RSAÁ¢ÒìɳºÐÅÌ»õ |Deduce¡ª¡ªÊý¾ÝÇý¶¯µÄÉí·ÝÚ²ÆÎ£º¦
2021-05-17
RSAConference2021½«Óھɽðɽʱ¼ä5ÔÂ17ÈÕÕÙ¿ª£¬Õ⽫ÊÇRSA´ó»áÓÐÊ·ÒÔÀ´µÚÒ»´Î½ÓÄÉÍøÂçÐéÄâ¾Û»áµÄÐÎʽ¾ÙÐС£´ó»áµÄInnovation Sandbox£¨É³ºÐ£©´óÈü×÷Ϊ“Ç徲ȦµÄ°Â˹¿¨”£¬Ã¿Äê¶¼±¸ÊÜÖõÄ¿£¬³ÉΪȫÇòÍøÂçÇå¾²ÐÐÒµÊÖÒÕÁ¢ÒìºÍͶ×ʵķçÏò±ê¡£
ǰ²»¾Ã£¬RSA¹Ù·½Ðû²¼ÁË×îÖÕÈëÑ¡Á¢ÒìɳºÐµÄʮǿÊ×´´¹«Ë¾£ºWABBI¡¢Satori¡¢Abnormal Security¡¢Apiiro¡¢Axis Security¡¢Cape Privacy¡¢Deduce¡¢Open Raven¡¢STARATA¡¢WIZ¡£
¾ÅÓÎÀϸç¾ý½«Í¨¹ýÅä¾°ÏÈÈÝ¡¢²úÆ·ÌØµã¡¢µãÆÀÆÊÎöµÈ£¬´ø¸÷ÈËÏàʶÈëΧµÄʮǿ³§ÉÌ¡£½ñÌ죬ÎÒÃÇÒªÏÈÈݵÄÊdz§ÉÌÊÇ£ºdeduce¡£
¹«Ë¾ÏÈÈÝ
DeduceÓÚ2019Äê5Ô½¨É裬×ܲ¿Î»ÓÚÃÀ¹úŦԼ[1]¡£¹«Ë¾Ê×´´ÈË¡¢ÏÖÈÎCEO Ari Jacoby¾ßÓи»ºñµÄ´´ÒµÂÄÀú£¬ÊÇCirculate£¬Voicestar£¬Solve MediaµÈÊÖÒÕ·þÎñÀàÐ͹«Ë¾µÄÊ×´´ÈËÖ®Ò»¡£ÏÖÔÚDeduce¾ÓÉÁ½ÂÖÈÚ×Ê£¬´¦ÓÚÖÖ×ÓÂִεÄÈÚ×ʽ׶Σ¬ÈÚ×ʹæÄ£´ï730ÍòÃÀÔª¡£
DeduceÄܹ»Ïò²î±ð¹æÄ£µÄÆóÒµ£¬Ìṩ³ÉÊìµÄÐÐÒµ¼¶Óû§Éí·Ý¼°ÐÐΪÆÊÎö½Ó¿Ú£¬×ÊÖúÆóÒµ¹¹½¨Éí·ÝÈÏ֤Σº¦ÆÊÎö¡¢Éí·ÝڲƼì²â¼°Óû§¸æ¾¯ÄÜÁ¦£¬ÒÔ¸¨ÖúÆóÒµ¶Ô¿¹Ç±ÔڵĹ¥»÷ÐÐΪ£¬Öª×ãºÏ¹æÒªÇóÒÔ¼°ÌáÉý¿Í»§µÄÐÅÍжȡ£ÈôÊÇ´Ó±¾½ìRSACµÄÖ÷Ìâ“Resilience”À´¿´£¬Deduce¹«Ë¾Í¨¹ý´òÔìÉí·ÝÖÇÄÜ£¬ÎªÆóÒµ¼°Æä¿Í»§Ìṩ»ùÓÚÊý¾ÝÓëÆÊÎöµÄÉí·ÝÇå¾²µ¯ÐÔ¡£
Åä¾°ÏÈÈÝ
ÊÓ²ìÅú×¢£¬2020ÄêÓÉÓû§Éí·ÝʧÔô¡¢ÀÄÓá¢Ú²ÆµÈ¹¥»÷Ôì³ÉµÄ¹ØÁªËðʧ¸ß´ï560ÒÚÃÀÔª£¬²¢ÒѳÉΪÉú³¤ËÙÂÊ×î¿ìµÄÍøÂç¿Õ¼äÍþв֮һ¡£ÆóÒµµÄ¿Í»§Éí·Ý±»ÇÔÈ¡¡¢µÁÓ㬴øÀ´µÄ²»Ö¹ÊÇÓÉÊý¾Ýй¶¡¢×ʲúʧÏÝ¡¢ÉúÒâڲƵȹ¥»÷µ¼ÖµÄÖ±½Ó¾¼ÃËðʧ£¬Ëù±¬·¢µÄÓû§ÐÅÍжȽµ¼¶£¬½«¸øÆóÒµÓªÒµºÍÐÅÓþ´øÀ´³¤ÆÚºÍÉîÔ¶µÄÓ°Ïì¡£
ΪӦ¶ÔÍøÂç¿Õ¼äÍþвµÄ¶¯Ì¬Ñݽø£¬GartnerÌá³öµÄ×Ô˳ӦΣº¦ºÍÐÅÍÐÆÀ¹À¿ò¼ÜCARTA£¨Continuous Adaptive Risk and Trust Assessment£©£¬ÎªÒµ½ç´øÀ´ÏµÍ³µÄ·ÀÓùÊӽǡ£ÆäÖУ¬Õë¶ÔÓû§Éí·Ý¡¢×°±¸µÄÈÏÖ¤Óë»á¼û£¬CARTA¸ø³öÁË×Ô˳Ӧ»á¼û±£»¤£¨Adaptive Access Protection£©¿ò¼Ü[4]£¬Èçͼ1Ëùʾ¡£

ͼ1 CARTA Adaptive Access Protection¼Ü¹¹Í¼
¸Ã¿ò¼ÜµÄ½¹µãÔÚÓÚ£¬ÐèÒª¶ÔÓû§Éí·Ý¡¢×°±¸¡¢Ó¦Óá¢ÐÐΪ¼°¹ØÁªÐÅÏ¢£¬ÌṩһÁ¬µÄ¿É¼ûÐÔÓëºËʵ£¬À´Ë³Ó¦ÓªÒµµÄ¶¯Ì¬ÐèÇóÓëÍøÂçÇéÐÎת±ä¡£ÀàËÆÓÚÕë¶Ô¹¥»÷·À»¤µÄ“Õ¹Íû-Ô¤·À-¼ì²â-ÏìÓ¦”µÄPPDRÑ»·£¬Õë¶Ô»á¼û·À»¤Ò²ÐèÒª¹¹½¨ÐèÇó·¢Ã÷£¨Discover requirements£©-×Ô˳Ӧ»á¼û£¨Adaptive access£©-ÓÃ;ÑéÖ¤£¨Verify usage£©-ÓÃ;ÖÎÀí£¨Manage usage£©µÄ·À»¤±Õ»·£¬ÒÔÌṩһÁ¬µÄ¡¢¿Éµü´úµÄ»á¼û¿ØÖƼ°·ÀÓùÄÜÁ¦¡£
Deduce¹«Ë¾ÌṩµÄ²úÆ·¼°¼Æ»®£¬ÕýÊÇÕë¶ÔÉí·ÝÚ²ÆÕâÒ»Ö÷ÒªÓªÒµÁìÓò£¬Ö÷Òªº¸ÇCARTA»á¼û·À»¤µÄÓÃ;ÑéÖ¤£¨Verify usage£©ÓëÓÃ;ÖÎÀí£¨Manage usage£©ÕâÁ½¸ö½×¶Î£¬ÎªÆóÒµÌṩ³ÉÊìµÄ²¢ÇÒ¿É˳ӦÆóÒµÓªÒµÁ÷µÄ¿Í»§Éí·Ý¼°ÐÐΪ¶¯Ì¬ÆÊÎö½Ó¿Ú£¬Äܹ»ÓÐÓýµµÍÖÐСÐÍÆóÒµ×Ô½¨Ïà¹ØÄÜÁ¦µÄ±¾Ç®¡£
²úÆ·ÏÈÈÝ
Deduce¹ÙÍøÏÖÔÚÖ÷ÒªÌṩÁËÁ½¿îSaaS²úÆ·£¬»®·ÖÊÇ“Customer Alerts”ºÍ“Identity Risk Index”¡£
Customer Alerts£¬¼´¿Í»§¸æ¾¯£¬Äܹ»¼ì²âÓû§µÇ¼ÐÐΪµÄÒì³££¬²¢´¥·¢¸æ¾¯Í¨Öªµ½¿Í»§£¬ÒÔ¹©¿Í»§¾öÒéÅжϣ¬ÊÇ·ñÊÇÆäСÎÒ˽¼ÒÐÐΪ¡£¸Ã²úÆ·¹¦Ð§Ä¿µÄ£¬ÊÇÔÚÆóÒµÔÓеÄÈÏÖ¤Á÷³ÌÖ®Í⣬ÌṩÓû§µÇ¼»á¼ûÐÐΪÒì³£µÄ¸æ¾¯¡£Deduce¸Ã²úÆ·µÄÂôµãÔÚÓÚ£¬Äܹ»ÏòÖÐСÐÍÆóÒµÌṩ³ÉÊìµÄÉí·ÝµÇ¼Òì³£ÑéÖ¤µÄ½Ó¿Ú£¬²¢Ö»Ðè°´Ð踶·Ñ¡£
DeduceÌṩһ¸öÓÃÓÚÆÊÎö¿Í»§Ä¿½ñ×°±¸¼°µØÀíλÖÃÐÅÏ¢µÄAPI£¬¿ÉÎ޷켯³Éµ½ÆóÒµµÄÓªÒµÁ÷³Ìµ±ÖУ¬Èçͼ2Ëùʾ¡£

ͼ2 Deduce Customer AlertsÊÂÇéÁ÷
¸ÃAPIŲÓÃÀú³ÌÖУ¬ÐèÆóÒµÊÕÂÞÓû§µÄ×°±¸±êʶÐÅÏ¢ºÍµØÀíλÖÃÐÅÏ¢¡£Æ¾Ö¤ÊÕÂÞµÄÊý¾ÝÑù±¾£¬»ùÓÚ¿ÉÉèÖõĹæÔò£¬DeduceÆÊÎöÓû§¹ØÁª×°±¸¼°µÇ¼µãµØÀíλÖõÄÒì³££¬½ø¶ø´¥·¢¸æ¾¯£¬²¢ÒÔÆóÒµ¶¨ÖƵÄÄ£°å·¢Ë͸ø¿Í»§£¬ÇëÇó¿Í»§È·ÈÏ¡£¸ÃAPIµÄ½á¹¹Èçͼ3Ëùʾ¡£

ͼ3 Deduce Customer Alerts APIʾÀý
Identity Risk Index£¬¸Ã²úÆ·ÌṩÕë¶ÔÉí·Ý¹ØÁªÐÐΪµÄΣº¦·ÖÊýÅÌËã¡£ÓÃÀ´Ô¤·ÀºÍ¼ì²âÓÉÉç½»´¹ÂÚ»òÐÅϢй¶Òý·¢µÄÉí·ÝµÁÓá¢ÕË»§Ê§Ôô¡¢ÉúÒâڲƵȶñÒâÐÐΪ£¬Í¬Ê±×ÊÖúÆóÒµÌáÉýÓû§ÐÅÍкÍÖª×ãºÏ¹æÐèÇó¡£»ù±¾µÄ¹¦Ð§Èçͼ4£¬Ñ¡×Ô¹ÙÍøÕ¹Ê¾µÄ¹¦Ð§Ê¾Òâͼ¡£

ͼ4 Identity Risk Index¹¦Ð§Ê¾Òâ
Identity Risk Index²úÆ·¼´Éí·ÝΣº¦Ö¸±ê¡£¿ÉÖ±¹ÛµÄÃ÷ȷΪ»ùÓÚ´óÊý¾ÝµÄÓû§Éí·ÝÒì³£¼ì²â¼°Î£º¦ÆÀ¹À¡£ÓÉÓڸù¦Ð§¹«Ë¾Î´¸ø³öÏêϸµÄÊÖÒÕϸ½ÚÏÈÈÝ£¬ÎÒÃÇÎÞ´ÓµÃÖªÆäÊÖÒÕÄں˵ÄʵÏÖÒªÁì¡£
´ÓÄ¿½ñÒµ½çÀàËÆ²úÆ·¼°ÊÖÒÕµÄÌõÀíÀ´¿´£¬ÊµÏÖÓÐÓõĻùÓÚÉí·ÝµÄΣº¦ÆÊÎöÒÀÀµÁ½¸öÒªº¦Ìõ¼þ£¬Ò»¸öÊÇ´ó¹æÄ£µÄÓû§Éí·ÝÐÐΪÊý¾Ý¼°Ç鱨Êý¾Ý£¬ÁíÒ»¸öÊÇÒÔUEBAΪ´ú±íµÄÒì³£ÐÐΪÆÊÎöÊÖÒÕÕ»¡£´ÓDeduceµÄÐû´«×ÊÁϺÍÏà¹Ø±¨µÀÀ´¿´£¬´ó¹æÄ£ÍøÂçµÄÉí·Ý¼°ÐÐΪÊý¾Ý¼¯ÊÇÖ§³ÖÆäIdentity Risk Index²úÆ·ÊÖÒյĽ¹µã¡£Deduceͨ¹ýÒ»Á¬µÄÔËÓª»ýÀÛ£¬´òÔìÁËIdentity NetworkÉí·Ý¼°ÐÐΪÊý¾Ý¿â¡£ÔÚÖª×ãGDPRºÍCCPAºÏ¹æÒªÇóÏ£¬Deduce´ÓÁè¼Ý15ÍòÍøÕ¾ºÍÓ¦Óã¬ÍøÂçÁËÉæ¼°³¬2ÒÚ¸öÃÀ¹úÕ˺ż°ÆäÏà¹ØÈÏÖ¤¡¢»á¼û¡¢ÉúÒâµÈÐÐΪµÄÐÅÏ¢ºÍÊý¾Ý¡£ÕâЩÕ˺ż°Éí·ÝÊý¾ÝÔÚIdentity NetworkÒÔ¹þÏ£µÄÐÎʽ¾ÙÐÐÁËÄäÃû»¯£¬ÒÔ±£»¤Óû§µÄСÎÒ˽¼ÒÒþ˽¡£
ÎÒÃÇ¿ÉÒÔ¿´µ½£¬Deduceͨ¹ýÕâÖִƽ̨¡¢Ìṩ·þÎñµÄ·½·¨£¬ÔÚÏòÆóÒµÌṩ¿Í»§Éí·ÝÐÐΪÆÊÎöÄÜÁ¦µÄͬʱ£¬Ò²ÔÚÊÚȨÏÂÒ»Á¬ÍøÂç²î±ðÕ¾µã¡¢Ó¦ÓõÄÏà¹ØÐÅÏ¢¡£ÕâÖÖ´ó¹æÄ£¡¢¶àά¶ÈÊý¾Ý¼¯µÄ¹¹½¨£¬Äܹ»ÎªDeduceÒ»Á¬ÌṩÐÐÒµµÄÓ°ÏìÁ¦¼°ÊÖÒÕ½¹µã¾ºÕùÁ¦»ù´¡¡£
³ýÁËÊý¾Ý²ãÃæµÄ»úÖÆ£¬ÎÒÃÇÖ»ÔÚDeduceÐû´«Öп´µ½Ê¹ÓÃÁË»úеѧϰҪÁìÀ´Ê¶±ðÉí·ÝÐÐΪÒì³££¬²¢Äܹ»½«ÕË»§ÇÔÈ¡µÄΣÏÕ½µµÍ90%¡£ÎÒÃÇÉÐδ¿´µ½ÏêϸµÄÆÊÎöÒªÁì¼°Ä£×ÓµÄÏÈÈÝ¡£
¹«Ë¾½â¶Á
Éí·ÝµÄÖÎÀí¼°¹ØÁªÐÐΪµÄÆÊÎö£¬ÒѳÉÎªÍøÂçÇå¾²ÂõÈë×Ô¶¯·ÀÓùºÍÁãÐÅÍÐʱ´úºó£¬Íþв¼ì²âÓëÏìÓ¦µÄÒªº¦ÊÖÒÕÊֶΡ£DeduceÌṩµÄÁ½¿î²úÆ·£¬Õë¶ÔÉí·ÝΣº¦ÆÊÎö£¬ÌṩÁ˲î±ðµÄ·þÎñ¼ÛÖµ¡£Customer Alerts²úƷͨ¹ý¾«Á·µÄAPI£¬Äܹ»ÎÞ·ìµÄ¼¯³Éµ½ÆóÒµÒÑÓеÄÉí·ÝÈÏÖ¤ÓªÒµÁ÷ÖУ¬ÌṩÐÅÏ¢ÍøÂç¡¢»ùÓÚ×°±¸ºÍλÖõÄÒì³£ÆÊÎö¡¢Óû§¸æ¾¯Í¨ÖªºÍÓû§¾öÒé·´ÏìÍøÂç·þÎñ¡£Identity Risk Index²úÆ·Ôò»ùÓÚDeduceµÄIdentity NetworkÊý¾Ý¼¯£¬Ìṩ¾ßÓиü¸ßά¶È¡¢¸üÉîÌõÀí¹ØÁªµÄÉî¶ÈÉí·Ý¼°ÐÐΪΣº¦ÆÊÎö·þÎñ£¬Äܹ»ÓëIAMϵͳÂòͨ£¬Æ¾Ö¤Á¿»¯µÄÉí·Ý¼°ÆäÐÐΪΣº¦Öµ£¬À´Å²Óòî±ð¼¶±ðµÄÈÏÖ¤ÒªÁ죬ÒÔÔöÇ¿¶ÔÉí·ÝڲƵȹ¥»÷ÐÐΪµÄ·ÀÓùÄÜÁ¦¡£
Ïà½Ï¶øÑÔ£¬Identity Risk Index²úÆ·¸üÖµµÃÎÒÃÇÉîÈëµÄ¹Ø×¢¡£»ùÓÚSaaSµÄÔËӪģʽ£¬¸Ã²úÆ·Äܹ»ÎªÆóÒµÌṩһ¸öÄäÃû»¯µÄÉí·Ý¼°ÐÐΪÊý¾Ýºþ×ÊÔ´¡£»ùÓÚ¸ÃÊý¾Ýºþ£¬DeduceÓÐʱ»úÌṩÉî¶ÈµÄÉí·ÝΣº¦ÆÀ¹ÀÄÜÁ¦£¬ÀýÈç¿ÉʵÏÖͨ¹ý¼òµ¥Éí·Ý²î±ðÓ¦Óá¢Õ¾µãµÄ¶àÐÐΪά¶ÈÓ볤ÖÜÆÚ¼Í¼¿ç¶È£¬ÊµÏÖϸÁ£¶ÈµÄÉí·ÝÐÐÎªÌØÕ÷»Ïñ£¬½ø¶øÌṩ¸ü¾«×¼µÄΣº¦ÆÀ·ÖÖ¸±ê¡£¸üÒªº¦µÄ£¬»ùÓÚÉí·ÝÉç½»ÍøÂçµÄѧϰ£¬Äܹ»Ê¶±ð¿ÉÒɵÄÐÐΪÈö²¥¼ÍÂÉ¡¢Òì³£ÉçÇøÐÐΪÒÔ¼°Ú²ÆÍÅ»ïÐÐΪ¡£ÈçÏÂͼ5Ëùʾ£¬¾ÍÊÇ»ùÓÚÉí·ÝÈÏÖ¤Óë»á¼ûÐÐΪÊý¾ÝµÄÉçÇøÆÊÎöÒªÁì[5]£¬¸ÃÊÖÒռƻ®ÈªÔ´ÓÚͬΪÉí·ÝڲƼì²âÁìÓòµÄ´´Òµ¹«Ë¾Silverfort¡£ÔÚÉí·ÝÐÐΪÊý¾ÝºþµÄ»ù´¡ÉÏ£¬Í¨¹ý³éÈ¡Éí·Ý£¨Í¼ÖÐÔ²µã£©¡¢·þÎñ¶Ëµã£¨Í¼ÖÐÈý½Çµã£©µÈʵÌåµÄ¹ØÁª£¬ÒÔ¼°»á¼ûÐÐΪµÄͳ¼ÆÊôÐÔ£¬¹¹½¨Í¼×ó²àµÄʵÌåÐÐΪ¹ØÁªÍøÂç¡£½ø¶ø£¬»ùÓÚLouvainÉçÇø·¢Ã÷Ëã·¨£¬Äܹ»½«ÍøÂçÖеÄʵÌåºÍÐÐΪ»®·ÖΪ¶à¸öÉçÇø£¬ÈçͼÓÒ²àµÄÑÕÉ«±ê×¢¡£×îÖÕ£¬ÔÚ¸ÃÉçÇø»®·ÖЧ¹ûÉÏ£¬¿É»ñµÃ¸ü¶àά¶ÈµÄÆÊÎö½áÂÛ£¬È綨λ¸ß¶ÈÒì³£µÄÌØ¶¨ÀàÐÍÉçÇøÔ˶¯¡¢³éÈ¡ÓпçÉçÇøÐÐΪµÄ¸ßΣº¦Éí·ÝʵÌåµÈµÈ¡£Ö»¹ÜDeduce¹ÙÍø²¢Î´¸ø³öIdentity Risk Index²úÆ·µÄÏêϸÊÖÒռƻ®£¬ÆäIdentity NetworkÊý¾Ý¿âµÄ¹¹½¨×ãÒÔ¸øÎÒÃÇ´øÀ´¸ü¶àµÄÊÖÒÕÏëÏó¿Õ¼ä¡£

ͼ5 »ùÓÚÈÏÖ¤ºÍ»á¼ûÐÐΪµÄÉçÇø·¢Ã÷
³ýÁËÒÔÉϲúÆ·ÌØÕ÷£¬Äܹ»½øÈëRSACÁ¢ÒìɳºÐʮǿ£¬DeduceÓÐÆäÆæÒìµÄ“ÉÌÒµ»¯”µÄÊÖÒÕÀíÄî¡£Ê×ÏÈ£¬Í¨¹ýSaaSģʽÏòÖÐСÐÍÆóÒµÌṩ¼òÆÓÒ×ÓõÄÉí·ÝÈÏÖ¤ÆÊÎö¸æ¾¯½Ó¿Ú£¬¼õÇáÆóÒµ×Ô½¨ºÍά»¤±¾Ç®µÄͬʱ£¬Äܹ»Ìṩ×ãÒÔÆ¥µÐFAANG£¨Facebook, Apple, Amazon, Netflix, Google£©µÈ´óÐÍÆóÒµÀàËÆ¹¦Ð§µÄÉí·ÝÕË»§Òì³£ÆÊÎö»úÖÆ£¬ÕâÓëDeduce“Democratize Cybersecurity”——ÃñÖ÷»¯ÍøÂçÇå¾²µÄÆóÒµÔ¸¾°ÏàÆõºÏ£»Æä´Î£¬Ìṩ·þÎñµÄͬʱ£¬DeduceÔÚÕýµ±ºÏ¹æµÄÕ½ÂÔÏ£¬¹¹½¨Á˾߱¸Ï൱´ó¹æÄ£¼°¶àÑùÐÔµÄÄäÃû»¯Éí·ÝÐÐΪÊý¾Ý¿â£¬ÕâÄܹ»ÈÃͶ×ÊÕß¿´µ½DeduceÄ¿½ñËù¾ß±¸µÄ“Êý¾Ý±ÚÀÝ”¡£ÓÚ´Ëͬʱ£¬Í¨¹ý¿ÉÒ»Á¬µÄ·þÎñÌṩÓëÐÅÏ¢ÊÕÂÞ£¬DeduceµÄIdentity NetworkÄܹ»Îª¸Ã¹«Ë¾ÌṩÒà¿ÉÒ»Á¬µÄÊÖÒÕÑݽøºÍÓÅ»¯°ü¹Ü»úÖÆ¡£
¿ÉÒÔÔ¤¼û£¬Á¢ÒìɳºÐÆÀί¶ÔDeduce¿ÉÒ»Á¬Éí·ÝÊý¾ÝÔËÓªµÄÉÌҵģʽµÄÈÏ¿Éˮƽ£¬ÒÔ¼°¶ÔÉí·ÝÚ²ÆÁìÓòÊÖÒÕÊг¡µÄÆÚ´ý¶È£¬½«ÊǾöÒéDeduce±¾´ÎÁ¢ÒìɳºÐÄÜ·ñ½øÈëǰÈýµÄÒªº¦ÒòËØ£¬ÈÃÎÒÃÇÊÃÄ¿ÒÔ´ý¡£

¾ÅÓÎÀϸçÔÆ







