Why Use Immutable Storage?

Interoperability: A Much Needed Cloud Computing Focus

By G C Network | February 10, 2014

Cloud computing transitions information technology (IT) from being “systems of physically integrated hardware and software” to “systems of virtually integrated services”. This transition makes interoperability the difference between the success…

Managing IaaS and DBaaS Clouds with Oracle Released

By G C Network | February 6, 2014

Over the holidays I actually spent some time reviewing the newly released “Managing IaaS and DBaaS Clouds with Oracle Enterprise Manager Cloud Control 12c“. This book is a step-by-step tutorial…

Veterans 360: Helping Young Combat Veterans Succeed

By G C Network | February 5, 2014

Refusing to accept the 30 percent unemployment rate for California veterans between the ages of 18 and 24, Veterans 360 (V360) offers recently-separated combat veterans the opportunity for a solid…

Veterans 360 Paves the Way with Cloud Certification Training

By G C Network | February 3, 2014

In keeping with their mission to support young combat veterans’ transition into civilian life, Veterans 360 plans to launch a free Cloud Technology Certification training program. Vets360-Cloud will give veterans…

DBT-Data is a Force to be Reckoned With

By G C Network | January 27, 2014

DBT-Data further established itself in the data storage industry as a formidable force with the $35 million dollar purchase of the state of the art Cyber Integration Center on 1175…

2014 Federal Intelligence Summit – Washington, DC

By G C Network | January 10, 2014

DBT Data and Potomac Officers Club are excited to announce that Al Tarasiuk, CIO of the Office of the Director of National Intelligence (ODNI), will be part of an ICITE…

3rd Annual World Congress of Cloud Computing 2014

By G C Network | January 7, 2014

Today I am proud and honored to announce that I will be participating in this year’s 3rd Annual World Congress of Cloud Computing 2014! Highlighting the theme of “Chinese Dream…

NRRC Video Series – Video 8 : Raytheon R3 Decision Support Tool and Advanced Tactical System

By G C Network | December 23, 2013

In September, the NCOIC delivered the Geospatial Community Cloud (GCC) demonstration. Sponsored by the National Geospatial-Intelligence Agency, this demonstration showed how an interoperable, hybrid-cloud operating environment can be quickly enabled…

NRRC Video Series – Video 7 : Dave Boulos Demonstrates Bring-Your-Own-Device (BYOD) Management

By G C Network | December 20, 2013

In September, the NCOIC delivered the Geospatial Community Cloud (GCC) demonstration. Sponsored by the National Geospatial-Intelligence Agency, this demonstration showed how an interoperable, hybrid-cloud operating environment can be quickly enabled…

Just Pinched Myself ! Part of a “GovCloud Dream Team” !!

By G C Network | December 12, 2013

DBT-DATA provides reliable, flexible, and cost-effective data center solutions to federal, enterprise, and internet customers. With premier facilities in Ashburn, Virginia and the Cyber Integration Center in Harrisonburg, Virginia, they…

Data has become a global currency, and its value has nowhere to go but up.  According to The Economist online, the world’s most valuable resource is no longer oil, but data. The volume and velocity of data creation are astounding, and some estimates say that something like a self-driving car can generate 100 gigabytes per second. In response, industrial companies like GE and Siemens have positioned themselves as data firms.

To maintain, and even grow this value, data pedigree must be beyond reproach. Protecting this pedigree is generally refer to as immutability and describes a property of being unchanging or unable to be changed over time.  Immutability is especially essential in law enforcement where prosecutors rely on data to prove their case. This property may also be one reason why The Justice Department is changing its approach to collecting data stored in the cloud. After taking a closer look at this growing trend, guidance from the DOJ’s Computer Crime and Intellectual Property Section of the Criminal Division directs prosecutors to go directly to agencies and organizations when seeking access to their data rather than to the cloud service provider storing the information. Preparing for these increasingly inevitable inquiries, government agencies should now closely review their current cloud data storage vendor’s data immutability service level agreement.

The new guidance advises prosecutors to seek data from the agency when doing so would not compromise the investigation. This is because some providers may not have the capability to preserve and disclose information or have full access to an enterprise’s data. Under 18 U.S.C. § 2703(f), however, the Government could approach a cloud-service provider directly to preserve data without agency prior knowledge.

Agencies must also be able to identify a legal contact within the organization that is knowledgeable of cloud-based storage and able to assist law enforcement with contacting the appropriate CSP point of contact. This is crucial to any requirement associated with interposing privilege or other objections to the collection of data. Failure to have such a contact in the organization could also be a reason for the DoJ to seek data directly from the cloud-service provider without agency participation.

Threats to the immutability of data put into the cloud include:

  • Data deterioration caused by the use of inappropriate storage technology
  • Intrusion by an external agent which could lead to data breach or loss
  • A malicious employee programmer changing production code to allow intrusion
  • Physical removal or destruction of data
  • Random disk failures could result in data loss if there isn’t sufficient redundancy
  • Data could suffer from “bit rot” and deteriorate if it is not checked and refreshed on a regular basis

When reviewing a cloud service provider’s SLA, ensure that none of the provider’s employees can change application code on a production system without first undergoing thorough review and testing. The data centers themselves must also contain appropriate physical security using things like biometric access control and man-traps. The data should also be extremely durable guaranteeing at least 11 nines. The provider should also periodically read every data object every 90 days to detect and automatically correct any random errors.

Wasabi is one of the few cloud service providers capable of meeting these minimum data immutability standards. Management of its data storage service is built around two simple rules:

  • No one person should be able to destroy data that is in an immutable bucket; and
  • Nobody should be able to touch a production system anonymously.

This means when using Wasabi immutable buckets, no one can delete or alter your data–not even a systems administrator.

Posted in

G C Network