Light Reading

AT&T's Amoroso: Perimeter Security No Longer Enough

Ray Le Maistre
6/12/2014
50%
50%

The days of networks being adequately protected by "perimeter" security infrastructure are over, according to AT&T Chief Security Officer Ed Amoroso.

In a special video presentation recorded by AT&T Inc. (NYSE: T) for Light Reading's recent Mobile Network Security Strategies event in London, Amoroso provided a detailed insight into the different stages "we're going through as a community -- a mobility community, telecom community, and as users."

In the past, perimeter security that was built using devices such as firewalls and intrusion detection systems "sufficed," and served us well as a community, notes the AT&T expert, but in those days mobility wasn't an issue.

The mass use of mobile phones led to the concept of network-based security, though this was driven more initially by the exploits of "advanced hackers" breaching perimeters and "being able to muck around with things inside the enterprise." This resulted in security strategies that involved thwarting attacks before they reached the edge of the enterprise network.

Now we're in a new phase, says Amoroso, where mobility-enabled cloud is enabling user-defined services for individuals and companies, and "mobility is how we breathe life into that." And the key issue now is "how can we not be a tether" -- there is no point in constraining smartphone users and tethering them to the enterprise if perimeter security strategies are no longer working, he states.

AT&T's Ed Amoroso has a firm grasp on the security challenges faced by mobile network operators.
AT&T's Ed Amoroso has a firm grasp on the security challenges faced by mobile network operators.

As we enter the era of the mobility-enabled cloud, the technologies that will be important, and which will enable user freedom in a secure environment, are:

  • Encryption: "Why not encrypt everything?" asks Amoroso. That comes with the burden to get public key infrastructure and single key infrastructure correct, but "that's very difficult to do."

  • Containerized technology: Enabling secure authorized access whereby a "session" protects the integrity of an access (for example, an employee accessing an online paycheck stub) and then provides the ability to wipe data from a device once it has been accessed and used, so that evidence of the session no longer exists on the device.

  • Proxy: A mediation layer between the cloud and users, where certain types of things can be mediated. Amoroso certainly believes denial of service should be included in that proxy.

  • Run-time virtualization: This is probably more important than anything, believes Amoroso. As you virtualize an entity into the cloud -- an app, for example -- then you need to virtualize security in a virtual environment, not try to protect it with old-fashioned security devices. The idea that network operators will dynamically provision security along with the other objects that are being provisioned into the cloud is "really exciting," says the AT&T security chief.

    "Put all those things together and I fundamentally believe you can protect the mobility-enabled cloud environment better than we can protect information inside perimeters today," proclaims Amoroso. "That's a controversial statement… [but] -- there will be those that believe compliance is most important but we need to get everyone on board here -- perimeter is not working today, advanced persistence threats are making their way through, denial of service attacks render edge computing difficult to maintain."

    He adds that embedding security into the object's run-time systems is something "we hope that compliance officers and regulators will become comfortable with, because the whole idea here is to make computing safer. It's not about checklists -- it's about using the checklists to make computing support the different missions that are important to all of us. That's our vision for the future -- this futuristic prediction that's becoming real now, going from perimeter, through network-based, to a mobility-enabled cloud where we feel more comfortable pushing our information out into something more ubiquitous and more separated and hopefully protected by run-time virtualized security functionality."

    Amoroso goes on to discuss further mobile cloud security and analytics issues with his colleagues Gus De Los Reyes, executive director, security R&D at AT&T, who runs the security research group, and executive director of technology security Brian Rexroad. Find out what they had to say, and see the full presentation by Amoroso by watching the video, AT&T's Ed Amoroso on Mobile Security.

    You can also find out what else happened at the Mobile Network Security Strategies event in London by checking out our dedicated industry show site.

    — Ray Le Maistre, Circle me on Google+ Follow me on TwitterVisit my LinkedIn profile, Editor-in-Chief, Light Reading

    (0)  | 
    Comment  | 
    Print  | 
  • Newest First  |  Oldest First  |  Threaded View
    Flash Poll
    From The Founder
    Networks of the future will rely on "white box" switches and servers rather than proprietary hardware and that's going to alter the shape of the communications industry. Who says so? John Chambers.
    LRTV Custom TV
    The Benefits of HyperScale Clouds for NFV

    3|27|15   |   01:50   |   (0) comments


    Hyperscale cloud has been developed by the Internet giants to support the creation and delivery of software-based services at blistering speeds, and at the lowest possible cost. The original ETSI NFV vision was to adopt hyperscale cloud architecture and practices. This vision has become somewhat obscured along the way, due to misunderstandings about the hyperscale ...
    LRTV Huawei Video Resource Center
    eLTE Rapid Meets the Need for Speed

    3|26|15   |   4:45   |   (0) comments


    Designed especially for emergency and dedicated ad hoc local mobile communications coverage, Huawei's eLTE Rapid solution can deliver trunked voice, video and data coverage for multiple users over a 6km range and be set up in just 15 minutes, explains Huawei's Norman Frisch.
    LRTV Huawei Video Resource Center
    On Videos: Challenges & Opportunities

    3|26|15   |   5:56   |   (0) comments


    Most everything is now connected. And along with 4K and 4G technologies, everyone could be creating and broadcasting video contents. Users are expecting better video experience with any screen, anywhere and anytime. Operators will meet new challenges, but also see some big opportunities.
    LRTV Custom TV
    JDSU: Delivering Dynamic Networks for a Personalized Experience

    3|26|15   |   5:59   |   (0) comments


    Light Reading speaks to JDSU at Mobile World Congress 2015 about new solutions in the areas of HetNets, VoLTE, backhaul, virtualization, big data analytics, and real-time intelligence.
    LRTV Custom TV
    Smarter Service Chaining & New Ways to Benefit From Qosmos Technology

    3|25|15   |   03:11   |   (0) comments


    David Le Goff, director of strategic and product marketing at Qosmos, explains how the company has added application awareness to subscriber information to make service chaining more efficient and reduce costs for networking and infrastructure. In addition, Qosmos technology, which has been delivered as C libraries, is now also available as a virtual machine, ...
    Between the CEOs
    Qosmos CEO: The Changing Face of DPI

    3|24|15   |   13:53   |   (0) comments


    LR CEO and Founder Steve Saunders sits down with the head of Qosmos to talk about the changing state of the art in deep packet inspection technology, including its role in SDN and NFV architectures. Also, how the comms market is becoming more like the automotive industry.
    LRTV Huawei Video Resource Center
    FC Schalke Scores With Its Agile Stadium

    3|24|15   |   6:23   |   (0) comments


    Top German soccer club FC Schalke 04 has deployed a new, agile WiFi network from Huawei in its Veltins-Arena stadium and is reaping the benefits in terms of customer satisfaction and business opportunities, explains marketing chief Alexander Jobst.
    LRTV Huawei Video Resource Center
    Huawei’s Insights on Mobile Video

    3|24|15   |   7:51   |   (0) comments


    More people than ever are now watching videos on smartphones. Seventy percent of mobile traffic will be video traffic until 2018. In this video, Huawei's exports give their insights on mobile video in terms of business model, network planning and 4G network construction.
    LRTV Documentaries
    The Rise of Industry 4.0

    3|24|15   |   02:26   |   (9) comments


    Are you ready for the fourth industrial revolution? It's a big deal for influential operators such as Deutsche Telekom.
    LRTV Huawei Video Resource Center
    Getting Connected With eLTE

    3|23|15   |   06:04   |   (0) comments


    Trunked radio communications have entered the 4G LTE world, and with Huawei's eLTE solution, can now deliver a full range of data and video services as well as push-to-talk voice, explains Huawei's Norman Frisch.
    LRTV Huawei Video Resource Center
    Funkwerk’s on Track With Huawei

    3|19|15   |   3:23   |   (0) comments


    GSM-R technology specialist Funkwerk and Huawei have forged a partnership that is benefiting both parties, notes Funkwerk's Gottfried Winter.
    LRTV Documentaries
    How EANTC Tested Cisco's Virtualization Solutions

    3|18|15   |   5:49   |   (0) comments


    Carsten Rossenhövel, managing director of independent test lab EANTC, tells Light Reading founder and CEO Steve Saunders about the innovative approach his team had to take when validating Cisco's service provider virtualization and cloud solutions.
    Upcoming Live Events
    April 14, 2015, The Westin Times Square, New York City, NY
    May 5, 2015, Hyatt McCormick Place, Chicago, IL
    May 6, 2015, Georgia World Congress, Atlanta, GA
    May 12, 2015, Grand Hyatt, Denver, CO
    May 13-14, 2015, The Westin Peachtree, Atlanta, GA
    June 8, 2015, Chicago, IL
    June 9-10, 2015, Chicago, IL
    June 9, 2015, Chicago, IL
    June 10, 2015, Chicago, IL
    September 29-30, 2015, The Westin Grand Müchen, Munich, Germany
    All Upcoming Live Events
    Infographics
    Hot Topics
    The Rise of Industry 4.0
    Ray Le Maistre, Editor-in-chief, 3/24/2015
    Google Hires Wall Street's Most Influential Woman as CFO
    Dan Jones, Mobile Editor, 3/24/2015
    AT&T Woos SMBs With Small-Scale WiFi
    Sarah Thomas, Editorial Operations Director, 3/26/2015
    Net Neutrality Suits: Only The Beginning?
    Alan Breznick, Cable/Video Practice Leader, 3/24/2015
    Average US Broadband Speeds No Great Shakes
    Mari Silbey, Independent Technology Editor, 3/25/2015
    Like Us on Facebook
    Twitter Feed
    Webinar Archive
    BETWEEN THE CEOs - Executive Interviews
    LR CEO and Founder Steve Saunders sits down with the head of Qosmos to talk about the changing state of the art in deep packet inspection technology, including its role in SDN and NFV architectures.
    Chattanooga’s EPB publicly owned utility comms company has become a poster child for how to enable a local economy using next-gen networking technology. Steve Saunders, Founder of Light Reading, sits down with Harold DePriest, president and CEO of EPB, to learn how EPB is bringing big time tech to small town America.
    Cats with Phones
    Interspecies Phone Love Click Here
    "No, you hang up."
    "No, YOU hang up."
    Latest Comment