SlideShare uma empresa Scribd logo
1 de 19
October 22, 2018
Min Hyun & Momena Cheema
Global Affairs
AWS Security Assurance
Internet of Things:
Functions & Security
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWS IoT Services
Intelligence
Insights & Logic → Action
Things
Sense & Act
Cloud
Storage & Compute
Predictive
maintenance
Wellness &
health solutions
Connected buildings
& city systems
Maintain
device fleets
Monitor energy
efficiency
Safeguard manufacturing
facilities
What customers are doing with AWS IoT
IoT payment &
connected commerce
Remote patient
monitor
Revenue growth
IoT data drives business growth
Operational efficiency
IoT data decreases OpEx
Business outcomes with IoT
New services &
business models
Products that get
better with time
Better relationship
with customers
Increased
efficiency
Intelligent
decision making
Data driven
discipline
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
IoT sounds kind
of awesome.
What are some
AWS IoT basics?
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWS IoT Architecture
a:FreeRTOS
a:FreeRTOS
Intelligence
Insights & Logic → Action
AWS Greengrass
Endpoints
Fleet onboarding,
management and
SW updates
Fleet
audit and
protection
IoT data
analytics and
intelligence
Gateway
Things
Sense & Act
Cloud
Storage & Compute
Secure local
triggers, actions,
and data sync
Secure device
connectivity
and messaging
AWS
IoT Core
AWS IoT Device
Management
AWS IoT Device
Defender
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
That’s a lot of data
IoT is storing and
generating… How
do I use AWS
services to connect
my devices
securely?
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
To securely connect devices
to the AWS cloud and
other devices at scale
To fully integrate with
other AWS service to reason
on top of the data
(Analytics, Databases, AI, etc.)
To route, process, and
act upon data from
connected devices
Secure Device Connectivity and Messaging
AWS IoT Core
AWS IoT Core is a managed service that lets connected devices easily
and securely interact with cloud applications and other devices.
To enable applications to
interact with devices even
when they are offline
Secure Device Connectivity and Messaging
AWS IoT Core
Device
Gateway
Rules
Engine
Message
Broker
Device
Shadow
RegistryIdentity
Service
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWS Greengrass extends AWS IoT onto your devices, so that they can act
locally on the data they generate, while still taking advantage of the cloud.
Extend AWS IoT to the Edge
AWS Greengrass
Edge Cloud
Law of Economics
Law of Physics
Law of the Land
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Extend AWS IoT to the Edge
AWS Greengrass
Data and
State Sync
Security Over the
Air Updates
Protocol
Adapters
Local
Device Shadows
Local
Actions
Lambda
Functions
Local
Messages
and Triggers
Local
Message Broker
AWS-grade
security
Easily Update
Greengrass Core
Machine
Learning
Inference
Local Execution
of ML Models
Local
Resource
Access
Lambdas Interact
With Peripherals
Easy Integrations
With Local
Protocols
ʥ
A
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Local Connectivity
Libraries
Cloud Connectivity
Libraries
Security
Connectivity
Libraries
OTA Beta &
Code Signing
Based on FreeRTOS kernel
AWS Greengrass AWS IoT Core
IoT Microcontroller OS
Amazon FreeRTOS
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Fast device
onboarding at scale
Real-time fleet
indexing and search
Monitoring and
updating devices
AWS IoT Device Management
Device Management Service
AWS IoT Device Management helps you onboard, organize, monitor,
and remotely manage your growing number of connected devices.
Batch Fleet
Provisioning
Real-time
Fleet Index & Search
Fine Grained
Device Logging
& Monitoring
Over the
Air Updates
Maintain Fleet Health
AWS IoT Device Management
Okay, got it. AWS
addresses lots of
IoT specific use
cases. But I
really, really,
really need to
monitor and
audit this stuff.
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Audit Device
Configurations
Monitor Device
Behavior
Generate
Alerts
Patch Security
Vulnerabilities
AWS IoT Device Defender
Keep Your Fleet Secure
Identify
Anomalies
© 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Audit device
configurations, define and
monitor device behavior
Identify drifts in security
settings and detect device
anomalies
Generate alerts Patch security
vulnerabilities
AWS IoT Device Defender
Keep Your Fleet Secure
AWS IoT Device Defender is a fully managed IoT security service that
enables you to secure your fleet of connected devices on an ongoing basis.
Easily analyze IoT data
AWS IoT Analytics
Channels DatasetsPipelines Data Stores Jupyter Notebooks
& Templates
AWS IoT Analytics is a service that processes, enriches, stores, analyzes,
and visualizes IoT data for manufacturers and enterprises.
Sense & Act
Things
Secure device
connectivity
and messaging
AWS IoT Core
Fleet onboarding,
management and
SW updates
Fleet
audit and
protection
IoT data
analytics and
intelligence
AWS IoT Device
Management
AWS IoT Device
Defender
GatewayEndpoints
AWS Greengrass
AWS IoT 1-Click
AWS IoT
Analytics
Amazon
FreeRTOS
Storage & Compute & Learn
Cloud
Secure local
triggers, actions,
and data sync
Intelligence
Insights & Logic → Action
AWS IoT Services Suite

Mais conteúdo relacionado

Mais de Amazon Web Services

Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
Amazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
Amazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
Amazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
Amazon Web Services
 
Protect your applications from DDoS/BOT & Advanced Attacks
Protect your applications from DDoS/BOT & Advanced AttacksProtect your applications from DDoS/BOT & Advanced Attacks
Protect your applications from DDoS/BOT & Advanced Attacks
Amazon Web Services
 
Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用
Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用
Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用
Amazon Web Services
 

Mais de Amazon Web Services (20)

Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 
Come costruire un'architettura Serverless nel Cloud AWS
Come costruire un'architettura Serverless nel Cloud AWSCome costruire un'architettura Serverless nel Cloud AWS
Come costruire un'architettura Serverless nel Cloud AWS
 
AWS Serverless per startup: come innovare senza preoccuparsi dei server
AWS Serverless per startup: come innovare senza preoccuparsi dei serverAWS Serverless per startup: come innovare senza preoccuparsi dei server
AWS Serverless per startup: come innovare senza preoccuparsi dei server
 
Crea dashboard interattive con Amazon QuickSight
Crea dashboard interattive con Amazon QuickSightCrea dashboard interattive con Amazon QuickSight
Crea dashboard interattive con Amazon QuickSight
 
Costruisci modelli di Machine Learning con Amazon SageMaker Autopilot
Costruisci modelli di Machine Learning con Amazon SageMaker AutopilotCostruisci modelli di Machine Learning con Amazon SageMaker Autopilot
Costruisci modelli di Machine Learning con Amazon SageMaker Autopilot
 
Migra le tue file shares in cloud con FSx for Windows
Migra le tue file shares in cloud con FSx for Windows Migra le tue file shares in cloud con FSx for Windows
Migra le tue file shares in cloud con FSx for Windows
 
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
La tua organizzazione è pronta per adottare una strategia di cloud ibrido?
 
Protect your applications from DDoS/BOT & Advanced Attacks
Protect your applications from DDoS/BOT & Advanced AttacksProtect your applications from DDoS/BOT & Advanced Attacks
Protect your applications from DDoS/BOT & Advanced Attacks
 
Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用
Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用
Track 6 Session 6_ 透過 AWS AI 服務模擬、部署機器人於產業之應用
 

Leveraging AWS Services for IoT Security

  • 1. October 22, 2018 Min Hyun & Momena Cheema Global Affairs AWS Security Assurance Internet of Things: Functions & Security
  • 2. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS IoT Services Intelligence Insights & Logic → Action Things Sense & Act Cloud Storage & Compute
  • 3. Predictive maintenance Wellness & health solutions Connected buildings & city systems Maintain device fleets Monitor energy efficiency Safeguard manufacturing facilities What customers are doing with AWS IoT IoT payment & connected commerce Remote patient monitor
  • 4. Revenue growth IoT data drives business growth Operational efficiency IoT data decreases OpEx Business outcomes with IoT New services & business models Products that get better with time Better relationship with customers Increased efficiency Intelligent decision making Data driven discipline
  • 5. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. IoT sounds kind of awesome. What are some AWS IoT basics?
  • 6. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS IoT Architecture a:FreeRTOS a:FreeRTOS Intelligence Insights & Logic → Action AWS Greengrass Endpoints Fleet onboarding, management and SW updates Fleet audit and protection IoT data analytics and intelligence Gateway Things Sense & Act Cloud Storage & Compute Secure local triggers, actions, and data sync Secure device connectivity and messaging AWS IoT Core AWS IoT Device Management AWS IoT Device Defender
  • 7. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. That’s a lot of data IoT is storing and generating… How do I use AWS services to connect my devices securely?
  • 8. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. To securely connect devices to the AWS cloud and other devices at scale To fully integrate with other AWS service to reason on top of the data (Analytics, Databases, AI, etc.) To route, process, and act upon data from connected devices Secure Device Connectivity and Messaging AWS IoT Core AWS IoT Core is a managed service that lets connected devices easily and securely interact with cloud applications and other devices. To enable applications to interact with devices even when they are offline
  • 9. Secure Device Connectivity and Messaging AWS IoT Core Device Gateway Rules Engine Message Broker Device Shadow RegistryIdentity Service
  • 10. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Greengrass extends AWS IoT onto your devices, so that they can act locally on the data they generate, while still taking advantage of the cloud. Extend AWS IoT to the Edge AWS Greengrass Edge Cloud Law of Economics Law of Physics Law of the Land
  • 11. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Extend AWS IoT to the Edge AWS Greengrass Data and State Sync Security Over the Air Updates Protocol Adapters Local Device Shadows Local Actions Lambda Functions Local Messages and Triggers Local Message Broker AWS-grade security Easily Update Greengrass Core Machine Learning Inference Local Execution of ML Models Local Resource Access Lambdas Interact With Peripherals Easy Integrations With Local Protocols ʥ A
  • 12. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Local Connectivity Libraries Cloud Connectivity Libraries Security Connectivity Libraries OTA Beta & Code Signing Based on FreeRTOS kernel AWS Greengrass AWS IoT Core IoT Microcontroller OS Amazon FreeRTOS
  • 13. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Fast device onboarding at scale Real-time fleet indexing and search Monitoring and updating devices AWS IoT Device Management Device Management Service AWS IoT Device Management helps you onboard, organize, monitor, and remotely manage your growing number of connected devices.
  • 14. Batch Fleet Provisioning Real-time Fleet Index & Search Fine Grained Device Logging & Monitoring Over the Air Updates Maintain Fleet Health AWS IoT Device Management
  • 15. Okay, got it. AWS addresses lots of IoT specific use cases. But I really, really, really need to monitor and audit this stuff.
  • 16. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Audit Device Configurations Monitor Device Behavior Generate Alerts Patch Security Vulnerabilities AWS IoT Device Defender Keep Your Fleet Secure Identify Anomalies
  • 17. © 2018, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Audit device configurations, define and monitor device behavior Identify drifts in security settings and detect device anomalies Generate alerts Patch security vulnerabilities AWS IoT Device Defender Keep Your Fleet Secure AWS IoT Device Defender is a fully managed IoT security service that enables you to secure your fleet of connected devices on an ongoing basis.
  • 18. Easily analyze IoT data AWS IoT Analytics Channels DatasetsPipelines Data Stores Jupyter Notebooks & Templates AWS IoT Analytics is a service that processes, enriches, stores, analyzes, and visualizes IoT data for manufacturers and enterprises.
  • 19. Sense & Act Things Secure device connectivity and messaging AWS IoT Core Fleet onboarding, management and SW updates Fleet audit and protection IoT data analytics and intelligence AWS IoT Device Management AWS IoT Device Defender GatewayEndpoints AWS Greengrass AWS IoT 1-Click AWS IoT Analytics Amazon FreeRTOS Storage & Compute & Learn Cloud Secure local triggers, actions, and data sync Intelligence Insights & Logic → Action AWS IoT Services Suite