Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise...

31
© 2015, Trend Micro Inc. Sicherheitskontrollen stärken und den Betrieb der Cloud vereinfachen Alexander Bloech, Business Development Manager Trend Micro 24.3.2015

Transcript of Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise...

Page 1: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Sicherheitskontrollen stärken und den Betrieb der Cloud vereinfachen

Alexander Bloech, Business Development Manager Trend Micro

24.3.2015

Page 2: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Today’s Topics

Strategy

Tactics

Page 3: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

* http://aws.amazon.com/about-aws/

About Trend Micro

Trend Micro on AWS

IR in the Cloud

Auditing Support

Agenda

Page 4: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

100% of the top 10 automotive

companies.

96% of the top 50 global

corporations.

100% of the top 10 telecom

companies.

80% of the top10 banks.

90% of the top10 oil companies.

Global Threat Intelligence- 1,200+ experts worldwide

New malware every ½ secondCEO

FoundedHeadquarters

EmployeesOffices

2013 Sales

Eva Chen1988, United States

Tokyo, Japan5,217

36$1.1B USD

A world safe for exchanging digital information

Page 5: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

63%

Trend Micro on AWS

15+

20 million

Page 6: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

4 pillars of practice

Incident Response

Monitoring

Forensics

Audit

Page 7: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc. 7

Foundation Services

Compute Storage Database Networking

AWS Global Infrastructure

Regions

Availability Zones

Edge Locations

Client-side Data Encryption

Server-side Data Encryption

Network Traffic Protection

Platform, Applications, Identity & Access Management

Operating System, Network & Firewall Configuration

Customer content

Cu

sto

mer

s

Shared Responsibility Model

Page 8: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

About Trend Micro

Trend Micro on AWS

IR in the Cloud

Auditing Support

Agenda

Page 9: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 10: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 11: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

SANS incident response process

Preparation

Identification

Containment

Eradication

Recovery

Lessons Learned

Page 12: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

SANS incident response process

Page 13: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Business point of view

Quickly identify affected area

Minimize impact

Recover quickly

Page 14: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Incident response before

Server

Analyze Repair Improve

Replacement

Page 15: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Incident response after

Instance

Analyze Repair Improve

Replacement

Page 16: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 17: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Optimized response

Page 18: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Optimized response

Instance

Script

Analyze

Improve

API

Replacement

Page 19: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Advantages

Faster return to production

More time for analysis

Less error prone

Page 20: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

4 pillars of practice

Incident Response

Monitoring

Forensics

Audit

Page 21: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 22: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 23: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Business point of view

Encrypt data at rest (3.4.1)

Address new threats & vulnerabilities (6.6)

Log external facing services (10.2, 10.5.4)

Protect systems against malware (5.1)

*PCI has many, many, many more requirements. This is just a sample

Page 24: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Creating an audit trail before

Servers

Change

RecordStorage Logs

Firewall / IPS

Page 25: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Creating an audit trail before

Instances

Change

Record

Central

ManagementLogs

AWS Services

Page 26: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Security Trail

Page 27: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 28: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 29: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 30: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Page 31: Trend Micro - aws-de-media.s3.amazonaws.comaws-de-media.s3.amazonaws.com/images/Enterprise Summit/Präsen… · © 2015, Trend Micro Inc. * About Trend Micro Trend Micro on AWS IR

© 2015, Trend Micro Inc.

Thank you.

Learn more at

www.trendmicro.de/aws

[email protected]