The ERA of API in the World of IoT Jing Zhang-Lee November, 2015.

Slides:



Advertisements
Similar presentations
Oracle IDM at First National Bank
Advertisements

1 © 2005 Cisco Systems, Inc. All rights reserved. CONFIDENTIAL AND PROPRIETARY INFORMATION Cisco Wireless Strategy Extending and Securing the Network Bill.
System Center 2012 R2 Overview
Internet of Things Security Architecture
NIST Big Data Public Working Group Security and Privacy Subgroup Presentation September 30, 2013 Arnab Roy, Fujitsu Akhil Manchanda, GE Nancy Landreville,
World’s Most Accurate Location-base mobile application platform.
A Java Architecture for the Internet of Things Noel Poore, Architect Pete St. Pierre, Product Manager Java Platform Group, Internet of Things September.
Unified Logs and Reporting for Hybrid Centralized Management
1 3 rd SG13 Regional Workshop for Africa on “ITU-T Standardization Challenges for Developing Countries Working for a Connected Africa” (Livingstone, Zambia,
Health IT RESTful Application Programming Interface (API) Security Considerations Transport & Security Standards Workgroup March 18, 2015.
Practical Steps to Secure your APIs for Mobile Mark O’Neill VP Innovation, Axway.
Copyright © 2006 CyberRAVE LLC. All rights reserved. 1 Virtual Private Network Service Grid A Fixed-to-Mobile Secure Communications Framework Managed Security.
© Copyright 2011 Hewlett-Packard Development Company, L.P. 1 Sundara Nagarajan (“SN”) CLOUD SYSTEMS AUTOMATION.
4G-LTE: Enhancing Efficiency in Organizations. Factors Impacting Digitization Processes and Systems January Powerful Platforms and Devices Storage.
Geneva, Switzerland, 17 October 2011 SDP Components for Converged Telecom-Internet Applications Changsup Keum, Principal Researcher ITU Workshop on “Service.
Copyright ©2012 Ping Identity Corporation. All rights reserved.1.
IoT, Big Data and Emerging Technologies
Privacy Communication Privacy Confidentiality Access Policies Systems Crypto Enforced Computing on Encrypted Data Searching and Reporting Fully Homomorphic.
1 MIKE MARCELLIN VP PRODUCT MARKETING. THE NEW NETWORK ENABLES CLOUD SERVICES, SECURITY, MOBILITY AND CONTENT DELIVERY NETWORKS.
Alert Logic Provides a Fully Managed Security and Compliance Solution Based in the Cloud, Powered by the Robust Microsoft Azure Platform MICROSOFT AZURE.
Jose Jimenez Telefónica I+D Future Network & Mobile Summit 2011 The vision of Future Internet in the FI PPP Core Platform project.
The FI-WARE Project – Base Platform for Future Service Infrastructures FI-WARE Stefano De Panfilis (Fi-WARE PCC Member) 4 th July 2011 FInES - Samos Summit.
Deconstructing API Security
Using Heat to Deploy and Manage Applications in OpenStack Trevor Roberts Jr, VMware, Inc. CNA1763 #CNA1763.
THE ERA OF LIVING SERVICES Athens, 25 November 2015.
Engineering Secure Software. Agenda  What is IoT?  Security implications of IoT  IoT Attack Surface Areas  IoT Testing Guidelines  Top IoT Vulnerabilities.
Internet of Things. IoT Novel paradigm – Rapidly gaining ground in the wireless scenario Basic idea – Pervasive presence around us a variety of things.
Internet of Things in Industries
Smart Syncing: Travelers Get News, Information, and Entertainment along with Free Internet via WiFi COMPANY PROFILE: SIENN With a team across Europe, SIENN.
DenyAll Delivering Next-Generation Application Security to the Microsoft Azure Platform to Secure Cloud-Based and Hybrid Application Deployments MICROSOFT.
ALL INFORMATION PRESENTED AS WELL AS ALL SESSIONS ARE MICROSOFT CONFIDENTIAL AND UNDER YOUR NON-DISCLOSURE AGREEMENT (NDA) AND\OR TECHNOLOGY PREVIEW.
© 2015 IBM Andy Thurai Program Director - API, IoT, Connected Cloud Bringing your ideas to.
MICROSOFT AZURE APP BUILDER PROFILE: RAVERUS LTD. Raverus is a customer-driven company engaged in providing software applications designed to improve and.
1 Enabling Smart Cities/Campuses to Serve the Internet of People Florence Hudson Senior Vice President & Chief Innovation Officer Internet2 TNC16 June.
Innovative ICT Building a Better Smart City. Agenda 1. Why focus on Smart City 2. What is a Smart City 3. References.
Manage Your Mesh Securing Public Cloud IoT APIs, and Building Private Mesh Trust Domains and Enclaves of Privacy to Integrate a Mesh of “Things” with Integrity.
Blue Coat Cloud Continuum
Clouding with Microsoft Azure
My T. Thai IoT Architecture My T. Thai
11/19/2017 9:41 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
IoT Security Part 2, The Malware
TV Broadcasting What to look for Architecture TV Broadcasting Solution
AuraPortal Cloud Helps Empower Organizations to Organize and Control Their Business Processes via Applications on the Microsoft Azure Cloud Platform MICROSOFT.
IoT Security Part 1, The Data
IoT Business Maturity Model 1. Operational efficiency
Munix Healthcare Customer Profiling, Frequency Analysis, Location Mapping, Movement Analysis, Web Classification, Time Analysis, and much more …. Internet.
Munix for Education Content Filter, Bandwidth Control, Location Mapping, Movement Analysis, User Self Management Portal, Time Analysis, and much more ….
Smart Building Solution
Enterprise Town Hall solution
“Internet of Things” – The new age drivers of Power Distribution Automation Speaker: Jayant Sinha Date of session: 2 Oct, 2015.
Gather Valuable Customer Data
Smart Building Solution
Wonderware Online Cost-Effective SaaS Solution Powered by the Microsoft Azure Cloud Platform Delivers Industrial Insights to Users and OEMs MICROSOFT AZURE.
BioCatch Fights Financial Fraud and Detects Online Threats via Behavioral Biometrics, All Powered by the Microsoft Azure Platform MICROSOFT AZURE TECH.
Cloud DX Connected Health Kits Depend on Azure to Deliver Cloud Storage and Securely Host Data for its Remote Patient Monitoring MICROSOFT AZURE APP BUILDER.
MyHealthDirect’s Enterprise Scheduling Platform, Based on Microsoft Azure, Improves the Patient Experience and Reduces Patient Readmissions MICROSOFT AZURE.
Microsoft Azure Platform Powers New Elements Constellation Software Suite to Deliver Invaluable Insights From Your Data for Marketing and Sales MICROSOFT.
Presented by: Veena talapaneni
11/17/2018 9:32 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
finding value in the digital maze
Auth0 Is Identity Made Simple for Developers, Built by Developers and Supported by the High Availability and Performance of Microsoft Azure MICROSOFT AZURE.
PowerHub on Microsoft Azure Enables Renewable Energy Professionals to Track and Manage Projects from a Centralized Platform Accessible Anywhere MICROSOFT.
Securing the Internet of Things: Key Insights and Best Practices Across the Industry Theresa Bui Revon IoT Cloud Strategy.
Carl Data Solutions Collects Utility Sensor and Meter Data to Provide Advanced Reporting, Alarming, and Analytics with Microsoft Azure MICROSOFT AZURE.
Securing the Threats of Tomorrow, Today.
Technical Capabilities
Trends and developments in eGOVwork – a resesearch perspective
Internet of Things Stay Relevant in Digital Era
4/9/ :42 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Presentation transcript:

The ERA of API in the World of IoT Jing Zhang-Lee November, 2015

API: The Nerve of Internet of Things Network Transportation Smart Home Healthcare Industrial SurveillanceWearable API Services

Taste of IoT APIs Connect devices and cloud/web-based services 3 Evrythng Digital identity & profile for physical object Make products smart, interactive & traceable Crypto-secure API tokens Fitbit Wireless wearable sensors Health tracking and trending OAuth2 for API authentication & user authorization Grove Streams Environmental monitoring sensor technology Data stream analytics RESTful API Zatar IaaS detects and connects devices to internet Enable social media functions on IoT devices REST and JSON-based API Xively PaaS integrates physical devices with business systems to gain business insights RESTful API Thing Speak Open data platform for IoT data collection, processing and analysis Open API

A Paradigm Shift: API-Centric Organization 4 Governance API Lifecycle Mgmt Cloud Integration Activity Analytics Developer Experience Multi- channel Delivery Secure Services SLA & Usage Throttling

Enabling API-Centric: Processes & Tools 5 Agility, Responsiveness & Convenience Secure Testing Integration Service Developer Portal API Gateway API Curate DevOp

Top 5 API Security Considerations 6 API design patterns Security reference architecture & design patterns Design Pattern Authentication & granular authorization Access policy governance Adaptive access control Access Control Input validation & output encoding Content filtering & exception handling Data sanitization Secure Coding Session identifiers protection Session lifecycle – instantiation, usage, timeout, etc. Secure token service Session Management API access request logging Access attempt monitoring for brute force & lateral attacks Analytics & actions Monitoring

API Security Model At a Glance 7 Integration Service API Orchestration Data transformation Access Management Authentication Authorization Access Policy Mgmt API Gateway API creation, virtualization & adminitration API firewall SLA & Usage monitoring Secure session management Monitoring Activity logging Monitoring alerts Intelligence Access intelligence Threat intelligence Adaptive Access Behavior analysis Risk profiling Services Mobile Client Web Client Developer