12
OCTOBER 1 – 4, 2018 | WASHINGTON, D.C. Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology Officer, Cloud Security

Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

  • Upload
    others

  • View
    3

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.

Beyond Shared ResponsibilityUsing a Next-Gen SIEM to Secure Your Cloud

Martin Holste, Chief Technology Officer, Cloud Security

Page 2: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

Challenges for Cloud Customers

Page 3: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

The bottom line: How effective is your cloud security?

3

Do you have visibilityacross your

infrastructure?

Can you detect credential abuse and configuration

mismanagement?

Can you centrally manage your cloud

security?

Cloud security requires situational awareness

Attackers are compromising cloud assets through stolen

credentialsAnalysts need security data in one place to be efficient

Page 4: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

Cloud Security is Different

4

Email

Endpoint

Additional

Foundational Network

Analytics

Page 5: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

Shared Responsibility Model

5

Page 6: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

Protecting the Cloud with FireEye Helix

Page 7: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

The FireEye Ecosystem

7

Page 8: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

8

Cloud Intelligence VPN AccountMonitoring

Geo-InfeasibilityDetection

Credential Misuse

MisconfigurationDetection

Cloud ThreatAnalytics

Corporate Network

FireEye Network Security

FireEye Helix

Securing the Cloud with FireEye

Page 9: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

Benefits of FireEye Helix in the Cloud

9

Surface Unseen Threats with Visibility and Intelligence

Prevent Credential Abuse and Cloud Misconfiguration

Track Decentralized Assets

Page 10: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

FireEye Helix in Action

10

Collect Match Automate Prioritize Investigate Remediate

Page 11: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

FireEye Helix Demo

Page 12: Beyond Shared Responsibility - FireEye...OCTOBER 1 – 4, 2018 | WASHINGTON, D.C.Beyond Shared Responsibility Using a Next-Gen SIEM to Secure Your Cloud Martin Holste, Chief Technology

©2018 FireEye

12

Rich BakerForensic Investigative DirectorOptum Technology

Steve BoothVice President & CISOFireEye

Andrew SmithCybersecurity EngineerSallie Mae

Panelists