Mirantis Container Cloud 2.14 Enables More Secure Hybrid Clouds with Private Networking on Equinix Metal

This week we are pleased to announce the release of Mirantis Container Cloud 2.14. Container Cloud enables you to easily create multiple Kubernetes, Swarm, and even Mirantis OpenStack clusters, and with this new version, we are pleased to introduce numerous new features for enterprise users, including: Private networking for Bare Metal clusters Additional operating system … Continued
Quelle: Mirantis

How MEDITECH adds advanced security to its cloud-based healthcare solutions with Cloud IDS

MEDITECH develops electronic health record (EHR) systems solutions that enhance the interactions of physicians and clinicians with patients. The company empowers healthcare organizations large and small to deliver secure, cost-effective patient care. MEDITECH’s intuitive and mobile offerings include software for health information management, patient care and patient safety, emergency department management, oncology, genomics, population health, laboratories, blood banks, revenue cycle management, home health, virtual care, and many other areas of healthcare.Proficiency with cloud technology is a competitive advantage and major selling point for MEDITECH. On its website the company describes its MEDITECH Cloud Platform as a way to “[g]ive your clinicians and patients a better, more mobile healthcare experience while ensuring your organization’s long-term sustainability” and “the latest step in our journey to deliver innovative, cost-effective healthcare technology.”Cloud IDS: Built on industry-leading network security technologyGoogle Cloud IDS is built with Palo Alto Networks’ industry-leading threat detection technologies, so it was a natural choice for MEDITECH.Tom Moriarty, Manager, Information Security at MEDITECH says: “Keeping our environment secure is our primary reason for deploying Cloud IDS. In healthcare, infrastructure and patient data security are absolutely crucial.” Fast and easy to deployTom and his team were extremely impressed with how quickly they were able to set up Cloud IDS. “We deployed it in a couple of days,” he reports. “It should take one person less than a day of steady work.”Because Cloud IDS is already integrated with the components of Google Cloud, implementation required very little configuration work and no changes to MEDITECH’s network architecture. Since the company had experience with Palo Alto Networks’ intrusion detection software, they were confident about the detections, and already knew how to interpret them. Because of the architecture, they didn’t need to write any rules or come up with their own detections. Industry-leading, third-party validated threat detection rules were already included, and updated daily. And of course, the security team is happy to be working with a cloud-hosted product that doesn’t require installing and managing any local hardware or software, or managing load balancing, scaling, performance monitoring, and licensing.Out of the box integration with Google ChronicleGoogle Chronicle is an advanced security analytics tool that enables security teams to identify and respond to fast-moving attacks. It can store and analyze petabytes of security telemetry. By correlating threat indicators inside an organization’s network with intelligence about global threats in the wild, it supports threat detection, threat hunting, malware investigation, security forensics, and other key activities of cybersecurity groups.Tom’s team was very pleased that the new threat detection solution works out of the box with Chronicle. He says: “We are using Google Chronicle as our security analytics tool for our corporate environment. By integrating Cloud IDS with Chronicle, we are able to analyze threats surfaced by Cloud IDS.” Helping with complianceMEDITECH works to meet or exceed the requirements of industry standards and security frameworks. Google Security’s technology plays an important role in achieving this objective, according to Tom: “Cloud IDS helps us address our compliance requirements and best practices.”ConclusionMEDITECH business strategy depends on maintaining a position at the forefront of cloud technology. Strong security is a key element of that position. Cloud IDS provides the company with industry-leading threat detection technology, simplified operations, and integration with key security workflow tools like Chronicle. It also supports the organization’s compliance requirements. That will allow MEDITECH to continue to deliver innovative, cost-effective, and secure technology to its healthcare customers and their patients.Related ArticleCloud IDS for network-based threat detection is now generally availableGoogle Cloud IDS for network-based threat detection is now generally available.Read Article
Quelle: Google Cloud Platform

Cloud IDS for network-based threat detection is now generally available

As more and more applications move to the cloud, cloud network security teams have to keep them secure against an ever-evolving threat landscape. Shielding applications against network threats is also one of the most important criteria for regulatory compliance. For example, effective intrusion detection is a requirement of the Payment Card Industry Data Security Standard – PCI DSS 3.2.1. To address these challenges, many cloud network security teams build their own complex network threat detection solutions based on open source or third-party IDS components. These bespoke solutions can be difficult and costly to operate, and they often lack the scalability that is required to protect dynamic cloud applications. Earlier this year, we announced Cloud IDS, a new cloud-native network security offering that delivers on our vision of Invisible Security, where key security capabilities are continuously engineered into our trusted cloud platform. Today we’re excited to announce the general availability of Cloud IDS. This core network security offering helps detect network-based threats and helps organizations meet compliance standards that call for the use of an intrusion detection system. Cloud IDS is built with Palo Alto Networks’ industry-leading threat detection technologies,  providing high levels of security efficacy that enable you to detect malicious activity with few false positives. The general availability release includes these enhancements:Service availability in all regionsAuto-scaling available in all regionsDetection signatures automatically updated dailySupport for customers’ HIPAA compliance requirements (under the Google Cloud HIPAA Business Associate Agreement)ISO27001 certification (and in the audit process to support customers’ PCI-DSS compliance requirements by year end)Integration with Chronicle, Google’s security analytics platform, to help organizations investigate threats surfaced by Cloud IDS.Managed network threat detection with full traffic visibilityCloud IDS delivers cloud-native, managed, network-based threat detection. It features simple setup and deployment, and gives customers visibility into traffic entering their cloud environment (north-south traffic) and into traffic between workloads (east-west traffic). Cloud IDS empowers security teams to focus their resources on high priority issues instead of designing and operating complex network threat detection solutions.AvayaAvaya is a leader in cloud communications and collaboration solutions. Cloud IDS was enabled for Avaya’s Google Cloud environment to address network threat detection requirements. John Akerboom, Sr. Director for Architecture & Experience Platforms at Avaya shared his experience with Cloud IDS:”It was easy to setup: a couple clicks, a few settings, and a few minutes later it was up and running,” explained Akerboom. “We had a scanner running, and some pen testing going on. We went into the Google Cloud IDS UI and saw all those things in progress.”LyticsGraham Forest, Principal Operations Engineer at Lytics, a cloud-native, customer data platform (CDP) vendor headquartered in Oregon, summarized his take on Cloud IDS this way:”It’s built-in to our platform on Google Cloud; it’s just a toggle, with a giant team of Google SREs behind it. The implementation cost is extremely low; reliability and architecture complexity are not impacted, and maintenance cost is low.” Forest chose Cloud IDS for these main reasons: “Our customers require compliance validation, like SOC2, and our larger financial customers run their own audits on our service. Our initial interest was to fulfill those compliance requirements. But we also want indication when attackers are attempting to breach our network, and we want to know immediately. We get both with this solution!”MEDITECHMedical Information Technology, Inc. (MEDITECH) empowers providers and patients around the world with its Expanse EHR (Electronic Health Record), setting new standards for electronic medical record usability, efficiency, and provider and patient satisfaction. The company’s cloud-native solutions are built on Google Cloud, representing the latest step in MEDITECH’s journey to deliver innovative, cost-effective healthcare technology that is also safe and secure.”In healthcare, infrastructure and patient data security are absolutely crucial. Keeping our environment secure is our primary reason for deploying Cloud IDS,” said Tom Moriarty, Manager, Information Security, MEDITECH. “The ease of setup and its cloud-native design add value, by protecting access to high quality healthcare for a diverse range of geographic settings and healthcare needs.” MEDITECH also has previous experience with Cloud IDS’ threat detection from Palo Alto Networks. “We are using Palo Alto Networks IDS and IPS in our on-premises network, and we look forward to leveraging the same advantages in our cloud hosted environment,” said Moriarty. MEDITECH’s confidence in these offerings stems from deploying them in-house. “We are using Google Chronicle as our security analytics tool for our corporate environment. By integrating Cloud IDS with Chronicle, we are able to analyze threats surfaced by Cloud IDS. This also helps us address our compliance requirements,” Moriarty concluded. Read more about MEDITECH’s use of Cloud IDS in their detailed case study.Detect at scale, investigate, and respond to threats in all regionsCloud IDS is now available in all regions. It provides protection against malware, virus and spyware, command and control (C2) attacks, and vulnerabilities such as buffer overflow and illegal code execution attacks. Autoscaling capability dynamically adjusts Cloud IDS as needed when your traffic throughput changes so that you can automatically keep up with your scale needs. Threat signature updates are applied daily so you can stay ahead of the new threat variants. You can now use Chronicle to investigate the threats surfaced in Cloud IDS. With Chronicle’s integration, you can store and analyze Cloud IDS threat logs along with all your security telemetry data in one place so that you can effectively investigate and respond to threats at scale.Getting startedYou can get started with Cloud IDS through the GCP console. Watch a Getting started with Cloud IDS video that walks you through the high-level architecture and a product demo.Cloud IDS pricing is based on a per-hour charge for the Cloud IDS endpoint and the amount of traffic that is inspected. You can learn more about Cloud IDS and express interest in a trial using the Cloud IDS webpage. Related ArticleHow MEDITECH adds advanced security to its cloud-based healthcare solutions with Cloud IDSMEDITECH adds advanced security to its cloud-based healthcare solutions with Google Cloud IDS.Read Article
Quelle: Google Cloud Platform

Docker Verified Publisher: Trusted Sources, Trusted Content

Six months since its launch at DockerCon, the Docker Verified Publisher program delivers on its promise to developers and partners alike

The Docker Verified Publisher program means trusted content and trusted sources for the millions of Docker users. At the May 2021 DockerCon, Docker announced its Secure Software Supply Chain initiative, highlighting Docker Verified Publisher as a key component of that trusted content. 

The trusted images in Docker Hub help development teams build secure software supply chains, minimizing exposure to malicious content early in the process to save time and money later. Docker allows developers to quickly and confidently discover and use images in their applications from known, trusted sources. 

Docker Verified Publisher partners join the trusted content Docker provides, along with Docker Official Images and the Docker Open Source program. In short, the Docker Verified Publisher program promises developers that the images they use are from the trusted software publisher. And a Docker Hub search shows trusted sources first.

Trusted images and software security are at the forefront of what the new Docker Business subscription tier offers, too. These trusted images can be allowed into large organizations – while preventing unverified, untrusted community images via the Docker Business Image Management features in the Docker Hub organization control plane. And of course, those trusted images include Docker Verified Publisher partners.

Dozens of software publishers have joined the Docker Verified Publisher program already, and more are poised to join before Docker’s new Docker Desktop license policies take effect (31 January 2022).

Docker Verified Publisher partners enjoy benefits such as:

Removal of rate limiting on all repos in the DVP partners’ namespace, providing a premium user experience: all Docker users, whether they have a Docker subscription or not, are be able to pull the partner’s images as much as they wantDVP badging on partner namespace and repos, indicating the trusted content and verified source (part of Docker’s Secure Software Supply Chain initiative)Priority search ranking in Docker Hub Co-marketing opportunities including social shares, posts on the popular Docker blog, the exclusive right to sponsor DockerCon 2022,etc.Inclusion as one of two trusted sources in the image access controls included in the Docker Business subscription tier, bringing essential security and management capabilities to larger Docker customersRegular reporting to track key partner repo metrics such as pull requests, unique IP addresses, and moreAnd more benefits added regularly

To learn more and join the Docker Verified Publisher program, just email partners@docker.com or visit this page to contact us.
The post Docker Verified Publisher: Trusted Sources, Trusted Content appeared first on Docker Blog.
Quelle: https://blog.docker.com/feed/

AWS SDK für Kotlin (Entwickler-Vorversion)

Wir freuen uns, Ihnen mitteilen zu können, dass sich das AWS SDK für Kotlin jetzt in der Entwicklervorversion befindet. Das AWS SDK for Kotlin ermöglicht Entwicklern die Interaktion mit AWS-Services über das idiomatische Kotlin, einschließlich nativem Coroutine-Support für die gleichzeitige Nutzung.
Quelle: aws.amazon.com

Amazon Polly stellt Takumi vor, eine neue neurale japanische Männerstimme

Amazon Polly ist ein Service, der Text in natürliche Sprache konvertiert. Wir freuen uns, heute die allgemeine Verfügbarkeit der neuralen Version von Takumi, der japanischen männlichen Text-zu-Sprache (TTS)-Stimme von Polly, bekannt geben zu können. Das neurale TTS von Takumi klingt natürlich, freundlich und flüssig. Ab sofort können Sie aus drei verschiedenen japanischen TTS-Stimmen wählen: Mizuki Standard, Takumi Standard und Takumi Neural.
Quelle: aws.amazon.com

Neue Nachhaltigkeitssäule für AWS Well-Architected Framework

Das AWS Well-Architected Framework hilft AWS-Kunden seit 2015, ihre Cloud-Workloads zu verbessern. Das Framework besteht aus Designprinzipien, Fragen und bewährten Methoden über mehrere Säulen: operative Höchstleistung, Sicherheit, Zuverlässigkeit, Leistungseffizienz und Kostenoptimierung. Heute führen wir eine neue Nachhaltigkeitssäule für AWS Well-Architected ein, die Organisationen dabei hilft, Workloads mithilfe von umweltbezogenen bewährten Methoden für Cloud Computing zu lernen, zu messen und zu verbessern.
Quelle: aws.amazon.com

Ankündigung von AWS Amplify Studio

AWS Amplify kündigt AWS Amplify Studio an, eine visuelle Entwicklungsumgebung, die Frontend-Entwicklern neue Funktionen (öffentliche Vorversion) bietet, um die UI-Entwicklung mit minimalem Programmieraufwand zu beschleunigen und gleichzeitig die leistungsstarken Backend-Konfigurations- und Verwaltungsfunktionen von Amplify zu integrieren. Amplify Studio übersetzt in Figma erstellte Designs automatisch in für Menschen lesbaren React-UI-Komponentencode. In Amplify Studio können Entwickler die UI-Komponenten visuell mit App-Backend-Daten verbinden. Für die Konfiguration und Verwaltung von Backends werden die vorhandenen Funktionen der Amplify-Administrator-UI künftig Teil von Amplify Studio sein und eine einheitliche Oberfläche bieten, mit der Entwickler Full-Stack-Apps schneller erstellen können. Weitere Informationen.
Quelle: aws.amazon.com