SaaS is Integral to your Cloud Strategy
-
Upload
gina-rosenthal -
Category
Software
-
view
145 -
download
0
Transcript of SaaS is Integral to your Cloud Strategy
1© Copyright 2015 EMC Corporation. All rights reserved.
SaaS is Integral to your Cloud StrategyGina Minks (Rosenthal), PMM Spanning Backup for Office 365
2© Copyright 2015 EMC Corporation. All rights reserved.
• 15 years storage industry experience (customer and vendor)
• vExpert, EMC Elect• PMM EMC’s Spanning Backup
for Office 365• Austin via Florida
– @gminks– http://ginaminks.com/wordpress/
Who I am
3© Copyright 2015 EMC Corporation. All rights reserved.
4© Copyright 2015 EMC Corporation. All rights reserved.
UsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
On-Premises
backupsData
Application OS
Virtualization
disaster recoveryHardware Network
high availability
5© Copyright 2015 EMC Corporation. All rights reserved.
6© Copyright 2015 EMC Corporation. All rights reserved.
Cloud Deployment ModelsUsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
UsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
On-Premises SaaS
UsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
IaaS
UsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
PaaS
7© Copyright 2015 EMC Corporation. All rights reserved.
What is SaaS? ?
8© Copyright 2015 EMC Corporation. All rights reserved.
SaaS = Software as a Service
9© Copyright 2015 EMC Corporation. All rights reserved.
2016 Okta Business @ Work Report
10© Copyright 2015 EMC Corporation. All rights reserved.
Salesforce• 1999
Office 365• 2011
Box • 2005
Google Apps• 2012
17 years
11© Copyright 2015 EMC Corporation. All rights reserved.
File Sync and Share
CRM data
Calendars
Chat
=
12© Copyright 2015 EMC Corporation. All rights reserved.
SaaS isn’t just shadow IT anymore
13© Copyright 2015 EMC Corporation. All rights reserved.
14© Copyright 2015 EMC Corporation. All rights reserved.
You have less control in with SaaSUsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
Customer
SaaS provider
• You can:• Manage policies, users, and
data• You can’t:• Have admin rights to the app• Have root access to the OS• Manage the VMs• Access the hardware stack
15© Copyright 2015 EMC Corporation. All rights reserved.
What can go wrong?
16© Copyright 2015 EMC Corporation. All rights reserved.
What do your users do now?
17© Copyright 2015 EMC Corporation. All rights reserved.
Example: Exchange Online Data loss event
Too much mail, time to clean it up!
I want to get rid of these permanently!
This should do the trick!
18© Copyright 2015 EMC Corporation. All rights reserved.
Example: OneDrive For Business Data Loss Event
OneDrive for Business Recycle Bin 2nd Recycle Bin
Pat
Chris Jerry
19© Copyright 2015 EMC Corporation. All rights reserved.
What do your admins do now?
20© Copyright 2015 EMC Corporation. All rights reserved.
• Account lifecycle management• O365 data is purged 30 days after
a license is removed.• How will retain and keep this data
available?• What other current processes
require access to the IT stack?• What types of software can help
you continue these processes seamlessly?
SaaS OPERATIONAL PROCESSES
Customer
Microsoft
UsersData
ApplicationApp Admin
OSVirtualizationHardwareNetwork
21© Copyright 2015 EMC Corporation. All rights reserved.
We deleted a user account in Office 365 and it has been more than 30 days. Now we received a request to access the person’s OneDrive for business documents. Is there a way to recover these documents?
Lesson:Have a plan to off-board users that includes moving their OneDrive for Business data
……after 30 days, all data for that user is permanently deleted
22© Copyright 2015 EMC Corporation. All rights reserved.
What about the ransomware threat?
23© Copyright 2015 EMC Corporation. All rights reserved.
Phishing scams
Users tricked into opening docs, enabling macros
Virus installs.Begins encrypting all files on the device.Looks for other devices
Mapped and unmapped drives
Sync Clients
24© Copyright 2015 EMC Corporation. All rights reserved.
If a user has OneDrive for Business or OneDrive configured to sync her Document folder, and … activates a zero day attack that encrypts all her local data, will ODFB/OneDrive sync the encrypted data ...If yes, would MS be able to go back to a point in time … and restore the data?
Yes, OneDrive for Business will sync the encrypted data. If the Version Settings is enabled in your OneDrive for Business
library, you can restore to an earlier version.
25© Copyright 2015 EMC Corporation. All rights reserved.
If a user gets hit with a cryptolocker program and multiple files get locked (hundreds or thousands), is there away to revert to the last version in bulk?
Lesson:Use a backup and restore solution to protect your data.
We are not able to revert the files in bulk. We can restore them one by one.
26© Copyright 2015 EMC Corporation. All rights reserved.
To prevent the data loss, the best practice is to back up your files and enable version settings in your library.
--Microsoft Support
27© Copyright 2015 EMC Corporation. All rights reserved.
Identify
Business Environment
Risk Governance
Asset Management
Risk Assessment
Risk Management
Protect
Policies
Processes
Data Security
Access Control
Protective Technology
Awareness and Training
Detect
Anomalies and Events
Detection Process
Continuous Monitoring
Respond
Response Planning
Communications
Analysis
Mitigation
Improvements
Backup and
Recovery
Recovery Planning
Improvements
Communications
Identity Management
Data Loss Prevention
Backup andRecovery
NIST Cybersecurity Framework
28© Copyright 2015 EMC Corporation. All rights reserved.
My SaaS provider will take care of me by doing backups
………right?
29© Copyright 2015 EMC Corporation. All rights reserved.
30© Copyright 2015 EMC Corporation. All rights reserved.
Responsibility is sharedUsersData
ApplicationApp Admin
OSVirtualization
HardwareNetwork
Customer
SaaS provider
Hardware FailureSoftware FailureNatural DisasterPower Outage
Human ErrorProgrammatic ErrorsMalicious InsidersExternal HackersViruses/Malware
You Provider
31© Copyright 2015 EMC Corporation. All rights reserved.
Any data protection done by the SaaS provider is to protect
their business
32© Copyright 2015 EMC Corporation. All rights reserved.
Their business is to keep their software up and available for you
33© Copyright 2015 EMC Corporation. All rights reserved.
File Sync and Share
CRM data
Calendars
Chat
=
34© Copyright 2015 EMC Corporation. All rights reserved.
SaaS data is a business asset
When data is deleted from Google, it’s not
recoverable
Salesforce data recovery is a paid
service, $10k+
Microsoft Office 365 SLA doesn’t include
data recovery
35© Copyright 2015 EMC Corporation. All rights reserved.
36© Copyright 2015 EMC Corporation. All rights reserved.
You would never have deployed email or home drives without backups on premises
• You’ll lose data in the same ways you did on-premises• How will you restore that data
without a backup?
SaaS data needs Protection
37© Copyright 2015 EMC Corporation. All rights reserved.
You’re responsible for
your SaaS data…...
Don’t treat it like a scary
monster
38© Copyright 2015 EMC Corporation. All rights reserved.
39© Copyright 2015 EMC Corporation. All rights reserved.
#BackThatSaaSUp
40© Copyright 2015 EMC Corporation. All rights reserved.
Thank you!