Basic System Setup in Public Cloud
In this material we address basics about setting up an ICT System to be run in Public Cloud, where the design includes basic Technical Information Security elements to it. We review the topic at hand by examining an imaginary Web Application that has a traditional 3-Tier Architecture (Presentation, Logic, Data). Web Application has IAM, DNS, TLS, Compute (infrastructure, OS, applications), Network, Storage, Database and Monitoring architectural aspects to it. We have architected this system to be deployed on AWS or Azure cloud, but we could just as well achieve similar setup for OnPremise deployment by using more traditional hardware and software components, but without the Public Cloud benefits. As we progress through the material we can remind ourselves what kind of System Setup related work usually needs to be done and what kind of features are used to achieve basic Technical Information Security in the Public Cloud in scope of our example Web Application.
3-Tier Web Application architecture can be observed from the helpful illustration below. It is recommended for the learners to make their own illustration, mind map or diagram about these topics however, because items are addressed briefly and do require more extensive annotation or separate notes to address properly. System Setup and Technical Infosec in Cloud is achieved by applying General ICT Skills on Core Public Cloud Services in IAM, DNS, CDN, TLS, Compute, Network, Storage, Database and Monitoring areas as well as leaning on some notable Specialized Security Adjacent Cloud Services in Account, Configuration Management, Network, Data Discovery and Secrets Management areas.
System Setup in Cloud
Text
Identity and Access Management
Text
Domain Name Service
Text
Content Delivery Network
Text
Transport Layer Security
Text
Compute
Text
Network
Text
Storage
Text
Database
Text
Monitoring
Text
Governance and Compliance
Text
Configuration Management
Text
Billing and Cost Management
Text
Security
Text