ã°ããŒãã«ã³ã³ãã©ã€ã¢ã³ã¹ã®ããã®ç£æ»ãã®ã³ã°ããã¹ã¿ãŒããŸããããGDPRãSOC 2ãHIPAAãPCI DSSãªã©ã®å¹æçãªç£æ»èšŒè·¡ã®å®è£ ã解説ããŸãããã¹ããã©ã¯ãã£ã¹ãåŠã³ãŸãããã
ç£æ»ãã®ã³ã°ïŒã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ã®å®è£ ã«é¢ããå æ¬çãªã¬ã€ã
仿¥ã®çžäºæ¥ç¶ãããããžã¿ã«çµæžã«ãããŠãããŒã¿ã¯ãã¹ãŠã®çµç¹ã®çåœç·ã§ãããã®ããŒã¿ãžã®äŸåã¯ãæ©å¯æ å ±ãä¿è·ããäŒæ¥ã®èª¬æè²¬ä»»ã確ä¿ããããã«èšèšãããã°ããŒãã«ãªèŠå¶ã®æ¥å¢ã«å¯Ÿå¿ããŠããŸããããããã®èŠå¶ã®ã»ãŒãã¹ãŠã®äžæ žã«ã¯ããšãŒãããã®GDPRããç±³åœã®HIPAAããããŠäžçã®PCI DSSãŸã§ãåºæ¬çãªèŠä»¶ããããŸããããã¯ãã·ã¹ãã å ã§èª°ããäœãããã€ãã©ãã§è¡ã£ãã®ããå®èšŒããèœåã§ãããããç£æ»ãã®ã³ã°ã®æ žå¿çãªç®çã§ãã
åãªãæè¡çãªãã§ãã¯ããã¯ã¹ãšã¯ããé¢ããŠãå ç¢ãªç£æ»ãã®ã³ã°æŠç¥ã¯ãææ°ã®ãµã€ããŒã»ãã¥ãªãã£ã®åºç€ã§ãããããããã³ã³ãã©ã€ã¢ã³ã¹ããã°ã©ã ã®äžå¯æ¬ ãªèŠçŽ ã§ããæ³å»åŠèª¿æ»ã«å¿ èŠãªçŽãããªã蚌æ ãæäŸããã»ãã¥ãªãã£ã€ã³ã·ãã³ãã®æ©ææ€åºã«åœ¹ç«ã¡ãç£æ»äººã«å¯Ÿãããã¥ãŒããªãžã§ã³ã¹ã®äž»èŠãªèšŒæ ãšããŠæ©èœããŸããããããã»ãã¥ãªãã£ã«ãšã£ãŠååã«å æ¬çã§ãããã³ã³ãã©ã€ã¢ã³ã¹ã«ãšã£ãŠååã«æ£ç¢ºãªç£æ»ãã®ã³ã°ã·ã¹ãã ãå®è£ ããããšã¯ã倧ããªèª²é¡ãšãªãå¯èœæ§ããããŸããçµç¹ã¯ãäœããã°ã«èšé²ãã¹ããããã°ãå®å šã«ä¿åããæ¹æ³ããããŠçæãããèšå€§ãªéã®ããŒã¿ãçè§£ããæ¹æ³ã«èŠåŽããããšããããããŸãã
ãã®å æ¬çãªã¬ã€ãã¯ããã®ããã»ã¹ãè§£ãæãããŸããã°ããŒãã«ãªã³ã³ãã©ã€ã¢ã³ã¹ç¶æ³ã«ãããç£æ»ãã®ã³ã°ã®éèŠãªåœ¹å²ãæ¢æ±ããå®è£ ã®ããã®å®è·µçãªãã¬ãŒã ã¯ãŒã¯ãæäŸããåé¿ãã¹ãäžè¬çãªèœãšã穎ã匷調ãããã®äžå¯æ¬ ãªã»ãã¥ãªãã£ãã©ã¯ãã£ã¹ã®å°æ¥ãèŠæ®ããŸãã
ç£æ»ãã®ã³ã°ãšã¯ïŒåçŽãªèšé²ã®å ãž
æãåçŽãªå Žåãç£æ»ãã°ïŒç£æ»èšŒè·¡ãšãåŒã°ããŸãïŒã¯ãã·ã¹ãã ãŸãã¯ã¢ããªã±ãŒã·ã§ã³å ã§çºçããã€ãã³ããšã¢ã¯ãã£ããã£ã®æç³»åã®ãã»ãã¥ãªãã£ã«é¢é£ããèšé²ã§ããããã¯ã説æè²¬ä»»ã®éèŠãªè³ªåã«çããæ¹ãã鲿¢å°åž³ã§ãã
ç£æ»ãã°ãä»ã®ã¿ã€ãã®ãã°ãšåºå¥ããããšãéèŠã§ãã
- 蚺æ/ãããã°ãã°ïŒãããã¯ãéçºè ãã¢ããªã±ãŒã·ã§ã³ã®ãšã©ãŒãããã©ãŒãã³ã¹ã®åé¡ããã©ãã«ã·ã¥ãŒãã£ã³ã°ããããã®ãã®ã§ããã»ãã¥ãªãã£ç£æ»ã«é¢ä¿ã®ãªããè©³çŽ°ãªæè¡æ å ±ãå«ãŸããŠããããšããããããŸãã
- ããã©ãŒãã³ã¹ãã°ïŒãããã¯ãCPU䜿çšçãã¡ã¢ãªæ¶è²»éãå¿çæéãªã©ã®ã·ã¹ãã ã¡ããªãã¯ã远跡ããäž»ã«éçšç£èŠçšã§ãã
å¯Ÿç §çã«ãç£æ»ãã°ã¯ãã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã«ã®ã¿çŠç¹ãåœãŠãŠããŸããåãšã³ããªã¯ãã¢ã¯ã·ã§ã³ã®æ¬è³ªçãªã³ã³ããŒãã³ãããã£ããã£ããæç¢ºã§çè§£ããããã€ãã³ãèšé²ã§ããå¿ èŠãããã5WãšåŒã°ããŸãã
- WhoïŒã€ãã³ããéå§ãããŠãŒã¶ãŒãã·ã¹ãã ããŸãã¯ãµãŒãã¹ã®ããªã³ã·ãã«ãïŒäŸïŒ'jane.doe'ã'API-key-_x2y3z_'ïŒ
- WhatïŒå®è¡ãããã¢ã¯ã·ã§ã³ãïŒäŸïŒ'user_login_failed'ã'customer_record_deleted'ã'permissions_updated'ïŒ
- WhenïŒã€ãã³ãã®æ£ç¢ºã§åæãããã¿ã€ã ã¹ã¿ã³ãïŒã¿ã€ã ãŸãŒã³ãå«ãïŒã
- WhereïŒIPã¢ãã¬ã¹ããã¹ãåããŸãã¯ã¢ããªã±ãŒã·ã§ã³ã¢ãžã¥ãŒã«ãªã©ãã€ãã³ãã®çºçæºã
- WhyïŒãŸãã¯OutcomeïŒïŒã¢ã¯ã·ã§ã³ã®çµæãïŒäŸïŒ'success'ã'failure'ã'access_denied'ïŒ
é©åã«äœæãããç£æ»ãã°ãšã³ããªã¯ãæŒ ç¶ãšããèšé²ãæç¢ºãªèšŒæ ã«å€æããŸããããšãã°ããã¬ã³ãŒããæŽæ°ãããŸãããã®ä»£ããã«ãé©åãªç£æ»ãã°ã¯æ¬¡ã®ããã«èšè¿°ããŸããããŠãŒã¶ãŒ'admin@example.com'ã¯ã2023-10-27T10:00:00Zã«ãIPã¢ãã¬ã¹203.0.113.42ãã'john.smith'ã®ãŠãŒã¶ãŒæš©éã'read-only'ãã'editor'ã«æ£åžžã«æŽæ°ããŸãããã
ãªãç£æ»ãã®ã³ã°ãå¿ é ã®ã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ãªã®ã
èŠå¶åœå±ãæšæºåå£äœã¯ãITããŒã ã®è² æ ãå¢ããããã ãã«ç£æ»ãã®ã³ã°ã矩åä»ããŠããããã§ã¯ãããŸããã圌ãã¯ããããªãã§ã¯ãå®å šã§èª¬æè²¬ä»»ã®ããç°å¢ã確ç«ããããšãäžå¯èœã§ããããããããå¿ èŠãšããŸããç£æ»ãã°ã¯ãçµç¹ã®ã»ãã¥ãªãã£ç®¡çãé©åã«é 眮ããã广çã«æ©èœããŠããããšã蚌æããããã®äž»èŠãªã¡ã«ããºã ã§ãã
ç£æ»ãã°ã矩åä»ããŠããäž»èŠãªã°ããŒãã«èŠå¶ãšæšæº
å ·äœçãªèŠä»¶ã¯ç°ãªããŸãããåºæ¬çãªååã¯ãäž»èŠãªã°ããŒãã«ãã¬ãŒã ã¯ãŒã¯å šäœã§æ®éçã§ãã
GDPRïŒäžè¬ããŒã¿ä¿è·èŠåïŒ
GDPRã¯ãèŠç¯çãªæ¹æ³ã§ãç£æ»ãã°ããšããçšèªãæç€ºçã«äœ¿çšããŠããŸãããã説æè²¬ä»»ã®ååïŒç¬¬5æ¡ïŒãšåŠçã®ã»ãã¥ãªãã£ïŒç¬¬32æ¡ïŒã«ããããã®ã³ã°ãäžå¯æ¬ ã«ãªããŸããçµç¹ã¯ãå人ããŒã¿ãå®å šãã€åæ³çã«åŠçããŠããããšã蚌æã§ããªããã°ãªããŸãããç£æ»ãã°ã¯ãããŒã¿äŸµå®³ã調æ»ããããŒã¿äž»äœã®ã¢ã¯ã»ã¹èŠæ±ïŒDSARïŒã«å¯Ÿå¿ããèš±å¯ãããæ åœè ã®ã¿ãå人ããŒã¿ã«ã¢ã¯ã»ã¹ãŸãã¯å€æŽããããšãèŠå¶åœå±ã«èšŒæããããã«å¿ èŠãªèšŒæ ãæäŸããŸãã
SOC 2ïŒService Organization Control 2ïŒ
SaaSäŒæ¥ããã®ä»ã®ãµãŒãã¹ãããã€ããŒã«ãšã£ãŠãSOC 2ã¬ããŒãã¯ã圌ãã®ã»ãã¥ãªãã£äœå¶ã®éèŠãªèšŒæã§ããä¿¡é ŒãµãŒãã¹åºæºãç¹ã«ã»ãã¥ãªãã£åºæºïŒå¥åãå ±éåºæºïŒã¯ãç£æ»èšŒè·¡ã«å€§ããäŸåããŠããŸããç£æ»äººã¯ãã·ã¹ãã ã®æ§æå€æŽãæ©å¯ããŒã¿ãžã®ã¢ã¯ã»ã¹ãããã³ç¹æš©ãŠãŒã¶ãŒã®ã¢ã¯ã·ã§ã³ã«é¢é£ããã¢ã¯ãã£ããã£ãäŒæ¥ããã°ã«èšé²ããç£èŠããŠãã蚌æ ãç¹ã«æ¢ããŸãïŒCC7.2ïŒã
HIPAAïŒHealth Insurance Portability and Accountability ActïŒ
ä¿è·ãããå»çæ å ±ïŒPHIïŒãåŠçãããã¹ãŠã®ãšã³ãã£ãã£ã«ãšã£ãŠãHIPAAã®ã»ãã¥ãªãã£ã«ãŒã«ã¯å³æ Œã§ããããã¯ããé»åçã«ä¿è·ãããå»çæ å ±ãå«ãããŸãã¯äœ¿çšããæ å ±ã·ã¹ãã ã«ãããã¢ã¯ãã£ããã£ãèšé²ãã調æ»ãããã¡ã«ããºã ãæç€ºçã«èŠæ±ããŠããŸãïŒÂ§ 164.312ïŒbïŒïŒãããã¯ãPHIã®ãã¹ãŠã®ã¢ã¯ã»ã¹ãäœæã倿Žãããã³åé€ããã°ã«èšé²ããããšããªãã·ã§ã³ã§ã¯ãªããäžæ£ã¢ã¯ã»ã¹ã鲿¢ããã³æ€åºããããã®çŽæ¥çãªæ³çèŠä»¶ã§ããããšãæå³ããŸãã
PCI DSSïŒPayment Card Industry Data Security StandardïŒ
ãã®ã°ããŒãã«ã¹ã¿ã³ããŒãã¯ãã«ãŒãäŒå¡ããŒã¿ãä¿åãåŠçããŸãã¯éä¿¡ãããã¹ãŠã®çµç¹ã«å¿ é ã§ããèŠä»¶10ã¯ããã®ã³ã°ãšç£èŠã«å®å šã«å°å¿µããŠããŸããããããã¯ãŒã¯ãªãœãŒã¹ãšã«ãŒãäŒå¡ããŒã¿ãžã®ãã¹ãŠã®ã¢ã¯ã»ã¹ã远跡ããã³ç£èŠããããšãããŸããã«ãŒãäŒå¡ããŒã¿ãžã®ãã¹ãŠã®åã ã®ã¢ã¯ã»ã¹ãç¹æš©ãŠãŒã¶ãŒã«ãã£ãŠå®è¡ããããã¹ãŠã®æäœãããã³ãã¹ãŠã®ãã°ã€ã³è©Šè¡ã®å€±æãªã©ããã°ã«èšé²ããå¿ èŠãããã€ãã³ããè©³çŽ°ã«æå®ããŠããŸãã
ISO/IEC 27001
æ å ±ã»ãã¥ãªãã£ãããžã¡ã³ãã·ã¹ãã ïŒISMSïŒã®æé«ã®åœéèŠæ ŒãšããŠãISO 27001ã¯ãçµç¹ããªã¹ã¯è©äŸ¡ã«åºã¥ããŠç®¡çã宿œããããšãèŠæ±ããŠããŸããé屿žAã®ç®¡çA.12.4ã¯ããã®ã³ã°ãšç£èŠã«ç¹åããŠãããäžæ£ãªæŽ»åãæ€åºãã調æ»ããµããŒãããããã«ãã€ãã³ããã°ã®äœæãä¿è·ãããã³å®æçãªã¬ãã¥ãŒãèŠæ±ããŠããŸãã
ã³ã³ãã©ã€ã¢ã³ã¹ã®ããã®ç£æ»ãã®ã³ã°ãå®è£ ããããã®å®è·µçãªãã¬ãŒã ã¯ãŒã¯
ã³ã³ãã©ã€ã¢ã³ã¹ã«å¯Ÿå¿ããç£æ»ãã®ã³ã°ã·ã¹ãã ãäœæããã«ã¯ãæ§é åãããã¢ãããŒããå¿ èŠã§ããåã«ã©ãã§ããã®ã³ã°ããªã³ã«ããã ãã§ã¯ååã§ã¯ãããŸãããç¹å®ã®èŠå¶ããŒãºãšã»ãã¥ãªãã£ç®æšã«åãããæå³çãªæŠç¥ãå¿ èŠã§ãã
ã¹ããã1ïŒç£æ»ãã®ã³ã°ããªã·ãŒãå®çŸ©ãã
1è¡ã®ã³ãŒããèšè¿°ããããããŒã«ãæ§æãããããåã«ãæ£åŒãªããªã·ãŒãäœæããå¿ èŠããããŸãããã®ããã¥ã¡ã³ãã¯ããªãã®å極æã§ãããç£æ»äººãæåã«æ±ãããã®ã®1ã€ã«ãªããŸããããã¯æç¢ºã«å®çŸ©ããå¿ èŠããããŸãïŒ
- ç¯å²ïŒã©ã®ã·ã¹ãã ãã¢ããªã±ãŒã·ã§ã³ãããŒã¿ããŒã¹ãããã³ãããã¯ãŒã¯ããã€ã¹ãç£æ»ãã®ã³ã°ã®å¯Ÿè±¡ãšãªããŸããïŒæ©å¯ããŒã¿ãåŠçããããéèŠãªããžãã¹æ©èœãå®è¡ãããããã·ã¹ãã ãåªå ããŸãã
- ç®çïŒåã·ã¹ãã ã«ã€ããŠããªããã°ã«èšé²ããŠããã®ããèšè¿°ããŸããç¹å®ã®ã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ã«ãã®ã³ã°ã¢ã¯ãã£ããã£ãçŽæ¥ãããã³ã°ããŸãïŒäŸïŒãPCI DSSèŠä»¶10.2ãæºããããã«ã顧客ããŒã¿ããŒã¹ãžã®ãã¹ãŠã®ã¢ã¯ã»ã¹ããã°ã«èšé²ãããïŒã
- ä¿ææéïŒãã°ã¯ã©ã®ãããã®æéä¿åãããŸããïŒããã¯å€ãã®å ŽåãèŠå¶ã«ãã£ãŠæ±ºå®ãããŸããããšãã°ãPCI DSSã§ã¯ãå°ãªããšã1幎éãåæã®ããã«ããã«å©çšã§ãã3ãæãå¿ èŠã§ãããã®ä»ã®èŠå¶ã§ã¯ã7幎以äžãå¿ èŠãšãªãå ŽåããããŸããããªã·ãŒã§ã¯ãããŸããŸãªã¿ã€ãã®ãã°ã®ä¿ææéãæå®ããå¿ èŠããããŸãã
- ã¢ã¯ã»ã¹å¶åŸ¡ïŒç£æ»ãã°ã衚瀺ããæš©éãæã€ã®ã¯èª°ã§ããïŒãã®ã³ã°ã€ã³ãã©ã¹ãã©ã¯ãã£ã管çã§ããã®ã¯èª°ã§ããïŒæ¹ãããäžæ£ãªé瀺ãé²ãããã«ãã¢ã¯ã»ã¹ã¯ç¥ãå¿ èŠã®ãã人ã«å³å¯ã«å¶éããå¿ èŠããããŸãã
- ã¬ãã¥ãŒããã»ã¹ïŒãã°ã¯ã©ã®ãããã®é »åºŠã§ã¬ãã¥ãŒãããŸããïŒã¬ãã¥ãŒã®è²¬ä»»è ã¯èª°ã§ããïŒçãããçµæããšã¹ã«ã¬ãŒãããããã®ããã»ã¹ã¯äœã§ããïŒ
ã¹ããã2ïŒäœããã°ã«èšé²ããããæ±ºå®ãã - ç£æ»ã®ããŽãŒã«ãã³ã·ã°ãã«ã
æå€§ã®èª²é¡ã®1ã€ã¯ããã°ãå°ãªãããïŒãããŠéèŠãªã€ãã³ããèŠéãïŒããšãšããã°ãå€ãããïŒãããŠå¶åŸ¡äžèœãªããŒã¿ã®æŽªæ°ŽãäœæããïŒããšã®ãã©ã³ã¹ããšãããšã§ãã䟡å€ã®é«ããã»ãã¥ãªãã£ã«é¢é£ããã€ãã³ãã«çŠç¹ãåœãŠãŸãã
- ãŠãŒã¶ãŒããã³èªèšŒã€ãã³ãïŒ
- æåãããã°ã€ã³è©Šè¡ãšå€±æãããã°ã€ã³è©Šè¡
- ãŠãŒã¶ãŒã®ãã°ã¢ãŠã
- ãã¹ã¯ãŒãã®å€æŽãšãªã»ãã
- ã¢ã«ãŠã³ãã®ããã¯ã¢ãŠã
- ãŠãŒã¶ãŒã¢ã«ãŠã³ãã®äœæãåé€ããŸãã¯å€æŽ
- ãŠãŒã¶ãŒã®ããŒã«ãŸãã¯æš©éã®å€æŽïŒæš©éææ Œ/æš©ééæ ŒïŒ
- ããŒã¿ã¢ã¯ã»ã¹ããã³å€æŽã€ãã³ãïŒCRUDïŒïŒ
- äœæïŒæ°ããæ©å¯ã¬ã³ãŒãã®äœæïŒäŸïŒæ°ãã顧客ã¢ã«ãŠã³ããæ°ããæ£è ãã¡ã€ã«ïŒã
- èªã¿åãïŒæ©å¯ããŒã¿ãžã®ã¢ã¯ã»ã¹ã誰ãã©ã®ã¬ã³ãŒãããã€è¡šç€ºãããããã°ã«èšé²ããŸããããã¯ãã©ã€ãã·ãŒèŠå¶ã«ãšã£ãŠéèŠã§ãã
- æŽæ°ïŒæ©å¯ããŒã¿ã«å¯ŸããŠè¡ããã倿Žãå¯èœã§ããã°ãå€ãå€ãšæ°ããå€ããã°ã«èšé²ããŸãã
- åé€ïŒæ©å¯ã¬ã³ãŒãã®åé€ã
- ã·ã¹ãã ããã³æ§æå€æŽã€ãã³ãïŒ
- ãã¡ã€ã¢ãŠã©ãŒã«ã«ãŒã«ãã»ãã¥ãªãã£ã°ã«ãŒãããŸãã¯ãããã¯ãŒã¯æ§æãžã®å€æŽã
- æ°ãããœãããŠã§ã¢ãŸãã¯ãµãŒãã¹ã®ã€ã³ã¹ããŒã«ã
- éèŠãªã·ã¹ãã ãã¡ã€ã«ãžã®å€æŽã
- ã»ãã¥ãªãã£ãµãŒãã¹ã®éå§ãŸãã¯åæ¢ïŒäŸïŒã¢ã³ããŠã€ã«ã¹ããã®ã³ã°ãšãŒãžã§ã³ãïŒã
- ç£æ»ãã®ã³ã°æ§æèªäœã®å€æŽïŒéåžžã«éèŠãªã€ãã³ããç£èŠããŸãïŒã
- ç¹æš©ããã³ç®¡çæäœïŒ
- 管çè ãŸãã¯ãrootãæš©éãæã€ãŠãŒã¶ãŒã«ãã£ãŠå®è¡ãããã¢ã¯ã·ã§ã³ã
- é«ç¹æš©ã®ã·ã¹ãã ãŠãŒãã£ãªãã£ã®äœ¿çšã
- å€§èŠæš¡ãªããŒã¿ã»ããã®ãšã¯ã¹ããŒããŸãã¯ã€ã³ããŒãã
- ã·ã¹ãã ã®ã·ã£ããããŠã³ãŸãã¯åèµ·åã
ã¹ããã3ïŒãã®ã³ã°ã€ã³ãã©ã¹ãã©ã¯ãã£ã®èšèš
ãµãŒããŒãããŒã¿ããŒã¹ããã¢ããªã±ãŒã·ã§ã³ãã¯ã©ãŠããµãŒãã¹ãŸã§ããã¯ãããžãŒã»ã¹ã¿ãã¯å šäœã§ãã°ãçæãããŠããããããããã广çã«ç®¡çããããšã¯ãéäžã·ã¹ãã ãªãã§ã¯äžå¯èœã§ãã
- éäžåãéèŠïŒãã°ãçæå ã®ããŒã«ã«ãã·ã³ã«ä¿åããããšã¯ãã³ã³ãã©ã€ã¢ã³ã¹ã®å€±æãåŸ ã£ãŠãããããªãã®ã§ãããã®ãã·ã³ã䟵害ãããå Žåãæ»æè ã¯ç°¡åã«èªåã®çè·¡ãæ¶ãããšãã§ããŸãããã¹ãŠã®ãã°ã¯ãå°çšã®ãå®å šãªãéäžåã®ãã®ã³ã°ã·ã¹ãã ã«ã»ãŒãªã¢ã«ã¿ã€ã ã§éä¿¡ããå¿ èŠããããŸãã
- SIEMïŒSecurity Information and Event ManagementïŒïŒSIEMã¯ãææ°ã®ãã®ã³ã°ã€ã³ãã©ã¹ãã©ã¯ãã£ã®é è³ã§ããããã¯ãããŸããŸãªãœãŒã¹ããã®ãã°ãéçŽããäžè¬çãªåœ¢åŒã«æ£èŠåããŠãããçžé¢åæãå®è¡ããŸããSIEMã¯ãå¥ã®ãµãŒããŒã§ã®ãã°ã€ã³ã®å€±æã«ç¶ããŠãåãIPã¢ãã¬ã¹ããã®å¥ã®ãµãŒããŒã§ã®ãã°ã€ã³ã®æåãªã©ãç°ãªãã€ãã³ããæ¥ç¶ããŠããã以å€ã§ã¯èŠããªãå¯èœæ§ã®ããæœåšçãªæ»æãã¿ãŒã³ãç¹å®ã§ããŸãããŸããèªåã¢ã©ãŒããšã³ã³ãã©ã€ã¢ã³ã¹ã¬ããŒãã®çæã®ããã®äž»èŠãªããŒã«ã§ããããŸãã
- ãã°ã®ä¿åãšä¿æïŒäžå€®ãã°ãªããžããªã¯ãã»ãã¥ãªãã£ãšã¹ã±ãŒã©ããªãã£ã®ããã«èšèšããå¿
èŠããããŸããããã«ã¯ä»¥äžãå«ãŸããŸãïŒ
- å®å šãªã¹ãã¬ãŒãžïŒè»¢éäžïŒãœãŒã¹ããäžå€®ã·ã¹ãã ãžïŒãšä¿åäžïŒãã£ã¹ã¯äžïŒã®äž¡æ¹ã§ãã°ãæå·åããŸãã
- äžå€æ§ïŒWrite-OnceãRead-ManyïŒWORMïŒã¹ãã¬ãŒãžããããã¯ãã§ãŒã³ããŒã¹ã®å°åž³ãªã©ã®ãã¯ãããžãŒã䜿çšããŠããã°ãæžã蟌ãŸãããããã®ä¿ææéãçµäºããåã«å€æŽãŸãã¯åé€ã§ããªãããã«ããŸãã
- èªåä¿æïŒã·ã¹ãã ã¯ãå®çŸ©ããä¿æããªã·ãŒãèªåçã«é©çšããå¿ èŠã«å¿ããŠãã°ãã¢ãŒã«ã€ããŸãã¯åé€ããå¿ èŠããããŸãã
- æå»åæïŒããã¯åçŽã§ãããéåžžã«éèŠãªè©³çްã§ããã€ã³ãã©ã¹ãã©ã¯ãã£å šäœã®ãã¹ãŠã®ã·ã¹ãã ã¯ããããã¯ãŒã¯ã¿ã€ã ãããã³ã«ïŒNTPïŒãªã©ã®ä¿¡é Œã§ããæå»ãœãŒã¹ã«åæããå¿ èŠããããŸããæ£ç¢ºã§åæãããã¿ã€ã ã¹ã¿ã³ãããªããšãããŸããŸãªã·ã¹ãã éã®ã€ãã³ããé¢é£ä»ããŠã€ã³ã·ãã³ãã®ã¿ã€ã ã©ã€ã³ãåæ§ç¯ããããšã¯äžå¯èœã§ãã
ã¹ããã4ïŒãã°ã®æŽåæ§ãšã»ãã¥ãªãã£ã®ç¢ºä¿
ç£æ»ãã°ã¯ããã®æŽåæ§ãšåããããä¿¡é Œã§ããŸããç£æ»äººãæ³å»åŠèª¿æ»å®ã¯ãã¬ãã¥ãŒããŠãããã°ãæ¹ãããããŠããªãããšã確信ããå¿ èŠããããŸãã
- æ¹ããã®é²æ¢ïŒãã°ã®æŽåæ§ãä¿èšŒããã¡ã«ããºã ãå®è£ ããŸããããã¯ãåãã°ãšã³ããªãŸãã¯ãšã³ããªã®ãããã«å¯ŸããŠæå·åããã·ã¥ïŒäŸïŒSHA-256ïŒãèšç®ãããããã®ããã·ã¥ãåå¥ã«å®å šã«ä¿åããããšã«ãã£ãŠå®çŸã§ããŸãããã°ãã¡ã€ã«ã«å€æŽãå ãããããšãããã·ã¥ãäžèŽããªããªããæ¹ãããããã«æããã«ãªããŸãã
- RBACã«ããå®å šãªã¢ã¯ã»ã¹ïŒãã®ã³ã°ã·ã¹ãã ã«å³å¯ãªããŒã«ããŒã¹ã®ã¢ã¯ã»ã¹å¶åŸ¡ïŒRBACïŒãå®è£ ããŸããæå°ç¹æš©ã®ååãæãéèŠã§ããã»ãšãã©ã®ãŠãŒã¶ãŒïŒéçºè ãã·ã¹ãã 管çè ãå«ãïŒã¯ãçã®éçšãã°ã衚瀺ããæš©éãæã€ã¹ãã§ã¯ãããŸãããå°æ°ã®æå®ãããã»ãã¥ãªãã£ã¢ããªã¹ãããŒã ã調æ»ã®ããã«èªã¿åãå°çšã¢ã¯ã»ã¹æš©ãæã¡ãããã«å°æ°ã®ã°ã«ãŒãããã®ã³ã°ãã©ãããã©ãŒã èªäœã®ç®¡çæš©éãæã€å¿ èŠããããŸãã
- å®å šãªãã°è»¢éïŒTLS 1.2以éãªã©ã®åŒ·åãªãããã³ã«ã䜿çšããŠããœãŒã¹ã·ã¹ãã ããäžå€®ãªããžããªãžã®è»¢éäžã«ãã°ãæå·åãããŠããããšã確èªããŸããããã«ããããããã¯ãŒã¯äžã®ãã°ã®çèŽã倿Žãé²ããŸãã
ã¹ããã5ïŒå®æçãªã¬ãã¥ãŒãç£èŠãããã³ã¬ããŒã
誰ãããããèŠãŠããªãå Žåããã°ãåéããŠã圹ã«ç«ã¡ãŸãããç©æ¥µçãªç£èŠãšã¬ãã¥ãŒããã»ã¹ã¯ãååçãªããŒã¿ã¹ãã¢ãã¢ã¯ãã£ããªé²åŸ¡ã¡ã«ããºã ã«å€ãããã®ã§ãã
- èªåã¢ã©ãŒãïŒSIEMãæ§æããŠãåªå 床ã®é«ãçãããã€ãã³ãã®ã¢ã©ãŒããèªåçã«çæããŸããäŸãšããŠã¯ãåäžã®IPããã®è€æ°ã®ãã°ã€ã³è©Šè¡ã®å€±æãç¹æš©ã°ã«ãŒããžã®ãŠãŒã¶ãŒã¢ã«ãŠã³ãã®è¿œå ããŸãã¯ç°åžžãªæéãŸãã¯ç°åžžãªå°ççå Žæããã®ããŒã¿ãžã®ã¢ã¯ã»ã¹ãªã©ããããŸãã
- 宿çãªç£æ»ïŒç£æ»ãã°ã®å®æçãªæ£åŒãªã¬ãã¥ãŒãã¹ã±ãžã¥ãŒã«ããŸããããã¯ãéèŠãªã»ãã¥ãªãã£ã¢ã©ãŒãã®æ¯æ¥ã®ãã§ãã¯ãšããŠãŒã¶ãŒã®ã¢ã¯ã»ã¹ãã¿ãŒã³ã𿧿倿Žã®æ¯é±ãŸãã¯æ¯æã®ã¬ãã¥ãŒã«ããããšãã§ããŸãããããã®ã¬ãã¥ãŒãææžåããŸãããã®ããã¥ã¡ã³ãèªäœããç£æ»äººãžã®ãã¥ãŒããªãžã§ã³ã¹ã®èšŒæ ã§ãã
- ã³ã³ãã©ã€ã¢ã³ã¹ã®ããã®ã¬ããŒãïŒãã®ã³ã°ã·ã¹ãã ã¯ãç¹å®ã®ã³ã³ãã©ã€ã¢ã³ã¹ããŒãºã«åãããŠèª¿æŽãããã¬ããŒããç°¡åã«çæã§ããå¿ èŠããããŸããPCI DSSç£æ»ã®å Žåãã«ãŒãäŒå¡ããŒã¿ç°å¢ãžã®ãã¹ãŠã®ã¢ã¯ã»ã¹ã瀺ãã¬ããŒããå¿ èŠã«ãªãå ŽåããããŸããGDPRç£æ»ã®å Žåãç¹å®ã®å人ã®å人ããŒã¿ã«ã¢ã¯ã»ã¹ãããŠãŒã¶ãŒãå®èšŒããå¿ èŠãããå ŽåããããŸããäºåæ§ç¯ãããããã·ã¥ããŒããšã¬ããŒããã³ãã¬ãŒãã¯ãææ°ã®SIEMã®éèŠãªæ©èœã§ãã
äžè¬çãªèœãšã穎ãšãã®åé¿æ¹æ³
å€ãã®åæã®ãã®ã³ã°ãããžã§ã¯ãã¯ãã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ãæºããããšãã§ããŸãããæ³šæãã¹ãäžè¬çãªééããæ¬¡ã«ç€ºããŸãã
1. ãã°ãå€ãããïŒããã€ãºãã®åé¡ïŒïŒãã¹ãŠã®ã·ã¹ãã ã®æã詳现ãªãã®ã³ã°ã¬ãã«ããªã³ã«ãããšãããã«ã¹ãã¬ãŒãžãšã»ãã¥ãªãã£ããŒã ãå§åãããŸãã解決çïŒãã®ã³ã°ããªã·ãŒã«åŸã£ãŠãã ãããã¹ããã2ã§å®çŸ©ããã䟡å€ã®é«ãã€ãã³ãã«çŠç¹ãåœãŠãŸãããœãŒã¹ã§ãã£ã«ã¿ãªã³ã°ã䜿çšããŠãé¢é£ãããã°ã®ã¿ãäžå€®ã·ã¹ãã ã«éä¿¡ããŸãã
2. äžè²«æ§ã®ãªããã°åœ¢åŒïŒWindowsãµãŒããŒããã®ãã°ã¯ãã«ã¹ã¿ã Javaã¢ããªã±ãŒã·ã§ã³ãŸãã¯ãããã¯ãŒã¯ãã¡ã€ã¢ãŠã©ãŒã«ããã®ãã°ãšã¯ãŸã£ããç°ãªããŸããããã«ãããè§£æãšçžé¢ãéåžžã«é£ãããªããŸãã解決çïŒå¯èœãªéããJSONã®ãããªæ§é åããããã®ã³ã°åœ¢åŒãæšæºåããŸããå¶åŸ¡ã§ããªãã·ã¹ãã ã®å Žåã¯ã匷åãªãã°åã蟌ã¿ããŒã«ïŒSIEMã®äžéšïŒã䜿çšããŠãããŸããŸãªåœ¢åŒãCommon Event FormatïŒCEFïŒãªã©ã®å ±éã¹ããŒãã«è§£æããŠæ£èŠåããŸãã
3. ãã°ä¿æããªã·ãŒã«ã€ããŠå¿ããïŒãã°ãããã«åé€ãããšãçŽæ¥çãªã³ã³ãã©ã€ã¢ã³ã¹éåã«ãªããŸããããããé·æéä¿æãããšãããŒã¿æå°åã®ååïŒGDPRãªã©ïŒã«éåããäžå¿ èŠã«ã¹ãã¬ãŒãžã³ã¹ããå¢å ããå¯èœæ§ããããŸãã解決çïŒãã°ç®¡çã·ã¹ãã å ã§ä¿æããªã·ãŒãèªååããŸããããŸããŸãªçš®é¡ã®ããŒã¿ã«ç°ãªãä¿ææéãèšå®ã§ããããã«ããã°ãåé¡ããŸãã
4. ã³ã³ããã¹ãã®æ¬ åŠïŒããŠãŒã¶ãŒ451ã衚'CUST'ã®è¡987ãæŽæ°ããŸããããšãããã°ãšã³ããªã¯ãã»ãšãã©åœ¹ã«ç«ã¡ãŸããã解決çïŒäººéãèªããã³ã³ããã¹ãã§ãã°ãå å®ãããŸãããŠãŒã¶ãŒIDã®ä»£ããã«ããŠãŒã¶ãŒåãå«ããŸãããªããžã§ã¯ãIDã®ä»£ããã«ããªããžã§ã¯ãåãŸãã¯ã¿ã€ããå«ããŸããç®æšã¯ãä»ã®è€æ°ã®ã·ã¹ãã ãçžäºåç §ããªããŠãããã°ãšã³ããªãããèªäœã§çè§£ã§ããããã«ããããšã§ãã
ç£æ»ãã®ã³ã°ã®æªæ¥ïŒAIãšèªåå
ç£æ»ãã®ã³ã°ã®åéã¯ãåžžã«é²åããŠããŸããã·ã¹ãã ãããè€éã«ãªããããŒã¿ã®éãççºçã«å¢ããã«ã€ããŠãæåã¬ãã¥ãŒã¯äžååã«ãªã£ãŠããŠããŸããå°æ¥ã¯ãèªååãšäººå·¥ç¥èœã掻çšããŠãç§ãã¡ã®èœåã匷åããããšã«ãããŸãã
- AIãæŽ»çšããç°åžžæ€åºïŒæ©æ¢°åŠç¿ã¢ã«ãŽãªãºã ã¯ããã¹ãŠã®ãŠãŒã¶ãŒãšã·ã¹ãã ã®ãéåžžãã®ã¢ã¯ãã£ããã£ã®ããŒã¹ã©ã€ã³ã確ç«ã§ããŸãããã®åŸããã®ããŒã¹ã©ã€ã³ããã®éžè±ïŒéåžžãã³ãã³ãããã°ã€ã³ãããŠãŒã¶ãŒããçªç¶å¥ã®å€§éžããã·ã¹ãã ã«ã¢ã¯ã»ã¹ãããªã©ïŒãèªåçã«ãã©ã°ãã人éã®ã¢ããªã¹ãããªã¢ã«ã¿ã€ã ã§çºèŠããããšã¯ã»ãŒäžå¯èœã«ãªããŸãã
- èªååãããã€ã³ã·ãã³ã察å¿ïŒãã®ã³ã°ã·ã¹ãã ãšSecurity OrchestrationãAutomationãand ResponseïŒSOARïŒãã©ãããã©ãŒã ã®çµ±åã¯ãã²ãŒã ãã§ã³ãžã£ãŒã§ããSIEMã§éèŠãªã¢ã©ãŒããããªã¬ãŒãããå ŽåïŒäŸïŒãã«ãŒããã©ãŒã¹æ»æãæ€åºãããå ŽåïŒãããšãã°ãæ»æè ã®IPã¢ãã¬ã¹ããã¡ã€ã¢ãŠã©ãŒã«ã§ãããã¯ããã¿ãŒã²ãããŠãŒã¶ãŒã¢ã«ãŠã³ããäžæçã«ç¡å¹ã«ããSOARãã¬ã€ããã¯ãèªåçã«ããªã¬ãŒã§ããŸãããã¹ãŠäººéã®ä»å ¥ãªãã«ã
çµè«ïŒã³ã³ãã©ã€ã¢ã³ã¹ã®è² æ ãã»ãã¥ãªãã£è³ç£ã«å€ãã
å æ¬çãªç£æ»ãã®ã³ã°ã·ã¹ãã ã®å®è£ ã¯ã倧ããªåãçµã¿ã§ãããçµç¹ã®ã»ãã¥ãªãã£ãšä¿¡é Œæ§ãžã®äžå¯æ¬ ãªæè³ã§ããæŠç¥çã«ã¢ãããŒãããããšã§ãåãªãã³ã³ãã©ã€ã¢ã³ã¹ãã§ãã¯ããã¯ã¹ãè¶ ããŠãç°å¢ãžã®æ·±ãå¯èŠæ§ãæäŸãã匷åãªã»ãã¥ãªãã£ããŒã«ã«ãªããŸãã
æç¢ºãªããªã·ãŒã確ç«ãã䟡å€ã®é«ãã€ãã³ãã«çŠç¹ãåœãŠãå ç¢ãªéäžã€ã³ãã©ã¹ãã©ã¯ãã£ãæ§ç¯ãã宿çãªç£èŠã«ã³ãããããããšã«ãããã€ã³ã·ãã³ã察å¿ãæ³å»åŠåæããããŠæãéèŠãªããšãšããŠã顧客ããŒã¿ã®ä¿è·ã«äžå¯æ¬ ãªèšé²ã·ã¹ãã ãäœæããŸããçŸä»£ã®èŠå¶ç°å¢ã§ã¯ã匷åãªç£æ»èšŒè·¡ã¯åãªããã¹ããã©ã¯ãã£ã¹ã§ã¯ãªããããžã¿ã«ãªä¿¡é ŒãšäŒæ¥ã®è²¬ä»»ã®åºç€ã§ãã