SlideShare uma empresa Scribd logo
1 de 30
Securing Gene Sequencing Data
on AWS
Learn how GenomeNext utilized security-as-a-service (SaaS) with Alert Logic to
secure their applications on AWS for HIPAA Compliance, and how you can
securely plan, architect, and execute similar big data projects.
Before We Start
Housekeeping
• Use the question box at anytime
• Today’s event will be recorded and available on-demand
following the conclusion
• Please see the attachments section for a copy of the slide
deck and other resources
Today’s Speakers
James Hirmas, CEO,
GenomeNext
Stephen Coty, Chief
Security Evangelist,
Alert Logic
Patrick McDowell,
Solutions Architect,
AWS
Compliance & Shared
Responsibility
AWS Foundation Services
Compute Storage Database Networking
AWS Global Infrastructure
Regions
Availability Zones
Edge Locations
Identity &
Access Control
Network
Security
Customer applications & content
You get to
define your
controls IN
the Cloud
AWS takes
care of the
security OF
the Cloud
You
Inventory
& Config
Data
Encryption
AWS and you share responsibility for security
Key AWS Certifications and Assurance Programs
The AWS infrastructure is protected by extensive network and security
monitoring systems:
• Network access is monitored by AWS
security managers daily
• AWS CloudTrail lets you monitor
and record all API calls
• Amazon Inspector automatically assesses
applications for vulnerabilities
Constantly monitored
The AWS infrastructure footprint protects your data from costly downtime
• 33 Availability Zones in 12 regions for
multi-synchronous geographic redundancy
• Retain control of where your data resides
for compliance with regulatory requirements
• Mitigate the risk of DDoS attacks using
services like AutoScaling, Route 53
Highly available
AWS enables you to improve your security using many of your existing
tools and practices
• Integrate your existing Active Directory
• Use dedicated connections as a secure,
low-latency extension of your data center
• Provide and manage your own encryption
keys if you choose
Integrated with your existing resources
GenomeNext Mission
GenomeNext is a bioinformatics company dedicated to accelerating the promise
and capability of precision medicine and scientific discovery.
Automated informatics and data management solutions designed to simplify,
expedite and enhance analysis workflows to significantly advance medical
research and expand understanding of the basis, treatment and prevention of
complex diseases by aggregate population scale analysis.
Our solutions provide the market with genomic data and analysis at an
unprecedented combination of quality, cost, and scale without requiring the
investment in high-performance computing resources and specialized personnel.
GenomeNext Overview
Our genomic analysis platform
derives significant sustainable
competitive advantage and
performance from proprietary
parallelization technologies and
bioinformatic architecture, delivering
unparalleled performance, capability
and flexibility.
+
We develop and commercialize big-
data analytics and integrated
systems for the evaluation of genetic
variation and function. Our
proprietary informatics and data
management solutions are designed
to simplify, expedite, and enhance
genetic analysis workflows.
+
Our cloud-driven, SaaS solutions
provide the market with genomic data
and analysis at an unprecedented
combination of performance, quality,
cost and scale without requiring the
investment in high-performance
computing resources and specialized
personnel.
Human
Population
Sample
Preparation
DNA
Sequencing
Analysis
Annotation Reporting
Data
Pharma
Biotech
Genome
Centers
Research
Institutes
Diagnostic
Providers
Genomic Analysis Big Data Analytics Cloud Computing
Next Generation Sequencing
Illumina HiSeq 2500 Illumina MiSeq
Molecular diagnostics
Clinical treatment
Clinical outcomes
Human Genome: 40 hours
Translational
Bioinformatics
Data, Data, DATA…
1000+ samples
26 Trillion Base Pairs
1.2 terabytes
3 billion sequence reactions
Data Explosion
Secondary Analysis of Human Genome
Sequencing Data
The Problem:
• 2 days for raw data
• ~2 weeks for the
analysis
GenomeNext Analysis Pipeline
Peer Reviewed Pipeline Featured in Genome Biology:
http://www.genomebiology.com/2015/16/1/6
An ultra-fast, highly scalable, highly efficient, balanced parallelization
strategy for the discovery of human genetic variation for research,
clinical and population-scale genomics, delivering 100% Reproducible
and 100% Deterministic regardless of platform or level of parallelism
AWS Solution
1,000 Genomes Project
GenomeNext Compliance
GenomeNext maintains a strong commitment to protect not only the privacy and security of our
customer’s data but also to promote and support our customer’s compliance requirements.
• HIPAA security & privacy rules
• Clinical development compliance and the FDA
• Clinical laboratory improvement amendments (CLIA)
• European Union safe harbor principles
• FISMA moderate ready
AWS HIPAA Compliant Solutions
• Sign AWS Business Associate Agreement
• Design HIPAA compliance around approved HIPAA approved AWS Services: DynamoDB, EBS,
EC2, Elastic MapReduce (EMR), Elastic Load Balancer (ELB), Glacier, Relational Database
Service (RDS), Amazon Redshift, and S3.
• Understand and isolate your HIPAA data in order to take advantage of other AWS services
AWS Monitoring and Security Controls
CloudWatch CloudTrail AWS ConfigAWS Flow Logs
S3 Logging Elastic Load
Balancing Logging
Amazon Inspector AWS Config Rules
AWS Security Best Practices
• Implement least privileged communication and administration
• Separate Development and Production into distinct AWS account
• Utilize MFA for AWS access
• Decouple AWS Solution
Application Level Security
AWS does a great job protecting their services; however, it is the customer’s responsibility to protect
the applications that are deployed on AWS. Therefore; GenomeNext looked to Alert Logic for Log
Management, Intrusion Protection/Detection, Web Application Firewall, Compliance reporting, and
security monitoring operations:
• Alert Logic Threat Manager
• Alert Logic Log Manager
• Alert Logic Web Security Manager
HIPAA Requirements Summary
Security Architecture
Firewall/ACL
Intrusion
Detection
Deep Packet
Forensics
Network
DDOS
Netflow
Analysis
Backup
Patch MgmtVulnerabilities
Server/App
Log Mgmt SDLC
Anti-Virus Encryption GPG/PGP
Host
Anti Malware
FIM
NAC Scanner
Mail/Web Filter Scanner
IAM Central Storage
What Does Compliance Not Cover
Threat Intel &
Security
Content
24 x 7
Monitoring &
Escalation
Cloud, Hybrid,
and On-Premises
Environment
Web Application Events
Network Events
Log Data
Data
Collection
Big Data
Analytics
Platform
Continuous
Detection of
Threats &
Exposures
Threats & Exposures Remediation Tactics
Enterprise Cyber Security Teams
• Monitor and maintain non-managed hardware
deployment uptime
• Cyber security awareness program
• Incident response team
• Collect and maintain content for all non-
managed devices
• Operational implementation of all security
infrastructure
• Network and application penetration testing
and audit team
24x7 Security Operations Center and Intelligence
Monitor intrusion detection and
vulnerability scan activity
Search for industry trends and
deliver intelligence on lost or
stolen data
Collect data from OSINT and
underground sources to deliver
intelligence and content
Identify and implement
required policy changes
Escalate incidents and provide guidance to
the response team to quickly mitigate
incidents
Monitor for Zero-Day and
new and emerging
attacks
Cross product correlate
data sources to find
anomalies
Security beyond Compliance
Alert Logic Cloud Security Summit
What: Alert Logic Cloud Security Summit
Where: The Andaz Hotel – NYC
When: June 14th – 8:30am – 4pm
Hear from AWS key speakers, industry experts, analysts
and customers on their experiences with security and
compliance challenges in a cloud environment and how
organizations can close security gaps to de-risk greater
adoption of cloud services.
Register Today
Every attendee will get the following:
• An Alert Logic Hoodie and Goodie bag
• Entered into our raffle to win a fully paid trip to AWS re:Invent 2016 (Ticket, Hotel, and Flight).
Must be present to win prize
Questions?
James Hirmas
@JHC_JamesHirmas
James.Hirmas@
Genomenext.com
www.genomenext.com
Stephen Coty
@StephenCoty
scoty@alertlogic.com
www.alertlogic.com
Patrick McDowell
@patrickmcdowell
mcdowep@amazon.com
aws.amazon.com

Mais conteúdo relacionado

Mais de Amazon Web Services

Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Amazon Web Services
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...Amazon Web Services
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsAmazon Web Services
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareAmazon Web Services
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSAmazon Web Services
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAmazon Web Services
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareAmazon Web Services
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWSAmazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckAmazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without serversAmazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...Amazon Web Services
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceAmazon Web Services
 
Come costruire un'architettura Serverless nel Cloud AWS
Come costruire un'architettura Serverless nel Cloud AWSCome costruire un'architettura Serverless nel Cloud AWS
Come costruire un'architettura Serverless nel Cloud AWSAmazon Web Services
 
AWS Serverless per startup: come innovare senza preoccuparsi dei server
AWS Serverless per startup: come innovare senza preoccuparsi dei serverAWS Serverless per startup: come innovare senza preoccuparsi dei server
AWS Serverless per startup: come innovare senza preoccuparsi dei serverAmazon Web Services
 
Crea dashboard interattive con Amazon QuickSight
Crea dashboard interattive con Amazon QuickSightCrea dashboard interattive con Amazon QuickSight
Crea dashboard interattive con Amazon QuickSightAmazon Web Services
 
Costruisci modelli di Machine Learning con Amazon SageMaker Autopilot
Costruisci modelli di Machine Learning con Amazon SageMaker AutopilotCostruisci modelli di Machine Learning con Amazon SageMaker Autopilot
Costruisci modelli di Machine Learning con Amazon SageMaker AutopilotAmazon Web Services
 
Migra le tue file shares in cloud con FSx for Windows
Migra le tue file shares in cloud con FSx for Windows Migra le tue file shares in cloud con FSx for Windows
Migra le tue file shares in cloud con FSx for Windows Amazon Web Services
 
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?Amazon Web Services
 

Mais de Amazon Web Services (20)

Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 
Come costruire un'architettura Serverless nel Cloud AWS
Come costruire un'architettura Serverless nel Cloud AWSCome costruire un'architettura Serverless nel Cloud AWS
Come costruire un'architettura Serverless nel Cloud AWS
 
AWS Serverless per startup: come innovare senza preoccuparsi dei server
AWS Serverless per startup: come innovare senza preoccuparsi dei serverAWS Serverless per startup: come innovare senza preoccuparsi dei server
AWS Serverless per startup: come innovare senza preoccuparsi dei server
 
Crea dashboard interattive con Amazon QuickSight
Crea dashboard interattive con Amazon QuickSightCrea dashboard interattive con Amazon QuickSight
Crea dashboard interattive con Amazon QuickSight
 
Costruisci modelli di Machine Learning con Amazon SageMaker Autopilot
Costruisci modelli di Machine Learning con Amazon SageMaker AutopilotCostruisci modelli di Machine Learning con Amazon SageMaker Autopilot
Costruisci modelli di Machine Learning con Amazon SageMaker Autopilot
 
Migra le tue file shares in cloud con FSx for Windows
Migra le tue file shares in cloud con FSx for Windows Migra le tue file shares in cloud con FSx for Windows
Migra le tue file shares in cloud con FSx for Windows
 
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
 

Último

Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamUiPathCommunity
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Angeliki Cooney
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...apidays
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century educationjfdjdjcjdnsjd
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxRemote DBA Services
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWERMadyBayot
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobeapidays
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityWSO2
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Orbitshub
 

Último (20)

Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Platformless Horizons for Digital Adaptability
Platformless Horizons for Digital AdaptabilityPlatformless Horizons for Digital Adaptability
Platformless Horizons for Digital Adaptability
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 

Big Data & Cloud Security on AWS with Alert Logic

  • 1. Securing Gene Sequencing Data on AWS Learn how GenomeNext utilized security-as-a-service (SaaS) with Alert Logic to secure their applications on AWS for HIPAA Compliance, and how you can securely plan, architect, and execute similar big data projects.
  • 2. Before We Start Housekeeping • Use the question box at anytime • Today’s event will be recorded and available on-demand following the conclusion • Please see the attachments section for a copy of the slide deck and other resources
  • 3. Today’s Speakers James Hirmas, CEO, GenomeNext Stephen Coty, Chief Security Evangelist, Alert Logic Patrick McDowell, Solutions Architect, AWS
  • 5. AWS Foundation Services Compute Storage Database Networking AWS Global Infrastructure Regions Availability Zones Edge Locations Identity & Access Control Network Security Customer applications & content You get to define your controls IN the Cloud AWS takes care of the security OF the Cloud You Inventory & Config Data Encryption AWS and you share responsibility for security
  • 6. Key AWS Certifications and Assurance Programs
  • 7. The AWS infrastructure is protected by extensive network and security monitoring systems: • Network access is monitored by AWS security managers daily • AWS CloudTrail lets you monitor and record all API calls • Amazon Inspector automatically assesses applications for vulnerabilities Constantly monitored
  • 8. The AWS infrastructure footprint protects your data from costly downtime • 33 Availability Zones in 12 regions for multi-synchronous geographic redundancy • Retain control of where your data resides for compliance with regulatory requirements • Mitigate the risk of DDoS attacks using services like AutoScaling, Route 53 Highly available
  • 9. AWS enables you to improve your security using many of your existing tools and practices • Integrate your existing Active Directory • Use dedicated connections as a secure, low-latency extension of your data center • Provide and manage your own encryption keys if you choose Integrated with your existing resources
  • 10. GenomeNext Mission GenomeNext is a bioinformatics company dedicated to accelerating the promise and capability of precision medicine and scientific discovery. Automated informatics and data management solutions designed to simplify, expedite and enhance analysis workflows to significantly advance medical research and expand understanding of the basis, treatment and prevention of complex diseases by aggregate population scale analysis. Our solutions provide the market with genomic data and analysis at an unprecedented combination of quality, cost, and scale without requiring the investment in high-performance computing resources and specialized personnel.
  • 11. GenomeNext Overview Our genomic analysis platform derives significant sustainable competitive advantage and performance from proprietary parallelization technologies and bioinformatic architecture, delivering unparalleled performance, capability and flexibility. + We develop and commercialize big- data analytics and integrated systems for the evaluation of genetic variation and function. Our proprietary informatics and data management solutions are designed to simplify, expedite, and enhance genetic analysis workflows. + Our cloud-driven, SaaS solutions provide the market with genomic data and analysis at an unprecedented combination of performance, quality, cost and scale without requiring the investment in high-performance computing resources and specialized personnel. Human Population Sample Preparation DNA Sequencing Analysis Annotation Reporting Data Pharma Biotech Genome Centers Research Institutes Diagnostic Providers Genomic Analysis Big Data Analytics Cloud Computing
  • 12. Next Generation Sequencing Illumina HiSeq 2500 Illumina MiSeq Molecular diagnostics Clinical treatment Clinical outcomes Human Genome: 40 hours Translational Bioinformatics Data, Data, DATA… 1000+ samples 26 Trillion Base Pairs 1.2 terabytes 3 billion sequence reactions
  • 14. Secondary Analysis of Human Genome Sequencing Data The Problem: • 2 days for raw data • ~2 weeks for the analysis
  • 15. GenomeNext Analysis Pipeline Peer Reviewed Pipeline Featured in Genome Biology: http://www.genomebiology.com/2015/16/1/6 An ultra-fast, highly scalable, highly efficient, balanced parallelization strategy for the discovery of human genetic variation for research, clinical and population-scale genomics, delivering 100% Reproducible and 100% Deterministic regardless of platform or level of parallelism
  • 18. GenomeNext Compliance GenomeNext maintains a strong commitment to protect not only the privacy and security of our customer’s data but also to promote and support our customer’s compliance requirements. • HIPAA security & privacy rules • Clinical development compliance and the FDA • Clinical laboratory improvement amendments (CLIA) • European Union safe harbor principles • FISMA moderate ready
  • 19. AWS HIPAA Compliant Solutions • Sign AWS Business Associate Agreement • Design HIPAA compliance around approved HIPAA approved AWS Services: DynamoDB, EBS, EC2, Elastic MapReduce (EMR), Elastic Load Balancer (ELB), Glacier, Relational Database Service (RDS), Amazon Redshift, and S3. • Understand and isolate your HIPAA data in order to take advantage of other AWS services
  • 20. AWS Monitoring and Security Controls CloudWatch CloudTrail AWS ConfigAWS Flow Logs S3 Logging Elastic Load Balancing Logging Amazon Inspector AWS Config Rules
  • 21. AWS Security Best Practices • Implement least privileged communication and administration • Separate Development and Production into distinct AWS account • Utilize MFA for AWS access • Decouple AWS Solution
  • 22. Application Level Security AWS does a great job protecting their services; however, it is the customer’s responsibility to protect the applications that are deployed on AWS. Therefore; GenomeNext looked to Alert Logic for Log Management, Intrusion Protection/Detection, Web Application Firewall, Compliance reporting, and security monitoring operations: • Alert Logic Threat Manager • Alert Logic Log Manager • Alert Logic Web Security Manager
  • 24. Security Architecture Firewall/ACL Intrusion Detection Deep Packet Forensics Network DDOS Netflow Analysis Backup Patch MgmtVulnerabilities Server/App Log Mgmt SDLC Anti-Virus Encryption GPG/PGP Host Anti Malware FIM NAC Scanner Mail/Web Filter Scanner IAM Central Storage
  • 25. What Does Compliance Not Cover Threat Intel & Security Content 24 x 7 Monitoring & Escalation Cloud, Hybrid, and On-Premises Environment Web Application Events Network Events Log Data Data Collection Big Data Analytics Platform Continuous Detection of Threats & Exposures Threats & Exposures Remediation Tactics
  • 26. Enterprise Cyber Security Teams • Monitor and maintain non-managed hardware deployment uptime • Cyber security awareness program • Incident response team • Collect and maintain content for all non- managed devices • Operational implementation of all security infrastructure • Network and application penetration testing and audit team
  • 27. 24x7 Security Operations Center and Intelligence Monitor intrusion detection and vulnerability scan activity Search for industry trends and deliver intelligence on lost or stolen data Collect data from OSINT and underground sources to deliver intelligence and content Identify and implement required policy changes Escalate incidents and provide guidance to the response team to quickly mitigate incidents Monitor for Zero-Day and new and emerging attacks Cross product correlate data sources to find anomalies
  • 29. Alert Logic Cloud Security Summit What: Alert Logic Cloud Security Summit Where: The Andaz Hotel – NYC When: June 14th – 8:30am – 4pm Hear from AWS key speakers, industry experts, analysts and customers on their experiences with security and compliance challenges in a cloud environment and how organizations can close security gaps to de-risk greater adoption of cloud services. Register Today Every attendee will get the following: • An Alert Logic Hoodie and Goodie bag • Entered into our raffle to win a fully paid trip to AWS re:Invent 2016 (Ticket, Hotel, and Flight). Must be present to win prize