

EP67 Cyber Defense Matrix and Does Cloud Security Have to DIE to Win?
14 snips May 31, 2022
AI Snips
Chapters
Transcript
Episode notes
Cyber Defense Matrix and Cloud
- The Cyber Defense Matrix (CDM) is a mental model with two dimensions: things we care about (devices, apps, networks, data, users) and NIST cybersecurity framework functions (identify, protect, detect, respond, recover).
- It applies to cloud security, but cloud's operating model, emphasizing distributed, immutable, ephemeral (DIE) systems, changes how we apply CDM.
DIE Triad vs. CIA Triad
- The DIE triad (Distributed, Immutable, Ephemeral) can be considered the opposite of the CIA triad (Confidentiality, Integrity, Availability).
- Building cloud systems with DIE principles reduces the need for CIA-focused security.
Prioritize DIE
- Prioritize building towards DIE principles first when designing cloud systems.
- Secure the elements that cannot be made DIE.