Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Air-Gapped Cyber Resilience Demo: NSA-Level Security

Nutanix
05/08/2026
30
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


TL;DR

  • Nutanix demonstrates comprehensive air-gapped cyber resilience using VPCs, microsegmentation, and DataLens ransomware detection running entirely disconnected from the internet in NSA-style environments
  • Automated incident response triggers when DataLens detects malicious activity, executing playbooks that quarantine production systems and simultaneously recover forensic copies to isolated bunker sites using immutable MST snapshots
  • Security teams investigate attacks in completely isolated VPC environments with access to cloned workloads, network logs, and incident data to identify known-good recovery points
  • Full recovery from ransomware attacks completes in minutes rather than days, with all components—production, backup, and forensics—running on the same Nutanix hardware platform
  • The platform follows NIST cybersecurity framework principles with STIG-compliant infrastructure, nested security policies, and integration points for SIEM/SOAR tools via webhooks

Air-Gapped Security Architecture

This demonstration showcases how the Nutanix Cloud Platform addresses cyber resilience challenges in completely disconnected environments, such as those found in national security agencies. The platform implements multiple layers of protection starting with STIG-compliant infrastructure, extending through Flow Virtual Private Clouds (VPCs) for isolated routing domains, and incorporating Flow Network Security Next Generation for microsegmentation. The architecture enables organizations to nest security policies within VPCs, creating scalable protection that extends to both applications and storage. This layered approach addresses the fundamental challenge of protecting dark sites where traditional internet-connected security tools cannot operate.

Automated Ransomware Detection and Response

The platform demonstrates automated incident response through integration between DataLens ransomware detection and Prism Central orchestration. When malicious activity is detected on file shares, DataLens automatically blocks the compromised user account and IP address, then triggers a webhook to Prism Central. This initiates an automated playbook that quarantines the affected production environment and simultaneously recovers a forensic copy to an isolated bunker site using immutable object snapshots created with Multicloud Snapshot Technology (MST). The entire response workflow executes without manual intervention, reducing response time from days to minutes while maintaining complete isolation for forensic investigation.

Forensic Investigation and Recovery

The bunker site recovery creates a completely isolated environment protected by both VPC routing isolation and Flow Network Security policies that prevent even east-west traffic between VMs. Security teams can examine cloned workloads, review network security logs, and analyze DataLens incident data to identify the attack timeline and determine known-good recovery points. Once the investigation identifies compromised components, recovery proceeds through DataLens snapshot restoration for file shares and VM reversion to pre-attack states. The demonstration emphasizes that all components—production workloads, object storage, and forensic environments—can run on the same Nutanix hardware, eliminating the need for separate infrastructure for disaster recovery scenarios.

Chapters

0:00 - Introduction: Air-Gapped Security Challenges
1:16 - NIST Framework and Protection Layers
2:14 - Demo Environment Overview
2:55 - Infrastructure and Network Security
5:00 - Data Protection with MST and DataLens
6:27 - Ransomware Attack Simulation
7:12 - Automated Incident Response Playbook
8:14 - Forensic Investigation in Bunker Site
10:06 - Recovery and Restoration Process
11:32 - Recap: Comprehensive Cyber Resilience

Key Quotes

1:19 "Air gap makes everything harder because you're literally disconnected from the Internet. So you have to have all your solutions running disconnected on their own, right? ..."
4:17 "For us, a VPC is your apps, but can be your storage because everything is software. So we can extend the VPC to everything that we care about."
5:31 "MST, we announced last year for the cloud use cases, but can now run on-premises to a Nutanix objects cluster."
8:10 "The beauty of Nutanix, all of this could run on the same hardware that's running your objects cluster. That's very unique."
11:32 "This is very, very hard to do without Nutanix, if not impossible. People spend months planning these things with different products. And here you get almost out of the Box."

Categories:
  • » Data Protection » Backup & Recovery
  • » Cybersecurity » Zero Trust
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Data Protection
  • Zero Trust
  • Security Operations
  • Demo
  • Technical Deep Dive
  • Air-gapped security
  • Ransomware detection and response
  • Zero-trust architecture
  • Immutable snapshots
  • Forensic investigation
  • VPC isolation
  • Microsegmentation
  • Automated incident response
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Air-Gapped Cyber Resilience Demo: NSA-Level Security

              Upcoming Webinar Calendar

              • 06/10/2026
                11:00 AM
                06/10/2026
                Action1: Vulnerability Digest--Patch Tuesday & Other Updates
                https://www.truthinit.com/index.php/channel/1997/action1-vulnerability-digest-patch-tuesday-other-updates/
              • 06/10/2026
                02:00 PM
                06/10/2026
                Understanding the True Costs of DIY Data Classification vs. Buying Solutions
                https://www.truthinit.com/index.php/channel/1985/understanding-the-true-costs-of-diy-data-classification-vs-buying-solutions/
              • 06/23/2026
                10:00 AM
                06/23/2026
                Stay Informed on the Latest Keepit Partner Developments – June 23
                https://www.truthinit.com/index.php/channel/1990/stay-informed-on-the-latest-keepit-partner-developments-–-june-23/
              • 06/25/2026
                01:00 PM
                06/25/2026
                Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier
                https://www.truthinit.com/index.php/channel/1998/generative-ai-security-preventing-ai-from-becoming-a-data-breach-multiplier/

              Upcoming Events

              • Jun
                10

                Action1: Vulnerability Digest--Patch Tuesday & Other Updates

                06/10/202611:00 AM ET
                • Jun
                  10

                  Understanding the True Costs of DIY Data Classification vs. Buying Solutions

                  06/10/202602:00 PM ET
                  • Jun
                    23

                    Stay Informed on the Latest Keepit Partner Developments – June 23

                    06/23/202610:00 AM ET
                    • Jun
                      25

                      Generative AI Security: Preventing AI from Becoming a Data Breach Multiplier

                      06/25/202601:00 PM ET
                      More events
                      Truth in IT
                      • Sponsor
                      • About Us
                      • Terms of Service
                      • Privacy Policy
                      • Contact Us
                      • Preference Management
                      Desktop version
                      Standard version