT Solutions @ IoT Saturday 2019
Demystifying Internet of Things with Azure IoT Suite
Ad

Similar to IoT Day - Introducing Azure Sphere (20)

PDF
Azure Sphere
PDF
IoT Day 2019 Naples - Microsoft Azure Shpere
PPTX
Io t security and azure sphere
PPTX
Microsoft IoT Overview, Vision and Roadmap
PPTX
CCI2018 - Gestire devices per l'Internet of Things con Azure IoT Hub
PPTX
Gestire i devices con Azure IoT Hub e IoT Edge
PPTX
Internet of Things Pitch Deck
PDF
A walk through Azure IoT
PPTX
Architecting IoT solutions with Microsoft Azure
PPTX
Build an azure connected io t device in 45 minutes (or less)
PDF
BRK2122 IOT - From the cloud to the edge
PPTX
Windows 10 IoT-Core to Azure IoT Suite
PPTX
Rapholo- IoT with Azure .pptx
PDF
IoT Update Oktober 2019 | Jan Depping @Microsoft | The next step in IoT
PPTX
Internet of things at the Edge with Azure IoT Edge by sonujose
PPTX
From IoT Central to IoT Hub
PDF
Can we build an Azure IoT controlled device in less than 40 minutes that cost...
PPTX
Manage your devices with Azure IoT...and more
PPTX
Internet of things (IoT) with Azure
PPTX
Aymeric Weinbach - IoT et Azure - Global Azure Bootcamp 2016 Paris
Azure Sphere
IoT Day 2019 Naples - Microsoft Azure Shpere
Io t security and azure sphere
Microsoft IoT Overview, Vision and Roadmap
CCI2018 - Gestire devices per l'Internet of Things con Azure IoT Hub
Gestire i devices con Azure IoT Hub e IoT Edge
Internet of Things Pitch Deck
A walk through Azure IoT
Architecting IoT solutions with Microsoft Azure
Build an azure connected io t device in 45 minutes (or less)
BRK2122 IOT - From the cloud to the edge
Windows 10 IoT-Core to Azure IoT Suite
Rapholo- IoT with Azure .pptx
IoT Update Oktober 2019 | Jan Depping @Microsoft | The next step in IoT
Internet of things at the Edge with Azure IoT Edge by sonujose
From IoT Central to IoT Hub
Can we build an Azure IoT controlled device in less than 40 minutes that cost...
Manage your devices with Azure IoT...and more
Internet of things (IoT) with Azure
Aymeric Weinbach - IoT et Azure - Global Azure Bootcamp 2016 Paris
Ad

More from Mirco Vanini (20)

PDF
.NET 7 Performance Improvements_10_03_2023.pdf
PDF
Debugging a .NET program after crash (Post-mortem debugging)
PDF
Connect a chips to Azure
PDF
Connect a chips to Azure
PDF
How to modernise WPF and Windows Forms applications with Windows Apps SDK
PDF
C# on a CHIPs
PDF
.NET Conf 2021 - Hot Topics Desktop Development
PDF
Async Debugging A Practical Guide to survive !
PDF
IoT support for .NET (Core/5/6)
PDF
Async Debugging - A Practical Guide to survive !
PDF
IoT support for .NET Core
PDF
IoT support for .NET Core - IoT Saturday 2020
PDF
.NET Conf 2020 - Hot Topics Desktop Development
PDF
Debugging with VS2019
PDF
Optimising code using Span<T>
PDF
Xe OneDay - Modernizing Enterprise Apps
PDF
Debugger Tips and Tricks for .Net developers with Microsoft Visual Studio 2017
PDF
Xe One Day - Adaptive Code
PDF
Debugging Performance Issues Using Visual Studio
PDF
VS2017 saturday - Historical debugging with intelli trace in visual studio
.NET 7 Performance Improvements_10_03_2023.pdf
Debugging a .NET program after crash (Post-mortem debugging)
Connect a chips to Azure
Connect a chips to Azure
How to modernise WPF and Windows Forms applications with Windows Apps SDK
C# on a CHIPs
.NET Conf 2021 - Hot Topics Desktop Development
Async Debugging A Practical Guide to survive !
IoT support for .NET (Core/5/6)
Async Debugging - A Practical Guide to survive !
IoT support for .NET Core
IoT support for .NET Core - IoT Saturday 2020
.NET Conf 2020 - Hot Topics Desktop Development
Debugging with VS2019
Optimising code using Span<T>
Xe OneDay - Modernizing Enterprise Apps
Debugger Tips and Tricks for .Net developers with Microsoft Visual Studio 2017
Xe One Day - Adaptive Code
Debugging Performance Issues Using Visual Studio
VS2017 saturday - Historical debugging with intelli trace in visual studio

Recently uploaded (20)

PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
Machine learning based COVID-19 study performance prediction
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PPTX
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PPTX
Big Data Technologies - Introduction.pptx
PDF
Approach and Philosophy of On baking technology
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Machine learning based COVID-19 study performance prediction
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Programs and apps: productivity, graphics, security and other tools
Unlocking AI with Model Context Protocol (MCP)
Review of recent advances in non-invasive hemoglobin estimation
NewMind AI Weekly Chronicles - August'25 Week I
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
MIND Revenue Release Quarter 2 2025 Press Release
20250228 LYD VKU AI Blended-Learning.pptx
The AUB Centre for AI in Media Proposal.docx
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Big Data Technologies - Introduction.pptx
Approach and Philosophy of On baking technology

IoT Day - Introducing Azure Sphere

  • 1. Azure Sphere A New Solution for Creating Highly-Secured, Connected MCU Device Mirco Vanini Naples, December 10th 2018
  • 3. Follow the agenda, the speakers & vote the sessions!
  • 4. Agenda ▪ Digital Trasformation ▪ Opportunity | Risk ▪ The 7 Properties ▪ Azure Sphere o MCU o OS o Cloud o DevKit
  • 5. Digital Trasformation A microcontroller (MCU for microcontroller unit, or UC for μ-controller) is a small computer on a single integrated circuit.
  • 7. Digital Trasformation Fewer than 1% of MCU are connected today !
  • 10. Risk The Mirai Botnet (aka Dyn Attack), Oct 2016: Largest IoT DDoS attack. Large portions of the internet going down, including Twitter, the Guardian, Netflix, Reddit and CNN. Affected devices: Webcams and DVR players. The Jeep Hack, July 2015: A team of researchers was able to take total control of a Jeep SUV by exploiting a firmware update vulnerability. The Hackable Cardiac Device from St.Jude, Jan. 2017: The vulnerability provided access to drain the battery, change heartbeat pace and to trigger shocks. The TRENDnet Webcam Hack, Jan. 2012. Access to camera and microphone over TCP/IP. The Printer Hack to catch fire, Nov. 2011: Made the fuser overheat, causing the paper in the printer to catch fire.
  • 11. The internet security battle Microsoft has been fighting it for decades so they have some experience to share.
 Also on hardware side! Example X-BOX • XBOX: Hacked within weeks
 Standard Intel x86 system • XBOX 360:Hacked within 3,5 month
 HW hack to compromise the bus • XBOX One: Not hacked until today
 also thanks to in-chip bus firewalls
  • 13. Highly-secured connected devices require 7 properties Hardware Root of Trust Is your device’s identity and software integrity secured by hardware? Small Trusted Computing Base Is your device’s TCB protected from bugs in other code? Defense in Depth Does your device remain protected if a security mechanism is defeated? Dynamic Compartments Can your device’s security protections improve after deployment? Certificate-Based Authentication Does your device use certificates instead of passwords for authentication? Failure Reporting Does your device report back about failures and anomalies? Renewable Security Does your device’s software update automatically? Silicon OS Cloud http://aka.ms/7properties
  • 14. Azure Sphere SECURITY Every device built with Azure Sphere is secured by Microsoft. For its 10 year lifetime. PRODUCTIVITY © Microsoft Corporation The Azure Sphere developer experience shortens OEM time to market. OPPORTUNITY Azure Sphere empowers OEMs to create new customer experiences and business models. Azure Sphere empowers manufacturers to create highly- secured, connected MCU devices
  • 15. End-to-end solution for securing MCU powered devices Secured MCUs A new class of crossover Azure Sphere MCUs, from our silicon partners, with built-in Microsoft security technology provide connectivity, high performance, and a secured hardware root of trust. Secured Operating System The highly-secured Azure Sphere IoT OS combines the best of Microsoft and OSS technologies to create a trustworthy platform for new IoT experiences. Secured by our Cloud Service The Azure Sphere Security Service guards every Azure Sphere device; it protects your devices and customers, detects emerging threats, and proactively responds.
  • 16. Today, only Azure Sphere provides all 7 Properties for secured IoT
  • 17. History Project started in 2014 in Microsoft Research, now part of AI&R division Started working on prototype chip and OS in 2015 Established “seven properties of highly secured devices” Ran a “security challenge” based on prototype chip (Sopris) and OS in 2017 Actively working with partners and customers for production in 2018
  • 18. Azure Sphere MCU Secured With built-in Microsoft security technology i.e. I/O bus firewalls including the Pluton Security Subsystem Performance With built-in Cortex-A processors Delivers significantly greater performance vs. similar traditional MCU Connected With built-in networking
  • 19. Azure Sphere Silicon Partners Microsoft is working with other suppliers to implement the Azure Sphere Pluton Security Core into their HW
  • 20. Azure Sphere OS Secure Application Sandboxes Compartmentalize code for agility, robustness & secu On-chip Cloud Services Provide update, authentication, and connectivity Custom Linux kernel Empowers agile silicon evolution and reuse of code Security Monitor Guards integrity and access to critical resources
  • 21. Azure Sphere OS | Basic Architecture
  • 22. Azure Sphere Cloud Security Service The Azure Sphere Security Service connects and protects every Azure Sphere device Protects your devices and your customers with certificate-based authentication of all communication Detects emerging security threats through automated processing of on-device failures Responds to threats with fully automated on-device updates of OS Allows for easy deployment of software updates to Azure Sphere powered devices
  • 23. Azure Sphere and Visual Studio Modernize MCU development with Azure Sphere and Visual Studio Simplify development Focus your device development effort on the value you want to create Streamline debugging Experience interactive, context-aware debugging across device and cloud Collaborate across your team Apply tool-assisted collaboration across your entire development organization Simplify Azure connect Connect your Azure Sphere devices quickly and easily to Azure IoT
  • 24. Azure Sphere is open Open to any MCU manufacturer 
 We are licensing our Pluton security subsystem royalty free for use in any chip* Open to any cloud 
 Azure Sphere devices are free to connect to Azure or any other cloud, proprietary or public for application data Open to any innovation 
 MCU manufacturers are free to innovate with our GPL’d OSS Linux kernel code base * Azure Sphere branding requires an Azure Sphere chip with Azure Sphere OS and Azure Sphere Security Service
  • 25. Getting started An Azure Sphere development kit A PC running Windows 10 Anniversary Update or later Visual Studio 2017 Enterprise, Professional, or Community, version 15.7 or later Download the Azure Sphere SDK for Visual Studio Preview. > Azure Sphere Developer Command Prompt Preview > Visual Studio Tools Preview for Azure Sphere
 > Open VPN TAP driver
 > Azure Sphere Device Communication Service The current SDK does not support all features of the MT3620 hardware. The following are not yet supported: - 2 x ARM Cortex-MA with FPU - ADC, I2C, I2S, PWM and SPI peripheral interfaces (GPIO and UART are supported) - Wi-Fi 802 11a (b/g/n are supported)
  • 26. Azure Sphere MT3620 Development Kit
  • 28. Demo Azure Sphere MT3620 Development kit Rotary Angle Sensor Buzzer Blue LED Button Temp&Humi Sensor(SHT31) OLED Display 1.12'' V2
  • 29. Recap Azure Sphere is not a single chip but a security solution / technology built with a combination of a special microcontroller, a special operating system and the corresponding cloud services. Azure Sphere is a high- value, cost effective solution, secured by Microsoft. The solution today contains: Azure Sphere Chip MT3620
 Azure Sphere Security Services for 10 years Azure Sphere IoT OS with 10 years of on-device updates
  • 31. Contact Mirco Vanini Microsoft® MVP Windows Development AllSeen Alliance - AllJoyn® Ambassador Open Connectivity Foundation - OCF® Ambassador www.proxsoft.it info@proxsoft.it @MircoVanini