In this post, I’m going to look at one of the most frequently misunderstood and misused commands available in the Cinder Block Storage project of OpenStack® is cinder ...
You’ve seen the headlines, read the blogs and heard the success stories – the flash storage revolution is here. In my previous post, I talked about Pure Storage’s commitment to securing government data. Pulling that string a little further, let’s look at how Pure Storage is helping customers find innovative solutions that provide the highest degree of protection.
Blast From the Past
Let me start from the beginning, and then turn to the road ahead. Last year’s OPM breach gave the American people some serious whiplash – exposing personnel information of more than 22 million current and former Federal employees. While spectacular, it has not been the only breach – since 2006, Federal cyber security breaches have exposed 87 million private records, and the attacks are only growing more dynamic, according to Privacy Rights Clearinghouse.
Meet the Mandates
Uncle Sam is committed to enhancing cyber security awareness and protections – from the Cybersecurity Strategy and Implementation Plan (CSIP) to Continuous Diagnostics and Mitigation (CDM) Program, to Federal Risk and Authorization Management Program (FedRAMP).
Keeping sensitive information secure with no interruption is easier said than done. The challenge is is to find a way to meet these mandates while powering customer missions with minimal encumbrance. It is the age-old struggle to find balance between security and convenience, the battle between hardening a system and leaving information accessible for those who may need legitimate access.
Security is also a major investment. Implementing multiple solutions to provide layered defense-in-depth security introduces product, implementation, personnel, and time expenses, increasing program costs. At the end of the day, your agency is turning to all-flash storage to deliver high performance and robust resiliency to your constituents in a simple, affordable and safe way.
Easy as 1, 2, 3
Pure Storage helps address an your overall security posture by reducing complexity and cost, and integrating access control system such as Active Directory and OpenLDAP. These capabilities provide an integrated means to leverage the protection mechanisms with minimal effort and no additional cost. For example, the encryption and key management in a FlashArray//M is completely self-contained, requires no user intervention, has no impact to performance and is completely transparent to both the server hosts and the users. It’s part of what underpins our philosophy of Smart Storage.
Build on a Smarter Foundation
Here at Pure Storage, we know security isn’t a single-point solution that you buy and implement – it’s an ongoing effort that comprises people, processes, policies and technologies that work together to secure the enterprise. We help make that easier for you by integrating two fundamental features into our systems. First, we secure data at rest with Federal Information Processing Standards (FIPS) 140-2-certified Advanced Encryption Standard (AES) 256. The management of these encryption keys is completely self-contained and requires no external manipulation. Even more importantly, the encryption process is in-line with the data processing, and has no impact to performance. Second, we monitor access and functions based on specific account privileges (RBAC), restrict external connections to the system and require complex passwords. All of this has been certified using the most stringent government guidelines, and resulted in our National Information Assurance Partnership (NIAP) Common Criteria Certification.
In addition to our built-in software-based security features, we also offer a hardware-based security mechanism, our Rapid Data Lock (RDL) and At-Rest Encryption capabilities. This accessory makes it possible to instantly disable an array and crypto-lock the data, greatly reducing risk of loss, capture or compromise, as well as potentially simplifying logistics of shipment and deployment.
Pure Storage identifies and addresses critical cyber security gaps and makes specific recommendations to address them – quickly and efficiently. Government agencies can rely on our all-flash performance, security, resiliency and simplicity – all within budget. Smart Storage helps you accomplish your mission.
Join the flash storage revolution on Twitter @PureGov. Together, we can pave the road to the future.