12
ZERO TRUST FUTURE CHALLENGES THOMAS TSCHERSICH CHIEF SECURITY OFFICER DEUTSCHE TELEKOM

Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

  • Upload
    others

  • View
    1

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

ZERO TRUST FUTURE CHALLENGES

THOMAS TSCHERSICHCHIEF SECURITY OFFICER DEUTSCHE TELEKOM

Page 2: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

JUST ANOTHER…

Page 3: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

THIS IS HOW OUR WORLD LOOKED LIKE FOR DECADES…

Page 4: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

EVERYTHING WAS PROTECTED BY (FIRE-)WALLS

Page 5: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

THIS IS OUR TODAY’S WORLD

Cloud services

No trust relation

Global supply chain

Everything is IP

Data outside corporate network

Page 6: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

THE CASTLE WALLS HAVE ALREADY FALLEN…

Page 7: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

WHAT IT’S ABOUT: PAST VS. TODAY

Everything is in the cloud

Workloads

Devices

Data

PeopleDevices

Data

Networks

Datacenter

People

Page 8: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

ALL ABOUT MULTI-FACTOR AUTHENTICATION

Multi-Factor Authentication

Everything is in the cloud

Workloads

Devices

Data

People

Page 9: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

WHAT ARE THE ADVANTAGES AND DISADVANTAGES?

Independent frominternal network

Single APPauthentication

Moved accessmanagement

More specific access controls

Greateffort

Must be implemented

on “green Field”

Identify weakcomponents

Explicit verification of users &

devices needed

Page 10: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

BUT ZERO TRUST IS NOT ENOUGH

Improve reactionarycapabilities

PreventionMonitoring

Page 11: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

WHAT DOES THIS MEAN FOR FUTURE REGULATIONS?

DON’T FOCUS JUST

ON INFRASTRUCTURE

BUT

1. FOCUS ON AUTHENTICATION

2. FOCUS ON VERIFICATION

Page 12: Internal security Strategie für die „Goldenen Zwanziger ... · Tumblr Lhked/n Facebook /ns.wwn . SEARCH ACCOUNT RCH EBSI SE ACCOUNT ION ET ORK OMMUNI ON CONTENT WEBSIT I—ARESOURCE

THANK YOU.QUESTIONS?

THOMAS TSCHERSICH@TTSCHERSICH