Cloud Security Podcast by Google

EP67 Cyber Defense Matrix and Does Cloud Security Have to DIE to Win?

14 snips
May 31, 2022
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Cyber Defense Matrix and Cloud

  • The Cyber Defense Matrix (CDM) is a mental model with two dimensions: things we care about (devices, apps, networks, data, users) and NIST cybersecurity framework functions (identify, protect, detect, respond, recover).
  • It applies to cloud security, but cloud's operating model, emphasizing distributed, immutable, ephemeral (DIE) systems, changes how we apply CDM.
INSIGHT

DIE Triad vs. CIA Triad

  • The DIE triad (Distributed, Immutable, Ephemeral) can be considered the opposite of the CIA triad (Confidentiality, Integrity, Availability).
  • Building cloud systems with DIE principles reduces the need for CIA-focused security.
ADVICE

Prioritize DIE

  • Prioritize building towards DIE principles first when designing cloud systems.
  • Secure the elements that cannot be made DIE.
Get the Snipd Podcast app to discover more snips from this episode
Get the app