270 likes | 279 Views
Moving to Public Cloud? Don’t forget the security!. Janne Timisjärvi . Sales Engineer Nordics&Baltics. STALLION SHOOTING CLUB 2019. Sophos Central. Manage Multiple Sophos Products from a Single Dashboard. Synchronized Security. Agenda . Shared responsiblity in Public Cloud
E N D
Moving to Public Cloud? Don’t forget the security! Janne Timisjärvi Sales Engineer Nordics&Baltics STALLION SHOOTING CLUB 2019
Sophos Central Manage Multiple Sophos Products from a Single Dashboard
Agenda Shared responsiblity in Public Cloud Moving emails to Cloud (Email security) (Cloud) Server Security Cloud Security - Cloud Optix
Shared Responsibility Source: https://docs.microsoft.com/en-us/azure/security/azure-security-infrastructure
User the weakest link? • Email Security and MFA • Train the people - PhishThreat • Mobile Security and Management
Sophos Central Email Protection Advanced Threats Email Protection Time-of-Click URL Protection Sophos Sandstorm Reputation Checks Sender Authentication Header Anomalies Inbound messages Anti-spam and antivirus Delay Queue Email Continuity Automated Alerts Emergency Inbox Email Queuing Inbound messages Information Protection Inbound | Outbound Content Control Push Encryption
Demo Sophos Phish Threat – Simulation Training Reporting Attack demo – Steal credentials and install malware with Phishing
A tale of two crashes A crashed endpoint is frustrating… …while a crashed server can be devastating.
Src: https://www.theregister.co.uk/2019/03/20/steffan_needham_aws_rampage_prison_sentence_voova/
Src: https://www.zdnet.com/article/hackers-wipe-us-servers-of-email-provider-vfemail/
Most Attacks Are Found on Servers 13 hours average time to discover a known threat Sophos Survey 36.7% SERVER
All-In-One Server Protection • Stop Unknown Threats • Deep learning technology blocks the latest malware • Signatureless detection • Block Exploits • Stop exploit techniques commonly used to break into organizations • Don’t Get Held to Ransom • Block crypto-ransomware attacks • Roll-back affected files to a safe state • Stop boot record ransomware attacks • Deny Hackers • Stop real-world hacking techniques: • Credential harvesting • Lateral movement • Privilege escalation
Demo Sophos Server Protection – Integration to AWS and Azure Threat Case
Cloud Security is a Shared Responsibility WAF IPS Host Security VPN Next-Gen Firewall Outbound Proxy Security INthe Cloud Your Responsibility Applications and Content Network Security Inventory Configuration Access Controls Data Security Security OFthe Cloud Cloud Provider ResponsibilityAWS, Azure, Google Foundational Services
VISIBILITYAssets in AWS, Microsoft Azure, and Google Cloud Platform COMPLIANCEReporting and adherence based on behaviors and best practices RESPONSEInstant remediation and incident response
Demo Cloud Optix demo
Summary Moving to cloud? Email Security, User training (PhishThreat), MFA, Mobile management and Mobile Security Already in cloud? Are the servers secured Already big in cloud? Compliance, Visibility and Response - Cloud Optix