Managing Sensitive Information in an API and Microservices World
Transcript of Managing Sensitive Information in an API and Microservices World
![Page 1: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/1.jpg)
Presented by Joshua Norrid, Apigee and Peter Miron, Apcera
Managing Sensitive Information in an API and Microservices World
![Page 2: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/2.jpg)
Innovation, Meet Trust.+
![Page 3: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/3.jpg)
©2016 Apigee Corp. All Rights Reserved.
• Customers/Consumers want CONVENIENCE.• All parties desire CONTROL of sensitive data.• All parties demand CONSISTENCY of experience and process.• Sensitive Data Providers must apply CONSTRAINTS to
CONSUMPTION.• Sensitive Data Providers must achieve and maintain
COMPLIANCE.
3
A “Chain of Custody” is required for managing sensitiveinformation with APIs in the digital world.
Why Are We Talking About This?
![Page 4: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/4.jpg)
4
Any Application๏ Cloud Native Applications๏ Legacy x86 Applications๏ Containerized Applications and more!
Any Infrastructure
Composition, Orchestration & Deployment
Networking + Nano-Segmentation
Application Service Management
Policy & Enforcement
etc.
Apcera: A Trusted Application Management Platform
Composition, Orchestration & Deployment
Networking + Nano-Segmentation
Application Service Management
WorkloadComposition
WorkloadResource Management
WorkloadScheduling and Placement
WorkloadCommunication and Connectivity
Policy and Automated Enforcement
![Page 5: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/5.jpg)
©2016 Apigee Corp. All Rights Reserved. 5
The Digital Value Chain
![Page 6: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/6.jpg)
©2016 Apigee Corp. All Rights Reserved. 6
The Extended Digital Value Chain
![Page 7: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/7.jpg)
Apigee + Apcera: Capabilities Magnified
![Page 8: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/8.jpg)
©2016 Apigee Corp. All Rights Reserved.
ReportingService
Report
Request Report
Service ConsumersA. Business PartnersB. Regulatory AgenciesC. ComplianceD. Legal Requests
Report Information ClassificationA. Customer Privacy RelatedB. Business CriticalC. Trade Secret
Trace Data Requests and Fulfillment at Each System / Application Handoff• Who requested what data? When?• Who else has access to that data?• What services participated in the transaction to produce the report?• What policies enabled that participation in the transaction?• Are we certain no one and no other services have access to that data?
General Use Case
Trusted3rd PartyConsumer
![Page 9: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/9.jpg)
Example
![Page 10: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/10.jpg)
©2016 Apigee Corp. All Rights Reserved.
![Page 11: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/11.jpg)
©2016 Apigee Corp. All Rights Reserved. 11
![Page 12: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/12.jpg)
©2016 Apigee Corp. All Rights Reserved. 12
![Page 13: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/13.jpg)
©2016 Apigee Corp. All Rights Reserved. 13
![Page 14: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/14.jpg)
©2016 Apigee Corp. All Rights Reserved.
![Page 15: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/15.jpg)
©2016 Apigee Corp. All Rights Reserved.
![Page 16: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/16.jpg)
©2016 Apigee Corp. All Rights Reserved.
![Page 17: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/17.jpg)
©2016 Apigee Corp. All Rights Reserved. 17
The Extended Digital Value Chain
![Page 18: Managing Sensitive Information in an API and Microservices World](https://reader036.fdocuments.us/reader036/viewer/2022062522/5871d22b1a28ab423c8b5deb/html5/thumbnails/18.jpg)
Learn More at
www.apcera.com
Thank You!Joshua Norrid
Peter Miron@PeterMiron