Your Primer to AWS EC2 Protection

Are you on the cloud-native train? Nowadays, it seems everyone is building new stateless cloud-native applications or refactoring their old “jalopies” to become container-based, microservice-architected, cloud-native “Teslas.” However, that isn’t the reality when you speak with most users. Many are still hesitant to run production workloads in the cloud because they are not sure if their data will be protected and managed. Even current cloud users have concerns about the challenges of protecting their stateful data. Earlier this month, we announced Rubrik Alta 4.2, which extended our enterprise hybrid cloud data management capabilities. Based on customer demand, we’ve made simplifying the protection of cloud workloads a key component of our platform, beginning with Amazon Web Services (AWS) EC2 instance protection. Protecting EC2 instances centers on efficiently managing EBS snapshots and Amazon Machine Images. We’ll dive into how Rubrik simplifies AWS EC2 protection in a follow-up blog post. But first, we need to level-set our understanding of related AWS technologies and the possibilities and challenges they present.  Let’s begin with the different storage types that an EC2 instance uses. What is an EC2 Instance Store? An instance store is temporary or ephemeral block storage for EC2 instances. It’s a logical volume…
Advancing Your Data Protection Strategy with APIs

In today’s interconnected world, having a stand-alone product that only works within an ecosystem is not a reliable business proposition. The ability to change how data is stored, managed, and recovered is no longer a nice-to-have, but imperative to drive business and processes forward. The Current situation Traditionally, managing data was possible through GUI interfaces and, in some cases, by using not-very-well documented command line tools. Because these toxols are platform dependent and require specific documentation, they can slow down adoption and limit the usability of these products. Furthermore, introducing additional tools often produces a perpetual cycle of deployment and patch management to keep the tools up-to-date. There is also the, even if ever so slight, risk of introducing an unintended security vulnerability by having additional tooling installed on your systems. There have been recent examples in which third-party management tools were explicitly targeted and used for privilege escalation or data exfiltration. The Solution Because of API-driven development, we allow all our customers to interact with Rubrik directly. The advantage of this is that we can communicate with the API from any platform and use any scripting or programming language. As a result, our API-first solution delivers a more dynamic…
Edge-ier Cloud Data Management for ROBO Environments

Imagine a small satellite office with minimal data, but data that needs to be backed up nonetheless. Organizations suffering from the complexity of legacy solutions often face costly and inefficient backup processes when dealing with remote and branch offices (ROBO) data. That’s why we created Rubrik Edge – a software appliance built specifically for ROBO environments that stretches data protection and management to the far-flung corners of our customers’ businesses. With Edge, companies can save time by managing backup and replication policies–rather than creating individual backup schedules–and quickly recover all data, no matter where it’s stored. Deploy Edge at remote locations to backup locally, replicate to a central data center, and archive to the cloud with an easy interface. We’ve gathered three stories of how our customers are using Rubrik Edge to bring operational simplicity and cost savings to their ROBO locations. Stora Enso Unifies Data Management Across Eight Remote Offices Stora Enso is a leading sustainable newsprint and magazine paper manufacturer that produces 540,000 tons of paper annually. Headquartered in Helsinki, Finland, the manufacturer is a leading provider of renewable solutions in packaging, biomaterials, wooden constructions, and paper on global markets. The company has eight remote offices across three…
Rubrik Protects UNIX: AIX First in Line

From the outset, Rubrik has focused on being a one-stop solution for all enterprise data management needs. In a short time, we have expanded our footprint to support over 20 platforms and workloads that are business-critical for our customers. Some of the best feedback we hear is from  backup admins who can sleep peacefully knowing that their data is automatically being protected and meeting SLAs. In the past three years, we have breezed through a lap of supporting modern enterprise workloads – major virtualization systems (VMware, Hyper-V, AHV), physical hosts (Linux, Windows) and databases (Oracle, SQL Server). But when speaking with our customers, we found that many enterprise users want Rubrik-level simplicity for their legacy workloads that are still the workhorses for their mission-critical production systems. A significant number of our government, finance, and insurance customers run UNIX systems for deploying databases and applications that form the core backbone of their computing infrastructure. These customers are forced to use legacy backup vendors who are known for their complexity. Most new-age data management solutions have chosen to ignore these legacy workloads despite their towering importance to enterprises. Rubrik, whose DNA is rooted in its  customer obsession, has decided to take the…
Aligning Your Data Protection Strategy with GDPR

I’m the opposite of a PR person. As a Data Protection Officer, my job is to keep people out of the press. And as Data Protection laws continue to tighten with the application of the General Data Protection Regulation (GDPR), that job is getting a lot harder. One of the biggest brainteasers that companies are battling with inside their GDPR project is what to do with backups. GDPR requires a full understanding of the data you hold whilst balancing the need to keep data secure and, at the same time, respecting the right to erasure and proactive deletion. The first challenge here is actually knowing what data you have. You can’t protect it if you don’t have a clue where it is. Traditionally, backups have been a real pain for this since once the data is locked away inside a tape, it becomes incredibly difficult in the future to know what was in there. This is still the case in many non-physical backup systems in which you have a whole system snapshot but no way to interrogate what lies within. The simple answer to this conundrum is just stop. Stop making the problem harder for yourself, stop locking data away…
Worried About Viruses? Ransom? Data Loss? The Cure is Here!

This is not hype! This is reality. Companies across industries get hit with viruses all the time. In the always-on economy, companies rely on 24/7 data availability, so any downtime can severely impact the business. The good news is that with a strong data management solution, you can quickly recover from a disaster without any data loss. Before we dive into how Rubrik delivers that solution, let’s go over what happens during a virus attack. The Lifecycle of a Virus Attack Before Rubrik As the above diagram shows, a typical attack has several phases: you get hit with the virus, your systems are under attack, and your business loses access to the encrypted data. Once it’s detected, your IT team documents and implements steps to prevent the virus from spreading. But since most organizations rely on data to perform daily operations, the data loss you’ve already experienced has a severe impact on the organization. Unfortunately, for many organizations, a virus’ life doesn’t end with patching the vulnerability. Even with a sophisticated antivirus software, viruses can remain in your system undetected. This often leads to further data corruption and a vicious cycle of attack, recover, and patch. For this reason, many…
Rubrik Multi-tenancy: Secure Data Isolation for a True Cloud Computing Era

Multi-tenancy is one of the cornerstones of a cloud data management platform. It enables you to support multiple customers (commonly referred to as ‘tenants’) on a single platform. Pooling resources results in lower costs, greater efficiencies, and faster innovation for both tenants and service providers. Secure data and metadata isolation is required in multi-tenant environments. Traditionally, data isolation required for multi-tenant environments is established as physical boundaries. The storage domain, including its compute resources, is divided into multiple partitions, and role-based access control is applied on those partitions, as shown above. Each tenant is given a rigid partition isolated from others using physical boundaries. The resources are often over-provisioned to meet tenant demand during peak usage. Thus, resources are often underutilized and typically wasted. The security principals (user and service accounts) need to be reserved for each partition. Rubrik brings an innovative cloud-based framework for secure data and metadata isolation. This is designed to give the best of both worlds; security benefits of physical boundaries and economic advantages of a true cloud computing model. It is made possible by virtualizing all resources so that tenants can share allocated resources in a secure, isolated fashion, as pictured above. Let’s take a…
How to Avoid Ransomware Jail

It’s 1983, and Ronald Reagan is sitting down to watch the hit film War Games. Five days later, the president asked his secretaries of state, “Could a scenario like war games ever happen?” One week later, General Vessey returned with the answer: “Mr. President, it is a lot worse than you think.” Was this the first time that cyber security and privacy had surfaced in computer systems? Categorically, no. Security and Privacy in Computer systems 1967 by Willis Ware was the first paper on the topic — written in 1967. So, since the beginning of networked computing, cyber security, and privacy have been a factor. So, why is it suddenly a huge industry buzzword? My thoughts on this are twofold: Across governments, the use and ideas of cyber warfare were dismissed, ignored, or forgotten. But in 2007, the Aurora test categorically proved that cyber attackers could inflict physical damage using computer tools. This was a pivotal moment, as critical infrastructure was at risk. Cybercrime then shifted to the public sphere with cyber groups lining their sights on non-government attacks, such as online fraud, ransomware, malware, and phishing. The role that security and privacy now play in IT and our personal lives…
2017 in Review: Tech Innovation & Industry Recognition

With ten product releases in under four years, Rubrik has experienced tremendous growth as a company and as a technology. This development has come with recognition from leading publications such as Forbes, TechTarget, and CRN, which I find both exciting and extremely humbling. The Technical Marketing team at Rubrik had interesting thoughts around these accolades that I wanted to share with the community. We see value in diving deeper into these acknowledgements, as they provide insight into the changing landscape of enterprise technology and the modern problems organizations are trying to solve. Forbes Cloud 100 Kenneth Hui @kenhuiny For an emerging company such as Rubrik, an award from an organization like Forbes is both a validation of our company’s vision and a recognition of our ability to execute on that vision. That highlights the significance of Rubrik being placed among the top 40 companies in the Forbes Cloud 100 list. As a technologist at Rubrik, seeing our name among other top companies innovating cloud solutions confirms that our goal to simplify cloud data management is resonating with users. Data management has always been difficult and has only grown more so with the explosive growth of digital data. The Cloud has…