Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
AWS, Immutable Infrastructure, and PCI
Search
Sponsored
·
Your Podcast. Everywhere. Effortlessly.
Share. Educate. Inspire. Entertain. You do you. We'll handle the rest.
→
Philip Corliss
September 01, 2016
Programming
0
110
AWS, Immutable Infrastructure, and PCI
Philip Corliss
September 01, 2016
Tweet
Share
More Decks by Philip Corliss
See All by Philip Corliss
Building a Platform on AWS
pcorliss
1
130
Developer Happiness - Building Systems & Tools
pcorliss
0
120
xss
pcorliss
1
340
Other Decks in Programming
See All in Programming
The Past, Present, and Future of Enterprise Java
ivargrimstad
0
270
Fundamentals of Software Engineering In the Age of AI
therealdanvega
1
220
PostgreSQL を使った快適な go test 環境を求めて
otakakot
0
450
PJのドキュメントを全部Git管理にしたら、一番喜んだのはAIだった
nanaism
0
240
15年目のiOSアプリを1から作り直す技術
teakun
1
610
ご飯食べながらエージェントが開発できる。そう、Agentic Engineeringならね。
yokomachi
1
290
エージェント開発初心者の僕がエージェントを作った話と今後やりたいこと
thasu0123
0
230
Swift ConcurrencyでよりSwiftyに
yuukiw00w
0
250
受け入れテスト駆動開発(ATDD)×AI駆動開発 AI時代のATDDの取り組み方を考える
kztakasaki
2
530
エラーログのマスキングの仕組みづくりに役立ったASTの話
kumoichi
0
110
開発ステップを細分化する、破綻しないAI開発体制
kspace
0
110
DSPy入門 Pythonで実現する自動プロンプト最適化 〜人手によるプロンプト調整からの卒業〜
seaturt1e
1
580
Featured
See All Featured
StorybookのUI Testing Handbookを読んだ
zakiyama
31
6.6k
Un-Boring Meetings
codingconduct
0
220
We Have a Design System, Now What?
morganepeng
55
8k
Java REST API Framework Comparison - PWX 2021
mraible
34
9.2k
Stop Working from a Prison Cell
hatefulcrawdad
274
21k
Chasing Engaging Ingredients in Design
codingconduct
0
130
実際に使うSQLの書き方 徹底解説 / pgcon21j-tutorial
soudai
PRO
199
73k
CoffeeScript is Beautiful & I Never Want to Write Plain JavaScript Again
sstephenson
162
16k
Building a Scalable Design System with Sketch
lauravandoore
463
34k
The B2B funnel & how to create a winning content strategy
katarinadahlin
PRO
1
290
Let's Do A Bunch of Simple Stuff to Make Websites Faster
chriscoyier
508
140k
End of SEO as We Know It (SMX Advanced Version)
ipullrank
3
4k
Transcript
AWS, IMMUTABLE INFRASTRUCTURE, AND PCI Slides: https://speakerdeck.com/pcorliss/
WHO IS THIS ? • Philip Corliss • @pcorliss (Gmail,
Twitter, Github) • Cheese Enthusiast • Engineering Manager • Braintree
BraintreePayments.com
Where We Were/Are • Physical Datacenters • Level 1 PCI
DSS Compliant Service Provider
AWS, The Natural Choice • PCI 1 Firewalls, VPCs •
PCI 9 Physical Access • PCI 10.1 Audibility
Immutable Infrastructure • PCI 6.1 Security Patches • PCI 11.5
File Integrity
Scoped Access • PCI 7 Restrict Access
CVVs • PCI 3.2 Do Not Store CVVs
Secrets & KMS
Greenfield Development
S3 Isn’t Near-Line Storage PCI 10.7 Retain audit trail history
for at least one year, with a minimum of three months immediately available for analysis (for example, online, archived, or restorable from backup).
VPCs • PCI 4: Encrypt Data Across Public Networks
Huge Wins
Evolving Platform
WHO’S THIS GUY? • Philip Corliss • @pcorliss (Gmail, Twitter,
Github) • Cheese Enthusiast • Engineering Manager • Braintree