Security DevOps (SecDevOps)

At InfoSec World a few weeks ago, I was in a talk with Rich Mogull (@rmogull) of Securosis. Rich spoke on the concept of SecDevOps while demonstrating how he applies this concept to workloads running within Amazon. Now, some would argue that DevOps already contains security practices within the workflows. The unfortunate reality is that, …

How Much Insight Are We Missing from Our Environments?

How much insight are we missing from our environments? That is a question I find myself asking after being bitten by a new “bug” found in VMware vCloud Automation Center (vCAC). There seem to be many people like me who discovered their morning was wrecked when the vCloud Automation Center 6.0 tenants became inaccessible and …

The Impact of the IaaS Price Wars

Public cloud IaaS providers are competing heavily on price. Watching Google, AWS, and Microsoft play the falling prices game is like watching a ping-pong match. It is just a matter of time before IBM’s SoftLayer matches the prices as well. Adrian Cockcroft wrote a great piece called The Real Story Behind the Cloud Price War, …

Are There Greenfield Deployments of Virtual and Cloud Environments?

Let me start out by saying that I see more discussions about greenfield deployments of products than I do of migration/integration by vendors. Personally, I think there is no such thing as a greenfield deployment unless the organization is just starting out, creating a brand new data center, or perhaps has money to waste. In …

OpFlex, Standards-Based Protocols, and Cisco’s Messaging Problem

On April second, Cisco introduced something that seems to make a lot of sense in its new declarative-based, ACI-led world of software-defined networking: a policy mechanism. The blog post about it was pretty straightforward: it included the obligatory nods toward the Internet Engineering Task Force (IETF) and open-source communities, defined the differences between the traditional …