Virtual Certainty: How to Ensure You Are Meeting Compliance in the Cloud

Saikat Saha, Senior Product Manager, SafeNet
Establishing and sustaining compliance with a host of mandates including the Payment Card Industry Data Security Standard (PCI DSS) in virtualized cloud environments has never been simple, but it continues to raise a host of new challenges.

Join your fellow professionals to look at the PCI DSS and its new virtualization guidelines, and discover a series of best practices for efficiently and effectively complying with these standards.

Then discover why encryption is such a critical requirement across a growing number of cloud-based compliance mandates, ensuring data isolation in multi-tenant environments and understand the PCI requirements around key management, and important strategies for efficiently complying with these rules.
Oct 17 2012
48 mins
Virtual Certainty: How to Ensure You Are Meeting Compliance in the Cloud
More from this community:

IT Governance, Risk and Compliance

Webinars and videos

  • Live and recorded (1959)
  • Upcoming (74)
  • Date
  • Rating
  • Views
  • Channel
  • Channel profile
Up Down
  • Cyber Security Management in a Highly Innovative World Jun 13 2013 2:00 pm UTC 45 mins
    Cyber attacks are reaching pandemic levels. State-sponsored groups and organized crime are successfully stealing valuable intellectual property—including critical infrastructure and operational readiness information, businesses’ and consumers’ financial data—often without anyone realizing the attack has occurred. But preparedness cannot be delegated solely to the IT department. The involvement of the entire enterprise, armed with an understanding of the highly dynamic landscape, is vital for warding off potential threats.

    Join your fellow professionals to discuss these trends, and, more importantly, some new perspectives on how to address them:

    Risks:

    Impacts on risk from evolving adversaries
    Risks driven by changes in the changing technology landscape
    (including cloud, virtualization, consumerization and mobile)
    The ever empowered privileged user

    Solutions

    Adversary centric security models
    Applying security without infrastructure control
    Designing for the secure breach
  • Storage Implications for Storing File Data Securely in a Distributed World Jun 12 2013 3:00 pm UTC 45 mins
    When an organization has a distributed or mobile workforce or requires executives or key personnel to work from home, the issue of securing the business critical data becomes especially problematic. In most cases today, responsibility for the security of the file data is the left up to the individual end user. Theft or even the borrowing of the mobile device leaves critical file data exposed.

    The rapid growth of BYOD (Bring Your Own Device) brings cost savings and efficiency for organizations but also a greater risk of security breaches. Today, no control or reporting of use of critical data on mobile devices is possible and this creates regulatory problems.

    Join your fellow professionals to understand the storage implications for storing file data in a distributed world and best practices on file data security.
  • Not Going Quietly; Gracefully Losing Control & Adapting to Cloud and Mobility Recorded: May 16 2013 48 mins
    Cloud, virtualization, mobility, and consumerization have greatly changed how IT assets are owned and operated. Rather than focusing on loss of security control, the path forward is cultural change that finds serenity and harnesses the control we’ve kept. The Control Quotient is a model based on control and trust, allowing proper application of security controls, even in challenging environments.
  • Panel: Virtual World with Virtual Risks. Can it be Cloudy and Clearly Secure? Recorded: May 15 2013 64 mins
    As companies migrate to the virtual datacenter, executives must deal with security, audit, and visibility of their environment which has grown beyond their physical datacenter. Because of this, hesitancy remains and many questions are still being asked. What is a next-gen datacenter? What changes as businesses take steps toward a hybrid datacenter? When they move to a virtualized environment, how does their data remain secured and in their control? Will encrypting data in this environment achieve visibility and control of who is accessing it? Plus despite more knowledge on virtual risks, cloud services are still being purchased without authentication, adopting cloud first and then thinking about security second. So how can organisations win the struggle with authentication in the cloud?

    Join your fellow professionals for this lively and insightful discussion providing a complete vision on virtual risks in a virtual world. Then understand a way to manage risk, maintain compliance, accelerate and protect business from evolving security threats.
  • Your Assets are Leaking: Secure the Breach Recorded: May 8 2013 53 mins
    It’s Not a Question of IF, It’s a Question of WHEN

    For decades, we have played the game; staying ahead of the hacker trying to get their hands on our most valuable asset – our data. We invested in firewalls, anti-virus, VPN, IPS all to build an impenetrable wall to safeguard that very same data.

    Our drive to the cloud has made us more vulnerable to the release of confidential data because it is impossible to protect a perimeter that no longer exists.

    Join us for this informative webcast that will introduce a new way of looking at security which advocates protecting the target rather than the vector.

    We call this “Secure the Breach”

    In 60 minutes, we will explain this groundbreaking approach of protecting what really matters where it matters and we will give you key action items to get you on this new security paradigm.
  • The Datacenter Deconstructed Recorded: Apr 25 2013 37 mins
    Today security is consuming an ever larger share of total IT spending, but security effectiveness against the data-breach epidemic is not improving. Virtualization and cloud computing have introduced an age where data is distributed across and beyond the enterprise, the edge is diffuse, hackers are skilled criminals, and insiders (both malicious and otherwise) are a constant threat to data compromise.

    This session will discuss:
    • The security changes that virtualization and cloud computing introduced
    • Who is responsible for security in the SaaS, PaaS and IaaS environments
    • The new reality that security needs to be attached to the data
  • On demand cryptographic resources for your virtual data center and cloud Recorded: Apr 17 2013 47 mins
    More than ever organizations need to cut costs, increase efficiency and maximize resources. Moving to the Cloud and consolidating your IT infrastructure is the best way to achieve this.

    Creating and protecting cryptographic keys in this environment has moved to an initial upfront concern, but how can you manage this in an efficient and agile way when you don’t have security/crypto experts available throughout your functional teams? How can you keep pace with business demands for encrypting applications whilst maintaining compliance and security?

    Join your fellow professionals to understand the concept of the world’s first Crypto Hypervisor, an innovative crypto processor created for cloud and virtual applications, a solution which allows secure and compliant elasticity, manageability and control of your cryptographic resources.

    The crypto hypervisor creates a single crypto hardware platform abstracted into many Dynamic Crypto Resources:

    •Automated provisioning of Dynamic Crypto Resources
    •Dynamically binds Dynamic Crypto Resources to virtual applications
    •Validated to be secure by third parties
    •A Trust Anchor for cloud and virtual environments, protecting the cryptographic key lifecycle
    •Provides security, auditability, scalability, high performance, and consolidated management
  • Mitigate threats in a virtual infrastructure with SafeNet ProtectV for VMware Recorded: Apr 4 2013 31 mins
    The savings with virtualization and cloud are compelling – but not without risk.

    Learn how SafeNet ProtectV encrypts your virtual machines and virtual storage to secure your infrastructure from common hacker attacks, rogue admins and unauthorized copies of proliferating data snapshots.

    Join your fellow professionals for this technically focused webinar with the Product Line Manager for SafeNet ProtectV.
  • Wherever you store it, they can’t touch it. Pragmatics of file data encryption. Recorded: Mar 27 2013 60 mins
    Whether you are looking for a trusted storage and archive security solution for migration to a multi-tenanted environment or for compliance and IP protection, file data can be encrypted in many locations and in many ways during its flight from first creation to its resting place in storage.

    The cost of dealing with a data breach vastly outweighs the costs of deploying encryption technology, but each encryption method or physical location has advantages and disadvantages and protects in different ways against potential threats.

    These pros and cons are dependent on currently deployed infrastructure, compliance demands, sensitivity of data, vulnerability to threats, and staffing, plus the added complication of management by different operational and IT department groups.

    Join your fellow professionals to understand how to identify the most cost effective storage location and understand how that meets the needs of the organization while at the same time introducing as little operational management overhead as possible.

    Result. Fast, Transparent, Cost-Effective Protection for File Data in Storage
  • Busting the Top 5 Myths of Cloud-Based Authentication Recorded: Feb 13 2013 40 mins
    The cloud is on its way to joining the list of truly revolutionary innovations by combining technology with new business approaches that can bring significant benefits to your organization. The benefits of cloud - agility, flexibility and cost savings – also extend to strong authentication. Thousands of organizations recognize this and are already making the big switch over to cloud based authentication. In fact, analysts predict that more than 50% of enterprises will choose cloud-based services as the delivery option for new or refreshed user authentication implementations within the next few years.

    However, as with many ground-breaking innovations, this trend has also brought about some common myths.

    During this live webinar you will hear Jason Hart, VP Cloud Solutions de-mystify the top 5 most common myths about migrating to cloud-based authentication:
    • SECURITY: Cloud-based authentication isn’t as secure as server-based authentication
    • CONTROL: It is complex to set up, and hard to implement
    • AUTOMATION: Difficult and time-consuming to re-provision existing users, and enrol new users
    • CHOICE: Only one token choice per user, and can’t use existing authentication tokens during the migration
    •TCO: hidden service & maintenance costs and high upfront infrastructure costs

    Join your fellow security professionals to understand the business and technology benefits of cloud-based authentication
  • 2e2 Guernsey: Service Provider Case Study Recorded: Feb 5 2013 2 mins
    David Salisbury, Managed Security Services at 2e2, a leading Service Provider, discusses how the SafeNet solution for 2-factor authentication was a strong offering for their customers, citing that the cloud-based solution is flexible, easy to manage, has a wide range of form factors, and is secure.
  • Vodafone and SafeNet Secure Cloud Access Recorded: Feb 5 2013 4 mins
    Security is no longer confined to an organization's perimeters.
    For years, user authentication has served a vital role in organizations security policies—securing access to their networks, protecting the identities of their users, and ensuring their users are who they claim to be. However, as new business environments emerge - like cloud and the increased use of mobile devices, organizations are finding they need to quickly adopt new models for authenticating their users in order to offset potential threats.

    In this webcast, Vodafone, and SafeNet will discuss:
    • Emerging authentication models organizations are adopting
    • New approaches to user authentication, as a result of demanding cloud and virtualized environments that are transforming traditional security paradigms
    • Intelligent authentication strategies that can drive value and cost savings
    • Methods to ensure these implementations will scale as business needs evolve and new environments emerge.
  • Colt: Service Provider Case Study Recorded: Feb 5 2013 3 mins
    Stefano Maifreni, Solutions Marketing Manager at Colt Technology Services, a leading Service Provider, discusses how customer demand for new information and services makes it critical to provision a cloud-based platform.
  • A Guide to Reducing Authentication TCO by 60% Recorded: Nov 22 2012 41 mins
    Many organizations rarely look closely at the Total Cost of Operation of their authentication solution, and instead make a decision heavily driven by the up-front purchase price. This approach shows that infrastructure investments and management overheads dominate the total cost of the solution, therefore lowering these overheads would reduce Total Cost of Operation.

    Cloud-based authentication services achieve just that saving, while increasing flexibility:

    • Up to 60% savings in Total Cost of Operation
    • 99.999% service availability
    • More effective budget utilization and flexibility with OPEX pricing
    • Up to 90% reduction in administrative overhead costs

    Join your fellow professionals to compare the Total Cost of Opertation of an on-site authentication solutions vs. a cloud-based authentication service, and then further understand the business and technology benefits of cloud-based authentication when evaluating your authentication infrastructure.
  • Securing File Data in Storage: 4 Best Practices. 6 Rules on Solution Choice Recorded: Nov 8 2012 57 mins
    File data can be encrypted in many places and in many ways during its flight from first creation to its resting place in storage. Each method or location has advantages and disadvantages and protects in different ways against potential threats (or sometimes not at alll).

    Join your fellow professionals to understand the pros and cons of many of those common locations and methods in the context of what types of threats need to be protected against. The various options will be contrasted against a standard set of comparisons to simplify the decision making process for those selecting encryption solutions for their critical file data.
  • Virtualization and the Cloud: Encryption Enables a Fast and Secure Migration Recorded: Oct 18 2012 47 mins
    The business benefits and economies of migrating to virtualized and cloud environments are very clear, providing significant cost reduction and system efficiencies, moving to a “pay as you go model”. However, when you move to a dense virtual infrastructure or cloud, you often lose control of the underlying infrastructure, therefore ownership and control of data in that infrastructure. In addition, workloads are mobile yet security is usually tied to underlying infrastructure, removing any assurances that security policies can be enforced as workloads move.

    In the journey to virtualization and the cloud, many organizations are still contending with large pools of physical infrastructure. They want to gain the efficiency and lower cost associated with server consolidation and virtualization, but security and audit teams advise them this puts the company’s sensitive data at risk. Automating IT in a private cloud keeps developers and other users in-house and under an organization’s control, but rapid deployment of workload requires agile security.

    Join your fellow professionals to first understand the challenges and roadblocks of migrating to the cloud and virtualized environments, and where the data security gaps exist. Then understand how by attaching security to the data itself and managing the encryption keys, you are able to maintain control of your data, prove compliance, and facilitate governance – even in a dense virtual or cloud environment. Virtualization, Hybrid or Public cloud offerings can now be used for broader workloads (including ones containing business critical, sensitive data ie. production servers in addition to test and development), while still delivering the security and compliance requirements needed.
  • Virtual Certainty: How to Ensure You Are Meeting Compliance in the Cloud Recorded: Oct 17 2012 48 mins
    Establishing and sustaining compliance with a host of mandates including the Payment Card Industry Data Security Standard (PCI DSS) in virtualized cloud environments has never been simple, but it continues to raise a host of new challenges.

    Join your fellow professionals to look at the PCI DSS and its new virtualization guidelines, and discover a series of best practices for efficiently and effectively complying with these standards.

    Then discover why encryption is such a critical requirement across a growing number of cloud-based compliance mandates, ensuring data isolation in multi-tenant environments and understand the PCI requirements around key management, and important strategies for efficiently complying with these rules.
  • The Authentication Service 30 minute challenge Recorded: Oct 4 2012 48 mins
    Can you move or add an Authentication Service in your lunch break?

    An increasingly mobile workforce, the ongoing trend of employee BYOD plus the move to the cloud and virtualised environments is blurring the boundaries of the traditional network security perimeter. Organizations are having difficulty affording, implementing and managing consistent, unified access policies to corporate resources, considering the actual costs of existing solutions is not simply the capex – but also the opex of running the service in deploying, managing and supporting tokens.

    Join your fellow professionals to understand how an Authentication Service can enable companies to pursue a consistent authentication policy across the organization with speed, ease and a significantly reduced spend, by automating and simplifying the deployment and management of a distributed estate of tokens.
  • Authentication as a Service. Get your clients up and running in minutes. Recorded: Jul 18 2012 54 mins
    Strong authentication is becoming crucial for all organisations, creating a huge market opportunity which service providers are uniquely positioned to fulfill. But historically Service Providers have faced huge challenges to roll out and scale authentication as a service to their customers cost-effectively, as its expensive and complex to manage and administer for the mass market.

    SafeNet’s Blackshield Cloud is a revolutionary cloud-based authentication service designed specifically for Service Providers providing:

    •Increased revenue and customer stickiness by the provision of authentication solutions that differentiate your existing service portfolio
    o"Ready to go" cloud-based standardised and certified, subscription service for your clients
    oNo upfront costs due to cloud model and massively reduced total cost
    oSimple, low, subscription cost - per user per year fee
    oFits your business model – brand it, customise it, integrate it with your billing system, instantly
    oSimple migration from your or your clients’ existing authentication products

    Join your fellow professionals to understand how with Blackshield Cloud, a service provider can roll out and scale strong authentication as a service with ease, greatly reducing the investment, complexity and operational costs associated with traditional authentication servers and have customers up and running in minutes!
  • How SafeNet Helps Secure the Digital Mailbox in the Cloud Recorded: Jul 3 2012 6 mins
    In this video, SafeNet's customer, Pitney Bowes, discusses their move to a new cloud service offering that will create new revenue streams for their company, and measures they took to ensure that their customer data would be protected in a cloud environment.

    Tsion Gonen, our Chief Strategy Officer, also adds commentary on what companies should consider around issues like encryption and key management. Take a few minutes to check it out.
Protecting Data, Identities, Transactions & Communications
SafeNet is the only company trusted to protect the world’s most sensitive commercial and government assets. We do this through solutions that persistently protect throughout the information lifecycle and evolve to support changing business and market requirements without disruption.

Embed in website or blog

Successfully added emails: 0
Remove all
  • Title: Virtual Certainty: How to Ensure You Are Meeting Compliance in the Cloud
  • Live at: Oct 17 2012 3:00 pm
  • Presented by: Saikat Saha, Senior Product Manager, SafeNet
  • From:
Your email has been sent.
or close
You must be logged in to email this