19
© 2013 Colt Technology Services Group Limited. All rights reserved. © 2014 Colt Technology Services Group Limited. All rights reserved. La sécurité chez un Service Provider en 2014 Nicolas Fischbach Director Strategy, Architecture and Innovation @niCRO securite.org/nico

Colt sp sec2014_appsec-nf-vfinal

Embed Size (px)

DESCRIPTION

s

Citation preview

Page 1: Colt sp sec2014_appsec-nf-vfinal

© 2013 Colt Technology Services Group Limited. All rights reserved. © 2014 Colt Technology Services Group Limited. All rights reserved.

La sécurité chez un

Service Provider en 2014

Nicolas Fischbach Director Strategy, Architecture and Innovation

@niCRO securite.org/nico

Page 2: Colt sp sec2014_appsec-nf-vfinal

2

2

Colt – The Information Delivery Platform

• 47,000km EU Fibre

network / 37,000

transatlantic

• 23 countries / 42

metros / 192 connected

cities

• 20 Colt owned data

centres / 20,000

connected buildings

• 500+ NNIs / customers

in 79 countries

• MEF / ONF / NFV

Member

Page 3: Colt sp sec2014_appsec-nf-vfinal

3

3

Topics

Internet

Traffic

Denial

of Service

SIEM

27001

IAM

SP

Page 4: Colt sp sec2014_appsec-nf-vfinal

4

4

Topics (cont’d)

BGP

DNS

Data

Locality

DR/LI/CF

Virtualization

SP

Page 5: Colt sp sec2014_appsec-nf-vfinal

5

5

Internet

Traffic

http

Page 6: Colt sp sec2014_appsec-nf-vfinal

6

6

Internet

Traffic

https

322%

Page 7: Colt sp sec2014_appsec-nf-vfinal

7

7

Internet

Traffic

others

long tail

Page 8: Colt sp sec2014_appsec-nf-vfinal

8

8

Denial

of Service

size++

amplified

Page 9: Colt sp sec2014_appsec-nf-vfinal

9

9

Denial

of Service

Page 10: Colt sp sec2014_appsec-nf-vfinal

10

10

Denial

of Service

high:+50%

noise: +++

Page 11: Colt sp sec2014_appsec-nf-vfinal

11

11

SIEM scale

MSSP

Page 12: Colt sp sec2014_appsec-nf-vfinal

12

12

SIEM

Page 13: Colt sp sec2014_appsec-nf-vfinal

13

13

27001

IAM

mandatory

telnet

Page 14: Colt sp sec2014_appsec-nf-vfinal

14

14

27001

IAM

Page 15: Colt sp sec2014_appsec-nf-vfinal

15

15

BGP

DNS

status

attacks

Page 16: Colt sp sec2014_appsec-nf-vfinal

16

16

DR/LI/CF

general

update

Page 17: Colt sp sec2014_appsec-nf-vfinal

17

17

Data

Locality

cloud

in transit/

at rest

Page 18: Colt sp sec2014_appsec-nf-vfinal

18

18

Virtualization

SDN/NFV

Compute

Page 19: Colt sp sec2014_appsec-nf-vfinal

© 2014 Colt Technology Services Group Limited. All rights reserved.

Thank you. Questions ?

[email protected] // [email protected] // @niCRO