ãŒãã³ã³å€§æã®ç«¹äžå·¥ååºã¯ãããžã¿ã«å€é©ãå éãããããã建èšããžã¿ã«ãã©ãããã©ãŒã ãã¯ã©ãŠãäžã«æ§ç¯ãããããã¯å»ºèšæ¥åã®ããã»ã¹ãããžã¿ã«åããããã®åºç€ãšãªããã®ã§ãèªç€Ÿã ãã§ã¯ãªããå»ºèšæ¥å šäœã®ããžã¿ã«å€é©ãæšé²ããçç£æ§ãææ¬çã«åäžãããããšãçã£ãŠãããšããã
12æ6æ¥ã7æ¥ã«éå¬ããããTECH+ãã©ãŒã©ã ã¯ã©ãŠãã€ã³ãã© Days 2023 Dec. ã¯ã©ãŠããã€ãã£ããžã®ã·ãããã«ãå瀟 ããžã¿ã«å®€ã«æå±ã®éŽæšç埳æ°ãç»å£ã竹äžå·¥ååºããªã³ãã¬ãã¹ããã¯ã©ãŠããªãããã¯ã©ãŠããã€ãã£ããžãšå€é©ããŠããäžã§å®è¡ããŠããã»ãã¥ãªãã£å¯Ÿçãšããã®éçšã§åŸãæ°ä»ãã«ã€ããŠèªã£ãã
å»ºèšæ¥ãªãã§ã¯ã®ã»ãã¥ãªãã£ãšã¯
è¬æŒåé ã§éŽæšæ°ã¯ãå»ºèšæ¥ã®ã»ãã¥ãªãã£ã®ç¹åŸŽãšããŠãå³é¢ãåçãªã©ãããžã§ã¯ãã«é¢ããæ å ±ã倿°ã®é¢ä¿è ã»åæ¥è ã§å ±æãããèªç€Ÿã ãã§å®ãã®ã¯é£ããããšã建èšçŸå Žã§ã¯èªååãããŠããªãçŽããŒã¹ã®æ å ±ãæäœæ¥ã®æ¥åã倿°ããããšãæããããããŠãã¯ã©ãŠããšåãããŠAIãIoTãšãã£ãããžã¿ã«æè¡ã®å°å ¥ãé²ãã§ããããšãããã¢ããã°æ¥åãšããžã¿ã«æ¥åã®äž¡é¢ã®ã»ãã¥ãªãã£å¯Ÿçãããªããã°ãªããªããšèšãã
ããããç°å¢ã®äžã§ã»ãã¥ãªãã£ã®å¯Ÿè±¡ãšãªãã®ã¯ã倧ããåããŠ5çš®é¡ããã
ãŸãã¯PCãªã©ã®ç«¯æ«ãšãããã¯ãŒã¯ãã¯ã©ãŠãåºç€ãå€éšã¯ã©ãŠãã®SaaSãšãã£ãèªç€Ÿã§å©çšããããžã¿ã«ã€ã³ãã©ãä»ç€Ÿã«æäŸããèªç€Ÿéå¶ãµãŒãã¹ãIoTæ©åšãªã©ã®å»ºèšçŸå Žã®æ©åšé¡ãã¹ããŒããã«ãªã©ã®å»ºç©ããããŠãµãã©ã€ãã§ãŒã³ã ã
建èšçŸå Žã®æ©åšã¯ãããã¯ãŒã¯ã«ã€ãªããŠã¯ã©ãŠãçµç±ã§æäœããå Žåãããããµãã©ã€ãã§ãŒã³ã§ã¯ããžãã¹ãããŒã¿ã®é£æºãç®çã«ä»ã®ãã©ãããã©ãŒã ãšæ¥ç¶ãããŠããå Žåãããããããã£ãŠãã©ã®å±é¢ã§ãåºç€ãšãªãã¯ã©ãŠãã®ã»ãã¥ãªãã£å¯ŸçãéèŠã«ãªãã®ã ã
ãæšä»ã¯ãã¯ã©ãŠããAIãIoTã飿ºããã·ã¹ãã ãå€ããªã£ãŠããŸãããã£ãžã«ã«é¢ããµã€ããŒé¢ã®äž¡é¢ããã»ãã¥ãªãã£ãžã®èæ ®ãå¿ èŠã«ãªãã§ããããïŒéŽæšæ°ïŒ
ã»ãã¥ãªãã£ç¢ºä¿ã®ããã«èããã¹ã3ã€ã®ããš
ãµã€ããŒã»ãã¥ãªãã£ã確ä¿ããããã«ã¯ã次ã®3ã€ã®ããšãèããã¹ãã ãšéŽæšæ°ã¯èšãããŸããã»ãã¥ãªãã£ãšå©äŸ¿æ§ã®ãã©ã³ã¹ãåãããšã ããã®ããã«ã¯ã»ãã¥ãªãã£ããŒã«å°å ¥ã®ã»ãã«ãã«ãŒã«ã®çå®ãæ åœè ã®æè²ãçµã¿åãããŠèããå¿ èŠãããã
次ã«ãç°å¢å€åã«å¯Ÿå¿ããããšãããã瀟äŒãããžãã¹ã®ç°å¢ãè åšã®å€åã«åããã察çã®è¿œå ãæŽæ°ãçµã¿æããéæè¡ãããšãéèŠã ã
ãããŠãå€éšãµãŒãã¹ãããŸã掻çšããããšã倧åã«ãªããã¯ã©ãŠããµãŒãã¹ãã¢ãŠããœãŒã¹çã®å€éšãªãœãŒã¹ãæå€§é掻çšããããšã§ã察çã®èŠæš¡ãçš®é¡ã®æè»ãªèŠçŽããã§ãããŸãæ©èœãèªåã§æ¹åãããŠãããããå¹ççãªã»ãã¥ãªãã£éçšãå®çŸã§ããã¡ãªããããããšåæ°ã¯èªã£ãã
èšå®ãã¹ãçºçããŠãããªã³ãã¬ãã¹å»¶é·ãã§ãŒãº
å瀟ã§ã¯è¿ãå°æ¥ã®ã¯ã©ãŠãã·ããã«åããåãçµã¿ã4ã€ã®ãã§ãŒãºã«åºåã£ãŠèããŠãããæåã2018幎ååŸã®ãªã³ãã¬ãã¹ã®å»¶é·ãã§ãŒãºã次ã2020幎ååŸã®ãã©ãããã©ãŒã æŽåã®ãã§ãŒãºãããã«çŸåšã®ã¯ã©ãŠãäž»æµåã®ãã§ãŒãºãçµãŠãæçµçã«ã¯ã©ãŠãã·ããã®ãã§ãŒãºãžãšåãããã»ãã¥ãªãã£å¯Ÿçããããã4ã€ã®ãã§ãŒãºããšã«èšèšãããŠããã
ãŸãå°æ°ã®ãŠãŒã¶ãŒãã¯ã©ãŠãã§ã·ã¹ãã ãæ§ç¯ãéçšãå§ããã®ããªã³ãã¬ãã¹ã®å»¶é·ãã§ãŒãºã ããã®ãã§ãŒãºã§ã®ã»ãã¥ãªãã£å¯Ÿçã¯ããªã³ãã¬ãã¹ã®å»¶é·ãšããŠãµãŒãã«ãŠã£ã«ã¹å¯Ÿçãœãããå°å ¥ãããšãããã®ã ã£ããããããŸã ã¯ã©ãŠãã«äžæ £ããªæ åœè ããããããäŸãã°ã¡ã³ããã³ã¹ã®éã«èª€ã£ããããã¯ãŒã¯èšå®ãããŠããŸããªã©ãå Žåã«ãã£ãŠã¯ã€ã³ã·ãã³ãã«ç¹ããæãã®ãããã¹ãçºçããŠããã
ãã©ãããã©ãŒã æŽåãã§ãŒãºã§ã¯CSPMãå°å ¥
次ã®ãã©ãããã©ãŒã æŽåãã§ãŒãºã§ã¯æ¥åã·ã¹ãã ãã¯ã©ãŠãã«ç§»è¡ããã¯ã©ãŠããã€ãã£ãã®æ©èœã䜿ã£ãDXã¢ããªã®éçºãå ¬éãå§ãŸã£ããã»ãã¥ãªãã£é¢ãèæ ®ããèšèšãšå³ããæ©èœå¶éã«ããã»ãã¥ãªãã£ã確ä¿ãããšããæ¹éãšãã»ãã¥ãªãã£åŒ·åã®ãããµãŒãã«EDRããå ¬éã·ã¹ãã ã«ã¯ããã«WAFãå°å ¥ãããããããããã«ã€ããŠã¯åçç¹ããã£ããšéŽæšæ°ã¯èšããäŸãã°äœæ¥ã®åºŠã«æ©èœå¶éãäžæçã«éæŸããç³è«ãå¿ èŠãšãªããªã©çµæçã«éçºå¹çãäžãã£ãŠããŸã£ãã
äŸãã°ãæ©èœå¶éã®ããã«è¡ã£ãã¢ãŠãããŠã³ãéä¿¡ã®å³æ Œãªèš±å¯ãªã¹ãïŒãã¯ã€ããªã¹ãïŒå¶åŸ¡ã¯ãOSSå©çšãå€éšãªããžããªããã®ã€ã¡ãŒãžååŸãªã©ãçŸä»£çãªéçºãšã®çžæ§ãè¯ããªãã£ããéŽæšæ°ã¯ãããªã·ãŒéã®ãã©ã³ã¹ãèããå¿ èŠãæããããšè©±ãã
ãããã®ä»ã«ãåãã§ãŒãºã§çºçããèšå®ãã¹ãžã®å¯ŸçãšããŠãããã©ã«ãã§èªåä¿®æ£æ©èœãããç£æ»ããŒã«ã®Cloud Security Posture ManagementïŒCSPMãã¯ã©ãŠãã»ãã¥ãªãã£æ å¢ç®¡çïŒãå°å ¥ããããããã§ã¯ã¢ã©ãŒãã®å€ãã«æ°ä»ãããšåæ°ã¯æ¯ãè¿ã£ãã
ããªã»ããã§çšæãããŠããã¢ã©ãŒãã¯åŠ¥åœãªãã®ã ããèšå®ã®äžåãæ¯æ£ããç®çãšããŠã¯ã¢ã©ãŒããå€éããããã ãã¢ã©ãŒãã«ã¯ä¿®æ£æ¹æ³ãèšèŒãããŠãããããåœåã¯åé¡ãªããšæã£ãŠããããå°å ¥ããŠã¿ããšã»ãã¥ãªãã£çªå£ã«ä¿®æ£æ¹æ³ãªã©ã®åãåãããæ®ºå°ãããšãããããããçµéšããéŽæšæ°ã¯ãã·ã¹ãã æ åœè ã«å¯ŸããŠãã¯ã©ãŠã掻çšã®æ¯æŽãå¿ èŠã ãšçæããã
ã¯ã©ãŠãäž»æµãã§ãŒãºã®æ¹éã¯âã¬ãŒãã¬ãŒã«â
çŸåšã¯ããã©ãããã©ãŒã æŽåãäžæ®µèœããããŸããŸãªéšéã§ã¯ã©ãŠãã®æŽ»çšãå§ãŸã£ãŠããã¯ã©ãŠãäž»æµãã§ãŒãºã«ããããããã§ã®ã»ãã¥ãªãã£æ¹éã¯ããã¬ãŒãã¬ãŒã«ã®èšå®ããåºæ¬æ¹éãšããŠããã
ã¯ã©ãŠãäžã®å皮暩éãéæŸãã代ããã«è²¬ä»»åçç¹ãæç¢ºã«ããã¬ã€ããšããŠææžåããããããåæã«ãCSPMã«ããçŠæ¢ãèªåä¿®æ£ãšãã£ãäºé²çã¬ãŒãã¬ãŒã«ãšãCSPMã®ã¢ã©ãŒãã«ããçºèŠçã¬ãŒãã¬ãŒã«ãèšçœ®ããã
ãŸããCSPMã®æŽæ°ã«ãã£ãŠãã¢ã©ãŒãã®æ°ãæžãããè åšç°å¢ã®å€åãã¢ã©ãŒãå 容ã«åã蟌ããšãã£ããã¢ã©ãŒãã®é©æ£åãè¡ã£ãŠãããäžæ¹ãEDRãå°å ¥ã§ããªãã³ã³ããããµãŒãã¬ã¹ã«ã¯Cloud Workload Protection PlatformïŒCWPPïŒã®å°å ¥ãæ€èšãããŸãããããã€ã«ãããã«ãŒã«æŽåãæ€èšããŠãããšããã
ã¯ã©ãŠãã·ãããã§ãŒãºã§ã¯DevSecOpsã®å®çŸãç®æã
éããªãå®çŸãããã ãšããã¯ã©ãŠãã·ãããã§ãŒãºã§ã¯ãã¯ã©ãŠããã€ãã£ãã®æ©èœãããã©ã«ãã§ãã«æŽ»çšãããç¶æ ãæ³å®ããŠããã
ãæ¥åã·ã¹ãã ã¯ã¢ãã³ã¢ããªã±ãŒã·ã§ã³ãžã·ããããContinuous Integration/Continuous DeliveryïŒCI/CDïŒãDevSecOpsãšãã£ãããŒã«ã«ã«ãã£ãŒãæ®åããŠãããšèããŠããŸããïŒéŽæšæ°ïŒ
ãã®ãã§ãŒãºã§ã¯ãã¯ã©ãŠãã®æŽ»çšäœå¶ãæŽåããå æ¬çãªä¿è·ãè¡ã£ãŠããæ¹éã ããããŸã§è¡ã£ãŠãã察çã®ç¶ç¶åŒ·åã®ããã«ã¬ã€ããããã«æŽåããã¬ãŒãã¬ãŒã«ãéæèŠçŽããŠããã»ããã¯ã©ãŠãæŽ»çšæ¯æŽãã¬ããã³ã¹äœå¶ã®æŽåã®ããã«ãã¯ã©ãŠãæŽ»çšæšé²çµç¹ã§ããCloud Center of ExcellenceïŒCCoEïŒã®çµæãæ€èšããŠããã
ããã«ãã·ããã¬ãããã»ãã¥ãªãã£ã»ãã€ã»ãã¶ã€ã³ãªã©éçºæ®µéã«ãã»ãã¥ãªãã£ãçµã¿èŸŒãã§ãDevSecOpsãæšé²ããããšãèããŠãããšããã
ãDevOpsã«ã»ãã¥ãªãã£ãåŸä»ãããã®ã§ã¯ãªããæåããDevSecOpsã«ããŠããããã§ããïŒéŽæšæ°ïŒ
CI/CDèªäœã®ã»ãã¥ãªãã£ã匷åãã
å瀟ã§ã¯ãã§ã«ãã¯ã©ãŠãã·ãããã§ãŒãºã§ã®æ®åãèŠè¶ããŠãCI/CDãäžéšç°å¢ã§æŽ»çšãããŠãããçŸåšã¯ã€ã³ãã©çšãšã¢ããªçšã®ãã€ãã©ã€ã³ãããããããããåæ»ã«æäœã§ããç°å¢ãæ§ç¯ãã€ã€ãæ¿èªã²ãŒããªã©ãæŽåããŠããã
CI/CDã¯ã»ãã¥ãªãã£ã®åŒ·åã«ã圹ç«ã€ãã®ã ãããã®äžæ¹ã§CI/CDèªäœã®ã»ãã¥ãªãã£ã匷åããå¿ èŠãããããã®ããå瀟ã§ã¯ãã«ãã»ãã¹ã段éã§éçã³ãŒããã¹ãããããã€æ®µéã§ã»ãã¥ãªãã£èšºæãéçšæ®µéã§ã¯ãµãŒãä¿è·ã®ããã®EDRã®å°å ¥ãªã©ã宿œããŠãããå ããŠãOpen Web Application Security Project ïŒOWASPïŒãNational Institute of Standards and Technology ïŒNISTïŒãªã©ã®ã¬ã€ãã©ã€ã³ãåèã«ããããªã察çãæ€èšããŠããããã ã
ãä»åŸã¯èšç»ã»èšè𿮵éã«ã»ãã¥ãªãã£ã»ãã€ã»ãã¶ã€ã³ãã³ãŒã段éã«ãªããžããªä¿è·ããã®ä»ã«ãåçãã¹ãã蚺æã®èªååãªã©ãå®è£ ããDevSecOpsãå®çŸããŠãããããšèããŠããŸããïŒéŽæšæ°ïŒ



