æ¥æ¬ãã€ã¯ããœããã¯6æ18æ¥ããã€ã¯ããœãã ã»ãã¥ãªã㣠ãšã³ããã€ã³ãè åšã¬ããŒãã®ææ°çã®çµæã玹ä»ãããšå ±ã«ããã€ã¯ããœããã®ã»ãã¥ãªãã£ãœãªã¥ãŒã·ã§ã³ãªã©ã®ç޹ä»ãè¡ã£ãã
ã»ãã¥ãªã㣠ãšã³ããã€ã³ã è åšã¬ããŒã2019ã¯ããã€ã¯ããœãããæ¥ã åä¿¡ããŠãã1æ¥8å 件以äžã®è åšã·ã°ãã«ïŒæªããããŒã¿ïŒãåæããçµæãã¬ããŒããšããŠãŸãšãããã®ã
æ¥æ¬ãã€ã¯ããœãã æè¡çµ±æ¬å®€ ããŒãã»ãã¥ãªãã£ãªãã£ãµãŒ æ²³éçäºæ°ã«ããã°ããã®ã¬ããŒãã¯åããŠãšã³ããã€ã³ãã«ç¹åãããã®ãªã£ãŠãããæšæ¥ã¢ãžã¢çãå ¬éãããšããã
åæããããŒã¿ã¯ããã€ã¯ããœããæäŸããŠãããµãŒãã¹ãOSã®ãšã³ããã€ã³ãã®ããŒã¿ã§ãxboxãAzure ADã®ããŒã¿ãå«ãŸããŠãããšãããããŒã¿åæã®å¯Ÿè±¡ãšãªã£ãæé㯠2019幎1æïœ12æã
-

æ¥æ¬ãã€ã¯ããœãã æè¡çµ±æ¬å®€ ããŒãã»ãã¥ãªãã£ãªãã£ãµãŒãæ²³éçäºæ°
3ã€ã®è åšã®ééçã§æ¥æ¬ãæäœ
ã¬ããŒãã«ããã°ããã«ãŠã§ã¢ãã©ã³ãµã ãŠã§ã¢ãæå·é貚ãã€ãã³ã°ããã©ã€ããã€ããŠã³ããŒããšãã代衚çãª4ã€ã®è åšã®ãã¡ãæå·é貚ãã€ãã³ã°ãã©ã³ãµã ãŠã§ã¢ããã«ãŠã§ã¢ã®3ã€ã®è åšã®ééçã«ãããŠãæ¥æ¬ãã¢ãžã¢ã®äžã§æãäœãã£ããšããã
-

ã¢ãžã¢å€ªå¹³æŽå°åã«ããããã«ãŠã§ã¢çºçïŒå·ŠïŒãšã©ã³ãµã ãŠã§ã¢çºçïŒå³ïŒã®ããŒãããã
æå·é貚ãã€ãã³ã°æ»æã¯ã被害è ã®ã³ã³ãã¥ãŒã¿ãæå·é貚ããã€ãã³ã°ãããã«ãŠã§ã¢ã«ææããç¯çœªè ã¯è¢«å®³è ãæ°ã¥ããªãéã«ãã®ã³ã³ãã¥ãŒã¿ãªãœãŒã¹ãæªçšãããã®ã
ãã©ã€ããã€ããŠã³ããŒãã¯ããŠã§ããµã€ãã蚪åããããã©ãŒã ãå ¥åãããããéã«ããŠãŒã¶ãŒã®ã³ã³ãã¥ãŒã¿ã«æªè³ªãªã³ãŒãïŒã¹ã¯ãªãããããã°ã©ã ïŒãããŠã³ããŒããããã¹ã¯ãŒããéèæ å ±ãªã©ãçã¿åºããã®ã
æ¥æ¬ã®ééçãäœãçç±ã¯ã察çãé²ãã§ããããšããæ¿åºã察çã«ç©æ¥µçã§ããç¹ãªã©ããããšãããããæ¥æ¬ãå°ãªããšãããããä»ãå€ããïŒæ²³éæ°ïŒãšãããããšããã
ä»åœãééçãé«ãçç±ãšããŠã¯ããã£ã«ã¿ãªã³ã°ãªã©ã掻çšããå€å±€é²åŸ¡ãåºæ¥ãŠããªãç¹ãããœãããŠã§ã¢ãOSã®æµ·è³ç䜿çšã®æ¯çãã宿çãªãããé©çšããã³æŽæ°ãã§ããŠããªãããšããããšããã
調æ»ã§ã¯ãæµ·è³çã®äœ¿çšæ¯çãäœããåžžã«å¥å šãªç¶æ ã«ä¿ã€ãµã€ããŒãã€ãžãŒã³å¯Ÿå¿ã®åŸ¹åºãæèããåœã§ã¯ãæ»æã®æåçãå€§å¹ ã«æžå°ããŠããããšãæããã«ãªã£ããšããã
2019幎ã«ãããæ¥æ¬ã®æå·é貚ãã€ãã³ã°ã®ééçãã¢ãžã¢å°åå šäœãšæ¯èŒãããšæãäœãã2018幎ãããæžå°ããŠãããšããã
ééçãäœäžããŠããçç±ã®äžã€ãšããŠèããããã®ã¯ããµã€ããŒç¯çœªè ã¯éåžžãæã£åãæ©ãééçå©çãåŸãããããšãç®æããŠããããæè¿ã¯æå·é貚ã®äŸ¡å€ã倧ããå€åããŠãããæå·é貚ã®çæã«ãããæéããããããã«ãªã£ãããšãããç¯çœªè ãä»ã®åœ¢æ ã®ãµã€ããŒç¯çœªã«ç®ãåããããã«ãªã£ãã®ã§ã¯ãªãããšèãããããšããã
ã¢ãžã¢å€ªå¹³æŽå°åã§ã¯å šè¬çã«ãã©ã€ããã€ããŠã³ããŒãæ»æãæžå°åŸåã«ããããä»åã®èª¿æ»ã§ã¯ãåå°åã®ããžãã¹ã®äžå¿å°ãšãªãã·ã³ã¬ããŒã«ãšéŠæž¯ã§ãã®çš®ã®æ»æã®æ°ã 2019å¹Žã«æé«å€ãèšé²ããåå°åãšäžçå¹³åã®3å以äžãšãªã£ãããšãæããã«ãªã£ããšãããããã¯ã·ã³ã¬ããŒã«ãéŠæž¯ãã¢ãžã¢å€ªå¹³æŽå°åã®éèã®ããã«ãªã£ãŠããç¹ãçç±ãšããŠäºæž¬ããããšããã
æ¥æ¬ã§ãåæ§ã«ã2019幎ã®ãã©ã€ããã€ããŠã³ããŒãæ»ææ°ã300%å¢å ããŠããããªã³ã©ã€ã³ã§ã®ãµãŒãã¹å©çšã®å€ãåœã«è¢«å®³ãåãã§ãããšããã
COVID-19ã®åœ±é¿
2020幎ã®åŸåãšããŠã¯ãæ¥æ¬ã§ãã2æåããã5æ2æ¥ãŸã§ã®æéã§14,000ãè¶ ããCOVID-19ã«ä¹ããæ»æã確èªããŠãããç¹ã«ãæ¥æ¬ã§ã¯ã2æäžæ¬ãã3æåæ¬ã«å¢ããŠãããããã¯äººã ããã£ãšãææå¿ãèŠããŠããææã®ããã§ããã以éã¯èœã¡çããŠããŠãããšããã
ã³ãã屿©ãæ¯èŒçæ©ãèµ·ããäžåœãéåœã§ãåãåŸåãã¿ããããšããã
ç±³ãã€ã¯ããœãã ãµã€ããŒã»ãã¥ãªãã£ãœãªã¥ãŒã·ã§ã³ã°ã«ãŒã Chief Security Advisor è±æå®æ°ã«ããã°ãåŠæ ¡ã®è¢«å®³ãå¢ããŠãããšãããããã¯äŒæ ¡ãäœåãªãããããªã³ã©ã€ã³ææ¥ããã¡æ©ãåãå ¥ããŠãããšããããŸããã»ãã¥ãªãã£å¯ŸçãŸã§æãåããããã®éšåãçãããŠããããã ãšããã
-

ç±³ãã€ã¯ããœãã ãµã€ããŒã»ãã¥ãªãã£ãœãªã¥ãŒã·ã§ã³ã°ã«ãŒã Chief Security Advisor è±æå®æ°
ä»åŸã¯ãSecurity Postureããç®æã
ãããªäžããã€ã¯ããœããã§ã¯ããSecurity PostureãïŒæ»æããã£ãŠãåããªãç°å¢ã®æ°ããã«ã¿ãïŒãç®æããŠãããšããã
æ²³éæ°ã«ããã°ãçŸåšã®ã»ãã¥ãªãã£ç®¡çã®èª²é¡ãšããŠãæ°ããææ³ã®æ»æã«å¯Ÿå¿ããããã«å¢ãç¶ãã察çãœãªã¥ãŒã·ã§ã³ãã»ãã¥ãªãã£ç®¡çã®è€éåããããåæãè§£æã«æéããšãããæ¬æ¥ã®ç®çã§ããè¿ éãªå¯Ÿå¿ãã§ããŠããªãç¹ããããšããã
ãã®èª²é¡ã«å¯Ÿå¿ããããã«åºãŠããèãæ¹ããSecurity Postureãã§ãè¿ éãªå¯Ÿå¿ãç®æããæ»æè ãäœãçã£ãŠããããèããè匱æ§ããªããããã®å ±éé ãå®çŸ©ããŠããããšã ãšããã
Security Postureã¯è匱æ§ã®ãªãç°å¢ãã€ããããšãšãã€ã³ã·ãã³ã察å¿ã®è»œéåãç®çã§ãã»ãã¥ãªãã£ã¬ããã³ã¹ãšã€ã³ã·ãã³ãã¬ã¹ãã³ã¹ã®è»œéåãéèŠã ãšããã
ã»ãã¥ãªãã£ã¬ããã³ã¹ã§ã¯ããã¹ãŠã®è³ç£ã®ç¶æ ããªã¢ã«ã¿ã€ã ã«ææ¡ããè匱æ§ã®æç¡ãææ¡ãã軜æžããããšã§ãæ»æãããŠãäºæ ã«çºå±ããªããè¢«å®³ãæ¡å€§ããªãç°å¢ããµã€ããŒãã€ãžãŒã³ãšããŠæ§ç¯ããã®ããã«å¿ èŠãªèãæ¹ããŒããã©ã¹ãã§ãåçãªããªã·ãŒã掻çšãã察å¿ã«ãã£ãŠãåžžã«è匱æ§ã蚱容ç¯å²å ã«åããããšãå¯èœã«ãªããšããã
ã€ã³ã·ãã³ãã¬ã¹ãã³ã¹ã®è»œéåã§ã¯ãæ å ±åéãšå€æãè¿ éã«è¡ãããã«ãè åšã€ã³ããªãžã§ã³ã¹ã掻çšããçµç¹å€ã®ç¶æ³ãææ¡ãã察çã«åœ¹ç«ãŠãããšã§ãäºå 管çãäºå察çã宿œããããŠãã€ã³ã·ãã³ãã®èª¿æ»ãã察å¿ã®èªååã®ããã®ã¹ã¯ãªããã®å ±æãè¡ãããšã§ãSOCãCSIRT ã«ããã人çã³ã¹ãã®åæžã察å¿ã®è¿ éåãªã©ãå®çŸãããšããã
å瀟ã§ã¯ä»åŸããã§ã«Microsoft 365ã§å®çŸããŠãããã®ç°å¢ãAzure ãIoTã®äžçã«ãåºããªãããå ±éã®ããã·ã¥ããŒããã€ã³ããªãžã§ã³ã¹ã掻çšã§ããããã«ããŠãããšããã
説æäŒã§ã¯ãããã«åããŠãAzure AD External IdentitiesãšASCïŒAzure Security CenterïŒSecurity Score APIãšãã2ã€ã®æ©èœã玹ä»ãããã
Azure AD External Identitiesã§ã¯ãFacebook IDãªã©ã§ãµã€ã³ã€ã³ã§ããã·ã¹ãã ãæ§ç¯å¯èœãæ²³éæ°ã¯ãããã«ãããBYODã§ãã»ãã¥ãªãã£ãµãŒãã¹ãå©çšããç°å¢ãåºãããšããã
ASC Security Score APIã¯ãã»ãã¥ãªãã£ã®ç¶æ ãç¥ããæšå¥šå¯Ÿçã宿œããããã®ãã®ã§ãã»ãã¥ãªãã£ã®åé¡ã«ã€ããŠããªãœãŒã¹ããµãã¹ã¯ãªãã·ã§ã³ãããã³çµç¹ãç¶ç¶çã«è©äŸ¡ã ãã®åŸããã¹ãŠã®çµæã1ã€ã®ã¹ã³ã¢ã«éçŽããŠãçŸåšã®ã»ãã¥ãªãã£ã®ç¶æ³ãäžç®ã§ç¢ºèªã§ããããã«ããããã®APIãããã䜿ããšèªåãã¡ã®ãµãŒãã¹ã§ãå©çšã§ããã




