38
Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere

Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

  • Upload
    others

  • View
    4

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Dr. Galen HuntDISTINGUISHED ENGINEER & MANAGING DIRECTOR

Microsoft Azure Sphere

Page 2: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 3: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Radio

MCU

Page 4: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

9 BILLION new MCU devices

built and deployed every year

The microcontroller (MCU)

a low-cost, single chip computer

Page 5: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Before this chip, no MCU was ever connected to the internet.

Page 6: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Data +

intelligence

Optimize

operations

Transform

products

Engage

customers

Empower

employees

Page 7: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Products

Customers

Empower

employees

Large portions of the

organization are not digitized

Data is siloed across

different parts of

the organization

Operations

1

2

Disjoint data

&

intelligence

Page 8: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Data +

intelligence

Optimize

operations

Transform

products

Engage

customers

Empower

employees

New monetization avenues due to IoT-related services

Companies that increased revenue as a result of IoT implementation

Average increase in operating income (avg. 8%) among the most digitally transformed enterprises

p

p

p

Connected “things” by 2025 generating 180ZB of data

p

Page 9: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Data +

intelligence

Optimize

operations

Transform

products

Engage

customers

Empower

employees

Page 10: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 11: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 12: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 13: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 14: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 15: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 16: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Opportunity Risk

Page 17: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

What happens when you connect

a device to the internet?

Page 18: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

“When smart gadgets spy on you: Your home life is less private than you think”

“Protecting Your Family: The Internet of Things Gives Hackers Creepy New Options”

Page 19: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Mirai Botnet attackOctober 2016

Everyday devices are used to launch an attack that takes down the internet for a day

Page 20: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Hackers attack casino

Attackers gain access to casino database through fish tank

Page 21: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

The internet security battle.

We’ve been fighting it for decades. We have experience to share.

Page 22: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

SECURITY IS FOUNDATIONAL

It must be built in from the beginning.

Page 23: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Hardware

Root of Trust

Defense

in Depth

Small Trusted

Computing Base

Dynamic

Compartments

Certificate-Based

Authentication

Failure

Reporting

Renewable

Security

The 7 properties of highly secured devices

Page 24: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Some properties depend only on hardware support

Unforgeable cryptographic keys generated

and protected by hardware

Hardware Root of Trust

• Hardware to protect Device Identity

• Hardware to Secure Boot

• Hardware to attest System Integrity

Hardware

Root of Trust

Page 25: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Internal barriers limit the reach of any

single failure

Dynamic Compartments

• Hardware to Create Barriers

• Software to Create Compartments

Some properties depend on hardware and software

Dynamic

Compartments

Defense in

DepthSmall Trusted

Computing Base

Page 26: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Device security renewed to overcome

evolving threats

Renewable Security

• Cloud to Provide Updates

• Software to Apply Updates

• Hardware to Prevent Rollbacks

Some properties depend on hardware, software and cloud

Certificate-Based

Authentication

Failure

ReportingRenewable

Security

Page 27: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

9 BILLION new MCU devices

built and deployed every year

Is it possible to create

a secure MCU platform?

Page 28: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Azure Sphere

Certified MCUs

The Azure Sphere

OS

The Azure Sphere

Security Service

Azure Sphere is an end-to-end solution for securing MCU powered devices

Page 29: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Azure Sphere Certified MCUs with a built-in hardware root of trust

created from Microsoft’s learnings securing

three generations of Xbox consoles.

Page 30: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 31: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

The Azure Sphere OS a multi-layer defense-in-depth OS that

merges the best of Microsoft and OSS

technologies to create a trustworthy

platform for new IoT experiences

Page 32: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and
Page 33: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

The Azure Sphere Security Service guards every Azure Sphere device; it brokers

trust for connectivity through certificate based

authentication, detects emerging threats

through online failure reporting, and renews

device security through software updates.

Page 34: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Secured MCUs

Secured OS

Securing Cloud Service

Even MCUs can be secured if you are committed.

Page 35: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Opportunity Risk

Page 36: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Opportunity RiskResponsibility

Page 37: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Hardware

Root of Trust

Defense

in Depth

Small Trusted

Computing Base

Dynamic

Compartments

Certificate-Based

Authentication

Failure

Reporting

Renewable

Security

The 7 properties of highly secured devices

Page 38: Dr. Galen Hunt - AFITC Education & Training Event · Dr. Galen Hunt DISTINGUISHED ENGINEER & MANAGING DIRECTOR Microsoft Azure Sphere. Radio MCU. 9 BILLION new MCU devices built and

Let’s secure the future.