jane melia - quintessencelabs group co-chair · certifications: csa star, ccsk • globally...

10
www.cloudsecurityalliance.org Copyright © 2017 Cloud Security Alliance Jane Melia - QuintessenceLabs Group Co-Chair

Upload: others

Post on 20-May-2020

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

Jane Melia - QuintessenceLabsGroup Co-Chair

Page 2: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

• Global, not-for-profit organization

• Building security best practices for next gen IT

• Research and Educational Programs

• Certifications: CSA STAR, CCSK

• Globally authoritative source for Trust in the Cloud

• Work Groups focus on specific areas of interest “To promote the use of best practices for providing security assurance within Cloud Computing, and provide education on the uses of Cloud Computing to help secure

all other forms of computing.”

Page 3: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

QSS – WG includes…

100+ members, >40 organizations

Users of security technology

Solution providers: Quantum key distribution (QKD)

Post‐quantum cryptography

Quantum random number generation

Other impacted and interested organizations

Goals:• Inform and educate

• Provide thought leadership

• Become a trusted advisor on long term security issues

• Influence and/or set standards to enable quantum‐safe technologies

• Bridge the gap between mathematicians and physicists

Page 4: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

Position papers: short, easy-to-read (2-4 pages)

What is Quantum-Safe Security?

What is Quantum Key Distribution?

What is Post-Quantum Cryptography?

Quantum Random Number Generators

Quantum Safe Security Glossary

Applied Quantum Safe Security

Conference Participation:

CSA EMEA congress (Berlin 2015, Madrid 2016)

CSA APAC Congress (India 2016)

CSA Congress 2016 Workshop

First ever quantum-safe presentation/panel at RSAC San Francisco 2016

Webinars on Quantum Safe Topics

Planned: support for standards and certification

Available for download from CSA website

Page 5: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

What? Survey on “Awareness of Quantum Security Risk”

When? Survey questions asked: end 2016

Who? CSA members, 100+ responses from well informed and security aware

audience

Higher exposure to Quantum Risk than general population

Findings: to be published soon… preview in next few slides!

Page 6: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

Most respondents are aware, understand the risk, and do not trust their current solutions!

Page 7: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

Yes 39.5%

No 60.5%

Are you or your company working to future-proof your data to protect it from the future threat of

quantum computers?

Page 8: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

The next set of questions relates to awareness of courses of action...

53% 51%

38%34%

30%

21%

0%

10%

20%

30%

40%

50%

60%

Longer symmetric keys Longer hash functions Quantum randomnumber generators

Quantum keydistribution

Quantum safealgorithms

None of these

Which of these quantum resistant technologies are you familiar with? (Select all that apply)

Page 9: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

56%

21%

21%

2%

0.0% 10.0% 20.0% 30.0% 40.0% 50.0% 60.0%

Very interested

Somewhat interested

A little interested

Not at all interested

Are you interested in learning more about quantum computers and their threat to data security?

Good news for people involved in education and communication on this topic – people are eager to learn more!

Page 10: Jane Melia - QuintessenceLabs Group Co-Chair · Certifications: CSA STAR, CCSK • Globally authoritative source for Trust in the Cloud • Work Groups focus on specific areas of

www.cloudsecurityalliance.orgwww.cloudsecurityalliance.orgCopyright © 2017 Cloud Security Alliance

1. Quantum-Safe Security Awareness Survey Report:

Peer Review Process underway - Inputs very welcome!

https://cloudsecurityalliance.org/document/quantum-safe-security-awareness-survey-report/

2. Find out more about the QSS-WG on the CSA website:

https://cloudsecurityalliance.org/group/quantum-safe-security/