21
Confidential ©2014 Risk Management Solutions, Inc. RMS Cloud Paris Georgallis SVP Platform Operations Status: Strategy & Deployment

"The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

  • Upload
    rms

  • View
    711

  • Download
    0

Embed Size (px)

DESCRIPTION

Paris Georgallis of RMS speaks about the RMS cloud strategy and deployment, ahead of the launch of RMS(one). This was presented to the attendees of the RAA Cat Modeling conference in Orlando, 2014.

Citation preview

Page 1: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Confidential ©2014 Risk Management Solutions, Inc.

RMS Cloud

Paris Georgallis SVP Platform Operations

Status: Strategy & Deployment

Page 2: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Confidential ©2014 Risk Management Solutions, Inc.

TOPICS

What  is  the  RMS(cloud)?    Our  cloud  strategy    How  did  we  build  it?    Our  guiding  principles  

Page 3: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Our  Guiding  Principles  for  the  RMS(cloud)  

Predictable Performance Highly Available Elastic

Control

Secure  

Page 4: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Buy/Rent what you can. Build what you must.

Leverage allies and partners.

How  We  Built  The  RMS  Cloud  

Talented  Human  Capital   Hire  

Hardened  Tier  III  Data  Centers   Rent  

ElasDc  Compute  Capacity   Rent  

Enterprise  Grade  infrastructure components with high SLA   Buy  

Wide Area Networking, Add On Services, Support   Buy  

Specialized  Purpose-­‐built  Architecture   Build  

24x365  InformaDon  Security  &  Network  OperaDons  Center   Build  

Page 5: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Tier III Hardened  Datacenters  

DR & BC Iceland

Production Canada

Production England

Page 6: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Cloud  Deployment  Under  RMS  Management  

Page 7: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Predictable Performance

Guiding  Principles    

Page 8: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

High Performance

Fast Storage Area Network

portfolio

GUIDING PRINCIPLES

Enterprise Grade

Page 9: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Guiding  Principles    

Highly Available

Ø  Robust  enterprise  grade  Infrastructure  Deployed  

Ø  EMC,  CISCO,  IBM,  Palo  Alto  Networks,  VMware  

Ø  AcDve/AcDve,  N+N,  N+1  architecture  

Ø  Local  Backup  

Ø  Local  Snapshots  

Ø  Dedicated  D/R  Site  

Ø  AcDve  IPS/IDS  Systems  

Ø  AlerDng/Monitoring  

Ø  OperaDonal  Intelligence  gathering  

Page 10: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

High Availability GUIDING PRINCIPLES

•  Robust  enterprise  grade  infrastructure  

•  AcDve/AcDve,  N+N,  N+1  architecture  

•  Fast  vendor  SLAs  

•  Local  Backup  

•  Dedicated  DR  site  for  BC  

•  AcDve  IDPS  

•  Monitoring  &  AlerDng  

•  OperaDonal  intelligence  

Page 11: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Guiding  Principles    

Elastic

Page 12: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

ELASTICITY

RMS Cloud Security

Perimeter

Guiding  Principles     Elastic

Page 13: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Elastic Capacity

Base Compute Elastic Compute

RMS Cloud Security Perimeter

GUIDING PRINCIPLES

Elastic

Page 14: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Guiding  Principles     Secure  Ensuring Data Security and Privacy Compliance

Restricted personnel access §  Biometric multi-factor authentication for physical access control

All persistent storage within a dedicated security perimeter

Isolation of client data §  Clients never have direct access to the data warehouse §  Private schemas and collections ensure privacy

Data security §  FIPS 140-2 compliant encryption at rest §  HTTPs/SSL/TLS encryption during transit §  On-site destruction (shredding) of failed storage devices

Continuous backups & Datacenter Disaster Recovery

ü  Clients own their data ü  Client data is private &

secure ü  Physical storage is owned,

managed, and secured by RMS24x7 monitoring & analytics

ü  Periodic penetration and vulnerability assessments

ü  Periodic audits; internal and external third party

ü  Executive Level Governance/Security Council

Page 15: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

ü  Current Industry workflow

& challenges

Ø  Data  transfers  data  by  ?p/  email  /  USB  drives  -­‐    Ø  the  "weakest  link"  in  a  chain  is  your  lowest  standard    

Ø  You  have  no  idea  where  your  data  is  at  any  point  in  Ime  today  

Ø  Data  o?en  not  be  wiped  a?er  analysis,  previous  years  versions  may  sIll  be  around  in  a  data  center?  

The  future  you  may  have  to  be  ISO  compliant  before  receiving  a  submission  from  your  clients!!  

Key  Security  Points   Secure  

ü  Have not yet identified any client today with an ISO Cert

Page 16: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

GUIDING PRINCIPLES

Security

Network Security

Encryption

Identity and Access

Management

System Hardening

Business Continuity

Hardened Tier III Data

Centers

Stringent Change

Management

Auditable Logging

Certifications & Compliance

Comprehensive &

Multi-layered

Page 17: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Guiding  Principles    

ü  Rapid Deployment of Virtual Machines

ü  Rapid Patch Deployment ü  Automated Provisioning ü  Automated Elastic

Compute

Control

Page 18: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Control

Server,  ApplicaDon  &  Network  Monitoring,  Performance  and  AlerDng  Pla]orm  

Apica -

3rd  party  system  for  syntheDc  user  tesDng  of  availability  and  performance  

RMS  Cloud  Team  53  and  growing  

Dedicated  NOC/SOC  24x365  

Page 19: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Managed  Servers,  Network  &  Physical  Managed  O/S  Support  Maybe  managed  ApplicaDon(s)      

A  cloud-­‐delivered  enterprise  wide  risk  management  pla]orm  delivered  as  a  So^ware  as  Service    

We  have  been  hosDng  RL  on  the  cloud  for  clients  for  the  last  4  years  Similar  challenges  exist  as  on-­‐premise:    

Ø  No  3rd    party  models  or  3rd  party  applicaDons  Ø  No  elasDcity  &  No  data  secure  data  exchange  

Page 20: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Their  cloud  guy  from  their  best  performing  division  

The  Forbes  Global  2000  is  an  annual  ranking  of  the  top  2000  public  companies  in  the  world  by  Forbes  magazine,  based  on  a  mix  of  four  metrics:  sales,  profit,  assets  

and  market  value.  

Page 21: "The RMS Cloud" - Presented at the RAA's Cat Modeling Conference 2014

Our  Guiding  Principles  for  the  RMS(cloud)  -­‐  Review  

Predictable Performance Highly Available Elastic

Control

Secure