On August 31, 2023, Amazon Cloud Technology re:Inforce 2023 China Station made its grand debut in Beijing, ushering in the first grand opening in China!
With the rapid development of GPT large models, the field of artificial intelligence is undergoing revolutionary changes, and the research and application of AI technology are also facing new challenges and opportunities. The GPT series models lead the trend of text generation and understanding with their super natural language processing capabilities. These large models not only perform well in generating creative articles, conversations, etc., but also show amazing capabilities in many applications such as translation and automatic code generation. Therefore, the close integration of AI technology and network security provides new possibilities for building more powerful defense mechanisms and intelligent security solutions.
This conference takes "Comprehensive Intelligent Security in the AI Era" as its theme, focuses on the challenges and opportunities that generative AI brings to enterprises at the security level. Amazon Cloud Technology believes that security is an unavoidable and important issue in building generative AI. Only by protecting the security of data, models and applications during the AI journey can enterprises better use AI to accelerate business innovation and at the same time improve global business planning. Good strategic layout.
Security is Amazon Cloud Technology’s top priority. At the beginning of the conference, Paul Vixie, Vice President of Global Security of Amazon Cloud Technology, introduced Amazon Cloud Technology’s mature experience in security compliance to help users achieve comprehensive intelligent security in the AI era.
In the AI era, leading intelligent cloud security
In recent years, artificial intelligence technology has developed rapidly, and generative AI application scenarios have exploded, ushering in a new turning point. At the meeting,Amazon Cloud Technology Greater China Solution Architecture Director Dai Wen gave a "AI Era, Leading Intelligent Cloud Security" keynote speech, deeply interpreting the trend of generative AI under the wave The cloud security challenges faced by enterprises, combined with the latest trends in generative AI security, share the latest security compliance insights and practices with customers and partners.
Dai Wen, Director of Solution Architecture, Amazon Cloud Technology Greater China
Data and model security are key to building AI applications
Data is the foundation for enterprises to use AI for business innovation. In practice, enterprises usually need to use high-value business data for model training and fine-tuning. Data will go through various links such as storage, transmission, use, and management before generating value. In order to build generative AI applications, enterprises should first ensure end-to-end data security during the data flow process and provide safe and valuable data input for generative AI applications.
Amazon Cloud Technology has always strictly adhered to the concept of customers owning and controlling data, providing industry-leading technical and physical measures to prevent unauthorized access, and providing data covering all aspects of storage, transmission, use, management, etc. encryption and protection services. For example, Amazon Cloud Technology customers can use Amazon Key Management Service (Amazon KMS) and deeply integrate it with Amazon Cloud Technology’s many services to easily protect a variety of data; Amazon Nitro Provides a hardware-level security mechanism that can realize independent secure channels for network and storage isolation. Using the encryption function of Nitro Enclaves, customers can perform confidential calculations, in which multiple participants can join and process highly sensitive data without separate Disclose or share actual data with each party involved.
Amazon Cloud Technology also provides governance services throughout the entire data cycle such as Amazon Data Zone, and launched a sensitive data protection solution at this conference, which can realize the protection of enterprises Automated discovery of sensitive data and management of data assets on a unified platform. The solution allows customers to create data catalogs and define sensitive data types using built-in or customized data identification rules. The solution uses machine learning and pattern matching to automatically identify sensitive data, and provides a visual panel to help customers more easily analyze sensitive data. Management and protection.
Enterprises need to build AI applications with the help of models and basic models. To ensure the accuracy and effectiveness of training results, the security of model training is also crucial. Enterprises should fully monitor the safe operation of the model, including access to the model. Security, model management, security monitoring of model operation, etc. For enterprises that build their own models, Amazon SageMaker provides a variety of functions to help developers build, train, and deploy models more easily, such as Amazon SageMaker Model Cards, which enables unified management of model information, Amazon SageMaker Model Monitor automatically monitors model accuracy.
In order to lower the threshold for using customer-generated AI, Amazon Cloud Technology launched fully managed basic model service Amazon Bedrock in April this year. Customers can access and use the foundation through API according to their own needs. Model. Like Amazon Bedrock's other managed services, customers can securely use the service in their virtual private cloud (VPC) and fine-tune the underlying model, always keeping their own data and models safe.
Ensuring the value of artificial intelligence is an important aspect of application security
The security of the generative AI application itself and access is equally important. Embedding security features into AI applications is one way to improve the security of the application itself.
Security in the entire development process - DevSecOps
Take Amazon CodeWhisperer as an example. This service is an AI programming assistant launched by Amazon Cloud Technology. It can use the embedded basic model to generate code suggestions in real time according to the developer's instructions. The service has built-in code security scanning. feature that helps developers find hard-to-detect vulnerabilities and make remediation recommendations.
Amazon CodeGuru Security Mainly positioned in the CICD stage, it can discover and solve code vulnerabilities at any stage of the development process. Secondly, it can automatically reduce false positives through AI/ML during the CICD process. At the same time, it is based on API design and can be easily integrated into the development workflow to achieve centralization and scalability.
Safe operation
For secure access to applications, enterprises can build a zero-trust application security access policy. Amazon Cloud Technology recently launched Amazon Verified Permissions, which provides fine-grained authorization and permission management for user-built applications. Users can use this service to manage access control of roles and attributes of their applications.
Zhao Haixu, Information Security Director from Leading Group, also gave a wonderful speech on the theme of "Staying Ahead of Security Threats".
Compliance capabilities accelerate global innovation in generative artificial intelligence
Amazon Cloud Technology has now obtained more than 140 security standards and compliance certifications around the world. It is worth mentioning that these compliance certifications not only cover infrastructure, but also many platform applications, such as container platforms, serverless platforms, etc. Amazon Cloud Technology also applies AI technology to its security and compliance services to respond to complex security threats and improve compliance efficiency through more intelligent security and compliance services.
Amazon Cloud Technology has greatly improved its compliance efficiency by using AI technology in more than 500 of its own compliance audit control items, saving 53% of audit time. While Amazon Cloud Technology is protecting customers’ compliance and security, it is also actively using artificial intelligence technology to provide its own compliance capabilities. In addition, the Amazon Cloud Technology APN Partner Network provides hundreds of industry-leading security solutions to protect customers' applications and data with multiple layers of protection.
Important Release Snapshot: Comprehensively Strengthening Industry and Overseas Safety
Established a "joint security laboratory" with Tuya Smart to inject new momentum into the security development of the Internet of Things industry
Amazon Cloud Technology announced the establishment of a "joint security laboratory" with Tuya Smart, the world's leading IoT developer platform. The two parties will work together in the fields of smart home, data security, security culture construction, and overseas compliance. The focus is on joint creation of security practices such as confidential computing and data privacy, Matter technical cooperation and system construction, and generative AI in the IoT field.
Tuya Smart and Amazon Cloud Technology have been cooperating for nearly nine years. The establishment of the "Joint Security Laboratory" will further strengthen the cooperation between the two parties, inject new impetus into the security development of the Internet of Things industry, and strive to provide more security guarantees for customers and end-users' Internet of Things devices
Cooperated with Deloitte to release the "White Paper on Suggestions for Chinese Enterprises' Overseas Development 2023 Edition"
Amazon Cloud Technology and Deloitte Enterprise Consulting cooperated to release the "White Paper on Suggestions for Chinese Enterprises Going Overseas Development 2023 Edition", which puts forward security compliance suggestions from the aspects of organizational construction and technical practice. In terms of organizational construction, overseas enterprises should establish and improve management systems, including formulating privacy processing principles and data protection principles, implementing data life cycle management systems, data leakage management specifications, and improving operating procedures such as response and evaluation of relevant incidents; in technology In terms of implementation, Amazon Cloud Technology provides more than 300 security and compliance services and functions, covering five major areas: threat detection and incident response, identity authentication and access control, network and infrastructure security, data protection and privacy, and risk management, control and compliance. , providing enterprises with comprehensive cloud security protection.
Amazon Cloud Technology also provides a shared responsibility model, cloud privacy protection and a compliance plan that meets the compliance requirements of almost all regulatory agencies around the world, comprehensively helping Chinese companies cope with overseas compliance challenges. It can be rewritten as: In addition, Amazon Cloud Technology also provides a shared responsibility model, cloud privacy protection, and a compliance plan that meets the compliance requirements of almost all regulatory agencies around the world, fully supporting Chinese companies in coping with overseas compliance challenges
Innovative Security in the Generative AI Era: In-depth Discussion at Roundtable Forum
In the roundtable discussion titled "Innovative Security in the Generative AI Era", Bai Fan, Director of Security Compliance and Governance Products of Amazon Cloud Technology Greater China, and Lu, chief security officer of vivo Li Wei, head of data security at Jinghui and Lalamove, Dong Chuntao, technical director of Palo Alto Networks Greater China, and He Wei, senior partner of security and privacy at Deloitte China, focused on the problems they encountered in the practice of generative AI. An in-depth discussion took place.
Currently, companies from all walks of life hope to seize the opportunities brought by generative AI and carry out business innovation. Amazon Cloud Technology not only provides a series of technologies, services and tools to help more enterprises fully unleash the potential of generative AI, but also ensures security compliance as the basis for conducting all business. These generative AI tools cover all aspects of data, models, and applications. Amazon Cloud Technology also applies AI technology and generative AI technology to its security and compliance services to respond to complex security threats in a more intelligent way and improve compliance efficiency
The successful holding of Amazon Cloud Technology re:Inforce 2023 Global Conference not only brought cutting-edge technological insights to the industry, but also demonstrated the important role of innovation in promoting future development. This event also established a platform for in-depth exchanges and win-win cooperation for the global technology community. It is hoped that under the guidance of the sparks of thought inspired by this conference, the industry will usher in more breakthroughs and changes, and make unremitting efforts to build a smarter, safer, and sustainable digital future. We also hope that in the current evolving threat environment, by relying on cloud technology's excellent security solutions, companies can confidently promote digital transformation and fully unleash their innovation potential.
The above is the detailed content of Security first, Amazon Cloud Technology leads comprehensive intelligent security in the AI era. For more information, please follow other related articles on the PHP Chinese website!