Secure Content Delivery Network



Similar documents
Secure Content Delivery Network

THE AKAMAI SERVICE CONSULTING PACKAGE 10FOR10 IMPROVES YOUR WEB PERFORMANCE METRIC(S) BY AT LEAST 10%! AKAMAI 10For10 AKAMAI INDUSTRY BROCHURE

AKAMAI WHITE PAPER. The Challenges of Connecting Globally in the Pharmaceutical Industry

kamai Technologies Inc. Commonly Accepted Security Practices and Recommendations (CASPR)

AKAMAI SOLUTION BROCHURE CLOUD SECURITY SOLUTIONS FAST RELIABLE SECURE.

[state of the internet] / SEO Attacks. Threat Advisory: Continuous Uptick in SEO Attacks

Making the Internet Business-Ready

AKAMAI WHITE PAPER. Delivering Dynamic Web Content in Cloud Computing Applications: HTTP resource download performance modelling

Payment Card Industry (PCI) Data Security Standard

The server will respond to the client with a list of instances. One such attack was analyzed by an information security researcher in January 2015.

Improving Web Application Security: The Akamai Approach to WAF

Web Application Vulnerability Scanner: Skipfish

DISASTER RECOVERY. Omniture Disaster Plan. June 2, 2008 Version 2.0

Capitalize on Mobile Commerce by Optimizing the Mobile Shopping Experience

PERFORMANCE MATTERS CONSUMER INSIGHTS FROM THE UNITED KINGDOM

AKAMAI WHITE PAPER. Network Function Virtualization

The evolution of data connectivity

Dynamic Site Accelerator

Operations Manager Comprehensive, secure remote monitoring and management of your entire digital signage network infrastructure

How to Evaluate DDoS Mitigation Providers:

Akamai for Software as a Service (SaaS)

Perceptive Software Platform Services

OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE

WHITE PAPER. Automated IT Asset Management Maximize Organizational Value Using Numara Track-It! p: f:

Web Drive Limited TERMS AND CONDITIONS FOR THE SUPPLY OF SERVER HOSTING

WhitePaper. Private Cloud Computing Essentials

Building Private & Hybrid Cloud Solutions

Making the leap to the cloud: IS my data private and secure?

Network Virtualization Platform (NVP) Incident Reports

CenterMind G+ Smart and Proactive Environment Monitoring

Colt Colocation Services Colt Technology Services Group Limited. All rights reserved.

SWAP EXECUTION FACILITY OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE

ITIL A guide to Event Management

JOOMLA REFLECTION DDOS-FOR-HIRE

AKAMAI WHITE PAPER. How To Deliver Fast, Engaging Responsive Web Design Sites

Automated IT Asset Management Maximize organizational value using BMC Track-It! WHITE PAPER

An Oracle White Paper June Oracle Database Firewall 5.0 Sizing Best Practices

Smart-UPS RT External Battery Pack Stack/Rack-Mount 6U

DNS FLOODER V1.1. akamai s [state of the internet] / Threat Advisory

Amcrest 960H DVR Quick Start Guide

Mobile Enabling Security Products for a Leading Security Firm. Case study

YubiCloud OTP Validation Service. Version 1.2

Akamai for SAP Acceleration:

Reform PDC Document Workflow Solution Streamline capture and distribution. intuitive. lexible. mobile

Retention & Destruction

Managed Support Policy

WHITEPAPER A BUSINESS CASE FOR VIRTUAL DESKTOP INFRASTRUCTURE (VDI) DEPLOYMENTS.

Failover Support. DataDirect Connect for ODBC Drivers. Introduction. Connection Failover

Building a Resilient World Wide Web

Designing a Data Solution with Microsoft SQL Server 2014

Security Controls for the Autodesk 360 Managed Services

Colocation Service Definition. SD008 v1.3 Issue Date 19 Feb 09

Emerson Smart Firewall

IT MANAGER GUIDE: AGNET ENTERPRISE FILE SERVER

TrueAlarm Fire Alarm Systems

SysAid Cloud Architecture Including Security and Disaster Recovery Plan

MSP Center Plus Features Checklist

SSDP REFLECTION DDOS ATTACKS

Data Center Presentation

INDEPENDENT PRACTITIONER S TRUST SERVICES REPORT LIQUID WEB, INC.

Colocation Hosting Primer Making the Business and IT Case for Colocation

Virtual Servers VIRTUAL DATA CENTER OVERVIEW VIRTUAL DATA CENTER BENEFITS

BlackBerry Mobile Voice System

system monitor Uncompromised support for your entire network.

EMC VPLEX FAMILY. Continuous Availability and data Mobility Within and Across Data Centers

DESIGNATED CONTRACT MARKET OPERATIONAL CAPABILITY TECHNOLOGY QUESTIONNAIRE

Blackboard Managed Hosting SM Disaster Recovery Planning Document

GE Healthcare. CARESCAPE Remote Service Tools

AKAMAI WHITE PAPER. Accelerate and Protect your E-learning Initiatives using Akamai s Cloud Based Intelligent Platform TM

Custom Application Support Program Guide Version March 02, 2015

NLSS Gateway Video Management Access Control Video Analytics Intrusion Remote Monitoring Cloud-Based Security

Solution Brief Availability and Recovery Options: Microsoft Exchange Solutions on VMware

BlackBerry Mobile Voice System

CA ARCserve Backup r16.x Professional Exam (CAT-360) Study Guide Version 1.1

Appendix 4. Service Level Agreement (SLA) Data Center Services

ASX ITS Co-location Hosting Solution

Whitepaper: A Business Case For Virtual Desktop Infrastructure (VDI) Deployments

Datacenter Hosting and Cloud Computing Services

ITIL A guide to event management

CITY UNIVERSITY OF HONG KONG Physical Access Security Standard

Manage and secure your workplace by controlling who, what, when, why, where and how people are allowed in your facility. Marquee

Backup and Redundancy

Taking the Service Desk to the Next Level BEST PRACTICES WHITE PAPER

Splunk for VMware Virtualization. Marco Bizzantino Vmug - 05/10/2011

TIBCO StreamBase High Availability Deploy Mission-Critical TIBCO StreamBase Applications in a Fault Tolerant Configuration

SECURITY SYSTEM WITH AUTHENTICATION CODE AND ADAPTIVE PHOTO LOG

Meeting the Challenges of Virtualization Security

Transcription:

kamai Technologies Inc. Secure Content Delivery Network Physical Access Information May 13, 2014

Table of Contents Purpose... 2 Risk Analysis... 2 Physical Access... 2 Issue/Response... 3 Records... 4 1

Purpose This document is designed to address common questions customers ask about Akamai's secure content delivery procedures. By publishing it, our goal is to show how seriously Akamai takes its security and how those doing business with us benefit. It's also designed to offer a window into our compliance procedures. Risk Analysis Akamai considers the compliance boundary for its secure content delivery network to be the locked rack Akamai provides rather than the physical boundary of the data center in which the rack is located. This provides a number of advantages to Akamai: Direct control over the security boundary Security monitoring and reporting customized to Akamai's needs Defense in depth the security of the data center is in addition to Akamai's own protections Ability to use a variety of data centers in countries across the world Selection of security equipment based on Akamai's needs Akamai does accept certain risks that could result from problems at a given data center, such as the loss of power. Since Akamai's Secure Content Delivery Network has tens of thousands of redundant servers, Akamai can easily accept the temporary loss of multiple data centers. The distributed nature of the network reduces the likelihood of multiple simultaneous failures. Physical Access Akamai's servers in the Secure Content Delivery Network (SCDN) are housed in specially configured, locked racks. Datacenters that contain Akamai Secure Content regions have two methods of physical facility protection. All Secure Content servers are mounted in fully enclosed metal cabinets. These cabinets have no external fasteners all side panels are bolted from within and the doors are mounted on internal hinges. The front and rear doors of the Secure Content cabinets are secured with locks. 2

Within each cabinet, cameras watch the doors. Access information is logged and reported to Akamai s NOCC, enabling Akamai personnel to monitor access and remove sensitive information within seconds if the door is opened without authorization. Remote Power Distribution Units (RPDUs) are inside each cabinet enabling low---level power cycle maintenance. When faults have been diagnosed, Akamai s NOCC can reboot the machines remotely, eliminating the need for a local technician to access and power cycle a failed system. Relevant information about the monitoring software and the cameras is reported into Akamai s query system. Scenarios such as errors on the cameras or motion detected will result in an alert being fired and addressed. The alerts are defined in Akamai s Alert Management System (AMS). In addition, many hosting datacenters provide fire protection, lighting, and electricity, which may include uninterruptible power supplies (UPS). Akamai's highly distributed infrastructure reduces the impact of utility outages, as servers in functional datacenters can take over the workload of servers in unusable ones. Additionally, the following issues are addressed: Issue/Response Motion detection Cameras that detect motion trigger alerts that are sent to Akamai s global NOCCs, which is staffed at all times. Authorized access All access requests to a Secure Content delivery system are logged in a NOCC ticket. The ticket indicates the time and place when someone will be inspecting the systems. If a camera detects motion at a time other than that specified in the NOCC ticket, it is considered as unauthorized access and triggers an alert. Unauthorized access The camera images are stored so that Akamai personnel can review them and address issues involving unauthorized access. Unauthorized access reporting Akamai s NOCCs receives an alert if there is any unauthorized access. In such event, the NOCCs would declare a severity 4 incident and notify Akamai s InfoSec team immediately to 3

begin investigating the incident. InfoSec would investigate and address the incident until a determination is reached as to why an alert was triggered. Camera errors Controls are designed such that problems with the cameras will result in an alert being sent to the Akamai NOCC. Utilities failure Many hosting data centers provide fire protection, lighting, and electricity, which may include uninterruptible power supplies (UPS). Network failover Akamai's highly distributed infrastructure provides redundancy, as servers in one location can take over the workload of unusable servers in another one. Records Akamai tracks and maintains records of hardware in an internal database. This includes logistical details as well as service tickets.. 4

As the global leader in Content Delivery Network (CDN) services, Akamai makes the Internet fast, reliable and secure for its customers. The company's advanced web performance, mobile performance, cloud security and media delivery solutions are revolutionizing how businesses optimize consumer, enterprise and entertainment experiences for any device, anywhere. To learn how Akamai solutions and its team of Internet experts are helping businesses move faster forward, please visit www.akamai.com or blogs.akamai.com, and follow @Akamai on Twitter. Akamai is headquartered in Cambridge, Massachusetts in the United States with operations in more than 57 offices around the world. Our services and renowned customer care are designed to enable businesses to provide an unparalleled Internet experience for their customers worldwide. Addresses, phone numbers and contact information for all locations are listed on www.akamai.com/locations. 2015 Akamai Technologies, Inc. All Rights Reserved. Reproduction in whole or in part in any form or medium without express written permission is prohibited. Akamai and the Akamai wave logo are registered trademarks. Other trademarks contained herein are the property of their respective owners. Akamai believes that the information in this publication is accurate as of its publication date; such information is subject to change without notice. Published 06/15.