CSA Argentina - Jornada CXO Cloud

26
www.cloudsecurityalliance.org Copyright © 2011 Cloud Security Alliance Haciendo Sinergia Lic. Diego San Esteban, CRISC Board Member CSA Argentina

Transcript of CSA Argentina - Jornada CXO Cloud

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Haciendo Sinergia

Lic. Diego San Esteban, CRISC Board

Member CSA Argentina

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Promover el uso de las mejores

prácticas para ofrecer garantías de

seguridad en Cloud Computing, y

proporcionar educación sobre los

usos de la computación en la nube

para ayudar a asegurar todas las

otras formas de computación.

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

2012 – Capitulo Oficial

2 años trabajando

+ 20 miembros

+ 6 reuniones anuales

Proyectos Locales en Idioma local

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Afiliación Capítulos CorporativosPatrocinante

s

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

https://chapters.cloudsecurityalliance.org/argentina/

@Cloudsa_arg

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

http://cloudsecurityalliance.org/research/

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Consensus Assessments Initiative + 200

Cloud Controls Matrix + 90

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

La versión 3 amplía el contenido que se incluye en las versiones

anteriores con recomendaciones prácticas y requisitos que se pueden

medir y auditar.

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

SLA Chapters group

Effective SLAs and their Management is a key factor in the

successful adoption of the Cloud

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Initiative 1 - Top Mobile Threats)

Initiative 6 - Mobile Device Management

Mobile Device Management Key Components

www.cloudsecurityalliance.org/mobile

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Identify Threats unique to, or magnified by Cloud Development of V2.1

Top Threats Submission and Review

https://cloudsecurityalliance.org/research/top-threats/#_submit

For more information on the Top Threats Working Group

https://cloudsecurityalliance.org/topthreats/

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

https://cloudsecurityalliance.org/research/big-data/

Initiatives

Data Analytics for Security

Privacy Preserving/Enhancing Technologies

Big Data-Scale Crypto

Cloud Infrastructures’ Attack Surface Analysis and Reduction

Policy and Governance

Big Data Framework

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

5 Telecom Initiatives

Telecom and the GRC Stack

ISO 27017

Compliance Monitoring

Cloud Forensics and Legal

https://cloudsecurityalliance.org/research/telecom/

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

New Working Group Co-chairs Introducing Sean Cordero, Evelyn de Souza, Thomas Kenyon

CCM 1.3 peer review released in July

More updates scheduled in 2012 (AICPA, NIST, and more)

CCM 2.0 release 2013

CSA Interact coming soon

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

CSA, Trusted Cloud Initiative Interactive Site

https://research.cloudsecurityalliance.org/tci/

TCI Roadmap for Q2

Architecture Maintenance Site – on CSA Interact soon

Architecture Feedback Forum

Interactive Site: Phase II - Heatmapping

Interactive Site: Phase III – Input/Output Questionnaire

Get Involved

https://cloudsecurityalliance.org/research/tci/#_get-involved

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Health Initiatives

HIPAA and HiTech Best Practices

https://cloudsecurityalliance.org/research/him/

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Implementation Guidance for

Categories

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

SLA + Pricacy = PLA

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Cloud Data Governance Initiatives

Key Concerns of Cloud Data Stakeholders

Data Lifecycle Model and Taxonomy

Emerging Technologies

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Learn how you can participate in Cloud

Security Alliance's goals to promote the

use of best practices for providing security

assurance within Cloud Computing

http://www.linkedin.com/groups?gid=1864210

https://cloudsecurityalliance.org/get-involved/

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

https://cloudsecurityalliance.org/research/, the Submit Ideas tab

Submit Your

Research Ideas

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

https://cloudsecurityalliance.org/education/white-papers-and-

educational-material/

Contribute to the

CSA library

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance

Help Us Secure Cloud Computing

https://chapters.cloudsecurityalliance.org/argentina/

[email protected]

LinkedIn: www.linkedin.com/groups?gid=1864210

Twitter: @cloudsa_ar

www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance www.cloudsecurityalliance.orgCopyright © 2011 Cloud Security Alliance