Note: this blog is a mirror of my HP Labs Blog, on the same topic, accessible at: http://h30507.www3.hp.com/t5/Research-on-Security-and/bg-p/163

Wednesday, November 17, 2010

HP G-Cloud Demonstrator (by HP Labs)

The G-Cloud Theatre is a room designed to demonstrate systems management in a mission-critical environment.
The 'G' in G-Cloud stands for "government" and the demonstration in the theatre shows how a cloud hosting many virtual services could automatically resist even a sophisticated security attack intended to destabilise core data and programs (or generally cause mayhem).
A video footage is available at: http://www.youtube.com/watch?v=zMsWaEqQcbI


--- Posted by Marco Casassa Mont (here and here) ---

--- NOTE: use this mirror blog if you prefer posting on an external blog site ---

--- NOTE: my original HP blog can be found here ---

Analysis of state-of-the-art of Event Management/SIEM Solutions

I am interested in public documentation providing reviews of the state-of-the-art in the Event Management/SIEM Solutions.

In particular I am looking at how the following critical aspects are supported:
  • Scalability: how these solutions scale in case of complex organisation, supply-chains and future utilisation of IT infrastructure/services in the cloud;
  • Comprehensiveness of the type of data that can actually be gathered and stored
  • Support for unstructured event data: how is unstructured data managed by these systems and processed;
  • Type of supported data mining, correlations and deductions;
  • How cultural and human behaviours are factored in/taken into account by the event management system;
  • How compliance, governance and incident management processes are affected by introducing these solutions

I am interested in exploring how HPL Security Analytics can be of help, in investigating different investment options and provide strategic decision support.

The above information would be extremely valuable to build grounded models and related simulations.

--- Posted by Marco Casassa Mont (here and here) ---

--- NOTE: use this mirror blog if you prefer posting on an external blog site ---

--- NOTE: my original HP blog can be found here ---

HPL Identity Analytics – Next Generation

After the good success of HPL Identity Analytics case studies and its transfer to Vistorm (in the broader context of Security Analytics), it is now time to think about new potential application areas in the IAM space and even beyond, including governance and assurance aspects.

Some customers’ input highlights the need to better understand the lifecycle management of privilege users. This is a critical aspect with major implications in terms of organisational’s risk exposure.

In this context, we are interested in exploring organisational processes that are complementary to the operational ones, including Personnel Vetting, Compliance Checking, Job Design and SoD Management.

Other application areas for our Analytics approach are in the cloud computing environment, e.g. exploring the impact of adopting different IAM models and approaches in the cloud (public and private) in terms of risks, productivity, compliance, costs, etc.

Does this community has any particular area/topic, in the IAM space, that is perceived being critical and worth exploring?


--- Posted by Marco Casassa Mont (here and here) ---

--- NOTE: use this mirror blog if you prefer posting on an external blog site ---

--- NOTE: my original HP blog can be found here ---

EnCoRe Project – 9th Quarter Summary

The EnCoRe Q9 Summary is available here.


--- Posted by Marco Casassa Mont (here and here) ---

--- NOTE: use this mirror blog if you prefer posting on an external blog site ---

--- NOTE: my original HP blog can be found here ---