(整理)Top100summit安全既服务案例分析-–-Windows-Azure-AD-身份云的架构和设计——微软李雨航.pptx安全既服务案例分析 – Windows Azure AD 身份云的架构和设计 李雨航 Yale Li 微软全球首席安全架构师 云安全联盟全球总战略顾问 摘要 1)传统IT安全软件的问题和不足
2)安全既服务的产生和要解决的问题 3)Windows Azure AD 身份云的架构和设计 4)开发人员使用场景 5)打造身份云吸取的经验教训 .精品课件. 传统IT安全软件的问题和不足 不适应多租户的云服务 用户扩展性的局限 无法跟上快速开发部署的步伐 Security Software Examples: Ad-Aware Free Antivirus + Protect your personal computer against virus and spyware attacks. Comodo Internet Security Protect PC from viruses, Trojans, worms, buffer overflows, zero-day attacks, spyware and hackers. Comodo Firewall Guard your Windows PC from malware and Internet based attacks. SuperAntiSpyware Free Edition Detect and remove spyware, malware, rootkits, trojans, hijackers, and other malicious threats. Comodo Antivirus Detect and destroy malware and viruses. USB Disk Security Provide protection against any malicious programs trying to attack via USB drive. HitmanPro 3 (32-bit) Rescue your computer from viruses and malware. Trend Micro HijackThis Scan your Registry and hard drive for spyware. Microsoft Security Essentials (64-bit) Protect your computer with Microsoft's latest security software. Super Ad Blocker Block all forms of advertising, including pop-ups, Flash ads, and banner ads. .精品课件. 安全既服务的产生和要解决的问题 云计算的安全问题 安全既服务带来的机会 云安全联盟的十大SECaaS 身份云要解决的问题描述 .精品课件. 云计算的安全问题 Data Breaches Data Loss Account Hijacking Insecure APIs Denial of Service Malicious Insiders Abuse of Cloud Services Insufficient Due Diligence Shared Technology Issues .精品课件. 安全既服务带来的机会 盾牌式战略思维:把注意力放在使用旧安全工具来保护云中数据和系统 利剑式战略思维:为什么不能用云的力量创造出新一代安全工具 这就是安全既服务(Security as a Service or SECaaS): Provisioning elastic, scalable security solutions and services to both cloud based and traditional on premises systems in pure cloud or hybrid models. .精品课件. 云安全联盟的十大SECaaS分类 Identity and Access Management (IAM) – 身份云 Data Loss Prevention (DLP) Web Security Email Security Security Assessments Intrusion Management, Detection, and Prevention (IDS/IDP) Security Information and Event Management (SIEM) Encryptio