Story image

AWS launches 'Macie', its newest machine learning security service

16 Aug 2017

Amazon Web Services (AWS) has welcomed the newest addition to its portfolio, a machine learning security service called Amazon Macie.

So far, major global firms including Netflix and Autodesk are using the service, but now it has expanded to include Amazon Simple Storage Service (Amazon S3) customers.

The service is designed to help customers prevent data loss by automatically discovering, classifying and protecting sensitive data stored in AWS and Amazon Simple Storage Service (Amazon S3).

That sensitive data includes personally identifiable information and intellectual property. The service is able to monitor data access for anomalies and can generate alerts when unauthorised access, data leaks or when data is moved or accessed.

It is also able to customise automated remediation actions, such as password reset policies or access control list resets.

Amazon Web Services CISO Stephen Schmidt says that when sorting through massive amounts of content, identifying data manually can be like finding needles in a haystack.

 “Amazon Macie approaches information security in a more intelligent way. By using machine learning to understand the content and user behaviour of each organization, Amazon Macie can cut through huge volumes of data with better visibility and more accurate alerts, allowing customers to focus on securing their sensitive information instead of wasting time trying to find it,” he explains.

Macie works by automating formerly labour-intensive processes, such as developing and updating data classifications, through machine learning techniques.

It is able to analyse where an organisation’s sensitive information is located, how it is accessed, and basic properties of user authentication such as their location and time of access.

Once it forms a baseline, Macie then spots behaviour that looks out of place. This behaviour could be downloads of large source code amounts, unsecure credential storage or accidental public storage of private data.

AWS says that the Macie console is able to put the most important information front and centre, and is also able to guide users through issue resolution.

Netflix senior cloud security engineer Patrick Kelley says that with 104 million users in 190 countries, customer data security is critical.

“Netflix is the world’s leading internet television network with 104 million members in over 190 countries enjoying more than 125 million hours of TV shows and movies per day. “The security of our customers’ data is a top priority for Netflix, and we’ve invested substantial resources to build tools that protect sensitive information against unauthorized access or leaks,” Kelley explains.

“Since we started using Amazon Macie, we’ve found that it is flexible enough to solve a range challenges that would have previously required us to write custom code or build internal tools, such as securing PII and alerting us to access anomalies, helping us move fast with confidence.”

This week, McAfee also announced that it will make its Virtual Network Security Platform available on AWS available as a free 72-hour trial for users.

“AWS covers a lot of ground, such as security of the cloud, but users are still responsible for their security in the cloud—including securing their operating systems, applications and data traffic,” comments McAfee’s vice president of the network security business unit, Shishir Singh.

The company says that advanced malware can access AWS workloads through network traffic, cross site scripting, botnets and SQL injection attacks. If one AWS virtual server is compromised, the malware can also spread to other servers.

The Virtual Network Security Platform is able to monitor an entire network segment and protect a single workload.

Opinion: BYOD can be secure with the right measures
Companies that embrace BYOD are giving employees more freedom to work remotely, resulting in increased productivity, cost savings, and talent retention.
Sonatype and HackerOne partner on open source vulnerability reporting
Without a standard for responsible disclosure, even those who want to disclose vulnerabilities responsibly can get frustrated with the process.
OutSystems and Boncode team up for better code analysis
The Boncode and OutSystems alliance aims to help organisations to build fast and feel comfortable that the work they're delivering is at peak quality levels.
Nuance biometrics fight back against fraud
Nuance Communications has crunched the numbers and discovered that it has prevented more than US$1 billion worth of fraud from being passed on to users of its Nuance Security Suite.
Attacks targeting Cisco Webex extension explode in popularity - WatchGuard
WatchGuard's Internet Security Report for Q4 2018 also finds growing use of a new sextortion phishing malware customised to individual victims.
Developing APAC countries most vulnerable to malware - Microsoft
“As cyberattacks continue to increase in frequency and sophistication, understanding prevalent cyberthreats and how to limit their impact has become an imperative.”
Worldwide spending on security to reach $103.1bil in 2019 - IDC
Managed security services will be the largest technology category in 2019.
Privacy: The real cost of “free” mobile apps
Sales of location targeted advertising, based on location data provided by apps, is set to reach $30 billion by 2020.