15分でわかるawsクラウドで オンプレ以上のセキュリティを実現できる理由

36
15分でわかるAWSクラウドで オンプレ以上のセキュリティを実現できる理由 20131011アマゾン データ サービス ジャパン 株式会社 テクニカルエバンジェリスト 堀内康弘 (@horiuchi)

Upload: yasuhiro-horiuchi

Post on 28-May-2015

5.929 views

Category:

Documents


2 download

TRANSCRIPT

  • 1. 15AWS 20131011 (@horiuchi)

2. CIA 3. AWS 4. AWS 5. CustomerOS 6. AWSCustomerOS + 7. AWSCustomerOS + 8. 24/365 8 9. AWS AWS - http://aws.amazon.com/jp/security/ AWS 10. AWS Tier-1 11. AWS SSAE 16/ISAE 3402 // ISO27001 ISMSPCI DSS Level1 Service Provider Payment Card Industry Data Security StandardVISA,MC,Amex,JCBFISMA Moderate Federal Information Security Management Moderate 12. FedRAMP - The Federal Risk and Authorization Management Program NISTSP 800-53100% 3PAO JAB P-ATOs The Joint Advisory BoardAgency ATOs AgencyAWS Agency ATO 13. DDoS: DDosMITM: SSL EC2IP : OS: AWS : 14. 15. AWSCustomerOS + 16. AWSCustomerOS + 17. AWS = Amazon VPC = AWS IAM = AWS 18. = (Inbound)EC2 (Outbound)Port 80 (HTTP)EC2 Instance Security GroupPort 22 (SSH) 19. Amazon VPC = AWS VPNAWS AWS 20. AWS AWS VPN EC2VPC InternetVPC VPN DX 21. AWS 500/FC10 . Hadoop EC2 1CAmazon VPC eas ud StSIy 22. AWS Identity and Access Management = AWS AWS AWS AWS 23. IAM S3 S3API 24. NASAhttp://www.atmarkit.co.jp/ait/articles/1301/24/news087.html 25. ? 26. Coiney AWS PCI DSS CeasPCI DSS AWSud Sty 27. SAPSAP BusinessSuite AWS 2 SAPAWS 2020 ERP6.0 AWS 6 560% 28. WebBI WEBWebBIBPM BITVAWS Dr.SumAWSDr.Sum 215DWH AWS/ DB/ BPM(AWS) 29. ECPOS EC AP OSECPOSEC POS EC POSAWS 30. SFA: e : COMPANY: NTT BizBiz Workow:NTT intra-mart DWH: SAP Sybase IQ BI: DTS AWSSFAWorkow DWHBI AWS 31. Amazon Web Services FISC8AWS SCSKNRI()ISID()3AWS AWSFISC 32. IT AWSSaaS 33. AWS TMNFCertiedAWS AWSSaaS on AWSAWS 34. 35. & CustomerOS + = 36.