saas is integral to your cloud strategy

Post on 17-Jan-2017

146 Views

Category:

Software

0 Downloads

Preview:

Click to see full reader

TRANSCRIPT

1© Copyright 2015 EMC Corporation. All rights reserved.

SaaS is Integral to your Cloud StrategyGina Minks (Rosenthal), PMM Spanning Backup for Office 365

2© Copyright 2015 EMC Corporation. All rights reserved.

• 15 years storage industry experience (customer and vendor)

• vExpert, EMC Elect• PMM EMC’s Spanning Backup

for Office 365• Austin via Florida

– @gminks– http://ginaminks.com/wordpress/

Who I am

3© Copyright 2015 EMC Corporation. All rights reserved.

4© Copyright 2015 EMC Corporation. All rights reserved.

UsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

On-Premises

backupsData

Application OS

Virtualization

disaster recoveryHardware Network

high availability

5© Copyright 2015 EMC Corporation. All rights reserved.

6© Copyright 2015 EMC Corporation. All rights reserved.

Cloud Deployment ModelsUsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

UsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

On-Premises SaaS

UsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

IaaS

UsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

PaaS

7© Copyright 2015 EMC Corporation. All rights reserved.

What is SaaS? ?

8© Copyright 2015 EMC Corporation. All rights reserved.

SaaS = Software as a Service

9© Copyright 2015 EMC Corporation. All rights reserved.

2016 Okta Business @ Work Report

10© Copyright 2015 EMC Corporation. All rights reserved.

Salesforce• 1999

Office 365• 2011

Box • 2005

Google Apps• 2012

17 years

11© Copyright 2015 EMC Corporation. All rights reserved.

File Sync and Share

CRM data

Email

Calendars

Chat

=

12© Copyright 2015 EMC Corporation. All rights reserved.

SaaS isn’t just shadow IT anymore

13© Copyright 2015 EMC Corporation. All rights reserved.

14© Copyright 2015 EMC Corporation. All rights reserved.

You have less control in with SaaSUsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

Customer

SaaS provider

• You can:• Manage policies, users, and

data• You can’t:• Have admin rights to the app• Have root access to the OS• Manage the VMs• Access the hardware stack

15© Copyright 2015 EMC Corporation. All rights reserved.

What can go wrong?

16© Copyright 2015 EMC Corporation. All rights reserved.

What do your users do now?

17© Copyright 2015 EMC Corporation. All rights reserved.

Example: Exchange Online Data loss event

Too much mail, time to clean it up!

I want to get rid of these permanently!

This should do the trick!

18© Copyright 2015 EMC Corporation. All rights reserved.

Example: OneDrive For Business Data Loss Event

OneDrive for Business Recycle Bin 2nd Recycle Bin

Pat

Chris Jerry

19© Copyright 2015 EMC Corporation. All rights reserved.

What do your admins do now?

20© Copyright 2015 EMC Corporation. All rights reserved.

• Account lifecycle management• O365 data is purged 30 days after

a license is removed.• How will retain and keep this data

available?• What other current processes

require access to the IT stack?• What types of software can help

you continue these processes seamlessly?

SaaS OPERATIONAL PROCESSES

Customer

Microsoft

UsersData

ApplicationApp Admin

OSVirtualizationHardwareNetwork

21© Copyright 2015 EMC Corporation. All rights reserved.

We deleted a user account in Office 365 and it has been more than 30 days. Now we received a request to access the person’s OneDrive for business documents. Is there a way to recover these documents?

Lesson:Have a plan to off-board users that includes moving their OneDrive for Business data

……after 30 days, all data for that user is permanently deleted

22© Copyright 2015 EMC Corporation. All rights reserved.

What about the ransomware threat?

23© Copyright 2015 EMC Corporation. All rights reserved.

Phishing scams

Users tricked into opening docs, enabling macros

Virus installs.Begins encrypting all files on the device.Looks for other devices

Mapped and unmapped drives

Sync Clients

24© Copyright 2015 EMC Corporation. All rights reserved.

If a user has OneDrive for Business or OneDrive configured to sync her Document folder, and … activates a zero day attack that encrypts all her local data, will ODFB/OneDrive sync the encrypted data ...If yes, would MS be able to go back to a point in time … and restore the data?

Yes, OneDrive for Business will sync the encrypted data. If the Version Settings is enabled in your OneDrive for Business

library, you can restore to an earlier version.

25© Copyright 2015 EMC Corporation. All rights reserved.

If a user gets hit with a cryptolocker program and multiple files get locked (hundreds or thousands),  is there away to revert to the last version in bulk?

Lesson:Use a backup and restore solution to protect your data.

We are not able to revert the files in bulk. We can restore them one by one.

26© Copyright 2015 EMC Corporation. All rights reserved.

To prevent the data loss, the best practice is to back up your files and enable version settings in your library.

--Microsoft Support

27© Copyright 2015 EMC Corporation. All rights reserved.

Identify

Business Environment

Risk Governance

Asset Management

Risk Assessment

Risk Management

Protect

Policies

Processes

Data Security

Access Control

Protective Technology

Awareness and Training

Detect

Anomalies and Events

Detection Process

Continuous Monitoring

Respond

Response Planning

Communications

Analysis

Mitigation

Improvements

Backup and

Recovery

Recovery Planning

Improvements

Communications

Identity Management

Data Loss Prevention

Backup andRecovery

NIST Cybersecurity Framework

28© Copyright 2015 EMC Corporation. All rights reserved.

My SaaS provider will take care of me by doing backups

………right?

29© Copyright 2015 EMC Corporation. All rights reserved.

30© Copyright 2015 EMC Corporation. All rights reserved.

Responsibility is sharedUsersData

ApplicationApp Admin

OSVirtualization

HardwareNetwork

Customer

SaaS provider

Hardware FailureSoftware FailureNatural DisasterPower Outage

Human ErrorProgrammatic ErrorsMalicious InsidersExternal HackersViruses/Malware

You Provider

31© Copyright 2015 EMC Corporation. All rights reserved.

Any data protection done by the SaaS provider is to protect

their business

32© Copyright 2015 EMC Corporation. All rights reserved.

Their business is to keep their software up and available for you

33© Copyright 2015 EMC Corporation. All rights reserved.

File Sync and Share

CRM data

Email

Calendars

Chat

=

34© Copyright 2015 EMC Corporation. All rights reserved.

SaaS data is a business asset

When data is deleted from Google, it’s not

recoverable

Salesforce data recovery is a paid

service, $10k+

Microsoft Office 365 SLA doesn’t include

data recovery

35© Copyright 2015 EMC Corporation. All rights reserved.

36© Copyright 2015 EMC Corporation. All rights reserved.

You would never have deployed email or home drives without backups on premises

• You’ll lose data in the same ways you did on-premises• How will you restore that data

without a backup?

SaaS data needs Protection

37© Copyright 2015 EMC Corporation. All rights reserved.

You’re responsible for

your SaaS data…...

Don’t treat it like a scary

monster

38© Copyright 2015 EMC Corporation. All rights reserved.

39© Copyright 2015 EMC Corporation. All rights reserved.

#BackThatSaaSUp

40© Copyright 2015 EMC Corporation. All rights reserved.

Thank you!

top related