aws-summit-madrid-16

SecurityInside en el AWS Summit de Madrid 2016

Tras la visita el año pasado al AWS Summit de Barcelona, en esta ocasión nos pillaba mucho más cerca. El AWS Summit de Madrid se celebró el pasado Jueves en cines Kinépolis con una gran participación de público y de empresas patrocinadoras.

Puesto que trabajo en un entorno compuesto principalmente por servicios cloud de Amazon WS, la visita a este tipo de eventos es totalmente recomendada. Ya sabéis que la filosofía de SecurityInside es no dejar nunca de aprender.

El evento

Tal y como os comenté en la entrada de la Rooted CON, el sitio es un acierto total. Parece que los grandes eventos se están poniendo de acuerdo en utilizar las instalaciones de Kinépolis y, para el asistente, es una gran noticia. No hay problema de aparcamiento, gran oferta de restaurantes, cafeterías, espacio para apagar fuegos en remoto… todo genial.

Para el que no lo tenga claro, el AWS Summit es un evento en el que los responsables de diferentes servicios de Amazon nos explican las novedades y casos prácticos para que podamos utilizarlos en nuestro día a día. Además, lo complementan con ejemplos reales de empresas que han tenido éxito utilizando los diferentes servicios que se ofrecen y que siguen creciendo año a año.

aws-summit-2

Las sesiones

Puesto que el pasado Summit fue hace relativamente poco tiempo, en esta ocasión no hubo demasiadas novedadas, pero sí ejemplos de uso que te hacen pensar y que posiblemente acaben en nuestros sistemas a corto plazo. Lo bueno de este tipo de eventos es que te dan ideas y soluciones en las que no habías caído.

En mi caso particular, la sesión más interesante fue la relativa a la gestión de seguridad. Un repaso completo a la forma en la que tener todo bajo control desde el minuto cero que se nos contó en primera persona por Bill Murray, Director of AWS Security Programs y por los diferentes partners del evento:

aws-summit-madrid-sponsors

Seguridad en Amazon WS

La infraestructura en la nube de Amazon WS está diseñada para ser uno de los entornos de informática en la nube más flexibles y seguros de los disponibles en la actualidad. Ofrece una plataforma extremadamente escalable y de alta fiabilidad para que los clientes puedan implementar aplicaciones y datos de forma rápida y segura.

Los centros de datos de AWS disponen de la máxima seguridad 24/7. Los sistemas ambientales de los centros están diseñados para minimizar el impacto de las interrupciones en las operaciones. La existencia de varias regiones geográficas disponibles hace que la información sobreviva a la mayoría de las averías, incluidas catástrofes naturales.

AWS establece exhaustivos sistemas de supervisión de seguridad y red, protegiendo frente a ataques DDoS y detección de ataques de fuerza bruta contra sistemas de contraseñas en las cuentas de AWS, poniendo a prueba la infraestructura constantemente, desde todos los ángulos posibles y desde diferentes regiones.

Además del amplio equipo de expertos, AWS cuenta con una gran variedad de herramientas y sistemas que automatizan muchas de las tareas de seguridad, desde la gestión de credenciales hasta la supervisión del uso del servidor y red. Los programas de análisis automatizados, por ejemplo, han reducido el tiempo de una evaluación de ingeniería de seguridad de horas a minutos e incrementando la velocidad de análisis de docenas de hosts al día a miles de hosts en el mismo tiempo.

La infraestructura de AWS es mejorada constantemente, sustituyendo el hardware que llega al final de su vida con procesadores más recientes, mejorando así el rendimiento e incorporando tecnologías de seguridad, buscando reducir al máximo las fricciones entre los procesos de seguridad y los servicios.

AWS construye sus centros en múltiples regiones geográficas y numerosas zonas de disponibilidad dentro de cada región. Esto es, las zonas de disponibilidad están físicamente aisladas en una región y ubicadas en zonas de menor riesgo. En caso de improbable fallo, los procesos automatizados pueden desviar el tráfico de datos del cliente de la zona afectada (si hacemos uso de la configuración multi AZ), equilibrando la carga de tráfico entre los demás sitios.

Para clientes obligados a cumplir con determinadas leyes o normas de seguridad, AWS proporciona informes de certificación que describen cómo su infraestructura en la nube cumple con los controles exigidos por estas normas. Cada certificación que AWS obtiene significa que un auditor ha verificado que están instaurados los controles específicos y que funcionan según lo previsto.

Para ayudar al mantenimiento de seguridad de datos y sistemas en la nube, AWS dispone de una amplia variedad de funcionalidades y servicios:

  • Seguridad de red: Provee de diferentes opciones de seguridad a nivel de red para mantener los recursos y comunicaciones con la privacidad deseada.
  • Control de acceso: Solo permite acceso a usuarios, clientes y aplicaciones autorizadas a los recursos AWS, estableciendo políticas de control de acceso, cuentas individuales de usuarios y credenciales únicas.
  • Monitorización y seguimiento: AWS ofrece herramientas para hacer seguimiento y monitorizar los recursos en la nube. Con ellas, hay inmediata visibilidad del inventario, así como sobre usuarios y actividades sobre la aplicación.
  • Copias de seguridad: Una estrategia de seguridad debe incluir backups o snapshots de los datos con regularidad. Por eso, AWS realiza backups automáticos y, en otros casos, es posible configurar snapshots usando las diferentes opciones de configuración.
  • Cifrado: AWS utiliza sistemas de cifrado siempre que sea posible y recomienda su uso. Permite el almacenamiento de datos cifrados, centralización de gestión de claves y almacenamiento en hardware cifrado dedicado.
  • Región aislada: Para clientes con necesidades adicionales por cumplimiento de regulación especial, AWS ofrece regiones aisladas llamadas GovCloud (US) con estrictos y únicos requerimientos de seguridad que permiten un entorno en el que lanzar aplicaciones ITAR.

Ya sabemos que nada es 100% seguro, pero Amazon WS hace un gran esfuerzo por mantener unos servicios con el máximo nivel de fortificación para que nuestra actividad pueda resistir los múltiples vectores de ataque a los que estamos expuestos.

Y tu, ¿utilizas Amazon WS? Recuerda que tienes un gran abanico de recursos gratuitos para empezar a familiarizarte con este ecosistema.

 

De momento, eso es todo. Como siempre digo, si ves algún error, no estás de acuerdo con lo que cuento o quieres hacer alguna aportación, no dudes en pasarte por los comentarios.

Cristóbal Espinosa
Últimas entradas de Cristóbal Espinosa (ver todo)
1297 comentarios
  1. http://www.Carb-rite.Com/
    http://www.Carb-rite.Com/ Dice:

    Cool blog! Is your theme custom mae or did you download it
    from somewhere? A design like yours with a few simple tweeks would really make my blog stand out.
    Please let me know where you got your theme. Bless you

  2. convert youtube to mp3 converter --
    convert youtube to mp3 converter -- Dice:

    Next time I read a blog, Hopefully it doesn’t disappoint me just as much as this one. I mean, Yes, it was my choice to read through, but I really thought you would probably have something useful to talk about. All I hear is a bunch of whining about something you could fix if you were not too busy looking for attention.

  3. youtube to mp3 320
    youtube to mp3 320 Dice:

    Oh my goodness! Impressive article dude! Thank you so much, However I am going through troubles with your RSS. I don’t know the reason why I can’t subscribe to it. Is there anybody getting the same RSS issues? Anyone who knows the answer can you kindly respond? Thanx!!

  4. tubidy mp3 juice
    tubidy mp3 juice Dice:

    You made some decent points there. I checked on the internet for additional information about the issue and found most people will go along with your views on this site.

  5. Hugo
    Hugo Dice:

    Automated Backlink Builder Software Tools To Ease Your Everyday Lifethe Only
    Automated Backlink Builder Software Trick Every Individual Should Learn automated backlink builder software (Hugo)

  6. Lan
    Lan Dice:

    Ten Things You Learned About Kindergarden That Will Aid You In Obtaining Windows And Doors Birmingham bay windows birmingham – Lan,

  7. Asbestos Attorney
    Asbestos Attorney Dice:

    A claim for Asbestos Attorney compensation is a request to receive financial compensation from the company that are responsible for asbestos exposure.
    Individuals diagnosed with mesothelioma or another asbestos-related illness can submit a variety of claims.

  8. tubidy
    tubidy Dice:

    Spot on with this write-up, I seriously think this website needs a great deal more attention. I’ll probably be back again to read more, thanks for the information.

  9. tubidy
    tubidy Dice:

    Good day! I could have sworn I’ve been to your blog before but after browsing through many of the articles I realized it’s new to me. Nonetheless, I’m certainly pleased I stumbled upon it and I’ll be book-marking it and checking back often.

  10. tubidy music download
    tubidy music download Dice:

    Oh my goodness! Amazing article dude! Many thanks, However I am going through difficulties with your RSS. I don’t understand the reason why I cannot subscribe to it. Is there anyone else having identical RSS problems? Anybody who knows the solution will you kindly respond? Thanks!

  11. BORUTO
    BORUTO Dice:

    naturally like your web site however you need to take a look at the spelling on several of your posts. A number of them are rife with spelling problems and I find it very bothersome to tell the truth on the other hand I will surely come again again.

  12. Top Universities in Uganda
    Top Universities in Uganda Dice:

    I’ve been exploring for a little bit for any high quality articles or blog posts on this
    sort of house . Exploring in Yahoo I eventually stumbled upon this site.
    Reading this information So i am happy to exhibit that I have
    a very excellent uncanny feeling I discovered exactly what
    I needed. I so much unquestionably will make certain to don?t omit this web site and give it a look regularly.

  13. life tips
    life tips Dice:

    Nice post. I learn something new and challenging on sites I stumbleupon everyday. It’s always helpful to read through content from other authors and practice something from other web sites.

  14. ngentot memek
    ngentot memek Dice:

    After going over a handful of the blog posts on your web site, I really appreciate your way of blogging. I saved as a favorite it to my bookmark site list and will be checking back in the near future. Please visit my website as well and let me know how you feel.

  15. lawsuits
    lawsuits Dice:

    Hello! Someone in my Facebook group shared this website with
    us so I came to take a look. I’m definitely enjoying the information. I’m bookmarking and will be tweeting
    this to my followers! Terrific blog and outstanding style
    and design.

    My web-site :: lawsuits

  16. memek
    memek Dice:

    You are so interesting! I don’t believe I have read through something like that before. So great to find another person with a few genuine thoughts on this topic. Seriously.. thank you for starting this up. This site is something that is required on the web, someone with a bit of originality.

  17. Top Universities in Uganda
    Top Universities in Uganda Dice:

    I blog frequently and I truly thank you for your information. This article has truly peaked my interest. I am going to book mark your site and keep checking for new information about once per week. I subscribed to your Feed too.

  18. Galileo FX
    Galileo FX Dice:

    You made some decent points there. I checked on the internet for more information about the issue and found most people will go along with your views on this website.

  19. porn
    porn Dice:

    This is the right web site for anybody who hopes to understand this topic. You realize so much its almost hard to argue with you (not that I actually would want to…HaHa). You definitely put a brand new spin on a subject that’s been discussed for decades. Wonderful stuff, just wonderful.

  20. high quality jean supplier
    high quality jean supplier Dice:

    I blog quite often and I genuinely appreciate your information. Your article has truly peaked my interest. I’m going to bookmark your blog and keep checking for new details about once per week. I subscribed to your RSS feed too.

  21. speaking coach singapore
    speaking coach singapore Dice:

    Oh my goodness! Awesome article dude! Many thanks, However I am having difficulties with your RSS. I don’t understand the reason why I can’t join it. Is there anybody getting identical RSS problems? Anybody who knows the solution can you kindly respond? Thanks.

  22. mp3juices
    mp3juices Dice:

    After going over a number of the blog articles on your website, I seriously like your way of writing a blog. I book marked it to my bookmark webpage list and will be checking back in the near future. Please check out my web site too and let me know how you feel.

  23. Giới thiệu shbet how
    Giới thiệu shbet how Dice:

    I absolutely love your blog.. Great colors & theme. Did you build this website yourself? Please reply back as I’m looking to create my own blog and want to know where you got this from or what the theme is named. Thank you.

  24. dagathomonetcom
    dagathomonetcom Dice:

    Having read this I believed it was extremely informative. I appreciate you taking the time and energy to put this content together. I once again find myself spending a significant amount of time both reading and commenting. But so what, it was still worthwhile!

  25. Slot terpercaya
    Slot terpercaya Dice:

    This is a really good tip especially to those fresh to the blogosphere. Short but very accurate information… Thanks for sharing this one. A must read article.

  26. Funky republic vape
    Funky republic vape Dice:

    You’re so interesting! I do not think I’ve read something like that before. So wonderful to find somebody with some unique thoughts on this subject matter. Really.. thanks for starting this up. This site is one thing that is needed on the internet, someone with a bit of originality.

  27. Pickleball Australia
    Pickleball Australia Dice:

    After exploring a handful of the blog posts on your web site, I honestly appreciate your technique of blogging. I saved as a favorite it to my bookmark webpage list and will be checking back in the near future. Please check out my web site too and tell me how you feel.

  28. STIKES
    STIKES Dice:

    An intriguing discussion is definitely worth comment. I believe that you ought to write more on this issue, it may not be a taboo subject but usually people do not discuss such issues. To the next! Many thanks!

  29. minimalist logo
    minimalist logo Dice:

    A fascinating discussion is definitely worth comment. I do think that you ought to publish more on this topic, it might not be a taboo subject but generally people don’t discuss these topics. To the next! Kind regards.

  30. amik labuhan batu
    amik labuhan batu Dice:

    Your style is really unique compared to other people I have read stuff from. I appreciate you for posting when you’ve got the opportunity, Guess I will just bookmark this blog.

  31. ดูซีรี่ย์จีน
    ดูซีรี่ย์จีน Dice:

    I’m amazed, I have to admit. Rarely do I come across a blog that’s both educative and amusing, and let me tell you, you have hit the nail on the head. The issue is something which too few men and women are speaking intelligently about. Now i’m very happy I came across this in my hunt for something concerning this.

  32. hishypesports
    hishypesports Dice:

    After looking into a handful of the articles on your blog, I seriously like your technique of blogging. I saved as a favorite it to my bookmark website list and will be checking back in the near future. Please check out my website too and let me know what you think.

  33. AI for Kids Books
    AI for Kids Books Dice:

    Oh my goodness! Amazing article dude! Thank you so much, However I am having troubles with your RSS. I don’t understand the reason why I can’t join it. Is there anyone else having similar RSS problems? Anybody who knows the solution will you kindly respond? Thanx!

  34. Card game
    Card game Dice:

    A fascinating discussion is worth comment. There’s no doubt that that you ought to write more about this subject matter, it may not be a taboo matter but usually folks don’t discuss these topics. To the next! Many thanks.

  35. sex
    sex Dice:

    Spot on with this write-up, I honestly believe that this website needs far more attention. I’ll probably be returning to read through more, thanks for the info.

  36. iptv
    iptv Dice:

    Howdy! This post couldn’t be written any better! Looking at this article reminds me of my previous roommate! He constantly kept talking about this. I will send this article to him. Pretty sure he will have a very good read. I appreciate you for sharing!

  37. address
    address Dice:

    Howdy, I believe your site could be having web browser compatibility issues. Whenever I take a look at your site in Safari, it looks fine however when opening in IE, it has some overlapping issues. I merely wanted to give you a quick heads up! Aside from that, great website!

  38. 78win
    78win Dice:

    A fascinating discussion is worth comment. I do think that you need to publish more on this subject, it might not be a taboo matter but generally people don’t talk about these topics. To the next! All the best!

  39. yt mp3
    yt mp3 Dice:

    This is the perfect web site for anybody who really wants to find out about this topic. You realize so much its almost hard to argue with you (not that I actually would want to…HaHa). You certainly put a fresh spin on a subject that has been discussed for many years. Great stuff, just great.

  40. 789 bet
    789 bet Dice:

    An outstanding share! I have just forwarded this onto a friend who has been doing a little research on this. And he actually bought me dinner because I discovered it for him… lol. So allow me to reword this…. Thanks for the meal!! But yeah, thanks for spending the time to discuss this matter here on your web site.

  41. useful reference
    useful reference Dice:

    Oh my goodness! Impressive article dude! Thanks, However I am having problems with your RSS. I don’t understand why I can’t subscribe to it. Is there anybody else having identical RSS problems? Anyone that knows the answer can you kindly respond? Thanks!

Dejar un comentario

¿Quieres unirte a la conversación?
Siéntete libre de contribuir!

Deja una respuesta

Tu dirección de correo electrónico no será publicada. Los campos obligatorios están marcados con *