eCrime Conference March 2006

Loading...

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

0 comments

Post a comment

    Post a comment
    Embed Video
    Edit your comment Cancel

    Notes on slide 1

    VCF – formulate an EA, don’t do a flash cutover, go back to the requirements, involve users, get the right skills inhouse not through contractors 1,200,000 Google results for project benefit realisation failure

    VCF – formulate an EA, don’t do a flash cutover, go back to the requirements, involve users, get the right skills inhouse not through contractors 1,200,000 Google results for project benefit realisation failure

    Favorites, Groups & Events

    eCrime Conference March 2006 - Presentation Transcript

    1. In an age of increasing Participation and Consumerisation how do you “ Sell Security To The Board ” Alan Mather 30.03.2006
    2. Doom and Gloom Zero Day Exploit - Microsoft's Internet Explorer browser crashes when attacked through a new unpatched vulnerability, FBI says that dealing with viruses, spyware, PC theft and other computer-related crimes costs US businesses a massive $67.2 billion a year new Internet hazard known as “ ransomware ” is hitting personal computers, scrambling users’ files and leaving a ransom note Medical and financial information gathered on millions of Americans by Medicare, is vulnerable to thieves or pranksters because of inadequate computer security Virus infections accounted for roughly half of the worst security incidents for U.K. companies in the past two years, according to a new survey 60% of email is spam ; 91% of mail in India is spam The names, addresses and Social Security numbers of 200,000 customers were compromised when a laptop was stolen from the largest mutual fund IDC estimated that global financial institutions lost during the year US$400 million due to phishing schemes
    3. Doom and Gloom Zero Day Exploit - Microsoft's Internet Explorer browser crashes when attacked through a new unpatched vulnerability, FBI says that dealing with viruses, spyware, PC theft and other computer-related crimes costs US businesses a massive $67.2 billion a year new Internet hazard known as “ ransomware ” is hitting personal computers, scrambling users’ files and leaving a ransom note Medical and financial information gathered on millions of Americans by Medicare, is vulnerable to thieves or pranksters because of inadequate computer security Virus infections accounted for roughly half of the worst security incidents for U.K. companies in the past two years, according to a new survey Don’t open e-mails with subject lines such as "Slobodan Milosevic was killed." The names, addresses and Social Security numbers of 200,000 customers were compromised when a laptop was stolen from the largest mutual fund IDC estimated that global financial institutions lost during the year US$400 million due to phishing schemes “ Viruses are on a Moore’s Law curve. Security cannot keep pace with attacks on the Internet” Stewart Baker, Asst Sec Dept Homeland Security
    4. Fully Comprehensive? Or just 3 rd party fire and theft?
    5. The Internet Is Not A Nice Neighbourhood Hoodies abound
    6. Product versus Consequence From CLEF to CCTM – Does it pass the “Ronseal Test”? 5
    7. Speaking To The Board Of the new threats detected last year by PandaLabs, which is a virus laboratories network, 42 percent were trojans, 26 percent were bots, 11 percent were backdoor trojans, 8 percent were dialers, 6 percent were worms and 3 percent were versions of adware and spyware
    8. Use The Right Words Policy Business Case Secret Cost Control Insurance Product Service Technology Necessary Tested Business Risk Integration Manageability User Consequence Limitations Minimum “ Secure” Probability
    9. What Goes Down Will Go Up Somewhere Else Credit card fraud falls 13% in 2005, reducing by £65 million Cardholder not present fraud goes up 21%
    10. Convincing .gov – an example 2001 2002 2003 2004 2005 1in500 1in20
      • Cost to deploy, manage and upgrade > 100,000 desktops
      • Vs
      • Annual cost per head of a service
    11. Some Things To Think About Exposures Business Case Affordability User Consequence Outstanding Exposures Procedural Mitigation (not “policy”) Risk versus Reward Don’t make false choices Plan for SECURITY and EASE OF USE What’s Left? (after testing) Not just about technology INTERNAL and EXTERNAL Stay Up To Date ANTICIPATE!
    12. Today’s Trends
      • The Participation Age … Consumerisation … More devices … From more places … Doing more things …
      • More “virtualisation” … More involved architectures
      • ... Eventually simplifying to grids for some …
      • More off-shoring … More 3 rd parties connecting to your network … More transactions … More customers
      • But not enough Management Tools … Too many products … Too little integration to create a known outcome
      • How will your board grapple with the increasing exposure … what do you need to tell them?
      “ Viruses are on a Moore’s Law curve. Security cannot keep pace with attacks on the Internet” Stewart Baker, Asst Sec Dept Homeland Security
    SlideShare Zeitgeist 2009

    + Alan MatherAlan Mather Nominate

    custom

    64 views, 0 favs, 0 embeds more stats

    In an age of increasing Participation and Consumer more

    More info about this document

    © All Rights Reserved

    Go to text version

    • Total Views 64
      • 64 on SlideShare
      • 0 from embeds
    • Comments 0
    • Favorites 0
    • Downloads 0
    Most viewed embeds

    more

    All embeds

    less

    Flagged as inappropriate Flag as inappropriate
    Flag as inappropriate

    Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

    Cancel
    File a copyright complaint
    Having problems? Go to our helpdesk?

    Categories