Episode 7

From AstroArch

Virtualization Security Round Table Podcast Episode 7 show notes

  • How Virtualization Security Relates to Cloud Security

Back to main podcast site

Go to Talkshoe to download or listen to the podcast. Soon to be available also on iTunes.

Our guest panelist was Hal Pomeranz of Deer Run Associates. Thank you for joining us Hal.

We started of with Hoff presenting a taxonomy/topology of the Cloud, which is in effect building blocks starting with the highest level of Applications only down to hardware. This is a necessary part of any Cloud discussion. Thank you Hoff for providing this.

We restricted ourselves to the virtualization layer mostly.

At each layer security is different, but the key take aways from this are:

  • The cloud user is responsible for their own security.
  • Whether to use data encryption depends on your understanding of what is provided by the Cloud Provider. If you do not know, encrypt your data.
  • The cloud needs to be auditable by their auditors and your own.
  • The cloud provider may allow you to add your own tools to protect your environment (Case in Point is Catbird V-Security tools added by one provider for a customer).
  • Security is your responsibility not the cloud provider (at least at this time).

Panelist BIOs

  • Hal Pomeranz is the founder and technical lead of Deer Run Associates, and has been active in the system and network management/security field for over twenty years. As a Faculty Fellow for the SANS Institute, Hal developed the SANS "Step-by-Step" course model and currently serves as the track coordinator and primary instructor for the SANS/GIAC Unix Security Certification track (GCUX). He has written or co-written dozens of technical articles and several books, including "Solaris Security: Step-by-Step", the de facto standard guide for "hardening" the Solaris Operating System, and "SANS Security Essentials". Hal is a recipient of the SAGE Outstanding Achievement Award for his teaching and leadership in the field of System Administration.
  • Michael Berman is the CTO of Catbird, with over 20 years experience in system engineering, architecture, design and implementation of secure computing. Michael's experience includes implementation of C2 UNIX; Fortune 100 enterprise security; and expert support in the prosecution of computer crimes. He is a member of the Electronic Crimes Task Force and High-Tech Crime Investigation Association and a Certified Information Security Systems Professional (CISSP). Michael is a frequent speaker on the topic of virtualization and security.
  • Chris Hoff is Unisys Corporation’s Systems & Technology division chief security architect. Hoff has over 15 years of experience in high-profile global roles in network and information security architecture, engineering, operations and management. Prior to Unisys, he served as Crossbeam Systems' chief security strategist, was the CISO for a $25 billion financial services company and was founder/CTO of a national security consultancy and led the security engineering team of one of the first global managed network security service providers. Hoff is a prolific blogger and sought after speaker at leading security conferences.
  • Iben Rodriguez is an Infrastructure Consulting Professional with over 20 years experience working in complex IT environments. Iben has an extensive knowledge of VMware-specific environments having spent 2 years working for VMware in various roles. Iben has led and delivered very complex projects for Fortune 500 companies, including Switzerland based pharmaceutical companies, one of the world's largest online auction companies and a large city government in southern California. Iben is considered one of the foremost industry experts in VMware-based security and infrastructure design.
  • Edward L. Haletky is the author of VMWare ESX Server in the Enterprise: Planning and Securing Virtualization Servers. Haletky owns AstroArch Consulting, Inc., providing virtualization, security, network consulting and development. Haletky is also a guru and moderator for the VMware Communities Forums, providing answers to security and configuration questions, prolific blogger, and is working on new books on Virtualization.

Contents

Comments

Name (required):

Website:

Comment:

kardozo said ...

plant in house

--kardozo 22:00, 29 May 2009 (EDT)

lankanvin said ...

red sea

--lankanvin 18:18, 1 June 2009 (EDT)

chb908 said ...

birthday gift

--chb908 02:01, 3 June 2009 (EDT)

chb908 said ...

birthday gift

--chb908 02:38, 3 June 2009 (EDT)

chb908 said ...

birthday gift

--chb908 02:53, 3 June 2009 (EDT)

OQAxcIbTWrHcXkb said ...

map.txt;10;15

--[jfpyMBuCAnQanaQq OQAxcIbTWrHcXkb] 12:44, 9 June 2009 (EDT)

zFaWVDOqQqcqAl said ...

map.txt;10;15

--[lWywzSvhuUTTdFvG zFaWVDOqQqcqAl] 13:24, 9 June 2009 (EDT)

WCbArOoBsmYEAdpuH said ...

map.txt;10;15

--[RarCDVcYiUUh WCbArOoBsmYEAdpuH] 13:24, 9 June 2009 (EDT)

BJvSVoahRg said ...

map.txt;10;15

--[TZyoLpHIYiL BJvSVoahRg] 14:14, 9 June 2009 (EDT)

nkegHdZkXeAl said ...

map.txt;10;15

--[IZACXfPuktNw nkegHdZkXeAl] 14:14, 9 June 2009 (EDT)

BPmZSpDC said ...

map.txt;10;15

--[qBpNWhmqre BPmZSpDC] 14:53, 9 June 2009 (EDT)

AQbdVlIWxYbLR said ...

map.txt;10;15

--[bLPclcCRhebkiNYBbFx AQbdVlIWxYbLR] 14:54, 9 June 2009 (EDT)

sNADoepurXzpJxnbRzH said ...

map.txt;10;15

--[liaFmnUgEqShBemg sNADoepurXzpJxnbRzH] 15:34, 9 June 2009 (EDT)

XABuFmIETO said ...

map.txt;10;15

--[ykKFVqVRgxVqhu XABuFmIETO] 16:14, 9 June 2009 (EDT)

cLCUzrXpQvnYl said ...

map.txt;10;15

--[bmiHABBTMkrSEvMd cLCUzrXpQvnYl] 16:14, 9 June 2009 (EDT)

ZCqcTLAgVkFvIur said ...

map.txt;10;15

--[hBbNTsLPIJNVqE ZCqcTLAgVkFvIur] 16:55, 9 June 2009 (EDT)

qCHhcmSxfWgJG said ...

map.txt;10;15

--[ocCVmmOCswh qCHhcmSxfWgJG] 17:39, 9 June 2009 (EDT)

VeYlvTKw said ...

map.txt;10;15

--[FaUGobZBxTRTfZpo VeYlvTKw] 17:39, 9 June 2009 (EDT)

QmtjaNPqQxYnq said ...

map.txt;10;15

--[LYUZfrqhMFAC QmtjaNPqQxYnq] 18:24, 9 June 2009 (EDT)

OZldmSoYADIHK said ...

map.txt;10;15

--[VzKFKtymtcnRdNPM OZldmSoYADIHK] 18:24, 9 June 2009 (EDT)

nzVYKjtuxxlikqsgsry said ...

map.txt;10;15

--[KNygJFISg nzVYKjtuxxlikqsgsry] 19:08, 9 June 2009 (EDT)

czElQOifcrqqv said ...

map.txt;10;15

--[IzfsbPHfqOWlAn czElQOifcrqqv] 19:08, 9 June 2009 (EDT)

Back to main podcast site

Podcast audio improvements by Tim Pierson of DataSentry, Inc.