The Journey to Oracle Cloud: Episode 05 - Security and how to do it right

We have reached our fifth stop on the The Journey to Oracle Cloud. In this episode, Rafael is meeting Firdous Bhat and Francisco Arturo Viveros to talk about two of the most important areas within cloud security - the Shared Responsibility Model and Zero-Trust Architecture.

Who is Firdous and Arturo?

Firdous and Arturo are two of our Oracle Cloud database specialists. They have worked as architects with Oracle for several years and are both experts on Oracle Cloud security.

Why is security important in Oracle Cloud?

Security should be an early focus in any cloud migration project in order to build a foundation that will simplify and overcome security breaches. To do it right, SYSCO recommends that you fully understand the shared responsibility model and build a zero-trust architecture:

Shared responsibility model

With "The shared responsibility model", we mean that you cannot just outsource the whole aspect of security to the cloud provider. Firdous and Arturo use an analogy: While you as a tenant can expect your landlord to take care of the security of an house, such as ensuring door locks and burglar-proof windows, security in the house is your responsibility. The security of the house comes short if you leave the door open or invite people you don't know into your office or apartment. Security in the cloud is the responsibility of the customer.

Zero-trust architecture

Since security in the cloud is your responsibility as a customer, what is the best way to fulfil this responsibility? Our recommendation is to implement a so-called zero-trust architecture.  

A zero-trust architecture means that no one is trusted by default – no one gets any privileges, even if it’s people that are trusted. Any given privileges are very specific, only given for a short period of time and needs to be renewed.

Examples of cloud security challenges you'll run into that calls for a zero-trust architecture are: 

  • Multi-tenancies
  • Identity propagation
  • Multiple providers

To conclude, SYSCO recommends that the shared responsibility model and the zero trust architecture is on everyone's cloud security agenda. 

Watch the video on top of this article to learn more about the shared responsibility model and zero-trust architecture.

Journey resource page

Head over to our Journey to Oracle Cloud resource page, where we collect all episodes, and provide other useful resources related to Oracle Cloud migrations.

Coming up next:

Episode 06: What’s important to know about Latency?

  • Estimated launch of episode: Week 5

Take advantage of our know-how and follow The Journey to Oracle Cloud which over the coming months will provide a transparent picture of how we as a partner help you achieve the full potential, and what you need to be aware of:

FOLLOW THE JOURNEY


Do you need more information about Oracle Cloud migrations?

In addition to checking out our The Journey to Oracle Cloud resource page, where we collect all episodes, and provide other useful resources related to Oracle Cloud migrations, you should also read our guide: 3 things to keep in mind when moving Oracle to the Cloud


Contact our local "go-to guys":

 

SYSCO Sweden:
CONTACT RAFAEL

SYSCO Denmark: 
CONTACT CHRISTIAN

SYSCO Norway:
CONTACT FRANK