SAFE Executive Overview

13
© 2009 Cisco Systems, Inc. All rights reserved. Cisco Confidential SAFE 01222008 1 Cisco SAFE Overview: Validated Next-Generation Security Architecture  

Transcript of SAFE Executive Overview

Page 1: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 1/13

© 2009 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSAFE 01222008 1

Cisco SAFE Overview:Validated Next-GenerationSecurity Architecture 

Page 2: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 2/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 2

Today’s Complex Security ThreatsRequire Systemwide Collaboration 

  Sophisticated website attacks

  Increasing botnet sophistication and effectiveness

  Growing cyber espionage

  Emerging mobile phone threats

  Insider attacks

  Advanced identity theft

 Increasingly malicious spyware

  Web application security exploits

  Sophisticated social engineering

  Supply-chain attacks infecting consumer devices

Top-Ten Cyber Security Menaces

Source: SANS Institute

Page 3: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 3/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 3

The Greatest Security Threats

  New technologies unprotected

  Web 2.0, virtualization, cloud

computing, etc.

  Lack of consistency andcollaboration across products

  Accidental architecture

  Fear-based security decisions

  Product- or feature-of-the-momentpurchases

  Siloed products and designs

  Poor security policy, control,management, and visibility

Page 4: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 4/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 4

 Security Control Framework

Basis for all Security Designs

Focus on Visibility and Control

Combines Solutions and Services

 Benefits

Combines security and network

Fully tested and validated

Speeds implementation

Modular design

Security Reference Architecture

Free Technical Design and Implementation Guide

Cisco SAFE

Page 5: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 5/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 5

Cisco SAFE Objectives

Cisco® SAFE addresses threats to critical business goals

and objectives

Business Goals and

Objectives

Potential Threats

Protecting revenue sources Disruption of business,

resulting in loss of revenue

Meeting customer 

requirements

Loss of customer privacy,

security, and service levels

Safeguarding corporateidentity and brands

Negative effect on marketingcampaigns and brand

reputation

Compliance with regulations

and standards

Fines, loss of business, and

legal action

Page 6: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 6/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 6

Cisco Security Control Framework

Cisco® SAFE designs and strategies are based on Cisco’s Security Control

Framework for consistent policy deployment and enforcement across the network

Business Relevance Security Policies Security Principles Security Actions

Business Goals

and Objectives

Threats to Goals

and Objectives

Threat and Risk

Assessment

Security

Operations

Visibility

Control

Identify

Monitor 

Correlate

Enforce

Isolate

Harden

Security

Policies

Page 7: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 7/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 7

SAFE Security Architecture Strategy

Data

Center Campus

WAN

EdgeBranch

Internet

Edge

Ecomm-

erce

Cisco

Virtual

Office

Virtual

User 

Partner 

Sites

Services

Policy and

DeviceManagement

SecuritySolutions PCI

 DLP

 ThreatControl

NetworkDevices Routers

 Servers

 Switches

Identify

Monitor 

Correlate

Harden

Isolate

Enforce

Visibility Control

Secured Mobility, Unified Communications, Network Virtualization

Network Foundation Protection

Security Devices VPNs

 Monitoring

 Admission Control

 Firewalls

 Email and Web Security

 Intrusion Prevention

Page 8: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 8/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 8

Design Principles and Benefits

  Defense in depth

  Systemwide intelligence and

collaboration  Service availability and

resiliency

  Modularity

  Facilitation of operations

  Regulatory compliance

Page 9: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 9/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 9

SAFE Security Architecture Modules

Partner 

WAN

WAN Edge

Internet Edge

Internet

E-Commerce

Core

Campus

Data Center 

Management

Teleworker 

Branch

Extranet

SensorBase

Page 10: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 10/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 10

Cisco SAFE Next-Generation LifecycleServices

Strategy and

assessment

Deployment andmigration

Remote management

Security intelligence

Security optimization

Page 11: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 11/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 11

Cisco SAFE Benefits

  Step-by-step design and implementationguidance

  Fully tested and validated

  Solutions-based approach

  Layered security using best practices

  Threat visibility and coordinatedresponse

  Assurance of business-critical serviceavailability

  Modularity to support strategicimprovement

  Compliance with regulatory requirements

Page 12: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 12/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 12

SAFE Resources

  Cisco SAFE:

http://www.cisco.com/go/safe 

  Cisco Design Zone:

http://www.cisco.com/go/cvd 

  Cisco Security Lifecycle Services:

http://www.cisco.com/go/services/security 

  Cisco’s Security Products:

http://www.cisco.com/go/security 

Page 13: SAFE Executive Overview

8/3/2019 SAFE Executive Overview

http://slidepdf.com/reader/full/safe-executive-overview 13/13

© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialSEVT Dec 2008 13