Hi [[ session.user.profile.firstName ]]

Beyond 2FA: The Smart Way to Manage Cloud Access

Cloud apps are being pulled into the enterprise hand-over-fist, with 93% of organizations using cloud-based IT services. But the efficiencies and convenience offered by cloud apps come at a price. While organizations have long been applying two-factor authentication to their network, VPN and email portals, they have failed to extend that same level of security to cloud-based applications, such as Office 365, AWS and Salesforce.

But the need for stronger cloud access security is only part of the story. Businesses looking to scale and increase their cloud adoption find there are other issues to contend with. Visibility into cloud access events and regulatory compliance become challenging to maintain. Helpdesk staff are burdened with password resets, and the most important link in the chain—users—are plagued with password fatigue.

This webinar explains:
•Challenges to greater cloud adoption in the fintech space
•How strong authentication complements access management
•Why cloud access management is critical to an organization’s cloud adoption strategy
Recorded May 9 2017 44 mins
Your place is confirmed,
we'll send you email reminders
Presented by
Mor Ahuvia, Authentication Product Marketing at Gemalto
Presentation preview: Beyond 2FA: The Smart Way to Manage Cloud Access
  • Channel
  • Channel profile
  • Identities Are the New Security Perimeter in a Zero Trust World Sep 26 2019 6:00 pm UTC 45 mins
    Ashley Adams, Product Marketing Manager for Authentication & Access Management, Thales
    In a recent Thales survey, two thirds of CISOs cited the increase in cloud service adoption, combined with a lack of strong security solutions, as the main reasons cloud services are the prime targets of attack. As organizations undergo digital and cloud transformation, CISOs and security officers are operating in a high stress environment caused by security, compliance and manageability challenges.

    In this presentation we’ll discuss how identities are becoming the new security perimeter in a zero trust world and present best practices for implementing an access management framework that can help organizations remain secure – and scale – in distributed networking environments.
  • Implications of the Australian Prudential Standard CPS 234 Recorded: Sep 5 2019 61 mins
    Graeme Pyper, Regional Director, Australia & New Zealand at Thales
    Since Australia’s Notifiable Data Breaches (NDB) scheme launched on the 22nd February 2018, the Office of the Australian Information Commissioner (OAIC) noted that there were 964 data breaches reported between 1 Apr 2018 and 31 March 2019. This equates to just over 700% increase in data breaches reported compared to the 114 data breaches voluntarily reported in the previous year … a mind blowing statistic.

    With cyber-attacks unwaning, it is not surprising to see that the Australian Prudential Regulation Authority (APRA) released its Prudential Standard CPS 234 for Information Security on 1st July 2019. The objective of CPS 234 is to ensure all APRA regulated entities in the banking, insurance and superannuation industries are prepared to protect against any information security incidents (including cyber-attacks) and are able to respond swiftly and effectively in the event of a data breach.

    This webinar will:
    •Discuss the key requirements of CPS 234
    •Identify disruptive cybersecurity trends and the implications
    •Share best practices to protect against data breaches

    Graeme Pyper, Regional Director Australia & New Zealand at Thales
  • Global Trends in Cloud Access Management, Single Sign On and Authentication Recorded: Jul 25 2019 45 mins
    Danna Bethlehem, Director of Product Marketing, Thales
    The explosion of cloud applications and identities have set IT decision makers on a quest for reconciling the benefits of the cloud with the security and compliance requirements needs of the enterprise. Much like the user experience offered by mainstream consumer applications, cloud access management solutions have emerged to address the multi-faceted challenges of the new zero trust enterprise network. With cloud applications now a crucial part of day-to-day business operations, the 2019 Thales Access Management Index found that almost half (49%) of IT security professionals believe cloud applications make them a target for cyber-attacks. Cloud applications are listed in the top three reasons an organization might be attacked, just behind unprotected infrastructure such as IoT devices (54%) and web portals (50%).

    This webinar will review the findings of the Thales global report and how organizations around the world are approaching cloud security and the technologies they are using to secure employee access to cloud services. Specifically, in this webinar attendees will learn:
    - What are the major attack vectors for cyber attacks
    - Which access management technologies organizations are deploying to secure access to the cloud
    - Which access management technologies IT professionals deem the most effective in securing access to the cloud
    - The criteria IT professionals use to determine access policies for users
    - Who are the internal stakeholders involved in Access Management deployments
  • Choosing the Right Cloud HSM Recorded: Jul 18 2019 44 mins
    Gary Marsden, Senior Director of Data Protection Services at Thales
    Although most major cloud providers now offer native cloud Hardware Security Module (HSM) services, how do you choose the right cloud HSM? According to 451 Research, 69% of enterprises now have a hybrid, multi-cloud strategy. With hybrid, multi-cloud environments likely to be the norm as we move into 2020, managing multiple cloud HSMs will increase complexity, cost of ownership and operational overhead.

    Join us as we discuss the complexities of managing native cloud HSMs separately, leading to islands of security with different features and rules for each. We’ll show you how the smarter and simpler route is to use a cloud HSM provider that can centrally manage and secure your entire cryptographic operations across all cloud environments.

    This informative webinar will cover:
    • A current view of the cloud’s impact on IT business models
    • Why HSMs are critical to data security on premise or in the cloud
    • How creating centralized key management and security strategy will make your cloud life a whole lot easier
    • Building blocks for an HSM strategy for security across all cloud and hybrid IT environments
  • How to Secure Code Signing at the Speed of DevOps Recorded: Jul 9 2019 46 mins
    Gary Marsden, Senior Director of Data Protection Services at Thales and Mark Thompson, VP of Product Management at Keyfactor
    When you sign a piece of code, you make a statement that it comes from your trusted brand and that you stand behind it. But what happens when that trust is broken? Recent attacks, such as the ASUS Live Update hack, underscore the importance of managing reputational risk.

    As attackers become increasingly skilled in the art of signing and spreading malware, all business leaders must invest in the trust associated with their digital brand – and expect the same of their vendors. The challenge is how to secure code signing keys and certificates in today’s distributed and fast-paced DevOps environments.

    Join our experts as they discuss:
    - Code Signing: What is it? Why does it matter?
    - Recent Attacks: The Risks and Challenges of Code Signing
    - How to Secure Code Signing at the Speed of DevOps
    - How Thales and Keyfactor Make It Possible
  • The Principles of IoT Security Recorded: Jun 10 2019 59 mins
    Gorav Arora, Director, Office of CTO, at Thales and Tom Klein, VP of IoT Solutions at Keyfactor
    The proliferation of IoT and cloud computing are transforming our lives daily – from watches alerting on severe heart conditions to voice-enabled assistants automating daily tasks. Builders and operators of such systems must tackle the myriad of challenges across the complex IT stack – including security. Securing every digital touchpoint is crucial to delivering safe and connected services between devices, networks, machines, and users.

    Join us to hear about:
    • The unique challenges of IoT Security
    • Current and proposed cybersecurity regulations across various industries
    • Blueprint of IoT Security that can be used in any IoT system
    • A real-life use case on how leading healthcare provider successfully secured devices within the IoT and Cloud
  • The State of Data Security in APAC: Are Businesses Ready for Transformation Recorded: Apr 11 2019 60 mins
    Rana Gupta, VP APAC, at Gemalto and Carl Woerndle, Principal Advisor, Cyber Security - Crisis & Incident Response, Ecosystm
    Businesses in the Asia-Pacific region and India are innovating rapidly by evolving their business models to remain competitive. At the heart of this evolution is the explosive proliferation of sensitive data that is created, collected and shared. At the same time, cybercriminals are looking at all this data as a gold mine for them to monetise! So how can businesses in APAC adapt to these changes safely?

    This webinar will:
    • Identify disruptive cybersecurity trends and the implications for the APAC region & India
    • Provide insights into opportunities to protect against data breaches
    • Share best practices on data protection IT Security governance frameworks
    • Assess the maturity of current and planned security technologies
  • The State of Data Security in APAC: Are Businesses Ready for Transformation Recorded: Apr 9 2019 60 mins
    Rana Gupta, VP APAC, at Gemalto and Carl Woerndle, Principal Advisor, Cyber Security - Crisis & Incident Response, Ecosystm
    Businesses in the Asia-Pacific region are innovating rapidly by evolving their business models to remain competitive. At the heart of this evolution is the explosive proliferation of sensitive data that is created, collected and shared. At the same time, cybercriminals are looking at all this data as a gold mine for them to monetise! So how can businesses in APAC adapt to these changes safely?

    This webinar will:
    • Identify disruptive cybersecurity trends and the implications for the APAC region
    • Provide insights into opportunities to protect against data breaches
    • Share best practices on data protection IT Security governance frameworks
    • Assess the maturity of current and planned security technologies
  • How the Cloud and IoT Are Changing the Way Healthcare is Delivered Recorded: Mar 28 2019 59 mins
    Gorav Arora, Director, Office of CTO, at Gemalto and Ted Shorter, CTO at Keyfactor
    Increased cloud adoption plus the growth of IoT-enabled devices are accelerating the transformation of how healthcare is delivered. While improving patient services these new technologies add potential vulnerabilities from the increasingly porous perimeter that IT must secure. Securing every digital touchpoint is crucial to delivering safe and connected healthcare services from medical device OEMs, HDOs, EHRs and patients across the networks, data and devices they rely on.

    In this webinar, you will learn more about:
    • A real-life use case on how a leading provider partnered to successfully secure devices with IoT and the Cloud
    • Current and proposed cyber security regulations for healthcare
    • How effective key management is a vital component to ensure device security throughout their lifecycle
    • Code signing with Cloud or on-premise HSMs prevents software update tampering
    • Protecting data in use, at rest and in motion from the device to the cloud and back with advanced encryption
    • How MFA ensures the right people have access to sensitive data stored on-premises or in the cloud
  • Navigating Access Security in Cloud & Hybrid Enterprise Environments Recorded: Feb 22 2019 46 mins
    Asaf Lerner, Director IAM Solutions at Gemalto
    As mid-sized and large organizations move to cloud based delivery for software, infrastructure and storage, hybrid environments are the de-facto reality. Perimeter security schemes no longer meet the security challenges of distributed software and application delivery, leading CISOs to try and mesh disparate solutions, or worse knowingly compromise on protection. Join Gemalto to hear best practices for applying consistent and effective access security and strong authentication to both on-prem and cloud apps.
  • Global Trends in IoT Security: 2019 and Beyond Recorded: Feb 7 2019 53 mins
    Gorav Arora, Director, Office of CTO, at Gemalto
    New data tells us that companies are making progress when it comes to securing the Internet of Things and the data it produces, but there is still a long way to go in order to secure the projected 20 billion connected devices by 2023. In order to assess the current state of affairs, Gemalto recently surveyed 950 IT and business decision makers around the world with awareness of IoT in their organization. Some of the results were encouraging, while others were less so.

    According to the global survey, security is clearly an emerging priority. Companies are now devoting 13 percent of their IoT budgets to security, up from 11 percent last year. Ninety percent said they believe security is a major consideration for their customers and 97 percent believe that a strong approach to IoT security is a key competitive differentiator.

    In addition to these data findings from the global study, this webinar will discuss:
    •The top technologies companies are utilizing to secure IoT infrastructure and data
    •Which countries are most advanced when it comes to the security of IoT
    •What companies think about the role of government regulation on IoT security
    •Which companies in the IoT ecosystem are most responsible for the security of data
    •Are companies adopting Security by Design when it comes to IoT products and services
    •What role will technologies like Blockchain play in IoT Security

    Following the webinar, attendees will receive a free copy of the global IoT Security report as well as other research and white papers on IoT security.
  • Understanding the Latest Strategies and Trends in Encryption Key Management Recorded: Nov 29 2018 51 mins
    Steve Kingston, Senior Manager at Gemalto
    Security and risk management professionals face ever-increasing needs to encrypt various types of sensitive data stored on-premises, in private and public clouds and in hybrid environments in order to protect their organizations in the event of a data breach. Compliance mandates, internal security audits, data residency issues and threats of hackers are driving the requirements for enterprises to develop a centralized enterprise-wide encryption strategy to prioritize sensitive data protection. In addition, regulations, such as the EU General Data Protection Regulation (GDPR), have dramatically increased pressure on security professional leaders to review and revamp their approach to encryption key management.

    To meet these needs, security professionals are using a growing number of encryption tools to protect data within a variety of data storage environments. These may be located within local and external IT environments and systems, such as file stores, databases, big data platforms or various clouds. However, encrypting data in each of these environment results in the creation of islands of encryption and diverse key management platforms which increases complexity, costs and risk of data loss.

    In this webinar, you will:
    • Gain insight into trends that are driving the digital cloud transformation and how key management plays a role
    • Understand the importance of developing a centralized approach to encryption key management
    • Examine where and when you should encrypt your organization’s data and typical key management use cases
    • Learn how to implement an enterprise-wide key management operational model that can reduce cost of ownership and minimize overall risks
  • PCI Compliance: Why Risk Losing Customers When Payment Card Data Is Stolen? Recorded: Nov 28 2018 60 mins
    Graeme Pyper, Regional Director A/NZ at Gemalto and Vaqar Khan, Senior Security Consultant, UL Identity Management & Security
    Amazon, eBay, Alibaba, Black Friday, Cyber Monday amongst others are all fuelled by online credit card payments. Even traditional bricks and mortar businesses accept card payments through point-of-sale devices, online or via applications on mobile devices. This trend is only going to grow as the world move towards a cashless society.

    With the same motivation as criminals stealing cash, in the digital age cyber criminals are now stealing personal financial information from payment card transactions and payment processing systems.

    The PCI Security Standards Council (PCI SSC) offers a set of standards and supporting materials to enhance credit card security. For retailers, financial institutions, payment processors, and a range of other organizations that store, process and/or transmit credit card data, and the service providers that enable their businesses, compliance with the relevant the PCI standards (e.g. PCI PTS, PCI DSS, PCI PIN, PCI P2PE, PCI 3DS) is critical to ensure the safe handling of credit card information at every step.

    This webinar will discuss and provide helpful and practical information on:

    •The overview of PCI standards and how they apply to businesses
    •Encryption and key management requirements in PCI and how to comply with focus on PCI DSS, PCI PIN, PCI P2PE and PCI 3DS
    •How to secure sensitive cardholder data & meet the critical challenges of complying with PCI standards
  • Turning PKI Smart Cards into Cloud SSO Gold Recorded: Nov 8 2018 52 mins
    Garrett Bekker, Senior Security Analyst at 451 Research and Stephane Vinsot, Senior Director, IAM Product Strategy at Gemalto
    Up until now, PKI hardware’s limitations meant companies could not adopt cloud and mobility projects without having to completely ‘rip and replace’ their current security framework. As a result, companies have been using smart cards and tokens to allow their employees to authenticate themselves while accessing corporate resources, but this was limited to activity within the enterprise perimeter. In addition, companies that use PKI credentials for email encryption and digital signing have also been limited to on-premises environments.

    In this webinar, you will learn about how organizations can deploy SafeNet Trusted Access and benefit from single sign on (SSO) and high assurance PKI-based authentication, making it easier and more secure to access cloud and web-based apps and resources from wherever and on any device. Using the solution, employees will no longer have to re-authenticate each time they access a resource with their smart card, enabling more efficiency across the company – while allowing enterprises to maintain high assurance security when needed.

    In this webinar you will also learn how to build on current PKI investments, and embrace digital transformation without compromising on security, including:
    •Enabling cloud transformation: Organizations can extend PKI credentials to access policies, allowing CISOs to maintain security in the cloud by triggering the use of step up PKI-based authentication to cloud and web-based apps when needed
    •Facilitating mobility: Employees can access enterprise applications within virtual environments with their PKI credentials. This means that employees and consultants will be able to access corporate apps via a VDI, from any device and carry out certificate-based transactions, even if they can’t use their smart cards
  • Cloud Transformation: Security in the Age of Digital Disruption Recorded: Oct 16 2018 54 mins
    Gary Marsden, Senior Director of Data Protection Services at Gemalto
    While the technological and commercial advances of the cloud have created significant opportunities for enterprises, service providers and IT vendors alike, this cloud-driven transformation has also undone conventional approaches to data security and created compliance challenges when it comes to data control and ownership.

    These changes have unwittingly drawn us into a realm of increasing threat vectors, poor security practices and bad actors. From reducing cost of ownership to empowering IT decision making across the value chain, it is safe to say that the cloud means that life will never be the same for anyone.

    During this webinar we will:
    - Look at the challenges facing today's IT and security teams;
    - See how this wave of disruption can be overcome using ever advancing automation, processing and intelligence technologies that can be used to build and deliver security an increasingly diverse IT landscape; and
    - Look at how security will need to evolve in the wake of digital transformation.
  • Fintech, Compliance & Data Protection – Steps to Secure the Breach Recorded: Aug 14 2018 43 mins
    Ferry de Koning, Director Business Development, Gemalto and Gary Marsden, Senior Director, Encryption Products
    Fintech startup companies are disrupting the financial services industry, raising more than $120 billion over the last three years. Although these new entrants are changing how money and markets operate, they must still do business within the realities of regulations like GDPR and Australia's Notifiable Data Breaches scheme that the rest of the financial industry must operate. This means that data security and trust are just as important to Fintech companies as it is to traditional banks.

    Fintech companies are unique because of their agility, lean operations and that most are built using the cloud and digital technologies that banks are just now adopting. While this makes Fintech companies more nimble and they can enter new markets faster, it also presents more complexities for how Fintech companies need to manage security and meet compliance mandates.

    In this webinar you will learn about:

    •Fintech compliance and regulation from a data protection perspective.
    •How to build a secure the breach strategy using a case study from the physical world
    •Understand key elements for building cloud-based data security strategy that fits the needs of Fintech companies
  • Implementing Virtualized Network Encryption to Secure SD-WANs Recorded: Jun 21 2018 60 mins
    Stan Mesceda, Senior Product Manager at Gemalto and Julian Fay, CTO at Senetas
    Today enterprises and service providers are increasingly using network functions virtualization (NFV) and software-defined networking (SDN) technologies to design, deploy and manage their networks and cloud-based services. These software-based technologies give organizations cost and operational benefits because they move network functions from dedicated hardware appliances to virtual servers. These same technologies can be now be applied to how encryption is deployed and managed to protect sensitive data and communications the flow across SD-WANs.

    In this webinar you will learn about:
    •What is the best network fit for virtualized encryption
    •How to implement a virtual network encryption appliance in software-defined network
    •What are the cost, operational and performance benefits of virtual encryption
    •What it means to be transport layer independent and how you can protect network traffic simultaneously across Layers 2, 3 and 4
  • 451 Research and Gemalto present "MSPs - Maximizing ROI with Security" Recorded: May 15 2018 60 mins
    Gary Marsden, Senior Director of Data Protection Solutions at Gemalto and William Fellows, Research VP 451 Research
    Digital transformation is a critical part of an enterprise business strategy. However, for many organizations, having more digital assets introduces major headaches due to the complexity of technologies, the lack of available and affordable skills and the ever-changing security threat landscape. The ability to use cloud based solutions to service digital strategies is helping reduce costs but is also increasing risks, isolating data and reducing controls.

    Many MSPs have recognized this as an opportunity and are building business plans and service strategies to help their customers. Being the one-stop shop for applications, cloud services and related security aspects is a path that is actively being trodden by MSP’s, MSSP’s and traditional resellers alike. According to 451 Research, it is about a “sell with” approach by addressing business requirements with security “built-in”. In this joint webinar, our guest William Fellows, 451 Research analyst will provide new research results this related data points and discuss how the cloud is creating opportunities as well as challenges. The interactive Q&A style webinar will cover:

    • A current view of the cloud’s impact on digital transformation
    • Opportunities for MSPs to expand service portfolios and generate new revenue streams
    • What a true “sell with” partnership looks like
    • Technology enabling this new sales and marketing strategy for MSPs

    William Fellows is a co-founder of The 451 Group. As VP of Research, he is responsible for the Cloud Transformation Channel at 451 Research.

    Gary Marsden: Senior Director of Partnerships at Gemalto
  • New Data Breach Findings: The Year of Internal Threats & Misplaced Data Recorded: May 14 2018 52 mins
    Jason Hart, CTO of Data Protection at Gemalto
    2018 has started off as an eventful year with data breaches at Saks Fifth Avenue, Lord & Taylor and Under Armour’s MyFitnessPal app. And it will continue to be a catalyst year for data security with the 25th of May deadline for the European Unions’ General Data Protection Regulation, which regards “privacy as a fundamental human right and to protect it as such.” Data exposed or breached is not only a headache for security teams, but also impacts brand reputation, customer confidence and stock prices.

    Gemalto’s 2017 Breach Level Index found 2.6 billion records where compromised in 2017, a 88% increase from 2016. In this webinar our expert, Jason Hart, will walk attendees through the most shocking 2017 stats, new data breach tactics and how companies can manage risk by mapping out where your data resides. Join us to learn more about:
    -Internal threats and misconfigured cloud databases
    -Growing security threats like data integrity attacks
    -Innovative technology that is solving some of these issues
    -What we have in store for 2018
  • Seal, Lock & Protect: How not to leave your networks and cloud vulnerable Recorded: May 7 2018 54 mins
    John Ray, Product Management and Danna Bethlehem, Product Marketing Gemalto and Josh Chambers, Product Management at F5
    Securing and monitoring your network and cloud environments has changed over the past few years and compliance and government regulations will add to it. Network traffic monitoring tools have been presented as a solution to meeting compliance and performance on a network. But monitoring alone is not enough. In terms of security, companies need to holistically secure their network, cloud and data, no matter where their users are accessing from.
    This joint webinar between F5 and Gemalto will help attendees prepare for the next-generation of secure network access as more data resides in more places with more people accessing it. It will also walk them through the integration between F5 and Gemalto and what options this partnership offers.

    In this webinar, you will earn how to:
    •Reduce the risk of breaches by ensuring that only authorized users are accessing network, using the F5 environment as an example
    •Protect & encrypt your customer data
    •Manage secure cloud access
    •Comply with regulations
Decisive Technology for Decisive Moments
Today’s enterprises depend on the cloud, data and software in order to make decisive decisions. That’s why the most respected brands and largest organizations in the world rely on Thales to help them protect and secure access to their most sensitive information and software wherever it is created, shared or stored – from the cloud and data centers to devices and across networks. Our solutions enable organizations to move to the cloud securely, achieve compliance with confidence, and create more value from their software in devices and services used by millions of consumers every day.

We are the worldwide leader in data protection, providing everything an organization needs to protect and manage its data, identities and intellectual property – through encryption, advanced key management, tokenization, and authentication and access management. Whether it’s the securing the cloud, digital payments, blockchain or the Internet of Things, security professionals around the globe rely on Thales to confidently accelerate their organization’s digital transformation. Thales Cloud Protection & Licensing is part of Thales Group.

Embed in website or blog

Successfully added emails: 0
Remove all
  • Title: Beyond 2FA: The Smart Way to Manage Cloud Access
  • Live at: May 9 2017 3:00 pm
  • Presented by: Mor Ahuvia, Authentication Product Marketing at Gemalto
  • From:
Your email has been sent.
or close