SlideShare a Scribd company logo
- Weather forecast - partly cloudy, cooler  and with some fog  by Vitor Domingos weatherman
Vitor Domingos [email_address] http://vitordomingos.com - cloud computing & security consultant - thenextweb.com editor - mobilemonday.net PT founder - videocaster (http://alt.prt.sc) - ex failed entrepreneur - ex ITIJ / MJ - ex CGD - ex forumB2B - ex Maxitel - ex Jazztel
 
 
 
 
* as seen on regular weather channel
 
 
 
 
 
 
 
 
Cloud Computing is ? - Network as a “cloud” - Network is the computer (SUN moto) - TCP/IP abstraction (1 st  cloud) - www data abstraction (2 nd  cloud) - Virtualization (3 rd  cloud) Bottom line: - Virtualization done right, with webservices
Cloud Computing is ! - on-demand self-service - ubiquitous network access - location independent resource pooling - rapid elasticity and capacity - measured service - pay as you go - abstract resources
 
CCaaS - Software as a Service - SalesForce - Platform as a Service - Google App Engine - Microsoft Azure - Infrastructure as a Service - Rackspace Mosso - Amazon Web Services
 
Cloud Computing leverages - Virtualization - Multi-Tenancy - Massive Scale - Autonomic Computing - Distributed Environment - Security Technologies - Service Oriented
 
Security in the Cloud
Only the paranoid survive! - Key issues trust, trust, multi-tenancy, trust, encryption,  compliance - Massive complex systems running on functional  units  - Certification & Audit - Loss of physical control - Interoperability  - Accountability
please, keep in mind that - Shared hell: - Hardware - Memory - Disks - NIC's (Virtual) - Cache Snooping - Hypervisor Attacks - Persistent Root Kits - Password Cracking - Broken or stolen key rings / authorization federation  -  Never ending logs
 
Great things do come - Provisioning and fault tolerance - Rapid reconstitution of services - Storage fragmented  - Security layers (auth, firewall, logging, …) - Network and Security perimeters  - Virtual Zoning  - Think it all over again
 
Challenges - Data dispersal and international privacy laws - Isolation management & Multi-Tenancy - Certification  (SAS 70 Type II audits and ISO 27001) - Data ownership - QoS & SLA's garantees - Secure Hypervisors - Credentials
 
 
Challenges - Massive outages - Service bottle necks; DNS as your best friend - Encryption needs cloud resources, applications, storage, services - Disaster recovery and contingency plans - If you have it on Auto mode, you won't see it coming - Honey for hackers
 
 
 
 
ToDo - Network with VPN and VLAN's - SLA's; read the fine prints - Backup and recover often; Risk assessment - Log (out of there) as if the world ended tomorrow - Plan for failure - YOU secure!!! Encrypt data before transmission!!! - Sandbox, Sandbox, Sandbox
You're not alone - Security Groups IBM;  SUN  Oracle ; Amazon; PCCA; ICCV - Cloud Security Alliance (awesome guide!!) - OpenCloud Manifesto & Amazon Security Paper - Cloud Computing ML at Google Groups - Legal Cloud's  - Vivek Kundra - USA CTO, did it, so as Facebook, New York Times and Nasdaq (on AWS)
 
Wrap up - Plan - Encrypt - Backup - Secure - Audit - Sandbox (check my sapo codebits talk) -  http://codebits.sapo.pt/files/aws_23.pdf - Trust
? mail:  [email_address] site: http://vitordomingos.com

More Related Content

ODP
Blockchain @ Descon 2016
PPTX
DevOps for a Dummy
PPTX
ISACA Cloud Security Presentation 2013-09-24
PDF
Cloudoc supermicro mini_svr_appliance_Eng
PPTX
Eurocsys weather forecast
PPT
Morning Weather News Report
PPT
Weather Maps and Symbols
PDF
Present Like A Newscaster
Blockchain @ Descon 2016
DevOps for a Dummy
ISACA Cloud Security Presentation 2013-09-24
Cloudoc supermicro mini_svr_appliance_Eng
Eurocsys weather forecast
Morning Weather News Report
Weather Maps and Symbols
Present Like A Newscaster

Similar to Portuguese Cloud Computing Architects - 2nd Meeting (20)

PDF
Confraria Security 17 June - Cloud Security
PPTX
Why the cloud is more secure than your existing systems
PDF
Cloud Breach - Forensics Audit Planning
PPTX
Gluing the IoT world with Java and LoRaWAN
PDF
Good-cyber-hygiene-at-scale-and-speed
PPTX
Automate or die! Rootedcon 2017
PPTX
Toni de la Fuente - Automate or die! How to survive to an attack in the Cloud...
PPTX
Control the Creep: Streamline Security and Compliance by Sharing the Workload
PDF
JOSA TechTalks - Downgrade your Costs
PDF
CloudCamp Chicago Jan 2015 - The Guts of the Cloud (full slides)
PDF
Usage Based Metering in the Cloud (Subscribed13)
PDF
Securing Millions of Devices
PDF
OpenNebulaConf 2014 - From private cloud to laaS public services for Catalan ...
PDF
OpenNebula Conf 2014 | From private cloud to laaS public services for Catalan...
PDF
Cloud Computing
PDF
Cloud Computing and Security - by KLC Consulting
PDF
Cloud Standards and Virtualization
PDF
[OpenStack Day in Korea 2015] Keynote 2 - Leveraging OpenStack to Realize the...
PPTX
Cloud Spotting 2017: An overview of cloud computing
PPTX
Best Practices in Secure Cloud Migration
Confraria Security 17 June - Cloud Security
Why the cloud is more secure than your existing systems
Cloud Breach - Forensics Audit Planning
Gluing the IoT world with Java and LoRaWAN
Good-cyber-hygiene-at-scale-and-speed
Automate or die! Rootedcon 2017
Toni de la Fuente - Automate or die! How to survive to an attack in the Cloud...
Control the Creep: Streamline Security and Compliance by Sharing the Workload
JOSA TechTalks - Downgrade your Costs
CloudCamp Chicago Jan 2015 - The Guts of the Cloud (full slides)
Usage Based Metering in the Cloud (Subscribed13)
Securing Millions of Devices
OpenNebulaConf 2014 - From private cloud to laaS public services for Catalan ...
OpenNebula Conf 2014 | From private cloud to laaS public services for Catalan...
Cloud Computing
Cloud Computing and Security - by KLC Consulting
Cloud Standards and Virtualization
[OpenStack Day in Korea 2015] Keynote 2 - Leveraging OpenStack to Realize the...
Cloud Spotting 2017: An overview of cloud computing
Best Practices in Secure Cloud Migration
Ad

More from Vitor Domingos (15)

PPTX
Methods Digital Away Day at Guildford - Cloud Computing
PPTX
My experience
PDF
Catolica EBP - Talk
PPTX
Harvardmd comunication
PPTX
Failure the mother of all success
PPTX
How to crunch data into beautiful graphics
PPTX
Social Network Panorama
PPTX
PT Google Technical User Group - Google TV
ODP
Security is sexy again
ODP
Confraria Security & IT - Mobile Security
PPT
Open Data
PDF
Security As A Service
PDF
handivi presentation
ODP
Products, Services or Platforms
ODP
AWS ground zero; EC2 & S3 hands-on
Methods Digital Away Day at Guildford - Cloud Computing
My experience
Catolica EBP - Talk
Harvardmd comunication
Failure the mother of all success
How to crunch data into beautiful graphics
Social Network Panorama
PT Google Technical User Group - Google TV
Security is sexy again
Confraria Security & IT - Mobile Security
Open Data
Security As A Service
handivi presentation
Products, Services or Platforms
AWS ground zero; EC2 & S3 hands-on
Ad

Recently uploaded (20)

PDF
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
PDF
2021 HotChips TSMC Packaging Technologies for Chiplets and 3D_0819 publish_pu...
PDF
Developing a website for English-speaking practice to English as a foreign la...
PPTX
Final SEM Unit 1 for mit wpu at pune .pptx
PDF
Architecture types and enterprise applications.pdf
PDF
Hybrid model detection and classification of lung cancer
PPTX
cloud_computing_Infrastucture_as_cloud_p
PDF
Zenith AI: Advanced Artificial Intelligence
PDF
TrustArc Webinar - Click, Consent, Trust: Winning the Privacy Game
PDF
Univ-Connecticut-ChatGPT-Presentaion.pdf
PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Getting started with AI Agents and Multi-Agent Systems
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PPTX
The various Industrial Revolutions .pptx
PDF
Enhancing emotion recognition model for a student engagement use case through...
PPTX
O2C Customer Invoices to Receipt V15A.pptx
PPTX
OMC Textile Division Presentation 2021.pptx
PPTX
1. Introduction to Computer Programming.pptx
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PPTX
MicrosoftCybserSecurityReferenceArchitecture-April-2025.pptx
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
2021 HotChips TSMC Packaging Technologies for Chiplets and 3D_0819 publish_pu...
Developing a website for English-speaking practice to English as a foreign la...
Final SEM Unit 1 for mit wpu at pune .pptx
Architecture types and enterprise applications.pdf
Hybrid model detection and classification of lung cancer
cloud_computing_Infrastucture_as_cloud_p
Zenith AI: Advanced Artificial Intelligence
TrustArc Webinar - Click, Consent, Trust: Winning the Privacy Game
Univ-Connecticut-ChatGPT-Presentaion.pdf
Programs and apps: productivity, graphics, security and other tools
Getting started with AI Agents and Multi-Agent Systems
Assigned Numbers - 2025 - Bluetooth® Document
The various Industrial Revolutions .pptx
Enhancing emotion recognition model for a student engagement use case through...
O2C Customer Invoices to Receipt V15A.pptx
OMC Textile Division Presentation 2021.pptx
1. Introduction to Computer Programming.pptx
gpt5_lecture_notes_comprehensive_20250812015547.pdf
MicrosoftCybserSecurityReferenceArchitecture-April-2025.pptx

Portuguese Cloud Computing Architects - 2nd Meeting

  • 1. - Weather forecast - partly cloudy, cooler and with some fog by Vitor Domingos weatherman
  • 2. Vitor Domingos [email_address] http://vitordomingos.com - cloud computing & security consultant - thenextweb.com editor - mobilemonday.net PT founder - videocaster (http://alt.prt.sc) - ex failed entrepreneur - ex ITIJ / MJ - ex CGD - ex forumB2B - ex Maxitel - ex Jazztel
  • 3.  
  • 4.  
  • 5.  
  • 6.  
  • 7. * as seen on regular weather channel
  • 8.  
  • 9.  
  • 10.  
  • 11.  
  • 12.  
  • 13.  
  • 14.  
  • 15.  
  • 16. Cloud Computing is ? - Network as a “cloud” - Network is the computer (SUN moto) - TCP/IP abstraction (1 st cloud) - www data abstraction (2 nd cloud) - Virtualization (3 rd cloud) Bottom line: - Virtualization done right, with webservices
  • 17. Cloud Computing is ! - on-demand self-service - ubiquitous network access - location independent resource pooling - rapid elasticity and capacity - measured service - pay as you go - abstract resources
  • 18.  
  • 19. CCaaS - Software as a Service - SalesForce - Platform as a Service - Google App Engine - Microsoft Azure - Infrastructure as a Service - Rackspace Mosso - Amazon Web Services
  • 20.  
  • 21. Cloud Computing leverages - Virtualization - Multi-Tenancy - Massive Scale - Autonomic Computing - Distributed Environment - Security Technologies - Service Oriented
  • 22.  
  • 24. Only the paranoid survive! - Key issues trust, trust, multi-tenancy, trust, encryption, compliance - Massive complex systems running on functional units - Certification & Audit - Loss of physical control - Interoperability - Accountability
  • 25. please, keep in mind that - Shared hell: - Hardware - Memory - Disks - NIC's (Virtual) - Cache Snooping - Hypervisor Attacks - Persistent Root Kits - Password Cracking - Broken or stolen key rings / authorization federation - Never ending logs
  • 26.  
  • 27. Great things do come - Provisioning and fault tolerance - Rapid reconstitution of services - Storage fragmented - Security layers (auth, firewall, logging, …) - Network and Security perimeters - Virtual Zoning - Think it all over again
  • 28.  
  • 29. Challenges - Data dispersal and international privacy laws - Isolation management & Multi-Tenancy - Certification (SAS 70 Type II audits and ISO 27001) - Data ownership - QoS & SLA's garantees - Secure Hypervisors - Credentials
  • 30.  
  • 31.  
  • 32. Challenges - Massive outages - Service bottle necks; DNS as your best friend - Encryption needs cloud resources, applications, storage, services - Disaster recovery and contingency plans - If you have it on Auto mode, you won't see it coming - Honey for hackers
  • 33.  
  • 34.  
  • 35.  
  • 36.  
  • 37. ToDo - Network with VPN and VLAN's - SLA's; read the fine prints - Backup and recover often; Risk assessment - Log (out of there) as if the world ended tomorrow - Plan for failure - YOU secure!!! Encrypt data before transmission!!! - Sandbox, Sandbox, Sandbox
  • 38. You're not alone - Security Groups IBM; SUN Oracle ; Amazon; PCCA; ICCV - Cloud Security Alliance (awesome guide!!) - OpenCloud Manifesto & Amazon Security Paper - Cloud Computing ML at Google Groups - Legal Cloud's - Vivek Kundra - USA CTO, did it, so as Facebook, New York Times and Nasdaq (on AWS)
  • 39.  
  • 40. Wrap up - Plan - Encrypt - Backup - Secure - Audit - Sandbox (check my sapo codebits talk) - http://codebits.sapo.pt/files/aws_23.pdf - Trust
  • 41. ? mail: [email_address] site: http://vitordomingos.com