How Organizations Secure Applications with Aws Palo Alto Networks Hyb205

Title

AWS re:Invent 2023 - How organizations secure applications with AWS & Palo Alto Networks (HYB205)

Summary

  • Rich Campagna from Palo Alto Networks introduces the session on securing cloud applications, highlighting the increasing sophistication of attackers and the complexity of security landscapes.
  • The session covers core trends in security, the importance of securing the application development lifecycle, and protecting communications in the cloud.
  • Palo Alto Networks has developed two platforms: Prisma Cloud (for application lifecycle security) and Strata (for cloud network security).
  • Deployment options for firewalls in the cloud include virtual machine firewalls, containerized firewalls, and cloud-native firewalls.
  • A common deployment model is the hub and spoke architecture using AWS Transit Gateway.
  • The panelists from BP, Avalon Healthcare Solutions, Bristol Myers Squibb, and Putnam Investments discuss their cloud journeys, challenges, and the use of Palo Alto Networks' tools.
  • Topics such as multi-cloud strategies, containerization, serverless architectures, and the importance of a single pane of glass for policy management are discussed.
  • The panelists emphasize the need for scalability, ease of management, and integration with AWS services.
  • The session concludes with future plans for each organization's cloud security and an invitation to visit Palo Alto Networks' booth for more information.

Insights

  • Organizations are increasingly facing sophisticated cyber threats, necessitating advanced security measures and investment in security infrastructure.
  • The complexity of security architectures and the shortage of trained security professionals are significant challenges for organizations.
  • Cloud security is not just about deploying firewalls; it involves securing the entire application lifecycle and ensuring secure communications.
  • There is a trend towards using cloud-native firewalls for ease of management and integration with cloud providers like AWS.
  • Organizations are considering multi-cloud strategies and are looking for security solutions that can be consistently applied across different environments.
  • The panelists' experiences highlight the importance of automation, scalability, and the ability to manage security policies effectively.
  • The discussion on deployment models and the choice between native AWS services and third-party solutions like Palo Alto Networks provides insight into the decision-making process for cloud security.
  • The session underscores the need for collaboration between security, platform teams, and application development teams to ensure a secure and efficient cloud environment.
  • Future plans for cloud security in the organizations represented on the panel include IPv6 piloting, infrastructure as code, and further integration of Palo Alto Networks' Prisma Cloud and Strata platforms.