from liability to asset: how to better secure enterprise mobile deployments

31
From Liability to Asset: How to Better Secure Enterprise Mobile Deployments Jesus Rodriguez CEO, KidoZen

Upload: kidozen

Post on 29-Nov-2014

166 views

Category:

Technology


0 download

DESCRIPTION

Most organizations view mobile apps as a strategic asset — one that has rapidly become a core part of their enterprise IT application stack. But mobile apps also present risk. They exponentially increase the perimeter an enterprise must protect as their mobile workforce continues to expand. Join us for a practical webinar that shifts the security conversation from mobile devices to what matters most – the business data being consumed by your mobile apps.

TRANSCRIPT

Page 1: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Jesus RodriguezCEO, KidoZen

From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Jesus RodriguezCEO, KidoZen

Page 2: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

About Me

• Hackerpreneur• Co-Founder KidoZen• Advisor to software companies (Microsoft, Oracle….)• Board member• Investor• Speaker & author

• http://jrodthoughts.com• http://weblogs.asp.net/gsusx• https://twitter.com/jrdothoughts

Page 3: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

About KidoZenCOMPANY

Enterprise Mobile App Platform (PaaS) Headquarters: Miami, FL Development Center: Buenos Aires, Argentina Privately Held Series A of $5 Million: November 2013, Third Point Ventures

WHAT WE PROVIDE

Enterprise Mobile Backend-as-a-Service API Mobile SDKs Mobile Enterprise Application Center HTML 5 Hosting Mobile Data Virtualization Mobile Data Management Mobile Analytics Mobile App Prototyper

CUSTOMERS

HIGHLIGHTS

• Large Number of Enterprise APIs• Public, Private, Hybrid Cloud &

On-Premise• Access and Manage Enterprise Data

Sources by Applying Security Policies at the Data Level for Mobility Management

• 100+ Global 1000 Customers• Pricing starts at $5k/10M API Calls/10K

Users/200GB Store per Month

Page 4: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

25 partners in 50 countries

Canada

United States

AustraliaSouth Africa

TaiwanPhilippines

Argentina

EgyptKuwaitSaudi ArabiaUAE

MexicoIndia

MalaysiaSingaporeIndonesia

China

EuropeAustriaBelgiumCzech RepublicFranceGermanyHungaryIrelandItalyLuxembourgNetherlandsNorwayPortugalSlovakiaSpainSwedenSwitzerlandUnited Kingdom

Russia

Geographic Coverage

Page 5: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Today’s Agenda

• Security in the enterprise mobile world• Building blocks of an enterprise mobile security architecture• How KidoZen does it

Page 6: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Security remains one of the biggest challenges of enterprise

mobile solutions

Page 7: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

What does security mean in the mobile context?

Page 8: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

5 Building Blocks of Enterprise Mobile Security

1. User authentication2. User federation3. Mobile app protection4. API security5. Data security

Page 9: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

User Authentication

Page 10: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Authenticate mobile app users against a corporate identity provider

The Challenge

Page 11: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Authentication Models

• Active authentication • WS-Trust

• Passive authentication• WS-Federation Passive Profile• SAML2• OAuth

• Integration with corporate identity providers

Page 12: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

• Federation with corporate identity providers• Support for passive authentication protocols• Support for active authentication protocols• Support for various security token formats

How KidoZen Does it

Page 13: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Identity Federation

Page 14: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Enable single sign-on and federation between mobile apps and corporate

identity providers

The Challenge

Page 15: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Federation Models

• Implement federation protocols• WS-Federation• SAML2

• Implement token exchange and single sign-on models

Page 16: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

How KidoZen Does it

• KidoZen Identity Federation Gateway• Support for various identity providers• Token exchange and mapping rules

Page 17: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Mobile API Protection

Page 18: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Securing mobile APIs based on corporate identity assets

The Challenge

Page 19: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Mobile API Security

• Enable access control rules at the API level• Enable access control policies based on user identity tokens

Page 20: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

How KidoZen Does it

• API and Connectors security settings• Access control engine based on identity token claims

Page 21: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Mobile Data Protection

Page 22: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Protect and secure the business data assets used by mobile applications

The Challenge

Page 23: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Mobile Data Security

• Define the data used by a mobile application• Provide access control policies at the data level

Page 24: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

How KidoZen Does it

• KidoZen mobile data virtualization offers a model to “virtualize” the data sources used by a mobile solution

• KidoZen mobile data management offers a way to secure “virtualized data sources” using access control policies

Page 25: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Mobile App Protection

Page 26: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Provide access control policies against the different mobile applications in an enterprise

The Challenge

Page 27: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Mobile App Management

• Enable a central app store• Integrate the app store with a corporate identity provider • Provide access control policies at the mobile app level

Page 28: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

How KidoZen Does it

• KidoZen’s enterprise app center provides a central application store for enterprise mobile solutions

• The enterprise app center provides access control policies based on enterprise identity providers such as Microsoft Active Directory

Page 29: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Other Enterprise Mobile Security Capabilities

• Device protection• Malware detection• Usage audit

Page 30: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

Summary

• Security is one of the most important elements of enterprise mobile architecture

• The are 5 fundamental building blocks to enterprise mobile security

• User authentication• Identity Federation• API protection• Data protection • App management

• KidoZen provides a complete mobile identity management suite as part of its enterprise mobile platform

Page 31: From Liability to Asset: How to Better Secure Enterprise Mobile Deployments

ThanksJesus Rodriguez: [email protected]

http://twitter.com/#!/jrodthoughtshttp://jrodthoughts.com/

www.kidozen.com