外よりも中からの攻撃・ 事故がヤバイ、今やるべきクラウドセキュリティ対策
by
Sudachi-Kun
Link
Embed
Share
Beginning
This slide
Copy link URL
Copy link URL
Copy iframe embed code
Copy iframe embed code
Copy javascript embed code
Copy javascript embed code
Share
Tweet
Share
Tweet
Slide 1
Slide 1 text
֎ΑΓத͔Βͷ߈ܸɾ ࣄނ͕ϠόΠɺࠓΔ͖ ΫϥυηΩϡϦςΟରࡦ Ϋϥυ͏ͱϦεΫͲ͏ͳΔʁͦΕͰศར ͳΫϥυαʔϏεɺਖ਼҆͘͠શʹ͏ํ๏Λ͝ հ͠·͢ɻ
Slide 2
Slide 2 text
ͬͦ͘͞Ͱ͕͢ ͝ΊΜͳ͍͞
Slide 3
Slide 3 text
͜ͷεϥΠυ ߹ܭ 365εϥΠυ͋Γ·͢ ͔͠Webެ։͠·ͤΜ ʢͨͿΜʣ ͲΜͲΜߦ͖·͢
Slide 4
Slide 4 text
ࣗݾհ
Slide 5
Slide 5 text
ᴡ౻ ጏਔ αΠτ γϯδ ΞΠϨοτגࣜձࣾ cloudpackࣄۀ෦ 20138݄ೖࣾ ʲϒϩάʳ ϩʔυόϥϯεͩͪ͘͢Μ http://blog.animereview.jp/
Slide 6
Slide 6 text
ϒϩά ׂͱ͍Ζ͍Ζॻ͍ͯ·ͯ͠
Slide 7
Slide 7 text
ݸਓϒϩά͚ͩͲ40ສPV ̍ฏۉ1500PV
Slide 8
Slide 8 text
ͦͷલHPCͬͯ·ͨ͠ ʢϋΠɾύϑΥʔϚϯεɾίϯϐϡʔςΟϯάʣ
Slide 9
Slide 9 text
GPU͍ͬͺ͍ͷͤͯ
Slide 10
Slide 10 text
Ϋϥελ ΜͩΓ ͢ΔΘ͚Ͱ͢
Slide 11
Slide 11 text
ͦͷલ2͘Β͍ χʔτͯ͠·ͨ͠ ʢ24/365ۈʣ ʢͣͬͱήʔϜͯͨ͠ʣ
Slide 12
Slide 12 text
ߋʹͦͷલ υεύϥͷ ๏ਓ෦ୂʹ͍·ͨ͠
Slide 13
Slide 13 text
2009ʹ GMO͞Μͷ αʔόʔ࡞ͬͨ࣌ͷ هࣄ ʢITmedia͞Μʣ
Slide 14
Slide 14 text
͋Δγϯδ ֮ΊΔͷͰ͢
Slide 15
Slide 15 text
࣌Ϋϥυ͡ΌͶʁ
Slide 16
Slide 16 text
ͦͯ͠ΞΠϨοτʹ ඈͼࠐΉ
Slide 17
Slide 17 text
·ͣ୲ͨ͠ͷ ϓϩδΣΫτϚωʔδϟʔ
Slide 18
Slide 18 text
ͦͯࣗࣾ͠Webߋ৽
Slide 19
Slide 19 text
͔Βͷ٬ઌৗற
Slide 20
Slide 20 text
ԿͰ
Slide 21
Slide 21 text
ݱࡏͷݞॻ͖
Slide 22
Slide 22 text
ใηΩϡϦςΟཧऀ
Slide 23
Slide 23 text
ݸਓใཧऀ
Slide 24
Slide 24 text
PCI DSSཧऀ
Slide 25
Slide 25 text
ܦྺͱηΩϡϦςΟͷ γϯΫϩ͕ઈత
Slide 26
Slide 26 text
͖͔͚ͬ ৽ͨͳࠪରԠͱ લͷୀ৬
Slide 27
Slide 27 text
CTOླ ʮγϯδ܅ηΩϡϦςΟͬͯʔʯ
Slide 28
Slide 28 text
͍͍ͬ͢Αʔ
Slide 29
Slide 29 text
1͔ΒݱͰୟ͔Εͯ ࠓʹࢸΓ·͢
Slide 30
Slide 30 text
ͦͯ͠ޛͬͨ
Slide 31
Slide 31 text
ٕज़ྗʢITϦςϥγʔʣͱ ηΩϡϦςΟϦςϥγʔ શͬͯ͘ൺྫ͠ͳ͍
Slide 32
Slide 32 text
ΞΠϨοτגࣜձࣾ cloudpackࣄۀ෦ ͝հ
Slide 33
Slide 33 text
ΞΠϨοτגࣜձࣾ ઃཱ ࢿຊۚ දऀ ैۀһ ࣄۀ༰ γεςϜ։ൃɾอक ϚωʔδυϗεςΟϯά 200310݄15 7,000ສԁ ᜊ౻ কฏ 117໊ʢ20163݄ݱࡏʣ
Slide 34
Slide 34 text
AWSΛ׆༻͠ͳ͕ΒϏδωεʹूதͰ͖Δ ίϯγΣϧδϡαʔϏε
Slide 35
Slide 35 text
4 ࣾ ࣾ 600 6 6 ؒAWSͷΈͰ 2 0 1 0 2 0 1 6
Slide 36
Slide 36 text
AWSϓϨϛΞίϯα ϧςΟϯά ύʔτφʔ ΞδΞҬ5ࣾ ࠷্Ґύʔτφʔ 4࿈ଓ2ࣾͷΈ Premier > Advanced > Standard > Registered શੈք2331ࣾத
Slide 37
Slide 37 text
AWSίϯϐςϯγʔೝఆ AWSͷӡ༻อक ϏοάσʔλͷऔΓѻ͍
Slide 38
Slide 38 text
AWSύʔτφʔΞϫʔυ ࠷ߴӫ༪ͷ APN Partner of the Year 2࿈ଓड
Slide 39
Slide 39 text
ཁ͢Δʹ ಛʹAWSͷߏஙӡ༻อक͕ ಘҙͳձࣾͰ͢
Slide 40
Slide 40 text
ͳͷͰ͕͢
Slide 41
Slide 41 text
ࠓAWSʹݶΒͣ Ϋϥυͱ͍͏Ͱ ηΩϡϦςΟతͳ͓Λ ͍ͨ͠ͱࢥ͍·͢
Slide 42
Slide 42 text
Ϋϥυͷ ηΩϡϦςΟʹ͍ͭͯߟ͑Δ
Slide 43
Slide 43 text
ࢢΫϥυෆ͕҆͋Δ ͦͷ1Ґ͕ηΩϡϦςΟ
Slide 44
Slide 44 text
ͳ͔ͥ
Slide 45
Slide 45 text
ͳΜ͔ͩΑ͔͘Βͳ͍͔Β
Slide 46
Slide 46 text
͍͍ ΦϯϓϨͩΖ͏͕ ΫϥυͩΖ͏͕ Δ͜ͱҰॹͰ͠ΐ
Slide 47
Slide 47 text
ͱɺࢥ͍ͬͯͨ࣌ظ͕ ࢲʹ͋Γ·ͨ͠
Slide 48
Slide 48 text
ྫ͑AWS
Slide 49
Slide 49 text
ڞ༗Ϟσϧ
Slide 50
Slide 50 text
Slide 51
Slide 51 text
ͬͦͪ͘͞ΐͬͱ ಠಛͳײ͡͠·͢ΑͶ
Slide 52
Slide 52 text
͡Ό͋ͬͱΧδϡΞϧͳ αʔϏεΛݟͯΈ·͠ΐ͏
Slide 53
Slide 53 text
Dropboxͱ͔ Evernoteͱ͔ Google Appsͱ͔
Slide 54
Slide 54 text
͜ΕΒશ෦ ΫϥυαʔϏεͰ͢ΑͶ
Slide 55
Slide 55 text
தʹۀͰ ར༻͞Ε͍ͯΔํ ͍Βͬ͠ΌΔ͔͠Ε·ͤΜ
Slide 56
Slide 56 text
ͦͷ࣌ͷબఆج४ͬͯ ԿͰ͔͢ʁ
Slide 57
Slide 57 text
ศར͔ͩΒʁ ͔͔҆ͬͨΒʁ
Slide 58
Slide 58 text
ηΩϡϦςΟͷଆ໘Ͱ ධՁ͠·͔ͨ͠ʁ
Slide 59
Slide 59 text
ԿΛ࣋ͬͯͯ͠ ʮ҆શʯ ͱ͢Δ͔
Slide 60
Slide 60 text
͍͠Ͱ͢ΑͶ
Slide 61
Slide 61 text
cloudpackͰ Ͳ͏͍ͯ͠Δ͔ͱ͍͏ͱ
Slide 62
Slide 62 text
ύεϫʔυΛೖྗͤ͞Δ αʔϏε શͯ੬ऑͱ͍͏ߟ͑ํ
Slide 63
Slide 63 text
ͦΜͳ͜ͱݴͬͨΒͳΜʹ ͑ͳ͍͡Όͳ͍͔ʂ ͱ͍͏ͷͦͷ௨Γ ͳͷͰ͕͢ɺ
Slide 64
Slide 64 text
ࣗࣾͷActive Directory͔Β SSOʢγϯάϧαΠϯΦϯʣ Ͱ͖ͳ͍αʔϏε ݪଇ࠾༻͠ͳ͍Μʂ ͱ͍͏ϙϦγʔΛ ͍࣋ͬͯ·͢
Slide 65
Slide 65 text
ͱ͍͏Θ͚Ͱ
Slide 66
Slide 66 text
cloudpackݪଇɺ AWSͳͲͷϩάΠϯʹ ΞΧϯτ໊ ύεϫʔυ͍·ͤΜ
Slide 67
Slide 67 text
ࣾͰύεϫʔυΛ͏ γνϡΤʔγϣϯɺ ύιίϯʹ ϩάΠϯ͢Δͱ͖ͱɺ SSO͢Δͱ͖ͷΈ
Slide 68
Slide 68 text
ͪΖΜSSOͳͷͰɺ Active Directoryʹ ొ͞Ε͍ͯΔ ΞΧϯτ໊ͱ ύεϫʔυΛ༻͍·͕͢
Slide 69
Slide 69 text
υϝΠϯͱಉ͡ ໊લɺύεϫʔυͰ ֤छΫϥυαʔϏεʹ ొ͍ͯ͠Δ ͱ͔͍͏ མͪͰͳ͍Ͱ͢
Slide 70
Slide 70 text
SAMLʢαϜϧʣΛ ͍ͬͯ·͢ ͋ͱKerberosೝূͰ͢Ͷ
Slide 71
Slide 71 text
ͳͷͰ ࣾͷดҬʹ͋Δ Active DirectoryΛ ઈରʹܦ༝͠ͳ͍ͱ ֤छαʔϏεʹ ϩάΠϯग़དྷͳ͍ͷͰɺ
Slide 72
Slide 72 text
ୈࡾऀ͕Πϯλʔωοτܦ༝ ͰΞΧϯτΛͬऔΔ͜ͱ ͕ઈରʹग़དྷͳ͍Έ Ͱ͢
Slide 73
Slide 73 text
͠ɺ͠ɺ͋Γ͑ͳ͍ ͱࢥ͏͚Ͳ
Slide 74
Slide 74 text
ࣾͷωοτϫʔΫʹ ܨ͕Εͯ
Slide 75
Slide 75 text
ΞΧϯτ໊όϨͯͯ
Slide 76
Slide 76 text
ύεϫʔυ ࿙Εͯͨͱͨ͠Β
Slide 77
Slide 77 text
ϩάΠϯͰ͖ͪΌ͏͡ΌΜ ͬͯ͜ͱͰ
Slide 78
Slide 78 text
શαʔϏεʹ ରԠग़དྷΔΑ͏ͳ ଟཁૉೝূ ೖΕͯ·͢
Slide 79
Slide 79 text
1. ϋʔυΣΞೝূ 2. ΞΧϯτೝূ 3. ଟཁૉೝূ ͜ͷ3ͭΛ͍ͬͯ·͢
Slide 80
Slide 80 text
ͱ͍͑
Slide 81
Slide 81 text
ΈΜͳ͕ΈΜͳ SSOͳڥΛ࡞ΕΔ Θ͚Ͱͳ͍Ͱ͢͠
Slide 82
Slide 82 text
ͦ͜·Ͱ͍ΒͶʔ͢ ͬͯձࣾ͞Μ ͍Βͬ͠ΌΔͷͰ
Slide 83
Slide 83 text
࠷ݶɺ͜Ε͚ͩ ͬͯཉ͍͠ͳͱ ࢥ͏͜ͱ͕͋Γ·͢
Slide 84
Slide 84 text
αʔϏεͷص্ධՁ
Slide 85
Slide 85 text
ಠཱߦ๏ਓ ใॲཧਪਐػߏ ηΩϡϦςΟηϯλʔ͔Β ൃߦ͞Ε͍ͯΔɺ தখاۀͷͨΊͷ ΫϥυαʔϏε҆શར༻ͷ खҾ͖
Slide 86
Slide 86 text
Slide 87
Slide 87 text
͜Ε͕͘͢͝ྑ͘ग़དྷ͍ͯͯ cloudpackͷ෦ࠪ ֎෦ࠪͰ͍ͬͯ·͢
Slide 88
Slide 88 text
1߲ͣͭݟͯΈ·͢
Slide 89
Slide 89 text
Google AppsΛ ධՁͯ͠Έ·͠ΐ͏
Slide 90
Slide 90 text
1. ར༻ൣғͷ໌֬Խ ΫϥυαʔϏεͰͲͷۀɺ ͲͷใΛѻ͏͔ݕ౼͠ɺ ۀͷΓ͚ӡ༻ϧʔϧ ͷઃఆΛߦ͍·͔ͨ͠ʁ
Slide 91
Slide 91 text
ిࢠϝʔϧɺϑΝΠϧڞ༗ɺ εέδϡʔϧཧͱͯ͠ ར༻͢Δɻ
Slide 92
Slide 92 text
2. αʔϏεͷछྨͱίετ ۀʹ߹͏ΫϥυαʔϏε Λબఆ͠ɺίετʹ͍ͭͯ ֬ೝ͠·͔ͨ͠ʁ
Slide 93
Slide 93 text
һձঝೝࡁΈ
Slide 94
Slide 94 text
3. ѻ͏ใͷॏཁ ΫϥυαʔϏεͰऔΓѻ͏ɺ ใͷཧϨϕϧʹ͍ͭͯ ֬ೝ͠·͔ͨ͠ʁ
Slide 95
Slide 95 text
ݸਓใɺސ٬ใɺ ސ٬ڥใͳͲɺ ॏཁͳใΛऔΓѻ͏
Slide 96
Slide 96 text
4. ϙϦγʔϧʔϧͱͷ ߹ੑ ηΩϡϦςΟ্ͷϧʔϧͱ ΫϥυαʔϏεͷ ׆༻ͷؒʹ ໃ६ෆҰக͕ ੜ͡·ͤΜ͔
Slide 97
Slide 97 text
ࣾͷ౷߹ೝূج൫ʹ ΞαΠϯՄೳ͔ͭɺ ୯ಠͰ ଟཁૉೝূʹରԠ͍ͯ͠Δ
Slide 98
Slide 98 text
5. ར༻ཧ୲ऀ ΫϥυαʔϏεͷಛੑΛ ཧղͨ͠ར༻ཧ୲ऀΛ ࣾʹ֬อ͠·͔ͨ͠ʁ
Slide 99
Slide 99 text
దͳཧऀΛ֬อͨ͠
Slide 100
Slide 100 text
6. Ϣʔβཧ ΫϥυαʔϏεͷϢʔβʹ ͍ͭͯదʹཧग़དྷ·͔͢ʁ
Slide 101
Slide 101 text
ࣾͷ౷߹ೝূج൫ʹͯ ཧՄೳ
Slide 102
Slide 102 text
7. ύεϫʔυ ύεϫʔυͷదͳ ઃఆɾཧ࣮ࢪͰ͖·͔͢ʁ
Slide 103
Slide 103 text
ࣾͷ౷߹ೝূج൫ʹͯ ཧՄೳ
Slide 104
Slide 104 text
8. σʔλͷෳ αʔϏεఀࢭʹඋ͑ͯɺ ॏཁใΛखݩʹ֬อͯ͠ ඞཁͳ࣌ʹ͑ΔͨΊͷ උ͑͋Γ·͔͢ʁ
Slide 105
Slide 105 text
αʔυύʔςΟπʔϧ αʔϏεΛར༻͢Δ ඞཁ͕͋Δ
Slide 106
Slide 106 text
9. ࣄۀऀͷ৴པੑ ΫϥυαʔϏεΛఏڙ͢Δ ࣄۀऀ ৴པग़དྷΔࣄۀऀͰ͔͢
Slide 107
Slide 107 text
ੈքత༗໊اۀͰ͋Δɻ ISAE 3402 Type II ͱ SSAE 16 ೝূ ͱ ISO27001 ͳͲΛ औಘ͍ͯ͠Δɻ
Slide 108
Slide 108 text
10. αʔϏεͷ৴པੑ αʔϏεͷՔಇɺ োൃੜසɺ ো࣌ͷճ෮ඪ࣌ؒͳͲͷ αʔϏεϨϕϧ ࣔ͞Ε͍ͯ·͔͢ʁ
Slide 109
Slide 109 text
อূ͢ΔՔಇ99.9%
Slide 110
Slide 110 text
11. ηΩϡϦςΟରࡦ ΫϥυαʔϏεʹ͓͚Δ ηΩϡϦςΟରࡦ͕ ۩ମతʹެ։͞Ε͍ͯ·͔͢ʁ
Slide 111
Slide 111 text
ԼهWebαΠτͰ֬ೝͰ͖Δ https://support.google.com/ a/answer/60762?hl=ja
Slide 112
Slide 112 text
12. ར༻ऀαϙʔτ αʔϏεͷ͍ํ͕ Θ͔Βͳ͍ͱ͖ͷࢧԉ ʢϔϧϓσεΫFAQʣ ఏڙ͞Ε͍ͯ·͔͢ʁ
Slide 113
Slide 113 text
FAQɺϝʔϧɺ24࣌ؒ365 ରԠͷిαϙʔτ͕͋Δ
Slide 114
Slide 114 text
13. ར༻ऴྃ࣌ͷ σʔλͷ֬อ αʔϏεར༻͕ ऴྃͨ͠ͱ͖ͷɺ σʔλͷऔѻ݅ʹ͍ͭͯ ֬ೝ͠·͠ΐ͏ɻ
Slide 115
Slide 115 text
Google ͷ ϓϥΠόγʔ ϙϦγʔʹ ैͬͯɺ ͯ͢ͷσʔλ͕ Google ͷαʔόʔ͔Β আ͞ΕΔ
Slide 116
Slide 116 text
14. ܖ݅ͷ֬ೝ Ұൠతܖ݅ͷ֤߲ʹͭ ͍ͯ֬ೝ͠·͠ΐ͏ɻ
Slide 117
Slide 117 text
ར༻نΛ֬ೝͨ͠ɻ http://www.google.com/ apps/intl/ja/terms/ premier_terms.html
Slide 118
Slide 118 text
ఆ
Slide 119
Slide 119 text
߹֨
Slide 120
Slide 120 text
߹൱ཧ༝ cloudpackαʔϏεͷఏڙʹ ͓͍ͯॏཁͳπʔϧͱͳΔɻ ेͳSLAɺཧऀػೳ͕ ఏڙ͞Ε͓ͯΓɺߋʹ ౷߹ೝূج൫ͷ౷߹͕ Մೳͳ͔Βɺ߹֨ͱ͢Δɻ
Slide 121
Slide 121 text
ঝೝ ͱঝೝऀΛॻ͘
Slide 122
Slide 122 text
No content
Slide 123
Slide 123 text
֤߲ʹ ʮద߹͍ͯ͠ͳ͚Ε ࠾༻ग़དྷͳ͍ʯ Ͱͳͯ͘
Slide 124
Slide 124 text
ϦεΫΛચ͍ग़ͯ͠ ೝࣝ͠·͠ΐ͏ͱ͍͏ͷ͕ ओࢫͰ͢
Slide 125
Slide 125 text
͖ͪΜͱϦεΫධՁ͢Ε ͑ΔΫϥυαʔϏε͔ அͰ͖·͢
Slide 126
Slide 126 text
ͦͯ͠ϦεΫΛࣾʹ ڞ༗͠·͠ΐ͏ ͦ͏͢Δ͜ͱͰ
Slide 127
Slide 127 text
ΫϥυͷεϐʔυײΛ อͪͭͭɺ اۀͱͯ͠ͷࣄۀܧଓੑΛ ߴΊΔ͜ͱ͕ ग़དྷΔ͔͠Ε·ͤΜ
Slide 128
Slide 128 text
ͬͺࠪେࣄͩͳͬͯ
Slide 129
Slide 129 text
ηΩϡϦςΟΫϥελʹ 3छྨͷਓ͕͍ؒΔͱ ࢥ͍ͬͯ·͢
Slide 130
Slide 130 text
ࠪܥ
Slide 131
Slide 131 text
߈ܸܥ
Slide 132
Slide 132 text
҉߸Խɾೝূٕज़ܥ
Slide 133
Slide 133 text
γϯδࠪܥ͔ͳʁ ͱ͍͏Θ͚Ͱ
Slide 134
Slide 134 text
վΊͯࠪʹ͍ͭͯ ߟ͑ͯΈ·ͨ͠
Slide 135
Slide 135 text
զʑ͕ݴ͏ͱ͜Ζͷ ηΩϡϦςΟͬͯͷ
Slide 136
Slide 136 text
͓͏ͪʹ伴͔͚Δͱ͔
Slide 137
Slide 137 text
͍ͱ͖ిؾ͚Δͱ͔
Slide 138
Slide 138 text
ͦ͏͍͏ͷ͡Όͳͯ͘
Slide 139
Slide 139 text
ใηΩϡϦςΟͷࣄ Ͱ͢ΑͶ
Slide 140
Slide 140 text
ͦͦ ใηΩϡϦςΟͬͯ ͳΜͷ͜ͱͰ͔͢
Slide 141
Slide 141 text
ใͷ ػີੑ શੑ Մ༻ੑ
Slide 142
Slide 142 text
͜ͷ3ຊபͷࣄͰ͢
Slide 143
Slide 143 text
ػີੑ
Slide 144
Slide 144 text
ΞΫηεΛೝՄ͞Εͨऀ͚͕ͩ ใʹ࣮֬ʹ ΞΫηεͰ͖Δ͜ͱ
Slide 145
Slide 145 text
શੑ
Slide 146
Slide 146 text
ใࢿ࢈͕શͳ ঢ়ଶͰอଘ͞Εɺ ༰͕ਖ਼֬Ͱ͋Δ͜ͱ
Slide 147
Slide 147 text
Մ༻ੑ
Slide 148
Slide 148 text
ใࢿ࢈͕ඞཁʹͳͬͨͱ͖ɺ ར༻Ͱ͖Δঢ়ଶʹ͋Δ͜ͱ
Slide 149
Slide 149 text
cloudpack͕औಘ͍ͯ͠Δ ֎෦ࠪɾೝূ ͍Ζ͍Ζ͋ΔͷͰ͕͢
Slide 150
Slide 150 text
ʢެ։ग़དྷͳ͍ʣ
Slide 151
Slide 151 text
ʢެ։ग़དྷͳ͍ʣ
Slide 152
Slide 152 text
γϯδ্ཱ ͍ΖΜͳࠪʹ ཱͪձ͏ͷͰ͕͢
Slide 153
Slide 153 text
࠷ۙࢥ͏͜ͱ͕͋Γ·͢
Slide 154
Slide 154 text
ೝূऔ͔ͬͨΒͬͯ ͳΜͳͷʁ
Slide 155
Slide 155 text
ࠃج४ ࠃࡍج४ ͍Ζ͍Ζ͋Γ·͚͢Ͳ
Slide 156
Slide 156 text
ຊདྷɺࣗࣾͷηΩϡϦςΟ ج४Λ໌֬ʹ͢Δͱ͔ɺηΩϡ ϦςΟҙࣝΛ্͛ΔͨΊʹ͋ ΔͨΊͷೝূن֨
Slide 157
Slide 157 text
ͰԿ͔ͬͯΔͱ ;ͱࢥ͏ΜͰ͢
Slide 158
Slide 158 text
ࠪͷҝʹࢿྉ༻ҙͯ͠
Slide 159
Slide 159 text
ࠪͷҝʹ͍Ζ͍Ζௐͯ͠
Slide 160
Slide 160 text
ࠪͷҝ ࠪͷҝ
Slide 161
Slide 161 text
ηΩϡϦςΟͲ͍ͬͨ͜
Slide 162
Slide 162 text
ಛʹࢥͬͨͷ SOC2ͬͨͱ͖Ͱ͢
Slide 163
Slide 163 text
SOC2ͱͳΜͳͷ͔
Slide 164
Slide 164 text
ಛఆඇӦར׆ಈ๏ਓ ຊηΩϡϦςΟࠪڠձ JASA
Slide 165
Slide 165 text
Slide 166
Slide 166 text
SOC 2 ͱ SOC 3 ͬͯҰ൪্ʹॻ͍ͯ͋Δ ʢISMS͕Γͳ͍ͱ͔ ॻ͔Εͯ·͕͢ʣ
Slide 167
Slide 167 text
Α͠ɺ͜ΕऔΖ͏
Slide 168
Slide 168 text
SOC 2ͬͯͳʹ
Slide 169
Slide 169 text
ถࠃެೝձܭ࢜ڠձ ʢAICPAʣ͕ఆΊͨ αʔϏε৫ʢService Organization Controlʣͷ ౷੍ʹؔΘΔ ධՁۀͷΈ
Slide 170
Slide 170 text
ʁ
Slide 171
Slide 171 text
SOC 3ͷํ͕Ғ͍ʁ ʢࣈతʹʣ
Slide 172
Slide 172 text
ɺࠪ๏ਓʹฉ͍ͯΈͨ
Slide 173
Slide 173 text
·ͣ SOC 1 SOC 2 SOC 3 ͕͋Γ·͢
Slide 174
Slide 174 text
SOC1 ࡒධՁ
Slide 175
Slide 175 text
SOC 2 ηΩϡϦςΟ Մ༻ੑ ॲཧͷΠϯςάϦςΟ ػີอ࣋ ϓϥΠόγʔ ͜ΕͷͲΕ͔1ͭҎ্
Slide 176
Slide 176 text
SOC 3 SOC 2ͷ༰Λ؆ૉʹͯ͠ ެ։จষʹͨ͠ͷ
Slide 177
Slide 177 text
ͳΔ΄Ͳ ׂ͕ҧ͏ͷ͔ ࠓճηΩϡϦςΟʹ ϑΥʔΧε͍ͨ͠ͷͰ SOC 2Ͱ͢Ͷʂ
Slide 178
Slide 178 text
͍࣮͏1͋Γ·ͯ͠
Slide 179
Slide 179 text
Type 1 ͱ Type 2
Slide 180
Slide 180 text
Type 1 ͋Δ1ΛΓग़ͯࠪ͢͠Δ
Slide 181
Slide 181 text
Type 2 3ϲ݄Ҏ্ͷظؒΛΓग़ͯ͠ ࠪ͢Δ
Slide 182
Slide 182 text
ͳΔ΄Ͳ ࢦ͢SOC 2 Type 2 ͱ͍͏͜ͱͰ͢Ͷʂ
Slide 183
Slide 183 text
ࠪ๏ਓ ʮ͍ɺͰ͕͢ ·ͣType 1͔Β औಘ͞ΕΔͷ͕ ྑ͍ͱࢥ͍·͢ʯ
Slide 184
Slide 184 text
Αʔ͠ ͡Ό͋ SOC 2 Type 1ͩʂ
Slide 185
Slide 185 text
ͦͯ͠ 2ͷࡀ݄͕͔͔Γ
Slide 186
Slide 186 text
ͳΜ͔Μ͋ͬͯ 20158݄31 ΞΠϨοτגࣜձࣾ cloudpackࣄۀ෦ SOC2 Type1 डྖ ʢηΩϡϦςΟͱՄ༻ੑʣ
Slide 187
Slide 187 text
SOC2ͬͯɺ ͨͩͷϨϙʔτͰ ೝূͰͳ͍ΜͰ͢Ͷ
Slide 188
Slide 188 text
ͰΔͱ͔ΔͷͰ͕͢ ͲΜͳೝূΑΓ ج४͕ݫͯ͘͠ ਏͯ͘ਏͯ͘ਏͯ͘
Slide 189
Slide 189 text
ߋʹ༰͕ެ։͞ΕΔ ͍ͬͯ͏
Slide 190
Slide 190 text
ී௨ɺྫ͑ɺ ISMSऔ͔ͬͨΒͬͯ ͲΜͳࠪ༰Ͱ ࢦఠࣄ߲͕͜Μͳ༰Ͱ ͜ΜͳձࣾͰͨͬͯ͠
Slide 191
Slide 191 text
ެ։͞Εͳ͍Ͱ͢ΑͶ
Slide 192
Slide 192 text
SOC2ɺ શ෦ެ։͞ΕͪΌ͏
Slide 193
Slide 193 text
ฐ͓ࣾ٬༷ʹ େखاۀ༷ ͍Βͬ͠ΌΔͷͰ
Slide 194
Slide 194 text
ηΩϡϦςΟઐ෦ୂ͕͍ͯ ͔ͳΓࡉ͔͘ ݟͯ͘ΔΜͰ͢Ͷ
Slide 195
Slide 195 text
Լखͳ͜ͱॻ͔ΕͨΒ͏ ͍ ͍ ͍
Slide 196
Slide 196 text
ͦ͏͍͏ҙຯͰ SOC2 ͕࠷ߟ͑ͤ͞ΒΕͨ ͱࢥ͍·ͨ͠ ԿΛߟ͔͑ͨͬͯݴ͏ͱ
Slide 197
Slide 197 text
ੑѱઆ
Slide 198
Slide 198 text
͓ӄ༷Ͱγϯδ ୭৴༻͠ͳ͘ͳΓ·ͨ͠ ʢԿ
Slide 199
Slide 199 text
ͱ͍͏ͷ
Slide 200
Slide 200 text
ެ։͍ͯ͠Δ WebαΠτͳͲͷ ߈ܸ͔Βใ࿙Ӯ ͱ͔͋Γ·͕͢
Slide 201
Slide 201 text
ͦΕΑΓ
Slide 202
Slide 202 text
USBϝϞϦૠͯ͠ σʔλͬͯͬͪΌ͏ͱ͔
Slide 203
Slide 203 text
ࣗͷεϚϗܨ͍Ͱ σʔλͬͯͬͪΌ͏ͱ͔
Slide 204
Slide 204 text
Ոͷύιίϯͱ ΫϥυαʔϏεʹܨ͍Ͱ σʔλͬͯͬͪΌ͏ͱ͔
Slide 205
Slide 205 text
தʹѱҙΛͬͯΔਓ ͍ΔͷͰ͕͢
Slide 206
Slide 206 text
͍͍ͩͨ ʮͦΜͳͭΓແ͔ͬͨʯ
Slide 207
Slide 207 text
ʮࡴͭ͢Γແ͔ͬͨʯ
Slide 208
Slide 208 text
1ճͷॏେΠϯγσϯτͰ
Slide 209
Slide 209 text
ձࣾඈͼ·͢ ʢ࣮ࡍʹඈͳͯ͘ ͦΕ͘Β͍ͷ֮ޛඞཁʣ
Slide 210
Slide 210 text
ͳͷͰɺੑળઆηΩϡϦςΟ ͱ͍͏؍ͰΓཱͨͳ͍ ͱࢥ͍·ͨ͠
Slide 211
Slide 211 text
ͱ͋Δ େखήʔϜاۀ͞Μͱͷ ҿΈձͰ
Slide 212
Slide 212 text
ʮISMSࣙΊΑ͏ͱ ࢥͬͯΔΜͰ͢ΑͶʯ
Slide 213
Slide 213 text
͍͍ͱࢥ͏ɻ
Slide 214
Slide 214 text
ISMSΑΓང͔ʹ ࠓ࣌ͳݱ࣮తͳ ΑΓ࣮ફతͳ ηΩϡϦςΟӡ༻͕ PDCAͰճͬͯΔΜͰ͢ͷ
Slide 215
Slide 215 text
͜ͷลɺͱ͋Δࠃࡍج४ͷ ࠪһͱͯͯ͠ ಉ͡Α͏ͳʹͳΓ
Slide 216
Slide 216 text
ʮن͕֨࣌ʹ͍͍͍ͭͯ ͳ͍ͷͰɺࡉ͔͍͜ͱྟػ ԠมʹਐΊ͍ͨͰ͢ʯ
Slide 217
Slide 217 text
;Ήʔͦ͏Ͱ͔͢ʔ
Slide 218
Slide 218 text
͡Ό͋ࠓ࣌ͷن֨ͬͯ Ͳ͏ͳͷʁͱࢥͬͯ
Slide 219
Slide 219 text
ISO27017 ͬͯΏʔࠓ࣌ͬΆ͍ͷ͕ ͋ΔΜͰ͕͢
Slide 220
Slide 220 text
ͪΖΜ৽͍͖͠ͳ γϯδͱͯ͠ɺ ͜Εߦ͘༧ఆͰ ͋Δͷͷ
Slide 221
Slide 221 text
ͱ͋Δେख ࠪһͷ ൃݴ
Slide 222
Slide 222 text
ʮޚࣾͷ߹ҙຯͳ͍Ͱ͢Αʯ
Slide 223
Slide 223 text
·͔͡
Slide 224
Slide 224 text
ηΩϡϦςΟʹ ᘳͬͯ ઈରʹ ͳ͍͡Όͳ͍Ͱ͔͢
Slide 225
Slide 225 text
͔ͩΒԿࣄʹ ج४͕ඞཁͩͱࢥ͏ΜͰ͢
Slide 226
Slide 226 text
৫ʹԿͷج४ͳ͍ͱ͔ɺ औҾઌͷؔͰํແ͘ͱ͔ ͦʔΏʔͱ͖ ೝূܥศརͩͱࢥ͍·͕͢
Slide 227
Slide 227 text
͡Ό͋ϓϥΠόγʔϚʔΫ ࣋ͬͯΔ͔Βͬͯ ઈରʹݸਓใ ࿙Εͳ͍͔ͬͯ ͦ͏͡Όͳ͍͠
Slide 228
Slide 228 text
IPS/IDS/WAF ͬͯΔ͔Βͬͯ ઈର҆શͱݴ͑ͳ͍͠
Slide 229
Slide 229 text
PCIDSS Ϩϕϧ1·Ͱͬͯ ӡ༻ճͯ͠Δ͔Βͬͯ ઈରʹΫϨδοτΧʔυใ ͕࿙Εͳ͍ͬͯ༁͡Όͳ͍͠
Slide 230
Slide 230 text
ηΩϡϦςΟʹઈରͬͯ ͳ͍ͱࢥ͏ΜͰ͢
Slide 231
Slide 231 text
࣌ͲΜͲΜมΘΔ͠ ηΩϡϦςΟͷ͋Γ͔ͨ ·͙Δ͘͠มΘΓ·͢ΑͶ
Slide 232
Slide 232 text
͔ͩΒେࣄͳͷࣗࣾج४ Λ ެ։ग़དྷΔ͘Β͍ʹ ಁ໌ੑΛߴΊΔ͜ͱ ͩͱࢥ͏ΜͰ͢
Slide 233
Slide 233 text
ΫϥυΫϥυݴ͍ͬͯΔ ͜ͷ࣌ʹٻΊΒΕΔ ηΩϡϦςΟͱ ಁ໌ੑͷࣄͩͱࢥ͍·͢
Slide 234
Slide 234 text
͜ͷลΓւ֎ͷํ͕ ਐΜͰΔͳ͊ͱ͍͏ ҹ͕͋ͬͯ
Slide 235
Slide 235 text
ͱ͍͏͔ITશൠ͕ ຊΕؾຯͬͯ ײ͡൱Ί·ͤΜ͕ ʢશͯͰͳ͍Ͱ͕͢ʣ
Slide 236
Slide 236 text
ͱ͋ΔIDaaSͰ ใ࿙Ӯࣄ͕݅͋Γ·ͨ͠
Slide 237
Slide 237 text
LastPass ͝ଘ͡Ͱ͔͢ʁ
Slide 238
Slide 238 text
Ϋϥυ্ʹࣗͷϩάΠϯ ύεϫʔυΛอ͢Δͱ͍͏ ͚ͩ͜͜ฉ͘ͱ ڪΖ͍͠αʔϏεͰ͕͢ɺ ࣮ࡍ͏ͱศར
Slide 239
Slide 239 text
Ϛελʔύεϫʔυ ͱ͍͏ͷΛઃఆͯ͠ɺ ͦΕ͚͓͚֮ͩ͑ͯɺ ଞͷαʔϏεͷύεϫʔυ ֮͑ͳ͍͍ͯ͘Α͍ͬͯ͏ αʔϏεͳͷͰ͕͢ɺ
Slide 240
Slide 240 text
֎෦͔Βͷ߈ܸͰ ͜ͷϚελʔύεϫʔυ͕ ྲྀग़͢Δͱ͍͏ க໋తͳࣄނ͕ى͖·ͨ͠
Slide 241
Slide 241 text
݁Ռతʹͦͷύεϫʔυ ҉߸Խ͞Εͨঢ়ଶͩͬͨͷͰɺ ߈ܸऀ͕෮߸Խͯ͠ར༻͢Δ ͜ͱग़དྷͳ͍ͱ͍͏݁Ͱ ऴΘͬͨͷͰ͕͢
Slide 242
Slide 242 text
ར༻ऀ͔Βͨ͠Βؔແ͘ Ѩඓڣש ൷ͷཛྷ
Slide 243
Slide 243 text
ͦͷதͰɺ ͳΔ΄Ͳͱࢥͬͨίϝϯτ͕ ͋Γ·ͯ͠ɺ
Slide 244
Slide 244 text
ෆຬ͕͋ΔͳΒɼαʔϏεͷར༻ ΛࢭΊͨํ͕Α͍Ͱ͠ΐ͏ … ࢲͨ ͪͷΠϯλʔωοτɼࠃՈϨϕϧ ͷࢧԉΛड͚ͨ߈ܸʹࡽ͞Ε͍ͯ· ͢ɻͯ͢ͷߦಈɼσδλϧσόΠ εͷͯ͢ͷΤϯτϦɼଓ͢Δ Πϯλʔωοτͷͯ͢੬ऑͰ͢ɻ ͦͷதͰՄೳͳ࠷ળͷࡦ͕ɼࠓճى ͬͨ͜͜ͱͳͷͰ͢ …
Slide 245
Slide 245 text
ΫϨʔϚʔͨͪͷ͍ͬͯΔ ͜ͱɼྑ৺తͳاۀʹର͠ ͯɼͷൃදΛࢭΊͤ͞Δ ͜ͱʹͳΓ·͢ɻ୭ʹϝϦο τ͋Γ·ͤΜɻ
Slide 246
Slide 246 text
Կ͕ى͖͔ͨΛൃද͢Δ͜ͱ ʹΑͬͯɼଞͷاۀɼपล ޚͰͦΕʹԠ͑Δ͜ͱ͕Ͱ ͖ΔΑ͏ʹͳΓ·͢ …
Slide 247
Slide 247 text
Πϯλʔωοτʹଓ͢Εɼ ୭߈ܸ͔Β҆શͰ͋Γ· ͤΜɻใࠂͷಁ໌ੑʹΑͬͯ ͷΈɼదͳηΩϡϦςΟ ୡͰ͖ΔͷͰ͢ɻ
Slide 248
Slide 248 text
͔ͩΒͦ͜ cloudpack ύεϫʔυΛೖྗ͢Δͱ͍͏ ߦҝͦͷͷΛ γεςϜͰΧόʔ͢Δ͜ͱͰ ࣙΊͨͷͰ͕͢
Slide 249
Slide 249 text
ͩͱͯ͠ಁ໌ੑॏཁͩ
Slide 250
Slide 250 text
ͱ͍͏Θ͚Ͱ ͜Μͳͷ࡞Γ·ͨ͠
Slide 251
Slide 251 text
Slide 252
Slide 252 text
ηΩϡϦςΟϗϫΠτϖʔύʔ ΛಡΜͰΈΔ
Slide 253
Slide 253 text
ηΩϡϦςΟʹର͢Δಁ໌ੑ Λ֬อ͢ΔͨΊʹɺ SOC 2ࠪͰهड़͞Εͨ ༰Λ؆ૉԽͯ͠ɺ ࠪһͷίϝϯτΛ ল͍ͨͷ͕ ϕʔεͱͳ͍ͬͯ·͢ɻ
Slide 254
Slide 254 text
ࣾͰ࡞ͬͨಡΈͰ ͋Δͷͷɺࠪ๏ਓ ֤ηΩϡϦςΟࠪһɺ AWSJapan τϨϯυϚΠΫϩͳͲͷ اۀʹΑΔઐతͳ ϨϏϡʔߦΘΕ͍ͯ·͢
Slide 255
Slide 255 text
ͦͷํ͕৴ጪੑ ߴ·Γ·͢͠
Slide 256
Slide 256 text
·ͣ࢝Ίʹ ʮڞ༗Ϟσϧʯ ʹ͍ͭͯղઆ͍ͯ͠·͢
Slide 257
Slide 257 text
Slide 258
Slide 258 text
͓٬༷͕ࣗ͝Ͱ࡞͞Εͨ ϓϩάϥϜσʔλͷηΩϡ ϦςΟɺࣗ͝Ͱอޢͯ͠ ͍ͩͨ͘ඞཁ͕͋Γ·͢
Slide 259
Slide 259 text
ͪΐͬͱಥ͖์͍ͯ͠Δײ ͋Γ·͕͢ɺͦ͏Ͱͳͯ͘
Slide 260
Slide 260 text
͜Ε·ͰΦϯϓϨϛεڥͰ શͯʹ͍ͭͯηΩϡϦςΟ Λ֬อ͢Δඞཁ͕͋ͬͨ͜ͱ ͱൺֱ͢Δͱɺ͓٬༷͕ηΩϡ ϦςΟΛ֬อͯ͘͠ൣғ͕ ݶఆ͞Ε͍ͯ·͢ΑͶɺ ͱ͍͏͜ͱͰ͢
Slide 261
Slide 261 text
ͦͷޙɺ ࣄۀ֓ཁͷઆ໌͕͋Γʔͷ
Slide 262
Slide 262 text
֤ೝূͷ͕͋Γʔͷ
Slide 263
Slide 263 text
BCPରࡦͷ͕͋Γʔͷ
Slide 264
Slide 264 text
cloudpack CSIRT ͷ͍ͯ͠·͢
Slide 265
Slide 265 text
CSIRTͱɺ੬ऑੑใΛ ऩूͯ͠ɺͦͷӨڹͷ༗ແͱ ۓٸʹ͍ͭͯஅͯ͠ɺ ରԠΛߦ͏νʔϜͷࣄͰ͢
Slide 266
Slide 266 text
ޙ΄Ͳࡉ͔͘આ໌͠·͢
Slide 267
Slide 267 text
ͰɺηΩϡϦςΟ৫ͷઆ໌ ͕͋Γʔͷ
Slide 268
Slide 268 text
ڭҭମ੍ͷઆ໌͕͋Γʔͷ
Slide 269
Slide 269 text
ਖ਼ࣾһʹΑΔӡ༻ۀͷߦ ෦͔Βͷ߈ܸϦεΫΛ࠷খ ݶʹ͑ΔҰͱͯ͠ɺ cloudpackӡ༻ۀʹؔΘΔ ελοϑʹ͍ͭͯɺਖ਼ࣾһ ޏ༻ܖΛߦ͍ͬͯΔͱ ॻ͍ͯ͋Γ·͢
Slide 270
Slide 270 text
ଓ͍ͯ ϑΝγϦςΟͷͰ͢ ݐɾ෦ͷηΩϡϦςΟ
Slide 271
Slide 271 text
ΧʔυΩʔೝূͱ͔ ࢹΧϝϥͱ͔ ిݯ͕ແఀిͱ͔ ϩάແظݶอଘͱ͔ ͦΜͳͰ͢
Slide 272
Slide 272 text
࣍ωοτϫʔΫ෦
Slide 273
Slide 273 text
Slide 274
Slide 274 text
ೝূγεςϜ ύεϫʔυϙϦγʔ ೝূใͷҰݩཧ ʹ͍ͭͯઆ໌
Slide 275
Slide 275 text
ӡ༻ۀͷηΩϡϦςΟ ΞϯνΠϧεೖΕΔͱ͔ ϩάऔΔͱ͔ USBϝϞϦ͑·ͤΜͱ͔ ͋Γ͕͚ͪͩͲɺͪΌΜͱॻ ͍ͯެ։͢Δ
Slide 276
Slide 276 text
࣍VPN ϦϞʔτͰܨ͍Ͱ͘Δਓ͍Δ͚Ͳɺ Ͳ͏ͬͯηΩϡϦςΟΛ ୲อ͍ͯ͠Δ͔͍ͬͯ͏ Λॻ͍͍ͯ·͢ ূ໌ॻೝূͱ͔ɺঝೝ੍ͱ͔ɺ ͷ҉߸Խͱ͔
Slide 277
Slide 277 text
ଞʹɺۀωοτϫʔΫ ͦͷͷͷ੬ऑੑݕࠪͱ͔ ϖωτϨςετͱ͔ ͬͯΔΛॻ͍͍ͯ·͢
Slide 278
Slide 278 text
AWSͷӡ༻อकΛ͍ͯ͠Δ cloudpackʹͱͬͯ ؊৺ͳͷ ͔͜͜ΒઌͰ͢
Slide 279
Slide 279 text
cloudpack͔ΒAWSͷ ΞΫηεʹؔ͢ΔηΩϡϦςΟ
Slide 280
Slide 280 text
ސ٬LinuxWindowsͷ ΞΫηεͲ͏ͯ͠Δ͔
Slide 281
Slide 281 text
Slide 282
Slide 282 text
શͯͷຊ൪ڥʹ ౿Έܦ༝Ͱͳ͍ͱ ΞΫηεͰ͖ͳ͍ ౿ΈADೝূ͕ඞཁ શͯͷૢ࡞͕ಈըͰ ه͞ΕΔ ʢOCRͯ͠ςΩετԽͯ͠Δʣ
Slide 283
Slide 283 text
ͳͷͰɺADͰແޮԽͨ͠ Ϣʔβʔ ސ٬ڥʹ ΞΫηεͰ͖ͳ͍
Slide 284
Slide 284 text
AWSϚωδϝϯτίϯιʔϧ Ͳ͏͔
Slide 285
Slide 285 text
Slide 286
Slide 286 text
ී௨ϒϥβΛ։͍ͯ ΞΧϯτ໊ͱ ύεϫʔυΛೖྗ͠·͕͢
Slide 287
Slide 287 text
ΞΧϯτ໊ ύεϫʔυ͋Γ·ͤΜͷͰ
Slide 288
Slide 288 text
ࣾઐ༻WebαʔϏε ͔ΒͰͳ͍ͱ ϩάΠϯͰ͖·ͤΜ વɺ ΞΫηεϩά͕Γ·͢
Slide 289
Slide 289 text
࣮ࡍʹͲ͏ͬͯ ϩάΠϯ͢Δ͔ ಈըͰ͓ʹ͔͚·͢ ʢॳͷࢼΈͳͷͰ Ұ࣌ఀࢭͱ͔Θ͔Γ·ͤΜ ͝ΊΜͳ͍͞ʣ
Slide 290
Slide 290 text
https://www.youtube.com/watch?v=BUEvNrrrqnU σϞ͠·͕ͨ͠ ҎԼͷURL͔ΒͲ͏ͧ
Slide 291
Slide 291 text
ϩάͷ AWSͷૢ࡞ϩά શͯऔಘ͍ͯ͠·͢ ʢCloudTrailϩάʣ
Slide 292
Slide 292 text
͋·ΓʹେͳͷͰ SplunkLogstorage ͱ͍ͬͨαʔυύʔςΟͷ πʔϧͰՄࢹԽ͍ͯ͠·͢
Slide 293
Slide 293 text
ͦͯ͠CSIRTͷ͓
Slide 294
Slide 294 text
ڞ༗Ϟσϧͷ͕ ͋Γ·ͨ͠
Slide 295
Slide 295 text
͓٬༷ͷൣғ෦Ͱ ੬ऑੑ͕ ͔͍ͬͯͨͱͯ͠ ͦؔ͜ͳ͍͔Β Βͳ͍ͽΐʔΜ ͳΜͯ͜ͱ͋Γ·ͤΜʂ
Slide 296
Slide 296 text
Slide 297
Slide 297 text
͋ͱαʔϏεհͳͲͳͲ ͋Γ·ͯ͠
Slide 298
Slide 298 text
શ48ϖʔδ
Slide 299
Slide 299 text
݁ߏαΫαΫಡΊ·͢ͷͰ ͳʹ͔ͷࢀߟʹ ͳͬͨΓͨ͠Β خ͍͠Ͱ͢…
Slide 300
Slide 300 text
2015ͷ6݄ࠒʹॻ͍ͨͷͰ ͦΖͦΖ͍Ζ͍Ζͦ͏ͱ ࢛ۤീ͓ۤͯ͠Γ·͕͢
Slide 301
Slide 301 text
ԿʹͤΑಁ໌ੑ͕େࣄ ͱ͍͏͜ͱͰ
Slide 302
Slide 302 text
cloudpackͰ ϗϫΠτϖʔύʔࡇΓ ͕։࠵தͰ͢
Slide 303
Slide 303 text
ηΩϡϦςΟͷΈͳΒͣ MSP֤छαʔϏεͷ ϗϫΠτϖʔύʔΛॻ͍ͯɺ ͱʹ͔͘ެ։͍ͯ͘͠ͱ͍͏ ํͰ͢
Slide 304
Slide 304 text
͠ࣄނͬͯ ٽ͔ͳ͍ ϏϏΒͳ͍ Ӆ͞ͳ͍ʂʂ
Slide 305
Slide 305 text
ͱ͍͑
Slide 306
Slide 306 text
ެ։͢Δ͜ͱͰඇΛཋͼΔ ͜ͱ͋Δ͔͠Ε·ͤΜ
Slide 307
Slide 307 text
ͦͷఔͷରࡦͰ େৎͩͱࢥͬͯΜͷʁ ͬͯͳ۩߹Ͱ… ؤுͬͨͷʹ͔ͳͽ͍…
Slide 308
Slide 308 text
͍͍ɺͦ͏͡Όͳͯ͘
Slide 309
Slide 309 text
ᘳͳηΩϡϦςΟͳΜͯ ͋Γ·ͤΜ͔Β
Slide 310
Slide 310 text
ੵΈॏͶੵΈॏͶ
Slide 311
Slide 311 text
1ͭͷେ͖ͳରࡦͰ େৎʂ͍ͬͯ͏ͷ ͦΕ͕ࣗ ϘτϧωοΫʹͳΔࣄ͕͋ͬͯ ӡ༻͕ਏ͍ΜͰ͢ΑͶ
Slide 312
Slide 312 text
ബ͍ΛԿຕԿຕॏͶͯ ੵΈॏͶ͍ͯ͘ ΦχΦϯϨΠϠʔηΩϡϦςΟ ۄͶ͗ޚ
Slide 313
Slide 313 text
֎ଆ͚ͩ͡Όແͯ͘ ଆ͔Βͷ߈ܸࣄނ ͔ͬ͠ΓରॲɾରԠग़དྷΔΑ ͏ʹ͍ͨ͠Ͱ͢Ͷ ΦχΦϯϨΠϠʔํࣜͳΒ ࣮͍͢͠ͱࢥ͍·͢Α
Slide 314
Slide 314 text
AWSʹݶͬͨΛগ͠
Slide 315
Slide 315 text
ΫϥυαʔϏεͬͯɺ ͍ΖΜͳηΩϡϦςΟରࡦΛ ֤͕࣮ࣾࢪ͍ͯ͠ΔͷͰ͕͢
Slide 316
Slide 316 text
ྫ͑AWSͲ͏͔
Slide 317
Slide 317 text
Slide 318
Slide 318 text
ͳΜ͔͍ͬͺ͍͋ͬͨ
Slide 319
Slide 319 text
• PCI DSS Ϩϕϧ 1 • SOC 1/ ISAE 3402 • SOC 2 • SOC 3 • FIPS 140-2 • CSA • FedRAMP (SM) • DIACAP ͓Αͼ FISMA • ISO 27001 • MPAA • ୈ 508 /VPAT • ITAR • HIPAA • DoD CSM Ϩϕϧ 1-2ɺ3-5 • ISO 9001 • CJIS • FERPA • G-Cloud • IT-Grundschutz • IRAPʢΦʔετϥϦΞʣ • MTCS Tier 3 Certification
Slide 320
Slide 320 text
ͳΔ΄ͲΘ͔ΒΜ
Slide 321
Slide 321 text
͖ͬ͞ݴ͍·ͨ͠ ࠪΛతͱ͍͚ͯ͠ͳ͍
Slide 322
Slide 322 text
࣮ࡍʹͲΜͳ ηΩϡϦςΟରࡦ͕ औΕΔͷ͔ɺ ͪΌΜͱධՁͯ͠ΈΔ͜ͱ͕ େࣄ
Slide 323
Slide 323 text
ྫ͑AWSʹ rootΞΧϯτ ͱ IAMΞΧϯτ ͱ͍͏ΞΧϯτ͕͋Γ·͢ ࡉ͔͘ݴ͑APIΩʔͱ͔͋Γ·͕͢
Slide 324
Slide 324 text
LinuxͰ Α͘ݴΘΕ·ͤΜ͔ʁ
Slide 325
Slide 325 text
rootͬͪΌμϝͽΐΜ
Slide 326
Slide 326 text
AWSͰͦͷ௨Γ
Slide 327
Slide 327 text
جຊతʹ IAM Identity and Access Management Λ͍·͠ΐ͏ ͱ͍ͯ͠·͢
Slide 328
Slide 328 text
ൃߦͨ͠ΞΧϯτʹରͯ͠ ͲΜͳݖݶΛ͔͢ ΊͪΌͪ͘Όࡉ͔͘ ઃఆͰ͖Δ ͠ɺ
Slide 329
Slide 329 text
ʮݸʯΛಛఆͰ͖ΔͷͰ ϩάʹՁ͕ग़Δ
Slide 330
Slide 330 text
ࣄނͬͨͱ͖ʹ ΞΧϯτఀࢭ͍͢͠
Slide 331
Slide 331 text
ଞͷΫϥυαʔϏε Ͳ͏ͩΖ͏͔
Slide 332
Slide 332 text
ଟཁૉೝূ ؆୯ʹઃఆग़དྷ·͔͢ʁ
Slide 333
Slide 333 text
ඞཁͳਓʹ ඞཁͳ͚ͩͷݖݶΛ ͢͜ͱ͕ग़དྷ·͔͢ʁ
Slide 334
Slide 334 text
ͷʹΑͬͯ ࣾ֎͔ΒͷΞΫηεΛ ېࢭ͢Δ͜ͱ ग़དྷΔͱ͍͍͔Ͱ͢ΑͶ
Slide 335
Slide 335 text
ͦ͏ʂ ͔ͩΒͦ͜େࣄͳͷ
Slide 336
Slide 336 text
ص্ධՁ ʢྑͦ͞͏ͩͬͨΒ ࣮ࡍͬͯΈΔʣ
Slide 337
Slide 337 text
ࣗࣾʹΨΠυϥΠϯ͕ ແ͚Εɺ ઌఔͷΨΠυϥΠϯΛࢀߟʹ ࡞Γ·͠ΐ͏
Slide 338
Slide 338 text
͜ͷ ͩͪ͘͢Μϒϩάʹ ॻ͖·͕ͨ͠
Slide 339
Slide 339 text
ϕϯνϟʔͰ 3ਓ͘Β͍͔͍͠ͳ͔ͬͨ ্ཱͪ͛ؒͳ͍ձࣾʹ ͖ͬ͞ͷධՁγʔτͷ༰Λ ؙ͝ͱฉ͍ͨ͜ͱ͕͋Γ·͢
Slide 340
Slide 340 text
Կ͕͍ͬͯ͢͝
Slide 341
Slide 341 text
ଈͰશ෦ճ͖·ͨ͠
Slide 342
Slide 342 text
༧௨Γ্ཱͪ͛ؒͳ͍ ΫϥυαʔϏε͕ͩͬͨ ނʹ ڧݻͳηΩϡϦςΟ ͱݴ͑ͳ͍ͷͷ
Slide 343
Slide 343 text
͖ͪΜͱճ͍͚ͯͨͩͨ͠ɺ ͔͠ެ։ͯ͠ྑ͍ͱ ݴ͚ͬͯͨͷʹ ײಈ͠·ͨ͠
Slide 344
Slide 344 text
ͲΜͳαʔϏεΛ ར༻͢Δʹ ϦεΫ͕͋Δͷ ͨΓલͰ͢
Slide 345
Slide 345 text
ࣗࣾͷαʔϏεͩͬͨΒ 100%҆શ͔ͬͯ ͦ͏Ͱͳ͍Ͱ͢ΑͶ
Slide 346
Slide 346 text
ΫϥυʹͳΔͱ ͲΜͲΜ͔Βͳ͘ͳΔ ͱ͍͏ؾ͕ͯ͠͠·͏ ͔ͩΒ͖ͪΜͱධՁͯ͠ ಁ໌ੑΛ֬อ͢Δ
Slide 347
Slide 347 text
ߋʹใΛࣾͰڞ༗ͯ͠ ԿʹؾΛ͚ͭΕྑ͍͔Λ ߟ͑ͯ͏
Slide 348
Slide 348 text
Ϋϥυ࣌ͷྲྀΕͷ͞ʹ ηΩϡϦςΟ ͍ͭ͘Μ͡Όແͯ͘ Ҿͬு͍͔ͬͯͳ͖Ό ͍͚ͳ͍ ͱࢥ͏ΜͰ͢
Slide 349
Slide 349 text
LastPassͷ݅Ͱ ͠·͕ͨ͠
Slide 350
Slide 350 text
ࣄۀऀؒͰใΛ ڞ༗Ͱ͖ΔΑ͏ʹͳͬͯ ΑΓྑ͍αʔϏεΛ Έͳ͞ΜͱҰॹʹ࡞Γ্͛ͯ ͍͘͜ͱ͕ग़དྷͨΒ ಁ໌ੑͷߴ͍ ૉΒ͍͠ະདྷ͕͋Δͳͱ ࢥ͍·ͨ͠
Slide 351
Slide 351 text
ͳͷͰ͕͢
Slide 352
Slide 352 text
એ
Slide 353
Slide 353 text
T - :441 6 6 S t i cf W n AC 3 1 1 2 rC vy t t n l n D E n C r Sf po Sf r S i ei CA C a C E ei 1 1 s Sf r CA W a A c 0 . .4. 6 /64 2 :441 6 6
Slide 354
Slide 354 text
GET! Twitter …
Slide 355
Slide 355 text
@awscloud_jp @jawsdays !0 +( #jawsdays #jawsphoto *1 %",.2$! 3! , 84-&! 17:009 )6 #3/5 9:00916:30 Tweet'7 Workshop
Slide 356
Slide 356 text
AWSެࣜFacebookΛϑΥϩʔͯ͠ AWS (&5 ެࣜFacebookͷ ʰ͍͍Ͷʂʱ͕ ૿͑Ε ૿͑Δ΄Ͳɺ Ϗʔۄ ͕ͳ͘ͳΓɺ࠷ޙʹ Ԡื༻Ϋʔϙϯ൪߸͕ ݱΕ·͢ʂ
Slide 357
Slide 357 text
"84'BDFCPPL ϖʔδʹ ͍͍Ͷʂ͠Α͏ʂ ΞϚκϯ Σϒ αʔϏε 17࣌ʙͷ࠙ձʹͯɺԠื༻URLΛެ։͠·͢ http://bit.ly/AWS-JP-FB
Slide 358
Slide 358 text
͞Βʹ
Slide 359
Slide 359 text
ग़ுʰދͪձʱin HOOTERS ৽॓ʂ ʢࢀՃඅແྉɾҿΈ์ʣ ͜ͷ͋ͱ19:00 - 21:00
Slide 360
Slide 360 text
͜Μͳ͓ళͰձࣾઆ໌ձΛ͢Δͱ͍͏νϟϨϯδਫ਼ਆ
Slide 361
Slide 361 text
/P ༰ ୲ -BNCEB ൺاɺଜओ %FW0QT ݹʢൺاɺଜओʣ γεɾηΩϡϦςΟ γϯδ 43&ʢ4JUF3FMJBCJMJUZ &OHJOFFSJOHʣ ۨᖒ ൡ ޙ౻ɺ૿ా ΤϯυϢʔβʔ੮ /55υίϞळӬ༷ɾകᖒ༷
Slide 362
Slide 362 text
ࢀՃ݅
Slide 363
Slide 363 text
cloudpackʹͪΐͬͱͰ ڵຯ͕͋ΕࢀՃOK Ͱۭ͖੮͕ΓΘ͔ͣ
Slide 364
Slide 364 text
ࢀՃ͍ͨ͠ਓ ͜ͷ͋ͱ γϯδͷͱ͜Ζʹ ͍Βͬ͠Ό͍·ͤʂ
Slide 365
Slide 365 text